SOC Manager

Hammerjack Pty Ltd

Philippines

On-site

PHP 2,000,000 - 3,000,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
Clothing Allowance
Group Personal Accident Insurance

Job summary

Hammerjack Pty Ltd is seeking a Security Operations Manager to lead the day-to-day SOC Analyst team, coordinating with analysts to meet monitoring, analysis and escalation objectives. The role involves reporting to executive management and serving as liaison for incident response functions.

The candidate should have 7+ years in security leadership, strong ITIL background, and experience with SIEMs and incident management.

Qualifications

  • 7+ years security leadership experience with mentoring across levels.
  • ITIL-based IT operations experience and process rigor.
  • Experience defining security metrics, KPIs, and governance.
  • Ability to design 24x7 shift coverage for SOC staff.
  • Strong scripting knowledge in PowerShell and Bash.
  • Familiarity with Azure Sentinel, SIEMs, and packet analysis.
  • Knowledge of networking, Windows/Unix systems, and security devices.

Responsibilities

  • Lead 24x7 SOC operations and drive accountability within engineering.
  • Oversee daily SOC activities to protect networks and systems.
  • Escalate cases and update SOPs and playbooks as needed.
  • Provide technical oversight for security tool deployment.
  • Monitor threats with IDS/IPS, firewalls, and SIEMs.
  • Coordinate staffing, schedules, and holiday/leave coverage.
  • Ensure procedures are documented and followed per guidelines.
  • Define metrics and KPIs to drive governance and efficiency.
  • Manage recruitment, supervision, and staff development.

Skills

Security leadership
ITIL
KPI design
Shift scheduling
PowerShell
Bash
Cisco IOS
JunOS
Azure Sentinel
SIEM
Nmap
Metasploit
Kali Linux
IDS/IPS
Firewalls
Windows
Unix
Networking
Incident Response
Packet analysis
Security best practices

Education

Bachelor's or Master's in CS/Engineering/IT/Cybersecurity

Tools

Splunk
Sentinel
LogRhythm
Snort
Fortigate
Sourcefire
Cisco

Job description

About the role

The Security Operations Manager is responsible for leading the day-to-day operations of the SOC Analyst staff. The role coordinates and works with the SOC Analysts to make sure that the analysts, processes, and technology are meeting the SOC security monitoring, analysis, and escalation objectives, organization service level agreements, objectives, and metrics. They are also responsible for communicating with the executive level management team (when deemed necessary) and serving as the principle liaison coordinating incident response functions.

