SOC Director

Socket.dev

Montreal (administrative region)

On-site

CAD 120,000 - 170,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Group insurance plan
RRSP and matching employer contrib.
Stock options
Vacation and holidays

Job summary

GoSecure is seeking a SOC Manager to lead the Security Operations Center, driving efficient detection, investigation, and response to security threats. You will guide a team, collaborate with engineering to enhance SOC capabilities, and engage with clients to deliver measurable security outcomes.

The role emphasizes process optimization, automation, and AI-enabled security practices within a managed security services framework. Bilingual English/French required for client interactions.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent experience.
  • Certifications such as CISSP/CISM/CISA are assets.
  • Mandatory bilingualism: French and English.

Responsibilities

  • Lead SOC day-to-day functions including monitoring, detection, investigation, incident response and escalation.
  • Collaborate with Engineering to integrate internally developed tech into SOC processes.
  • Mentor and develop SOC team members and career roadmaps.
  • Drive continuous improvement of SOC processes, analytics, and automation.
  • Develop and implement an automation strategy prioritizing impact and ROI.
  • Serve as senior client point-of-contact for SOC matters and governance activities.
  • Support Sales/CS teams with cybersecurity expertise in pre-sales and client engagements.

Skills

SOC leadership
Client management
AI/Automation
SIEM experience
Security operations

Education

Bachelor's degree in CS/InfoSec
Security certifications (CISSP/CISM/CISA, asset)

Tools

SOAR platforms
Microsoft Sentinel
Splunk/QRadar

Job description

GoSecure is recognized as a leader and innovator in cybersecurity solutions. The company is the first and only to integrate an Endpoint and Network threat detection platform, Managed Detection and Response services, and Cloud/SaaS delivery. Together, these capabilities provide the most effective response to the increased sophistication of continuously evolving malware and malicious insiders that target people, processes and systems. With focus on innovation quality, integrity, and respect, GoSecure has become the trusted provider of cybersecurity products and services to organizations of all sizes, across all industries globally. To learn more, please visit: https://www.gosecure.net.

GoSecure offers a creative and challenging work environment, a competitive benefit package, and a great atmosphere to foster career growth. Come put your career on the leading-edge and bring your talents to a much sought-after high growth opportunity in technology- GoSecure!

GoSecure is an Equal Opportunity Employer committed to hiring a diverse work team (EEO/AA).

Summary

The SOC Manager will lead the day-to-day operations and continuous improvement of the Security Operations Center (SOC). This role is responsible for providing leadership, technical expertise, and operational guidance to SOC team members while ensuring the effective detection, investigation, and response to security threats.

A key responsibility of this role is to continuously improve SOC efficiency, scalability, and effectiveness through process optimization, automation, and the adoption of AI-enabled technologies.

As a leader within a managed security services organization, the SOC Manager will also play an important client-facing role, helping manage client relationships, resolve complex service and operational issues, and support sales and account teams with technical cybersecurity expertise.

