Padmi

SOC Manager

ChennaiPosted 1 month ago
Technology ManagementSeniorFull Time; Regular
Apply at SQ1 Security

Opens the source posting on shine.com

Source description

About the role

View original

Job Title: SOC Manager Experience: 1012 years (minimum 35 years in SOC leadership) Role Overview The SOC Manager is responsible for leading and managing day-to-day Security Operations Center activities, ensuring effective security monitoring, timely incident response, and continuous improvement of SOC processes, people, and technology. The role focuses on operational excellence, governance, and stakeholder communication. Key Responsibilities AI-Driven SOC Operations & Automation (1st) Lead the implementation and governance of AI-driven SOC capabilities to enhance detection accuracy, response speed, and operational efficiencyOversee AI-based alert triage and prioritization, leveraging risk scoring, asset criticality, user behavior analytics (UEBA), and threat intelligence correlation to reduce alert fatigueDrive intelligent alert noise reduction by enabling machine-learningbased suppression, clustering, and deduplication of repetitive or low-risk alertsEnsure automated contextual enrichment of alerts using AI to correlate data from SIEM, EDR, IAM, vulnerability management, threat intelligence, and asset inventoriesSupervise AI-assisted threat investigation, including behavioral analytics, anomaly detection, lateral movement identification, and pattern-of-life deviation analysisLeverage AI to summarize incidents and investigations, enabling faster analyst decision-making and improved reporting qualityIntegrate AI-powered SOAR workflows to enable automated containment and response actions such as account disablement, endpoint isolation, IP blocking, and ticket creation SOC Operations & Leadership Manage SOC operations across L1, L2, and L3 teams with 247 monitoring coverageDefine SOC processes, escalation paths, and shift operationsAct as the final escalation point for high-severity security incidentsTrack and improve SOC KPIs such as MTTD, MTTR, alert quality, and SLA compliance Incident Management Oversee the complete incident management lifecycle from detection to closureEnsure timely containment, remediation, and recovery of security incidentsCoordinate with IT, cloud, application, and management teams during incidentsReview incident reports, root cause analysis, and corrective actions Process, Policy & Compliance Establish and maintain SOC SOPs, runbooks, and playbooksEnsure SOC operations align with security standards and regulatory requirementsSupport internal and external audits with required evidence and reportingEnsure proper documentation and reporting of security events Stakeholder & Client Management Communicate security incidents and risks to management and stakeholdersReview and approve SOC reports and dashboardsAct as a primary point of contact for SOC-related discussions Team Development Mentor and guide SOC analysts and leadsSupport training, skill development, and performance evaluationsDrive continuous improvement and SOC maturity initiativesRequired Skills & ExperienceStrong experience in SOC operations and incident responseHands-on understanding of SIEM and security monitoring toolsExperience managing security incidents and crisis situationsStrong leadership, communication, and decision-making skills Preferred Qualifications Bachelors degree in IT, Cybersecurity, or related fieldCertifications such as CISSP, CISM, GCIH, or SIEM-specific certifications Job Title: SOC Manager Experience: 1012 years (minimum 35 years in SOC leadership) Role Overview The SOC Manager is responsible for leading and managing day-to-day Security Operations Center activities, ensuring effective security monitoring, timely incident response, and continuous improvement of SOC processes, people, and technology. The role focuses on operational excellence, governance, and stakeholder communication. Key Responsibilities AI-Driven SOC Operations & Automation (1st) Lead the implementation and governance of AI-driven SOC capabilities to enhance detection accuracy, response speed, and operational efficiencyOversee AI-based alert triage and prioritization, leveraging risk scoring, asset criticality, user behavior analytics (UEBA), and threat intelligence correlation to reduce alert fatigueDrive intelligent alert noise reduction by enabling machine-learningbased suppression, clustering, and deduplication of repetitive or low-risk alertsEnsure automated contextual enrichment of alerts using AI to correlate data from SIEM, EDR, IAM, vulnerability management, threat intelligence, and asset inventoriesSupervise AI-assisted threat investigation, including behavioral analytics, anomaly detection, lateral movement identification, and pattern-of-life deviation analysisLeverage AI to summarize incidents and investigations, enabling faster analyst decision-making and improved reporting qualityIntegrate AI-powered SOAR workflows to enable automated containment and response actions such as account disablement, endpoint isolation, IP blocking, and ticket creation SOC Operations & Leade

One address, no account. We’ll tell you when matching roles go live.