Qualifications:- Years of experience in cybersecurity should be between 6-10 years
- Years of experience as a people leader more than 3 years
- BPO experience is preferred
- Possesses hands-on experience with SIEM, PIM, content filtering solutions, and firewall technologies.
- Demonstrates a strong understanding and practical experience in network security, firewall security, and web security, including web application firewalls and proxy solutions.
- Designs and implements training programs to enhance the technical and operational skills of the SOC team.
- Conducts regular performance reviews, providing constructive feedback to promote individual growth and team effectiveness.
- Coordinates with cross-functional teams across multiple geographic regions, including BPO environments, to manage and mitigate security incidents.
- Ensures timely and accurate reporting of all security incidents to relevant stakeholders.
- Manages and optimizes SOC tools and technologies to ensure high availability, performance, and operational efficiency.
- Leads regular reviews and updates of SOC policies and procedures to ensure alignment with current security standards and practices.
Job Responsibilities:Security Monitoring & Incident Management: - Oversee the detection, analysis, and response to security incidents using SIEM and other security tools.
- Ensure timely escalation and resolution of critical threats and vulnerabilities.
Technology Oversight: - Manage and optimize SOC technologies, including SIEM, PIM, content filtering tools, firewalls, proxies, and web application firewalls.
- Conduct tool assessments and recommend upgrades or changes as needed.
Team Leadership: - Lead, mentor, and supervise a team of 4–6 SOC Analysts.
- Provide performance evaluations and development plans, and drive team engagement and accountability.
- Training and Development:
- Design and implement training programs to continuously improve the technical capabilities and incident-handling skills of the SOC team.
Policy and Process Management: - Conduct regular reviews and updates of SOC procedures, workflows, and documentation to ensure compliance with security standards and industry best practices.
Cross-functional Coordination: - Work closely with IT, infrastructure, and security teams across multiple geographic locations and potentially BPO partners to coordinate responses to threats.
Reporting and Communication: - Ensure accurate, timely, and well-documented reporting of all security incidents and activities to senior leadership or relevant stakeholders.
- Strategic Contribution:
- Contribute to the overall cybersecurity strategy by identifying operational gaps and areas for improvement within the SOC environment.
|