Cybersecurity Operations Manager

7 days ago


Bengaluru, India ColorTokens Inc. Full time

About ColorTokens

At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield™ platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to continue operating while breaches are contained, ensuring critical assets remain protected.

Our innovative platform provides unparalleled visibility into traffic patterns between workloads, OT/IoT/IoMT devices, and users, allowing businesses to enforce granular micro-perimeters, swiftly isolate key assets, and respond to breaches with agility. Recognized as a Leader in the Forrester Wave™: Microsegmentation Solutions (Q3 2024), ColorTokens safeguards global enterprises and delivers significant savings by preventing costly disruptions.

Join us in transforming cybersecurity. Learn more at www.Colortokens.Com.

Job Summary:

Colortokens is seeking a SOC Manager to lead our Security Operations Center (SOC), leveraging Next-Gen SIEM to detect, respond to, and mitigate security threats. The ideal candidate will have deep expertise in modern SIEM platforms, threat intelligence, and incident response while managing customers and a team of security analysts.

Job Title: SOC Manager

Location: Bangalore

Job Type: Full-time

Department: Managed Services

Key Responsibilities:

1. SOC Leadership & Operations

  • Oversee 24/7 security monitoring, detection, and response operations.
  • Manage, mentor, and train a team of SOC analysts, engineers, and incident responders.
  • Develop and optimize SOC processes, playbooks, and runbooks for effective incident handling.
  • Ensure continuous threat monitoring, analysis, and escalation in accordance with SLAs.

2. SIEM & Security Analytics Management

  • Implement, manage, and optimize Next-Gen SIEM solutions (eg: Stellar Cyber, Cortex, Chronicle etc)
  • Develop advanced detection rules, correlation logic, and behavioural analytics for real-time threat detection.
  • Integrate SIEM with EDR, NDR, SOAR, Threat Intelligence, and Cloud Security tools.
  • Ensure log management, normalization, and enrichment from various sources (firewalls, endpoints, cloud, IAM, etc.).

3. Threat Detection, Incident Response & Forensics

  • Lead security investigations, threat hunting, and forensics analysis.
  • Work with SOC analysts to triage and escalate security incidents (MITRE ATT&CK-based).
  • Oversee the incident response process and conduct post-mortem analysis for continuous improvement.
  • Collaborate with threat intelligence teams to enrich SIEM detections with contextual threat data.

4. Compliance, Reporting & Automation

  • Ensure SOC operations align with regulatory standards (ISO 27001, NIST, GDPR, SOC 2, etc.).
  • Develop automated detection & response workflows using SOAR (Security Orchestration, Automation, and Response).
  • Generate SIEM dashboards, security reports, and executive summaries for stakeholders.
  • Conduct tabletop exercises and Red/Blue team drills to enhance security readiness.

5. Customer & Stakeholder Engagement

  • Act as the primary point of contact for key customers, ensuring high-quality service delivery.
  • Collaborate with OEMs to address cybersecurity risks.
  • Present threat intelligence reports, risk assessments, and incident trends to executive stakeholders.
  • Drive continuous improvement initiatives based on customer feedback and security landscape changes.
  • Customer SLA management and ensure CSAT of greater than 4.5/5

6. Business Support

  • Work with pre-sales teams to respond to customer RFI/RFPs
  • Responsible for upsell and cross-sell activities
  • Enable/train sales teams across regions

7. Required Skills & Experience:

Technical Expertise:

  • 12-15 years of experience in SOC operations, SIEM, and cybersecurity incident response.
  • Hands-on expertise with Next-Gen SIEM platforms.
  • Proficiency in SOAR, EDR, XDR, Cloud Security (AWS/Azure/GCP), and threat intelligence tools.
  • Strong knowledge of MITRE ATT&CK, Cyber Kill Chain, and NIST frameworks.
  • Experience in log analysis, anomaly detection, and SIEM rule creation.
  • Scripting skills in Python, PowerShell, or Regex for automation.

Leadership & Soft Skills:

  • Strong leadership experience in managing and mentoring SOC teams.
  • Excellent incident response and crisis management abilities.
  • Effective communication with technical and non-technical stakeholders including customers.
  • Ability to collaborate with IT, DevOps, and security teams to enhance security posture.

