SOC (Security Operations Center) Manager
2 weeks ago
Location: Bangalore , Mumbai
Experience: 7 -12 Years
Work Mode: Hybrid
Job Summary
We are looking for an experienced SOC Manager to lead our global Security Operations
function. This is a critical leadership role responsible for overseeing the Managed Security
Service Provider (MSSP), managing our internal incident response and detection
engineering team, and protecting our large hybrid cloud environment.
You will be responsible for real-time threat detection, advanced incident response, and security
monitoring. You will manage the relationship and performance of our MSSP while leading and
mentoring a specialized internal team (L2/L3 analysts, engineers), empowering them to defend
the organization against advanced cyber threats. The ideal candidate is calm under pressure,
highly technical, and passionate about building a world-class detection and response program
that spans from on-premise to the cloud.
Leadership, Strategy & Vendor Management
● Team & Vendor Management: Lead, mentor, and build the internal SOC team (e.g.,
Incident Responders, Detection Engineers). Manage the strategic relationship and
performance of the MSSP, including SLA oversight, service reviews, and escalation
procedures.
● Incident Response: Act as the primary Incident Commander during major security
incidents, coordinating response, containment, and recovery efforts between the MSSP,
internal IT Security/cloud teams, and business stakeholders.
● Strategic Vision: Define the SOC's mission, strategy, and roadmap, continuously
maturing its capabilities (internal and MSSP-driven) from reactive to predictive.
● Metrics & Reporting: Develop and report on key performance indicators (KPIs),
including MSSP effectiveness and internal metrics (e.g., Mean Time to Detect/MTTD,
Mean Time to Respond/MTTR), to senior leadership.
● Process Improvement: Own and refine all SOC processes, ensuring seamless
integration between MSSP playbooks and internal incident response runbooks.
Technical & Operational
● Platform & Cloud Security Oversight: Oversee the health, configuration, and
optimization of our core security platforms, including the SIEM (e.g., Splunk, Sentinel,
QRadar) and SOAR. Ensure effective data ingestion from our hybrid cloud
environment (AWS, Azure, GCP) and on-prem systems.
● Cloud Detection: Partner with cloud engineering teams to ensure proper configuration
of cloud-native security tools (e.g., AWS GuardDuty, Azure Security Center, GCP
Security Command Center) and integrate their telemetry into our detection program.
● Threat Intelligence: Manage the ingestion and operationalization of threat intelligence,
ensuring it is used to hunt for active and emerging threats by both the internal team
and the MSSP.
● Threat Hunting: Lead proactive, hypothesis-driven threat hunting missions (in
partnership with the MSSP) based on intelligence and environmental data, with a strong
focus on hybrid cloud attack vectors.
● Detection Engineering: Guide the internal team in developing and tuning high-fidelity
detection rules, analytics, and alerts based on frameworks like MITRE ATT&CK
(including its cloud matrix). Work with the MSSP to tune and reduce false positives.
● Triage & Escalation: Serve as the primary escalation point for critical incidents
flagged by the MSSP, providing expert guidance to the internal response team.
Required Qualifications
● Experience: 7+ years in cybersecurity, with at least 2+ years managing a SOC or
incident response team. Direct experience managing or working extensively with an
MSSP is required.
● Incident Response: Deep, hands-on experience leading the response to complex
security incidents (e.g., ransomware, APTs), including incidents in public cloud (AWS,
Azure, GCP) and on-premise environments.
● Technical Expertise: Expert-level knowledge of SIEM and SOAR platforms, EDR, and
NDR. Strong technical understanding of cloud-native security controls, logging,
and architecture (IaaS, PaaS, SaaS).
● Frameworks: Strong familiarity with the MITRE ATT&CK framework (including the
Enterprise and Cloud matrices) and the Cyber Kill Chain.
● Leadership: Proven ability to lead and stay composed during high-stress situations.
● Communication: Exceptional written and verbal communication skills for creating
post-incident reports, managing vendor relationships, and briefing executives.
Preferred Qualifications (Bonus Points)
● Experience with purple teaming or managing tabletop exercises.
● Scripting skills (e.g., Python, PowerShell) for automation.
● Relevant certifications (GCIH, GCFA, GCFE, CISSP, CISM).
● Cloud-specific security certifications (e.g., AWS Certified Security - Specialty, Azure
Security Engineer Associate, Google Professional Cloud Security Engineer).
