Talent.com
Cyber Security (SOC) - Team Lead
Cyber Security (SOC) - Team LeadSanganan IT Solutions Pvt Ltd. • Delhi, India
Cyber Security (SOC) - Team Lead

Cyber Security (SOC) - Team Lead

Sanganan IT Solutions Pvt Ltd. • Delhi, India
30+ days ago
Job description

Job Title :

Team Lead - Security Operations Center (SoC)

Location : Noida / Singapore Office

WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME

Short notice period or immediate joiners are preferred.

Job Overview :

As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security Operations Center comprising Level 1, Level 2, and Level 3 SOC Analysts. You will ensure delivery of high-quality monitoring, detection, response, and threat intelligence services across internal and MSSP customer environments. In this leadership role, you’ll be responsible for analyst performance, escalation handling, service delivery compliance, and technical excellence. You will also lead the coordination of quarterly incident response exercises, customer reporting, and continuous process improvement initiatives.

This position plays a pivotal role in bridging tactical SOC operations and strategic business outcomes, reporting to the SOC Manager or Head of Cybersecurity Services.

Key Responsibilities :

1. Team Leadership & Tiered Analyst Management

Lead and supervise the SOC team across L1 (Monitoring / Triage), L2 (Investigation / Response), and L3 (Threat Hunting / Engineering) functions.

Set clear roles, escalation workflows, and KPIs across tiers; ensure consistent coverage, shift rotations, and SLA adherence.

Conduct regular performance reviews and targeted skill gap analysis.

Promote collaboration, accountability, and continuous learning across junior and senior analysts.

Foster readiness to handle high-severity security events through coaching and simulated training.

2. SOC Operations Oversight

Act as the final escalation point for critical, complex, or ambiguous incidents that exceed Level 3 thresholds.

Ensure effective triage, investigation, containment, and recovery workflows across all incident types.

Support 24 / 7 monitoring operations, ensuring shift efficiency, proper documentation, and accurate escalation.

Oversee the tuning and effectiveness of detection content, ensuring false positive reduction and high-fidelity alerting.

3. Customer Reporting & MSSP Service Quality

Ensure timely delivery of Weekly Threat Intelligence Digests, Biweekly Alert Tuning Reports, and Monthly / Quarterly MSSP Reports.

Review and validate customer-facing deliverables for accuracy, quality, and insight.

Lead or support monthly service review meetings and quarterly executive briefings with MSSP clients.

Track and report SOC performance against SLA / KPI metrics such as MTTD, MTTR, FPR, and escalation compliance.

4. Incident Response Tabletop & Planning

Lead planning, execution, and reporting of Quarterly Incident Response Tabletop Exercises across MSSP environments.

Collaborate with stakeholders from technical, compliance, and business functions to simulate realistic attack scenarios.

Ensure deliverables include scenario documentation, participant actions, gaps identified, and remediation plans.

5. Process Development & Optimization

Own the development, maintenance, and continuous improvement of SOC playbooks, SOPs, and runbooks across tiers.

Align SOC processes with customer onboarding requirements (log source validation, escalation matrix, SLA definitions, tooling integration).

Drive change control and governance for detection rule updates, log onboarding, and tooling enhancements.

6. Threat Intelligence & Strategic Defense

Collaborate with L3 analysts to ensure threat intelligence is operationalized into detection content and hunt scenarios.

Stay informed on industry trends, APT groups, and emerging TTPs, ensuring the SOC adapts proactively.

Required Skills & Qualifications :

1.

Education :

Bachelor’s degree in Information Security, Computer Science, or a related technical field.

Postgraduate education or executive leadership courses are advantageous.

2.

Certifications : Required :

Microsoft Certified : Security Operations Analyst Associate.

Preferred :

CompTIA CySA+, CISSP, or equivalent certifications.

GIAC (e.g., GCIA, GCIH, GMON)

CISSP or CISM

ITIL Foundation or service management certifications

English Language Proficiency :

IELTS (6.5+), TOEIC (800+), TOEFL (90+), or BEC Vantage

3.

Technical Skills :

Advanced knowledge of Microsoft Sentinel , KQL, and SOAR workflows.

Deep understanding of incident response, MITRE ATT&CK, threat intelligence, and SOC toolchains (EDR, UEBA, TIPs).

Familiarity with multi-tenant MSSP platforms, SIEM tuning, and SOC metrics reporting.

Knowledge of log source onboarding, change control processes, and secure communication protocols.

4.

Leadership & Soft Skills :

Strong leadership, coaching, and delegation skills across junior and senior technical roles.

Proven ability to translate technical findings into business-relevant impact.

Excellent communication and documentation skills for both technical teams and C-level stakeholders.

Organized, resilient, and calm under pressure, especially during major incident escalations and executive briefings.

Experience :

8-10+ years in cybersecurity or SOC operations, including 3-5+ years in a leadership role.

Prior experience managing multi-tier SOC teams or leading detection and response operations in an MSSP is highly preferred.

