Accountabilities:
Lead and manage daily SOC operations across multiple customer environments, ensuring effective detection, investigation, and response activities.
Oversee AI-assisted security operations processes, implementing automation, GenAI orchestration, and operational controls to improve efficiency and consistency.
Drive continuous improvement of SOC workflows by optimizing threat detection, incident response, investigation processes, and security analytics.
Lead, mentor, and develop SOC Leads, analysts, and AI-enabled teams while promoting operational excellence and knowledge sharing.
Collaborate with threat detection, threat validation, automation, and quality assurance teams to improve security processes and close operational gaps.
Establish and monitor operational KPIs, SLAs, and performance metrics while providing strategic reporting and recommendations to leadership.
Translate complex security challenges into actionable strategies that improve customer protection and operational maturity.
Support the implementation and adoption of AI-powered security workflows, SOAR capabilities, and automated response processes.
Ensure security operations align with best practices across cloud, endpoint, identity, application, and email security environments.
Communicate effectively with internal stakeholders and customers to provide visibility into security performance and incident management.
Requirements:
7+ years of experience in SOC management, security operations, incident response, or cybersecurity leadership roles.
Proven experience managing security teams, preferably within a managed detection and response (MDR) environment.
Strong hands-on expertise with Microsoft Defender XDR and Microsoft Sentinel SIEM.
Solid understanding of AI-assisted security operations, alert management, investigation workflows, and security automation.
Experience implementing SOAR solutions, automation frameworks, and GenAI-driven workflows within a SOC environment.
Strong knowledge of cybersecurity threats across cloud platforms, endpoints, identities, applications, and email environments.
Ability to lead multiple teams, prioritize complex initiatives, and drive operational improvements.
Strong analytical and problem-solving skills with the ability to turn technical challenges into practical solutions.
Excellent written and verbal communication skills, with the ability to engage technical teams and business stakeholders.
Experience working in fast-paced cybersecurity environments with evolving technologies.
Relevant certifications such as SC-200 or similar cybersecurity credentials are considered a plus.
Benefits:
Competitive base salary with performance-based bonuses twice per year.
Monthly allowances supporting health insurance, laptop equipment, and internet expenses.
Paid time off of up to 20 days annually, in addition to government holidays.
Remote work flexibility based in India.
Opportunity to collaborate internationally with teams across multiple global locations.
Possibility of international assignments and career development opportunities.
Continuous training on emerging cybersecurity and AI technologies.
Financial support and reimbursements for relevant cybersecurity certifications.
Opportunity to work on advanced AI-powered security operations initiatives.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1