Stand out for this role — generate a tailored resume and cover letter in about a minute.
CITIC Telecom International Holdings Limited is seeking an Operation Manager for Security Services - SOC Operations in Hong Kong. You will lead 24/7 SOC engineers, manage shift scheduling, and drive incident triage with a focus on SLA adherence and ticket quality.
You will mentor staff, oversee escalation reviews, and own SOPs/runbooks while leveraging SIEM, SOAR and EDR. The role requires a strong IT/security background and flexible hours for off-hours incidents.
(Assistant) Operation Manager, Security Services - SOC Operations
About the Company:
CITIC Telecom International Holdings Limited was established in 1997 in Hong Kong and was listed on The Stock Exchange of Hong Kong Limited on 3 April 2007. It is an Internet-oriented telecommunications enterprise providing comprehensive services. The Company’s services cover international telecommunications services, providing mobile international roaming, international voice, international messaging, international data and international value-added telecommunications services, etc. to global carriers. The Group has established branch organisations in 22 countries and regions with more than 2,500 employees and over 160 PoPs globally.
CITIC Group Corporation, a large multinational conglomerate headquartered in China, is the ultimate holding company of CITIC Telecom.
Responsibilities:
Team Leadership & Operations
Workforce Management: Manage 24/7 shift scheduling, resource allocation, and daily supervision of Tier 1 SOC engineers.
People Development: Provide hands-on technical mentorship, conduct performance evaluations, and identify training needs.
Incident & Quality Management
Triage & Quality Control: Oversee alert investigations to ensure SLA compliance, and monitor the quality of tickets and customer communications.
Escalation & Review: Act as the primary technical escalation point for complex events and chair Tier 1 Post-Incident Reviews (PIRs).
Process & Technology Optimization
SOPs & Tooling: Own and maintain Tier 1 SOPs/runbooks, and ensure SOC technologies (SIEM, SOAR, EDR) are properly operated.
Continuous Improvement: Drive automation to reduce alert fatigue, and collaborate with Tier 2/3 teams to update detection procedures based on new threat findings.
Ad-hoc: Handle other projects as assigned.
Requirements:
Degree in Information Technology /Computer Science /Computer Engineering or related
Information Security Certification (i.e. CISSP or CISA or GIAC)
Have more than 8 years experiences in IT industry, understanding the role and responsibility for different teams
Strong technical background, including networking, cloud, operating system, database and programming
Have knowledge of quality of services, like ISO, Six Sigma, ITIL
Have knowledge of project management, like PMBOK, Agile
Flexible working hours are required for supporting non-office hour incidents
We Offer:
5 days work week
Discretionary year-end bonus
Medical & dental insurance
Free meals
Free shuttle bus service