Create a job alert for this search

Cyber Security Lead • Delhi, India

Related jobs
Cyber Security Lead

Cyber Security Lead

Societe Generale Global Solution Centre • Delhi, India
Responsibilities : Job Description Ability to identify, propose, design and run the operational and security risk Controls. Sound understanding of various cybersecurity controls and their relevance t...Show more
Last updated: 17 days ago • Promoted
Senior Cyber Security Operation Lead

Senior Cyber Security Operation Lead

CrimsonLogic • Delhi, India
Working Experience Requirements Minimum 10 + years.Proven experience in managing 24x7 SOC operations.Hands-on experience with SIEM platforms (e. Job Responsibilities & Duties Supervise daily SOC ope...Show more
Last updated: 7 days ago • Promoted
Network & Security Lead (Fortigate & ZScalar)

Network & Security Lead (Fortigate & ZScalar)

ITC Infotech • Delhi, India
Network & Security Lead (Fortigate & ZScalar).Network lead we are looking for a skilled and strategic Lead Network & Security Engineer to architect, manage, and secure enterprise-wide network syste...Show more
Last updated: 23 hours ago • Promoted
Cyber Security Manager

Cyber Security Manager

nTech Workforce • Delhi, India
Duration : 6 months Location : Remote (Bengaluru, India).Job Description Bachelor or Master degree in computer science with a minimum of 8 years in cyber security domain Technical background in netwo...Show more
Last updated: 5 days ago • Promoted
Senior Manager–Cybersecurity & Cyber Defense Center

Senior Manager–Cybersecurity & Cyber Defense Center

Mashreq • Delhi, India
Job Purpose : To develop, manage, and execute cyber security project across Mashreq to –.Lead and oversee the strategic operations of the Cyber Defense Center (CDC) to ensure effective monitoring, ...Show more
Last updated: 16 days ago • Promoted
Manager- Cyber Defense Center

Manager- Cyber Defense Center

EXL • Noida, Uttar Pradesh, India
Manager – Cyber Defense Center.Managing CDC operations @ 24 • 7.Understanding of alerts (SIEM, EDR, DLP), handling escalations, communications, notifications of higher priority incidents.Respond to ...Show more
Last updated: 21 days ago • Promoted
Cybersecurity Awareness Manager

Cybersecurity Awareness Manager

EXL • Noida, Uttar Pradesh, India
We are looking for a dynamic and experienced Cybersecurity Awareness Manager to lead the development and execution of security awareness initiatives across the organization.The ideal candidate will...Show more
Last updated: 21 days ago • Promoted
CyberArk implementation Lead

CyberArk implementation Lead

Atos • Delhi, India
Have a strong knowledge of CyberArk privileged Account Management solutions- CyberArk components like Vault, CPM, PSM, PSMP, PVWA, AAM, PTA Have worked on CyberArk Application upgrades / releases and...Show more
Last updated: 23 days ago • Promoted
Cyber Security Specialist

Cyber Security Specialist

MM NOVA TECH LTD • Noida, Uttar Pradesh, India
We are looking for an experienced.The role involves identifying vulnerabilities, simulating real-world attacks, and ensuring our system is protected from threats such as. The security audit will cov...Show more
Last updated: 1 day ago • Promoted
Security Lead for one of the leading Data Center

Security Lead for one of the leading Data Center

Acme Services • Delhi, India
Years of Experience : 10+ Years Location : Turbhe, Navi Mumbai.ROLE SUMMARY The Security lead will provide security incident response and readiness as part of a 24x7 Security Operations Centre within...Show more
Last updated: 22 days ago • Promoted
Security Lead

Security Lead

BDx Data Centers • Delhi, India
DUTIES AND RESPONSIBILITIES : • Provide timely and effective security incident response within a 24x7 SOC environment.Lead operation teams to effectively maintain the lifecycle of both on-premises a...Show more
Last updated: 30+ days ago • Promoted
Lead

Lead

Yotta Data Services Private Limited • Delhi, India
Yotta Data Services | Powering Digital Transformation with Scalable Cloud, Colocation, and Managed Services.Yotta Data Services offers a comprehensive suite of cloud, data center, and managed servi...Show more
Last updated: 27 days ago • Promoted
Cybersecurity Officer – SCG India

Cybersecurity Officer – SCG India

SCG • New Delhi, Delhi, India
SCG’s entry into India emphasizes.The Cybersecurity Officer safeguards SCG’s systems, data, and networks against threats, ensuring. Monitor security alerts, incidents, and system vulnerabilities.Imp...Show more
Last updated: 30+ days ago • Promoted
Director, IT Ops Services- Cloud, Infrastructure & Cyber Security

Director, IT Ops Services- Cloud, Infrastructure & Cyber Security

Coforge • Noida, Uttar Pradesh, India
Director, IT Ops Services- Cloud, Infrastructure & Cyber Security.We are seeking a dynamic and experienced Technology Support Group Leader to spearhead our Technology Support Group.The ideal candid...Show more
Last updated: 30+ days ago • Promoted
Senior Engineer / Asst. Manager - Cyber Security

Senior Engineer / Asst. Manager - Cyber Security

TÜV SÜD • Delhi, India
Key Responsibilities Complete testing on time.Keep up to date with the latest in standards, regulations and technical developments in the cyber security space. Actively co-develop the security progr...Show more
Last updated: 17 days ago • Promoted
Security Operation Delivery Manager

Security Operation Delivery Manager

Capgemini • Ghaziabad, IN
The Security Operation Delivery Manager is responsible for overseeing cybersecurity operations delivery, ensuring service excellence, and driving performance through data insights and stakeholder e...Show more
Last updated: 9 hours ago • Promoted • New!
Associate Manager II - Cyber Security

Associate Manager II - Cyber Security

Navi • Delhi, India
At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show more
Last updated: 13 days ago • Promoted
Cybersecurity Lead(6 months contract)

Cybersecurity Lead(6 months contract)

Sekuro Asia • Ghaziabad, IN
Our client oversees and operates digital asset-related businesses.Our client aims to transform the financial industry by building a tech-enabled institutional grade ecosystem for issuance, distribu...Show more
Last updated: 9 days ago • Promoted