Tentang peran ini
SOC Operations Leadership
- Lead and oversee 24x7 Security Operations Center (SOC) activities, ensuring continuous monitoring, threat detection, investigation, and incident response.
- Serve as the primary escalation point for major security incidents and drive timely resolution.
- Ensure adherence to incident response procedures, runbooks, and escalation protocols.
- Lead operational decision-making during critical incidents and cyber crisis situations.
- Monitor SOC performance against defined KPIs and SLAs, driving continuous service improvement.
Stakeholder & Client Management
- Act as the primary interface between SOC teams, clients, and internal leadership.
- Provide timely and effective communication during security incidents and operational engagements.
- Align SOC services with business risk priorities, compliance requirements, and client expectations.
- Support crisis management, incident reporting, and executive-level escalations.
Team Leadership & Governance
- Lead, coach, and develop SOC analysts and team leads.
- Manage team performance, workforce planning, and capability development initiatives.
- Foster a culture of accountability, collaboration, and operational excellence.
- Ensure compliance with organizational security policies, standards, and regulatory requirements.
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
- 8+ years of cybersecurity experience, including at least 3 years in a SOC leadership or management role.
- Strong experience in Security Operations, Incident Response, Threat Detection, and Security Monitoring.
- Hands-on experience with SIEM, SOAR, EDR/XDR, and Threat Intelligence platforms.
- Proven ability to manage high-severity security incidents and crisis situations.
- Strong stakeholder management, communication, and leadership skills.
Preferred
- Professional certifications such as CISSP, CISM, GCIH, GCIA, or equivalent.
- Experience with Microsoft Sentinel, Splunk, QRadar, or similar SIEM technologies.
- Knowledge of MITRE ATT&CK, NIST Cybersecurity Framework, ISO 27001, and industry best practices.
- Experience in Managed Security Services (MSSP) environments and cloud security operations.
- Strong analytical, problem-solving, and decision-making capabilities in fast-paced environments.
Sumber: halaman karir pemberi kerja sendiri.