Location: Hyderabad
Department: Cybersecurity / Information Security
Experience: 8+ years in cybersecurity with 3+ years in a leadership/SOC role
Job Summary
We are seeking an experienced and dynamic Security Operations Center (SOC) Manager to lead our cybersecurity operations. The ideal candidate will be responsible for overseeing the daily operations of the SOC, leading a team of analysts and engineers, and ensuring proactive monitoring, incident detection, response, and mitigation of cybersecurity threats.
Key Responsibilities
- Manage and lead the 24/7 SOC team including Tier 1, Tier 2, and Tier 3 analysts
- Develop and optimize SOC processes, playbooks, and standard operating procedures (SOPs)
- Monitor the threat landscape and ensure continuous improvements in detection and response strategies
- Oversee incident response lifecycle including triage, analysis, containment, eradication, and recovery
- Coordinate with internal IT, risk, compliance, and business teams during security incidents
- Manage SOC technologies like SIEM, SOAR, EDR, IDS/IPS, firewalls, and threat intel platforms
- Define and track SOC KPIs and metrics, and report regularly to senior management
- Lead threat hunting and proactive detection activities using frameworks like MITRE ATT&CK
- Support audits, compliance requirements, and cyber risk assessments
- Mentor and upskill the SOC team with continuous training and development
Required Skills & Qualifications
- Bachelor’s/Master’s in Computer Science, Information Security, or related field
- Proven experience in managing a SOC or leading security operations
- Hands-on experience with SIEM tools (e.g., Splunk, QRadar, Sentinel), EDRs (e.g., CrowdStrike, Defender), and SOAR platforms
- Strong knowledge of incident response, threat hunting, malware analysis, and forensics
- Familiarity with NIST, MITRE ATT&CK, ISO 27001, and other cybersecurity frameworks
- Excellent communication, leadership, and project management skills
- Industry certifications preferred: CISSP, CISM, CEH, GCIA, GCIH, SC-200
Preferred Qualifications
- Experience working in regulated environments (e.g., BFSI, Healthcare)
- Experience with cloud security operations (Azure, AWS, GCP)
- Knowledge of scripting (Python, PowerShell) for automation