SOC Leader (Security Operations Center Manager)

Technology · Remote

Apply for this Job

Description

Location: Remote

Type: Full-time


About the Role

We are looking for a proactive, high-performing SOC Leader to drive our Security Operations Center operations, manage client services, and mentor our growing team of engineers based in India. In this role, you will lead daily ongoing SOC support, anticipate client security needs, and actively drive threat detection strategies anchored in the MITRE ATT&CK framework.


As a key face of our security services, you will interface directly with client C-suite executives—leading monthly reviews with client CISOs, identifying upsell opportunities, and bridging technical delivery with business strategy.


Key Responsibilities

Executive Engagement & Client Governance:

Lead monthly strategic meetings with client CISOs to present SOC performance, milestone achievements, project advances, and security posture improvements.

Communicate complex technical security topics effectively to C-level executives.


Strategic Vision & Business Growth:

Maintain a long-term strategic vision for client environments, anticipating their evolving security needs.

Proactively identify upsell opportunities for additional security services, tools, or expanded SOC coverage to deliver added value to end clients.


Team Leadership & Development:

Direct and mentor a dedicated team of enthusiastic security engineers in India, fostering continuous learning and technical capability building.


Threat Detection & Use Case Engineering:

Proactively guide the team to design, test, and deploy custom detection use cases mapped to the MITRE ATT&CK framework.


Operational Excellence:

Oversee daily SOC support operations, incident response workflows, and continuous monitoring, ensuring SLAs and performance benchmarks are consistently met.


Tool Optimization:

Leverage advanced SIEM, XDR, vulnerability management, and PAM technologies to maximize threat visibility and operational efficiency.



Required Qualifications

Leadership Experience: minimum 5 years hands-on experience leading a Security Operations Center (SOC) team.

Executive Presence: Proven track record of interacting with C-level stakeholders (specifically CISOs) and presenting executive-level reports and project updates.

Strategic & Commercial Mindset: Ability to see the bigger picture, anticipate client requirements, and identify organic upsell/cross-sell opportunities.

Framework Expertise: Strong practical experience utilizing the MITRE ATT&CK framework for threat hunting and use-case engineering.

Language Skills: English fluency is required.

Crisis Management: Proven ability to remain calm, focused, and effective when operating under pressure during critical security incidents.

Cross-Cultural Leadership: Experience leading or working closely with offshore technical teams.


Desired / Preferred Qualifications

Certifications: CISSP, CISM, GIAC (GCIH/GMON), or equivalent industry-recognized security certifications.

Language Skills: Professional fluency in Spanish is a strong plus.


Hands-on Tooling Knowledge:

SIEM / XDR: Cortex XDR, LogRhythm, Exabeam, or other AI-driven SIEM platforms.

Vulnerability Management: Tenable (Nessus / Tenable.one).

Identity & Access: Privileged Access Management (PAM) tools.