This role involves leading the day-to-day operations of the Security Operations Center (SOC), ensuring continuous monitoring, detection, and response to security incidents across the environment. The manager will supervise, mentor, and develop SOC analysts and shift leads, managing staffing and scheduling for a 24/7 operational model. Key responsibilities include coordinating incident response activities with internal teams and external partners, driving root cause analysis, post-incident reviews, and continuous improvement of playbooks and runbooks. The position also requires operating and tuning core SOC tooling such as SIEM, EDR, and SOAR to enhance detection coverage, reduce false positives, and accelerate investigation times. Defining, collecting, and reporting on SOC performance metrics and KPIs to leadership and key stakeholders, partnering with threat intelligence, vulnerability management, and engineering teams to operationalize threat indicators and harden systems, and managing vendor relationships for third-party security monitoring services are also crucial aspects of the role.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Number of Employees
5,001-10,000 employees