Talent.com
Cyber Security (SOC) - Team Lead
Cyber Security (SOC) - Team LeadSanganan IT Solutions Pvt Ltd. • Noida, Uttar Pradesh, India
Cyber Security (SOC) - Team Lead

Cyber Security (SOC) - Team Lead

Sanganan IT Solutions Pvt Ltd. • Noida, Uttar Pradesh, India
30+ days ago
Job description

Job Title : Team Lead - Security Operations Center (SoC)

Location : Noida / Singapore Office

  • WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME
  • Short notice period or immediate joiners are preferred.

Job Overview :

As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security Operations Center comprising Level 1, Level 2, and Level 3 SOC Analysts. You will ensure delivery of high-quality monitoring, detection, response, and threat intelligence services across internal and MSSP customer environments. In this leadership role, you’ll be responsible for analyst performance, escalation handling, service delivery compliance, and technical excellence. You will also lead the coordination of quarterly incident response exercises, customer reporting, and continuous process improvement initiatives.

This position plays a pivotal role in bridging tactical SOC operations and strategic business outcomes, reporting to the SOC Manager or Head of Cybersecurity Services.

Key Responsibilities :

1. Team Leadership & Tiered Analyst Management

  • Lead and supervise the SOC team across L1 (Monitoring / Triage), L2 (Investigation / Response), and L3 (Threat Hunting / Engineering) functions.
  • Set clear roles, escalation workflows, and KPIs across tiers; ensure consistent coverage, shift rotations, and SLA adherence.
  • Conduct regular performance reviews and targeted skill gap analysis.
  • Promote collaboration, accountability, and continuous learning across junior and senior analysts.
  • Foster readiness to handle high-severity security events through coaching and simulated training.
  • 2. SOC Operations Oversight

  • Act as the final escalation point for critical, complex, or ambiguous incidents that exceed Level 3 thresholds.
  • Ensure effective triage, investigation, containment, and recovery workflows across all incident types.
  • Support 24 / 7 monitoring operations, ensuring shift efficiency, proper documentation, and accurate escalation.
  • Oversee the tuning and effectiveness of detection content, ensuring false positive reduction and high-fidelity alerting.
  • 3. Customer Reporting & MSSP Service Quality

  • Ensure timely delivery of Weekly Threat Intelligence Digests, Biweekly Alert Tuning Reports, and Monthly / Quarterly MSSP Reports.
  • Review and validate customer-facing deliverables for accuracy, quality, and insight.
  • Lead or support monthly service review meetings and quarterly executive briefings with MSSP clients.
  • Track and report SOC performance against SLA / KPI metrics such as MTTD, MTTR, FPR, and escalation compliance.
  • 4. Incident Response Tabletop & Planning

  • Lead planning, execution, and reporting of Quarterly Incident Response Tabletop Exercises across MSSP environments.
  • Collaborate with stakeholders from technical, compliance, and business functions to simulate realistic attack scenarios.
  • Ensure deliverables include scenario documentation, participant actions, gaps identified, and remediation plans.
  • 5. Process Development & Optimization

  • Own the development, maintenance, and continuous improvement of SOC playbooks, SOPs, and runbooks across tiers.
  • Align SOC processes with customer onboarding requirements (log source validation, escalation matrix, SLA definitions, tooling integration).
  • Drive change control and governance for detection rule updates, log onboarding, and tooling enhancements.
  • 6. Threat Intelligence & Strategic Defense

  • Collaborate with L3 analysts to ensure threat intelligence is operationalized into detection content and hunt scenarios.
  • Stay informed on industry trends, APT groups, and emerging TTPs, ensuring the SOC adapts proactively.
  • Required Skills & Qualifications :

    1.       Education :

  • Bachelor’s degree in Information Security, Computer Science, or a related technical field.
  • Postgraduate education or executive leadership courses are advantageous.
  • 2.       Certifications :

  • Required : Microsoft Certified : Security Operations Analyst Associate.
  • Preferred :
  • o  CompTIA CySA+, CISSP, or equivalent certifications.

    o  GIAC (e.g., GCIA, GCIH, GMON)

    o  CISSP or CISM

    o  ITIL Foundation or service management certifications

    o  English Language Proficiency : IELTS (6.5+), TOEIC (800+), TOEFL (90+), or BEC Vantage

    3.       Technical Skills :

  • Advanced knowledge of Microsoft Sentinel , KQL, and SOAR workflows.
  • Deep understanding of incident response, MITRE ATT&CK, threat intelligence, and SOC toolchains (EDR, UEBA, TIPs).
  • Familiarity with multi-tenant MSSP platforms, SIEM tuning, and SOC metrics reporting.
  • Knowledge of log source onboarding, change control processes, and secure communication protocols.
  • 4.       Leadership & Soft Skills :

  • Strong leadership, coaching, and delegation skills across junior and senior technical roles.
  • Proven ability to translate technical findings into business-relevant impact.
  • Excellent communication and documentation skills for both technical teams and C-level stakeholders.
  • Organized, resilient, and calm under pressure, especially during major incident escalations and executive briefings.
  • Experience :

  • 8-10+ years in cybersecurity or SOC operations, including 3-5+ years in a leadership role.
  • Prior experience managing multi-tier SOC teams or leading detection and response operations in an MSSP is highly preferred.
  • Create a job alert for this search

