Fulcrum Technology Solutions are seeking a SOC Manager to lead the day-to‑day operations of our Security Operations Center. This individual will manage Tier 1 and Junior SOC Analysts while serving as the primary operational point of contact for managed security clients.
This role combines operational leadership, incident oversight, and client engagement. The ideal candidate can run a high‑performing 24x7 SOC while building trusted relationships with customers and driving continuous improvement across service delivery.
Key Responsibilities
Operational Leadership
- Lead and develop a team of SOC Analysts across multiple shifts
- Ensure consistent 24x7x365 monitoring and adherence to SLAs and KPIs
- Oversee staffing, scheduling, workflow optimization, and escalation procedures
- Maintain and improve SOC playbooks, processes, and quality standards
- Drive performance management, coaching, and team development
- Oversee real‑time security monitoring across client environments
- Ensure proper triage, investigation, documentation, and escalation of incidents
- Review and approve response actions taken by analysts
- Coordinate with threat hunting, detection engineering, and other teams for complex investigations
- Implement improvements based on metrics, lessons learned, and operational trends
Client Engagement & Service Delivery
- Serve as the primary operational contact for assigned clients
- Lead regular security reviews and status meetings
- Present monthly and quarterly reports to technical and executive stakeholders
- Communicate incidents, findings, and recommendations clearly and confidently
- Partner with Customer Success to ensure high client satisfaction
- Support onboarding of new managed security customers
Technology & Process Optimization
- Collaborate with SIEM and detection engineering teams to improve alert quality and reduce false positives
- Optimize monitoring workflows and automation initiatives
- Ensure proper integration of threat intelligence into SOC operations
- Recommend enhancements to tools, reporting, and operational processes
Required Experience
- 5–7+ years in cybersecurity operations
- 3+ years leading or supervising SOC teams in a 24x7 environment
- Strong background in security monitoring, incident response, and operational metrics
- Experience in customer‑facing security roles
- MSSP experience strongly preferred
Technical Knowledge
- EDR and endpoint monitoring technologies
- Incident response frameworks and documentation
- Network security monitoring and log analysis
- Cloud security monitoring (AWS, Azure, GCP)
- Familiarity with NIST, ISO 27001, SOC 2 or similar frameworks
Preferred Certifications
CISSP, CISM, GCIH, or equivalent
- Manages a team of 8–15 analysts across shifts
- Must be authorized to work in the U.S.