Security Operations Center (SOC) Operator
Corporate Security – Enterprise Security Operations Center (ESOC)
Security Operations Center (SOC)
The Security Operations Center (SOC) Operator supports the Enterprise Security Operations Center (ESOC) by providing continuous monitoring, incident intake, and operational coordination for security events impacting people, facilities, and business operations. This role focuses on real‑time system monitoring, incident intaking, accurate incident documentation, and structured escalation in support of enterprise security and duty of care objectives.
Operating within established procedures and response frameworks, the SOC Operator plays a critical execution‑level role in maintaining situational awareness, ensuring timely response, and supporting 24/7/365 security operations.
Primary Responsibilities
- Monitor enterprise physical security systems, alarms, and operational dashboards to identify potential security incidents in real time.
- Serve as a primary intake point for security incidents received via phone, email, alarms, or system notifications.
- Triage security events using established procedures to determine priority, required response actions, and escalation level.
- Accurately document incidents, actions taken, and outcomes in designated incident management or case tracking systems.
- Maintain awareness of active incidents and provide timely updates during event progression.
- Respond to emergency alerts and safety activations (e.g., panic alerts) and initiate appropriate response coordination.
- Participate in structured shift handovers to ensure continuity of situational awareness and incident ownership.
- Escalate incidents that exceed defined thresholds or fall outside standard procedures to senior operators or leadership.
- Adhere to enterprise security policies, governance standards, and confidentiality requirements.
Qualifications
Required
- 1–3 years of experience in security operations, monitoring, dispatch, emergency coordination, or a related operational role.
- Experience working in a Security Operations Center (SOC), Regional SOC (RSOC), or comparable 24/7 operations environment.
- Demonstrated ability to follow established procedures and escalation protocols in time‑sensitive situations.
- Strong written and verbal communication skills suited to operational documentation and coordination.
- High attention to detail and accuracy when handling security‑related or safety‑impacting information.
- Proven ability to work effectively in a fast‑paced, shift‑based environment.
Required Skillsets and Competencies
- Real‑time security monitoring and alarm response
- Structured incident intake, triage, and escalation
- Operational documentation and case management
- Clear, concise, and professional communication
- Adherence to procedures and operational discipline
- Task prioritization and multitasking under pressure
- Sound judgment within defined response frameworks
- Team collaboration in a 24/7 operations center environment
Working Conditions
- In‑person role based within the Security Operations Center (SOC).
- Fast‑paced operational environment requiring sustained attention and responsiveness.
- Role involves handling sensitive security and operational information.