    Cyber Security Lead • Noida, Uttar Pradesh, India

    Related jobs
    Network Team Lead

    Network Team Lead

    Yotta Data Services Private Limited • Delhi, India, India
    We are looking for an energetic and dynamic Network Team Lead with 7 plus years of experience in a data center networking domain with 1-3 years of experience in Software Defined Networking(SDN) spe...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Lead

    Cyber Security Lead

    Societe Generale Global Solution Centre • Delhi, India
    Job Description Ability to identify, propose, design and run the operational and security risk Controls.Sound understanding of various cybersecurity controls and their relevance to handle various t...Show more
    Last updated: 16 days ago • Promoted
    Cyber Security (Soc) - Team Lead

    Cyber Security (Soc) - Team Lead

    Sanganan IT Solutions Pvt Ltd. • Noida, Republic Of India, IN
    Team Lead - Security Operations Center (SoC).WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME. Short notice period or immediate joiners are preferred.As the...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Security Operation Lead

    Senior Cyber Security Operation Lead

    CrimsonLogic • Delhi, India
    Working Experience Requirements Minimum 10 + years.Proven experience in managing 24x7 SOC operations.Hands-on experience with SIEM platforms (e. Job Responsibilities & Duties Supervise daily SOC ope...Show more
    Last updated: 6 days ago • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    airtel • Delhi, India, India
    The Security Operations Center (SOC) Security Analyst serves in a SOC team, is responsible for conducting information security investigations as a result of security incidents identified by the Lev...Show more
    Last updated: 28 days ago • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    CareerUS Solutions • Ghaziabad, IN
    Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show more
    Last updated: 18 days ago • Promoted
    Manager- Cyber Defense Center

    Manager- Cyber Defense Center

    EXL • Noida, Uttar Pradesh, India
    Manager – Cyber Defense Center.Managing CDC operations @ 24 • 7.Understanding of alerts (SIEM, EDR, DLP), handling escalations, communications, notifications of higher priority incidents.Respond to ...Show more
    Last updated: 19 days ago • Promoted
    Cybersecurity Awareness Manager

    Cybersecurity Awareness Manager

    EXL • Noida, Uttar Pradesh, India
    We are looking for a dynamic and experienced Cybersecurity Awareness Manager to lead the development and execution of security awareness initiatives across the organization.The ideal candidate will...Show more
    Last updated: 19 days ago • Promoted
    Security Lead

    Security Lead

    Network People Services Technologies Ltd. (NPST- Banking and Payment Solutions) • Noida, Uttar Pradesh, India
    India has witnessed a journey of Innovation in Digital Payments and today it leads the world with over 45% of the Global digital transaction volume. At NPST, we believe that our decade long journey ...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    LTIMindtree • Delhi, India, India
    Presales Solutioning in Cybersecurity with BFS domain experience is a must.Proven track record in Pre-Sales and Solution development in Cyber Security. Working with the central bid office, take tech...Show more
    Last updated: 27 days ago • Promoted
    Business Development Manager(Cyber Security Services)

    Business Development Manager(Cyber Security Services)

    TECEZE • Delhi, India, India
    Business Development Manager – Cyber Security Services.Sales / New Business Acquisition.Individual Contributor (Hunter Role). Teceze is looking for a high-performing.Business Development Manager (BD...Show more
    Last updated: 10 days ago • Promoted
    Cybersecurity Officer – SCG India

    Cybersecurity Officer – SCG India

    SCG • New Delhi, Delhi, India
    SCG’s entry into India emphasizes.The Cybersecurity Officer safeguards SCG’s systems, data, and networks against threats, ensuring. Monitor security alerts, incidents, and system vulnerabilities.Imp...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Incident Response Team Lead

    Cybersecurity Incident Response Team Lead

    Sanganan IT Solutions Pvt Ltd. • Noida, Republic Of India, IN
    Team Lead - Security Operations Center (SoC).WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME. Short notice period or immediate joiners are preferred.As the...Show more
    Last updated: 30+ days ago • Promoted
    Team Lead

    Team Lead

    ALTISOURCE BUSINESS SOLUTIONS PRIVATE LIMITED • Ghaziabad, IN
    Willing to work in night shift.Lead the property inspection operations in a multi-client environment ensuring adherence to service level agreements and quality standards. Track team perfoJob Descrip...Show more
    Last updated: 19 days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Ghaziabad, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    AI Security Lead

    AI Security Lead

    Delphi Consulting Middle East • Ghaziabad, IN
    Join Delphi - Where Innovation meets transformation.At Delphi, we believe in creating an environment where our people thrive. We are committed to supporting your personal goals, family, and overall ...Show more
    Last updated: 12 days ago • Promoted
    Cybersecurity Lead(6 months contract)

    Cybersecurity Lead(6 months contract)

    Sekuro Asia • Ghaziabad, IN
    Our client oversees and operates digital asset-related businesses.Our client aims to transform the financial industry by building a tech-enabled institutional grade ecosystem for issuance, distribu...Show more
    Last updated: 7 days ago • Promoted
    TAVS Tech Cyber Security Specialist / Engineer | Pune

    TAVS Tech Cyber Security Specialist / Engineer | Pune

    DigiHelic Solutions Pvt. Ltd. • Ghaziabad, IN
    Title : TAVS Tech Cyber Security Specialist.Strong hands-on experience with HashiCorp Vault (preferred) or CyberArk / CA PAM. Good understanding of security protocols : HTTP / HTTPS, TLS, REST / SOAP, SAM...Show more
    Last updated: 1 day ago • Promoted