Overview:
We are seeking a highly experienced cybersecurity professional to lead our Security Operations Center (SOC) assessment and transformation initiatives. The ideal candidate will have deep expertise in evaluating SOC maturity, designing operating models, and building next-generation SOC frameworks that integrate advanced analytics, automation, and threat intelligence.
Key Responsibilities:
- Conduct comprehensive assessments of existing SOC capabilities, including people, processes, technology, and governance.
- Develop detailed SOC maturity reports with prioritized recommendations for improvement and optimization.
- Design and architect next-generation SOC models incorporating threat-hunting, AI-driven analytics, SOAR, and cloud-native detection capabilities.
- Define and implement service catalogs, KPIs, and performance metrics for SOC operations.
- Partner with enterprise stakeholders to align SOC transformation with business risk objectives and compliance frameworks (e.g., NIST, MITRE ATT&CK, ISO 27001).
- Recommend technology integrations across SIEM, EDR/XDR, SOAR, and threat intelligence platforms.
- Conduct gap analyses and maturity benchmarking against industry standards.
- Lead workshops and executive presentations on SOC evolution strategy and roadmap execution.
- Mentor SOC teams on best practices for continuous improvement, automation, and proactive detection engineering.
Required Qualifications:
- 8+ years in cybersecurity operations, including 3+ years in SOC management, assessment, or transformation.
- Proven experience developing or improving enterprise SOCs (Global, Regional, or Cloud-based).
- Familiarity with next-generation SOC concepts (AIOps, threat hunting, purple teaming, detection engineering, and machine learning use cases).
- Strong understanding of SIEM/SOAR technologies (Splunk, Sentinel, QRadar, Cortex XSOAR, etc.).
- Deep knowledge of SOC governance, workflows, threat modeling, and operational KPIs.
- Excellent stakeholder management, communication, and presentation skills.
- Industry certifications such as CISSP, CISM, GIAC (GCDA, GCIA, GCTI), or equivalent preferred.
Preferred Skills:
- Experience with SOC service maturity frameworks (e.g., NIST CSF, CMMI for SOC, or Gartner SOC Optimization).
- Hands-on exposure to automation design, threat intelligence integration, or data engineering for security.
- Experience supporting SOC setup for hybrid and multi-cloud environments.