About the job Security Operations Manager
Security Operations Manager
Qualifications
Degree in Computer Science or similar (preferable)
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- ITIL Foundation
- COBIT Foundation
- Certified Ethical Hacker (CEH)
- ISACA CRISC (Certified in Risk and Information Systems Control) advantageous
- Membership in professional bodies such as: ISACA
Experience
4-5 years' proven experience in:
- Security Management
- SOC Manager or Team Leader role in a SOC environment
Extensive experience in:
- Security Engineering and SOC leadership
- Governance and stakeholder management
- Proven track record in mentoring Security teams
In-depth knowledge of:
- Network technologies (protocols, design concepts, access control)
- Security technologies (firewalls, endpoint protection, endpoint detection and response, encryption, data protection, privileged access, etc.)
Leadership and technical experience in:
- SOC and/or Incident Response environments
- Governance standards including ISO 27001, SOC 2 Type 1/2, COBIT, and ITIL
Role Responsibilities
Lead the operational Managed Security Service delivery on a 24x7 basis in The Company
- Recruit, hire, and train Security Engineering team members in line with HR processes
- Oversee incident response plans, workflows, and standard operating procedures (SOPs)
- Act as the escalation point for all critical security incidents
- Coordinate incident response and triage efforts with the Cyber Incident Response team
- Manage dashboards and reporting with actionable metrics, including:
- KPIs
- Monthly reports
- Incident response and threat monitoring metrics
- Review and enhance SIEM use cases and response runbooks
- Collaborate with internal and external stakeholders to detect, prevent, and respond to threats
- Align incident management between the SOC, Security Engineering, Managed Services, and Customer IT teams
- Conduct performance reviews, leave approvals, and manage salary/bonus processes for SOC and Security Engineering team
- Ensure effective use of the ServiceNow incident and response system, including case quality and closure
- Oversee periodic review of audit trails, system logs, and monitoring data for compliance
- Participate in and lead annual security audits
- Lead war rooms for major cybersecurity incidents
- Support presales by showcasing SOC capabilities to current and prospective clients
- Participate in proposal scoping and preparation for security opportunities
- Collaborate with Solutions team and Account Managers to develop and retain SOC customers