Security Operations Manager

Angel One

Bengaluru

On-site

INR 3,500,000 - 6,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Angel One in Bengaluru seeks an experienced Security Operations Center Manager to lead our cyber defense program, strengthening detection, investigation and response across enterprise environments. You will oversee SOC, threat intelligence, hunting, incident response, digital forensics, and active defense, building a mature security operations capability and mentoring a high-performing team.

The role requires deep technical expertise, strong leadership, and the ability to deliver measurable

Qualifications

  • 10–14 years of experience in cyber security or security operations.
  • Experience leading an enterprise SOC and cyber defense teams.
  • Proven track record in incident response and threat hunting.
  • Strong knowledge of MITRE ATT&CK and threat intelligence.
  • Ability to mentor and develop high-performing SOC staff.

Responsibilities

  • Oversee SOC operations for continuous monitoring across enterprise environments.
  • Lead incident triage, containment, eradication, and post-incident reviews.
  • Coordinate threat intelligence, hunting, and forensics activities.
  • Drive automation, playbooks, and detection content improvements.
  • Report metrics (MTTD, MTTR) to leadership and risk stakeholders.
  • Collaborate with Legal, HR, and Communications during major incidents.

Skills

Leadership
Incident Response
Threat Hunting
Threat Intelligence
Automation & Scripting
MITRE ATT&CK
Digital Forensics

Tools

SIEM Platforms
SOAR
EDR/XDR
Cloud Telemetry
Forensics Tools

Job description

Security Operations Center (SOC) Manager

About the Role

We are seeking an experienced Security Operations Center (SOC) Manager to lead our Cyber Defense function and strengthen the organization's capability to detect, investigate, and respond to cyber threats across enterprise environments.

This role will be responsible for overseeing Security Operations, Threat Intelligence, Threat Hunting, Incident Response, Digital Forensics, and Active Defense capabilities. The ideal candidate will bring strong leadership experience, deep technical expertise, and a proven track record of building and maturing enterprise cyber defense programs.

What You Will Do
Security Operations & Monitoring
  • Lead and manage Security Operations Center (SOC) activities for continuous monitoring of enterprise environments.
  • Oversee detection and analysis of threats across endpoints, networks, identities, cloud platforms, and applications.
  • Ensure effective prioritization and escalation of incidents based on business impact and risk.
  • Continuously improve SOC processes, playbooks, detection logic, and automation workflows.
  • Support integration of security tools, telemetry sources, and automation platforms to enhance visibility and response capabilities.
  • Collect, analyze, and operationalize cyber threat intelligence from internal and external sources.
  • Track adversary behaviors, campaigns, and tactics aligned with MITRE ATT&CK.
  • Develop and publish actionable intelligence reports to support detection and defense strategies.
  • Conduct proactive threat hunting activities to identify advanced threats that evade automated controls.
  • Collaborate with Security Engineering teams to close detection gaps and improve security monitoring.
  • Lead incident triage, containment, eradication, and recovery efforts.
  • Coordinate response activities during significant security incidents.
  • Conduct digital forensic investigations and root cause analysis.
  • Maintain and improve incident response playbooks and escalation procedures.
  • Deliver post-incident reviews and lessons learned to strengthen organizational resilience.
  • Partner with Legal, HR, Communications, and business stakeholders during major incidents.
Advanced Cyber Defense
  • Perform malware analysis and reverse engineering for high-severity incidents.
  • Manage deception technologies and active defense initiatives.
  • Conduct dark web monitoring and threat intelligence investigations to identify emerging risks.
  • Execute purple team exercises to validate detection and response effectiveness.
  • Monitor attack surface intelligence and emerging exposure risks.
  • Leverage SOAR and XDR platforms to automate investigations and accelerate response activities.
  • Develop and maintain key security metrics including MTTD, MTTR, detection accuracy, and false positive rates.
  • Produce dashboards, executive reports, and actionable insights for leadership and the CISO organization.
  • Publish internal threat advisories related to vulnerabilities, exploits, and global threat trends.
  • Build, mentor, and develop a high-performing SOC team through coaching and capability development.
  • Drive continuous improvement initiatives based on operational metrics and intelligence insights.
What Success Looks Like
  • Early detection and rapid containment of cyber threats.
  • Improved visibility across cloud, network, endpoint, and hybrid infrastructure environments.
  • Enhanced incident response maturity and forensic readiness.
  • Strong collaboration with Security Engineering and Assurance teams.
  • Measurable improvements in detection effectiveness and response performance.
Who You Are
Required Experience
  • 10-14 years of experience in Cyber Security, Security Operations, Incident Response, Threat Hunting, or Cyber Defense.
  • Proven experience managing Security Operations Centers and cyber defense teams.
  • Experience leading enterprise-scale incident response and investigation activities.
Technical Skills
  • Strong understanding of SIEM, SOAR, EDR/XDR, NDR, Firewall, and Threat Intelligence platforms.
  • Deep knowledge of network protocols including TCP/IP, DNS, HTTP, and SMTP.
  • Experience with endpoint, server, and cloud telemetry across AWS, Azure, and GCP.
  • Expertise in threat hunting, detection engineering, and adversary simulation techniques.
  • Knowledge of MITRE ATT&CK, Cyber Kill Chain, and Diamond Model frameworks.
  • Hands-on experience in digital forensics, malware analysis, and incident response.
  • Scripting and automation skills using Python, PowerShell, or Bash.
  • Experience working with IOC management, threat intelligence feeds, and sandboxing technologies.
  • Understanding of identity security, email security, SaaS security monitoring, and attack surface management.
Preferred Certifications
  • CISSP, SSCP
  • CISM
  • Certified SOC Analyst (CSA)
  • Certified Ethical Hacker (CEH)
  • CompTIA Security+, CySA+, CASP+
  • GIAC Security Certifications
  • Additional certifications related to Threat Hunting, Incident Response, Digital Forensics, and Security Leadership
Preferred Industry Background
  • FinTech
  • E-commerce
  • Technology & Cloud Service Providers
  • IT Services
  • Critical Infrastructure & Energy
  • MSSP / MDR Organizations
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Manager
SOC Manager

Angel One • Bengaluru

Hybrid
INR 1,800,000 - 3,200,000
Senior Manager, Security Operations Center (SOC)
Senior Manager, Security Operations Center (SOC)

R.L. Polk Private Limited • Bengaluru

On-site
INR 5,000,000 - 7,500,000
Manager SOC
Manager SOC

Adani Group • Ahmedabad District

On-site
INR 700,000 - 1,200,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
Senior Manager, Security Operations Center (SOC)
Senior Manager, Security Operations Center (SOC)

Mobility Global • Bengaluru

On-site
INR 4,000,000 - 7,000,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
Information Security Specialist
Information Security Specialist

ZEISS India • Bengaluru

On-site
INR 800,000 - 1,200,000
SOC Specialist
SOC Specialist

METRO/MAKRO • Pune District

On-site
INR 4,000,000 - 7,000,000
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

Hybrid
INR 1,000,000 - 1,500,000
SOC / Security Operations Lead
SOC / Security Operations Lead

Paytm • Dadri

On-site
INR 3,500,000 - 7,000,000