Duties and Responsibilities
  • Lead the day-to-day functions of the SOC, including security monitoring, detection, investigation, incident response, escalation, and coordination.
  • Collaborate closely with the Engineering team to identify, develop, and integrate internally developed technologies into SOC processes, workflows, and service delivery capabilities to improve operational effectiveness and scalability.
  • Manage, mentor, and develop SOC team members, including establishing development roadmaps to maintain and advance their technical and professional skills.
  • Drive continuous improvement of SOC processes and workflows, with a focus on increasing analyst productivity, reducing repetitive manual tasks, and improving the quality and consistency of security operations.
  • Identify, evaluate, and implement opportunities to leverage AI, automation, SOAR, and agentic technologies across SOC workflows, including alert triage, enrichment, investigation, threat hunting, detection engineering, incident response, and reporting.
  • Develop and maintain an automation strategy for the SOC, prioritizing opportunities based on operational impact, risk, scalability, and return on investment.
  • Establish and monitor operational metrics and KPIs to measure SOC effectiveness and efficiency, including alert volumes, analyst workload, automation rates, response times, false-positive rates, and MTTD/MTTR.
  • Lead problem management activities for recurring or significant operational issues, including root-cause analysis, corrective and preventive actions, ownership tracking, and coordination with engineering and other internal teams to ensure issues are resolved sustainably.
  • Identify recurring incidents, process failures, and service delivery issues and translate them into opportunities for process, technology, automation, or service improvements.
  • Provide leadership during major security incidents and coordinate response activities across multiple departments and stakeholders.
  • Act as a senior point of contact for clients on SOC-related matters, including service performance, escalations, security incidents, operational challenges, and improvement initiatives.
  • Build and maintain strong client relationships, understand client security objectives and concerns, and ensure SOC services continue to deliver measurable value.
  • Participate in client governance, service reviews, executive discussions, and other client-facing activities as required.
  • Partner with engineering, security operations, product, and other teams to improve GoSecure's detection and response capabilities and overall security posture.
  • Support Sales, Account Management, and Customer Success teams as a SOC subject-matter expert, including participation in prospect and client meetings, technical presentations, solution discussions, RFP/RFI responses, and other pre-sales or expansion activities.
  • Translate technical SOC capabilities into clear business value for both technical and executive audiences and help ensure proposed solutions are operationally achievable.
  • Provide clients with technical consulting and guidance regarding networks, security controls, detection and response capabilities, and SOC best practices.
  • Promote operational excellence through documentation, standardized procedures, quality assurance, knowledge sharing, and continuous improvement.
  • Other duties as required.
Requirements and Experience
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent professional experience. Relevant security certifications such as CISSP, CISM, CISA, CCSP, GCIH, GIAC, OSCP, OSEE, or GREM are considered an asset.
  • Mandatory bilingualism: French AND English
  • Microsoft Expert
  • Demonstrated experience as a technical lead, SOC leader, or people manager within a security operations environment.
  • Strong understanding of SOC operating models, processes, workflows, and performance management, with demonstrated experience improving operational efficiency.
  • Strong client management and communication skills, with experience managing client expectations, escalations, service issues, and relationships in a managed services or other client-facing environment.
  • Experience with structured problem management, root-cause analysis, and continuous improvement methodologies, with the ability to drive complex operational issues through to sustainable resolution.
  • Experience supporting sales or pre-sales activities, with the ability to explain complex SOC and cybersecurity capabilities to technical, business, and executive stakeholders.
  • Hands-on experience with security automation and orchestration technologies, including SOAR platforms, APIs, scripting, workflow automation, or equivalent technologies.
  • Practical understanding of AI and generative AI technologies and their application within cybersecurity operations, including opportunities and risks associated with using AI to augment SOC analysts and automate security workflows.
  • Experience designing or implementing automated workflows for areas such as alert enrichment, triage, investigation, incident response, threat intelligence, detection engineering, or reporting.
  • Ability to analyze SOC operational data and metrics to identify inefficiencies, bottlenecks, automation opportunities, and areas for process improvement.
  • In-depth experience with SIEM technologies and security analytics platforms such as Microsoft Sentinel, Splunk, Google SecOps, QRadar, or equivalent technologies.
  • Experience with formal security frameworks and models such as MITRE ATT&CK and CIS Critical Security Controls.
  • Strong background in security incident handling, threat intelligence, detection engineering, and threat hunting.
  • Experience with technologies commonly implemented in SOC environments, including EDR/XDR, NDR, IDS/IPS, firewalls, DLP, email security, web proxies, identity security, and cloud security platforms.
  • Understanding of networking protocols such as IP, DNS, HTTP/S, SMTP, and related protocols, as well as the OSI model.
  • Strong leadership, communication, and stakeholder management skills, with the ability to operate effectively across SOC analysts, engineering teams, clients, executives, and sales organizations.
  • Strong curiosity regarding emerging AI, automation, and cybersecurity technologies, combined with the ability to evaluate new capabilities pragmatically and translate them into measurable operational improvements.
Why come to GoSecure?
  • -3 weeks' vacation, 5 personal days, paid bereavement days
  • -13 paid holidays
  • -Group insurance plan: health, dental, vision, disability, life, travel
  • -Employee assistance program (Dialogue)
  • -RRSP and matching employer contribution
  • -Peer recognition program and other awards granted throughout the years
  • -Company stock options
  • -Discounts on a variety of merchants
  • -Young and dynamic team always striving to improve
  • and much more!
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Director
SOC Director

GoSecure • Toronto

On-site
CAD 100,000 - 150,000
Three weeks' vacation
Personal days
Paid holidays
+5
Junior SOC Analyst - Systems Integrator
Junior SOC Analyst - Systems Integrator

Hamilton Barnes Associates Limited • Golden Horseshoe

On-site
CAD 50,000 - 57,000
Health insurance after 90 days
Dental insurance after 90 days
Vision insurance after 90 days
+1
Gestionnaire, Services Professionnels / Manager, Professional Services
Gestionnaire, Services Professionnels / Manager, Professional Services

SecureOps Inc. • Montreal (administrative region)

Hybrid
CAD 90,000 - 130,000
4 semaines de vacances payées
Journées maladie et personnelles payés
Assurance collective
+5
Sales Coordinator & Executive Support (QC Province)
Sales Coordinator & Executive Support (QC Province)

Socket.dev • Montreal (administrative region)

On-site
CAD 60,000 - 90,000
3 weeks vacation
5 personal days
13 paid holidays
+4
Spécialiste SOC / SOC Specialist (Incident Responder)
Spécialiste SOC / SOC Specialist (Incident Responder)

Genetec • Montreal (administrative region)

On-site
CAD 70,000 - 90,000
Régime de rémunération attrayant
Programme de remboursement des frais de formation
Repas subventionnés dans notre Bistro
+4
Manager, Cyber Intelligence Centre
Manager, Cyber Intelligence Centre

Bell Cyber • Mississauga

On-site
CAD 135,000 - 165,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Northern Computer • Edmonton

Hybrid
CAD 65,000 - 95,000
Extended health coverage
Dental coverage
Life insurance
+5
Senior SOC Analyst
Senior SOC Analyst

Coveo • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Professional Services Manager
Professional Services Manager

SecureOps • Montreal (administrative region)

Hybrid
CAD 90,000 - 130,000
4 weeks of paid vacation
5 floater days
Paid sick days and personal days
+4
Senior SOC Analyst
Senior SOC Analyst

Socket.dev • Montreal (administrative region)

On-site
CAD 90,000 - 130,000