-
Security Operations Center Analyst- L2
4 days ago
Mumbai, Maharashtra, India Intertec Softwares Pvt Ltd Full timeJOB TITLE: L2 Security Operations Center (SOC) Analyst Number of Positions One JOB PURPOSE: To act as a senior-level analyst in the 24x7 Security Operations Center (SOC), responsible for advanced security event triage, log analysis, threat investigation, and response coordination using modern security platforms such as SIEM, SOAR, EDR, and Threat...
-
Senior SOC Engineer
1 week ago
Mumbai, Maharashtra, India Ares Operations Full time US$ 5,30,000 - US$ 7,70,000 per yearOver the last 20 years, Ares' success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsible, Entrepreneurial, Self-Aware, Trustworthy – and our purpose to be a catalyst for shared prosperity and a better future. Through our recruitment, career development and employee-focused programming,...
-
Senior SOC Engineer
2 weeks ago
Mumbai, Maharashtra, India Ares Operations Full time ₹ 12,00,000 - ₹ 36,00,000 per yearOver the last 20 years, Ares' success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsible, Entrepreneurial, Self-Aware, Trustworthy – and our purpose to be a catalyst for shared prosperity and a better future. Through our recruitment, career development and employee-focused programming,...
-
Manager - Security Operations Centre (SOC)
6 days ago
Mumbai, Maharashtra, India Multi Commodity Exchange Clearing Corporation Full time ₹ 5,00,000 - ₹ 15,00,000 per yearSecurity event monitoring, management and response and cyber intelligenceIPS/IDS, Proxy, Anti-virus, Load Balancer, SSL VPN, URL filtering,2FA, DDoS, SIEM, PAM, DLP, EDR, UBEA, Anti-APT, DeceptionMITRE, Cyber Kill Chain and APT, SIEMSOC strategy
-
DGM - IT Security Operations
1 week ago
Mumbai, Maharashtra, India Sun Pharmaceutical Industries, Inc. Full time ₹ 12,00,000 - ₹ 30,00,000 per yearDGM - IT Security OperationsDate: 4 Dec 2025Location: Sun House - Corporate OfficeCompany: Sun Pharmaceutical Industries LtdJob Summary:The Deputy General Manager (DGM) of IT Security Operations is accountable for leading and managing the organization's IT security operations to ensure the confidentiality, integrity, and availability of all information...
-
Cyber Security Specialist
2 days ago
Navi Mumbai, Maharashtra, India Esds Software Solutions Full timeWe are seeking a highly skilled and experienced SOC Lead with 4 to 8 years of hands-on experience in cybersecurity, specializing in threat detection, incident management, you will be responsible for overseeing the operation and performance of our Security Operations Center, ensuring efficient threat monitoring, detection, and response for multiple client...
-
Cyber Security Specialist
2 days ago
Navi Mumbai, Maharashtra, India ESDS Software Solution Limited Full timeWe are seeking a highly skilled and experienced SOC Lead with 4 to 8 years of hands-on experience in cybersecurity, specializing in threat detection, incident management, you will be responsible for overseeing the operation and performance of our Security Operations Center, ensuring efficient threat monitoring, detection, and response for multiple client...
-
SOC Analyst
1 week ago
Mumbai, Maharashtra, India MNR solutions pvt Full time ₹ 8,00,000 - ₹ 24,00,000 per yearSOC Analyst – L2Experience:- 4 to 8 YearsLocation: MumbaiWork Mode: Work from Office (5 Days WFO)Key ResponsibilitiesConfigure, maintain, and fine-tune the Splunk SIEM environment for optimized log management and event correlation.Develop and manage security rules, dashboards, and alerts to enhance detection and monitoring capabilities.Monitor and analyze...
-
Soc Analyst Manager
2 weeks ago
Mumbai, Maharashtra, India ERM Placement Services Full time ₹ 12,00,000 - ₹ 24,00,000 per yearThe SOC Analyst will be responsible for monitoring, analyzing, and responding to security incidents using Microsoft Sentinel and Microsoft Defender. The role requires a proactive approach to threat detection and mitigation, ensuring the protection of our network and data infrastructure.Key Responsibilities:Monitoring and Analysis:Continuously monitor...
-
SOC Manager
6 days ago
Mumbai, Maharashtra, India NTT Full time ₹ 15,00,000 - ₹ 30,00,000 per yearMake an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.Your day at NTT DATAThe Manager,...