Key Responsibilities
  • Lead the 24x7 delivery team, foster innovation, and drive accountability within SOC engineering.
  • Oversee the daily activities of the SOC to ensure the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies.
  • Ensure escalation of cases to the appropriate teams.
  • Conduct follow-up meetings of escalated or noteworthy cases and modifies SOPs and playbooks based on policies, standards and best practices learned from previous cases.
  • Provide technical oversight for security tool deployment and implementation .
  • Continuously monitor levels of service as well as interpret and prioritize threats through use of intrusion detection systems, firewalls and other boundary protection devices, and any security incident management products deployed.
  • Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough review and analyses of relevant event detail and summary information.
  • Monitor and proactively mitigate information security risks.
  • Coordinate shift schedule and deployment of staffing within the established structure. Manage regular, holiday, illness, vacation and emergency scheduling.
  • Keep current with the latest vendor updates, expansion opportunities, and technology directions, utilized in the Clients environment.
  • Ensure daily operational processes effectively support SOC operations objectives.
  • Ensure the Director of Cybersecurity Services is aware of any issues or incidents.
  • Own the successful completion of all daily operational processes and procedures.
  • Ensure analysts follow existing procedures and all procedures are documented in accordance with local guidelines.
  • Establish operational foundations, defining metrics and KPIs to drive governance, quality, and efficiency.Influence and improve existing processes through innovation and operational change.
  • Manage staffing, including recruitment, supervision, scheduling, development, evaluation, and disciplinary actions.
About you
  • Minimum 7 years Security leadership, with experience building long-term career development plans for team members at all levels.
  • Exceptional operational rigor with extensive real-world experience in ITIL methodologies and frameworks for IT operations.
  • Experience in designing, implementing and measuring relevant security and technology management critical success factors, key performance indicators, and metrics .
  • Ability to create shift schedules to ensure 24x7 coverage by support personnel .
  • In-depth knowledge of modern security concepts and how to apply the Advanced scripting knowledge with languages like PowerShell, bash/ksh/sh, Cisco IOS.sh, JunOS sh/csh, Perl, Tcl, Lua.
  • Familiarity with Azure Sentinel.
  • Familiarity with common network vulnerability/penetration testing tools including, but not limited to, Metasploit, vulnerability scanners, Kali Linux, and Nmap.
  • 4-6 year's experience with SIEM tools (Sentinel, Splunk, Logrhythm, etc.).
  • Familiarity with common IDS/IPS and Firewalls (Snort, Cisco, Fortigate, Sourcefire).
  • Knowledge of Windows, Unix-based systems, architectures, and network security devices .
  • Intermediate level of knowledge of LAN and WAN technologies
  • Knowledge of networking protocols and security implications.
  • 4-6 year's experience with Incident Response activities .
  • Experience with packet analysis and packet capture tools.
  • Expert knowledge of security best practices and concepts.
Qualifications:
  • Masters or Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field; or an equivalent experience in lieu of degree.
  • Demonstrated understanding of Information Security and Networking required.
  • Demonstrated technical knowledge of current network security, network hardware, protocols, and standards required.
  • Proven ability to diagnose and troubleshoot technical issues required.
  • Proven ability to make decisions and perform complex problem-solving activities under pressure.
  • Previous management and project leadership experience required.
  • Demonstrated strong oral and written communication and client facing skills.
  • Flexibility to adapt to different types of engagement, working hours, work environments, and locations.
  • Proven ability to work creatively, analytically in a problem-solving environment.
Desired Certifications

Security+, C|EH, Network+, Certified Information Systems Manager (CISM), Certified Information Systems Security Professional (CISSP), GIAC Certified Intrusion Analyst, GIAC Certified Incident Handler, or GIAC Reverse Engineering Malware.

Benefits
  • HMO with 2 Free Dependents
  • Communication Allowance
  • Rice Allowance
  • Clothing Allowance
  • Christmas/Holiday Gift (Christmas Cash Gift)
  • Group Personal Accident Insurance
  • Life Insurance with coverage
  • Flexi-ben reimbursement (Medical/Dental/Optical)
  • Bereavement Assistance
  • Retirement Plan
  • Leave Privileges
  • Firm-wide holiday shutdown on last 2 weeks of the year
  • Company work suspensions during extreme weather conditions
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Senior Manager
SOC Senior Manager

Hammerjack Pty Ltd • Philippines

On-site
PHP 1,200,000 - 1,800,000
HMO
Dependent coverage
Communication allowance
+7
Cybersecurity Manager
Cybersecurity Manager

KPMG R.G. Manabat & Co. • Makati

On-site
PHP 1,800,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
SOC Manager (Cybersecurity)
SOC Manager (Cybersecurity)

KPMG R.G. Manabat & Co. • Manila

On-site
PHP 1,200,000 - 1,800,000
Day 1 HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
SOC Manager
SOC Manager

KPMG R.G. Manabat & Co. • Makati

On-site
PHP 1,800,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+10
SOC L3 Analyst Lead
SOC L3 Analyst Lead

KPMG R.G. Manabat & Co. • Makati

On-site
PHP 1,800,000 - 3,200,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+10
SOC Lead
SOC Lead

Hammerjack Pty Ltd • Philippines

On-site
PHP 1,200,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+5
SOC Analyst Lead - L3 Incident Response
SOC Analyst Lead - L3 Incident Response

KPMG R.G. Manabat & Co. • Manila

On-site
PHP 250,000 - 450,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
Security Operations and Incident Manager
Security Operations and Incident Manager

Private Advertiser • Mandaluyong

On-site
PHP 3,000,000 - 5,000,000
SOC Lead
SOC Lead

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 558,000 - 614,000
HMO day 1
Perks & rewards
Travel opportunities
+3
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Microgenesis Business Systems • Mandaluyong

On-site
PHP 279,000 - 390,600
Health insurance
Life insurance
Additional leave
+2