Preferred Certifications:

CISSP (Certified Information Systems Security Professional)

GCIA (GIAC Certified Intrusion Analyst)

GCIH (GIAC Certified Incident Handler)

SIEM Vendor Certifications

Skills: SOC Manager, SOC Process, CISSP, Pre-Sales Activities, SOC Setup Experience.



  • Bengaluru, India CloudSEK Full time

    WHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal! We believe that work and the workplace should be joyful and always buzzing with energy!CloudSEK, one of India’s most trusted Cyber security product companies, is on a mission to build the world’s fastest and most reliable AI technology...

  • Cybersecurity

    5 days ago


    Bengaluru, Karnataka, India Exide Energy Solutions Ltd Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About:Exide Energy Solutions Limitedis a wholly owned Subsidiary of Exide Industries Limited, leading battery manufacturing and distribution company in India with annual revenues of $1.8+ Bn. Exide Energy Solutions Limited is investing $500+ Mn dollars to setup India's first Giga plant to manufacture Lithium-Ion Cells at Devanahalli Industrial Area in...


  • Bengaluru, India Autodesk Full time

    Job Requisition ID # 25WD91226 Position Overview In the role of Cybersecurity Operations Manager, you will be responsible for overseeing the full spectrum of security alert triage across Autodesk's global infrastructure. Your primary objective is to ensure that all Tier 1 alerts are promptly actioned and resolved while efficiently routing more complex issues...


  • Bengaluru, Karnataka, India Autodesk Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Requisition ID #25WD91226Position OverviewIn the role of Cybersecurity Operations Manager, you will be responsible for overseeing the full spectrum of security alert triage across Autodesk's global infrastructure. Your primary objective is to ensure that all Tier 1 alerts are promptly actioned and resolved while efficiently routing more complex issues to...


  • Bengaluru, Karnataka, India Weekday Full time ₹ 8,00,000 - ₹ 20,00,000 per year

    This role is for one of our clientsIndustry: Technology, Information and MediaSeniority level: Mid-Senior levelMin Experience: 8 yearsLocation: BengaluruJobType: full-timeAbout the RoleWe are seeking an experienced Cybersecurity Architect & Operations Lead to strengthen and safeguard our enterprise-wide security posture. This role will be responsible for...

  • Cybersecurity Risk

    4 days ago


    Bengaluru, Karnataka, India JLL Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    JLL empowers you to shape a brighter way.  Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services, advisory and technology for our clients. We are committed to hiring the best, most talented people  and empowering them to  thrive, grow meaningful careers and to find a place where...


  • Bengaluru, India Schneider Electric Full time

    IT & Cybersecurity PMO – Regional IT (Greater India) Job Title: IT & Cybersecurity PMO, Greater India Location: Greater India Zone (Gurgaon, Mumbai, Bangalore) Reporting To: Zone IT Director Cybersecurity PMO – Regional IT Team (Greater India) This role is part of the Regional IT team for Greater India, reporting to the Zone IT Director. The...


  • Bengaluru, Karnataka, India Weekday Full time

    **This role is for one of our clients** Industry: Technology, Information and Media Seniority level: Mid-Senior level Min Experience: 8 years Location: Bengaluru JobType: full-time **About the Role** We are seeking an experienced **Cybersecurity Architect & Operations Lead** to strengthen and safeguard our enterprise-wide security posture. This role...

  • Cybersecurity Risk

    3 weeks ago


    Bengaluru, India JLL Full time

    JLL supports the Whole You, personally and professionally. Our people at JLL are shaping the future of real estate for a better world by combining world class services, advisory and technology to our clients. We are committed to hiring the best, most talented people in our industry; and we support them through professional growth, flexibility, and...

  • Cybersecurity Risk

    4 days ago


    Bengaluru, Karnataka, India JLL Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    JLL supports the Whole You, personally and professionally.Our people at JLL are shaping the future of real estate for a better world by combining world class services, advisory and technology to our clients. We are committed to hiring the best, most talented people in our industry; and we support them through professional growth, flexibility, and...