Talent.com
No longer accepting applications
Cyber Security (SOC) - Team Lead

Cyber Security (SOC) - Team Lead

Sanganan IT Solutions Pvt Ltd.Mangalore, IN
13 hours ago
Job description

Job Title : Team Lead - Security Operations Center (SoC)

Location : Noida / Singapore Office

  • WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME
  • Short notice period or immediate joiners are preferred.

Job Overview :

As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security Operations Center comprising Level 1, Level 2, and Level 3 SOC Analysts. You will ensure delivery of high-quality monitoring, detection, response, and threat intelligence services across internal and MSSP customer environments. In this leadership role, you’ll be responsible for analyst performance, escalation handling, service delivery compliance, and technical excellence. You will also lead the coordination of quarterly incident response exercises, customer reporting, and continuous process improvement initiatives.

This position plays a pivotal role in bridging tactical SOC operations and strategic business outcomes, reporting to the SOC Manager or Head of Cybersecurity Services.

Key Responsibilities :

1. Team Leadership & Tiered Analyst Management

  • Lead and supervise the SOC team across L1 (Monitoring / Triage), L2 (Investigation / Response), and L3 (Threat Hunting / Engineering) functions.
  • Set clear roles, escalation workflows, and KPIs across tiers; ensure consistent coverage, shift rotations, and SLA adherence.
  • Conduct regular performance reviews and targeted skill gap analysis.
  • Promote collaboration, accountability, and continuous learning across junior and senior analysts.
  • Foster readiness to handle high-severity security events through coaching and simulated training.
  • 2. SOC Operations Oversight

  • Act as the final escalation point for critical, complex, or ambiguous incidents that exceed Level 3 thresholds.
  • Ensure effective triage, investigation, containment, and recovery workflows across all incident types.
  • Support 24 / 7 monitoring operations, ensuring shift efficiency, proper documentation, and accurate escalation.
  • Oversee the tuning and effectiveness of detection content, ensuring false positive reduction and high-fidelity alerting.
  • 3. Customer Reporting & MSSP Service Quality

  • Ensure timely delivery of Weekly Threat Intelligence Digests, Biweekly Alert Tuning Reports, and Monthly / Quarterly MSSP Reports.
  • Review and validate customer-facing deliverables for accuracy, quality, and insight.
  • Lead or support monthly service review meetings and quarterly executive briefings with MSSP clients.
  • Track and report SOC performance against SLA / KPI metrics such as MTTD, MTTR, FPR, and escalation compliance.
  • 4. Incident Response Tabletop & Planning

  • Lead planning, execution, and reporting of Quarterly Incident Response Tabletop Exercises across MSSP environments.
  • Collaborate with stakeholders from technical, compliance, and business functions to simulate realistic attack scenarios.
  • Ensure deliverables include scenario documentation, participant actions, gaps identified, and remediation plans.
  • 5. Process Development & Optimization

  • Own the development, maintenance, and continuous improvement of SOC playbooks, SOPs, and runbooks across tiers.
  • Align SOC processes with customer onboarding requirements (log source validation, escalation matrix, SLA definitions, tooling integration).
  • Drive change control and governance for detection rule updates, log onboarding, and tooling enhancements.
  • 6. Threat Intelligence & Strategic Defense

  • Collaborate with L3 analysts to ensure threat intelligence is operationalized into detection content and hunt scenarios.
  • Stay informed on industry trends, APT groups, and emerging TTPs, ensuring the SOC adapts proactively.
  • Required Skills & Qualifications :

    1.       Education :

  • Bachelor’s degree in Information Security, Computer Science, or a related technical field.
  • Postgraduate education or executive leadership courses are advantageous.
  • 2.       Certifications :

  • Required : Microsoft Certified : Security Operations Analyst Associate.
  • Preferred :
  • o  CompTIA CySA+, CISSP, or equivalent certifications.

    o  GIAC (e.g., GCIA, GCIH, GMON)

    o  CISSP or CISM

    o  ITIL Foundation or service management certifications

    o  English Language Proficiency : IELTS (6.5+), TOEIC (800+), TOEFL (90+), or BEC Vantage

    3.       Technical Skills :

  • Advanced knowledge of Microsoft Sentinel , KQL, and SOAR workflows.
  • Deep understanding of incident response, MITRE ATT&CK, threat intelligence, and SOC toolchains (EDR, UEBA, TIPs).
  • Familiarity with multi-tenant MSSP platforms, SIEM tuning, and SOC metrics reporting.
  • Knowledge of log source onboarding, change control processes, and secure communication protocols.
  • 4.       Leadership & Soft Skills :

  • Strong leadership, coaching, and delegation skills across junior and senior technical roles.
  • Proven ability to translate technical findings into business-relevant impact.
  • Excellent communication and documentation skills for both technical teams and C-level stakeholders.
  • Organized, resilient, and calm under pressure, especially during major incident escalations and executive briefings.
  • Experience :

  • 8-10+ years in cybersecurity or SOC operations, including 3-5+ years in a leadership role.
  • Prior experience managing multi-tier SOC teams or leading detection and response operations in an MSSP is highly preferred.
  • Create a job alert for this search

    Soc Lead • Mangalore, IN

    Related jobs
    • Promoted
    SOC / NOC Team Lead (Tier-2) – MSSP Operations (India-Based, Full-Time)

    SOC / NOC Team Lead (Tier-2) – MSSP Operations (India-Based, Full-Time)

    Symosis SecurityMangalore, IN
    Symosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era.We help public-sector and enterprise clients mature their security operations through managed services, o...Show moreLast updated: 11 days ago
    • Promoted
    • New!
    Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

    Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

    datavrutiMangalore, IN
    Chief Information Security Officer (CISO).Chief Risk Officer (with dual reporting to Board Risk / Audit Committee).Information Security with leadership exposure in BFSI, ideally Insurance or FinTec...Show moreLast updated: 19 hours ago
    • Promoted
    Fortinet with Azure Migration

    Fortinet with Azure Migration

    Sonata SoftwareMangalore, IN
    Azure Network Security Engineer.The ideal candidate will have strong experience in designing, implementing, and migrating on-premise networks into. Design and implement secure and scalable.DNS serve...Show moreLast updated: 11 days ago
    • Promoted
    VAPT Lead - OSCP Certified (Japan)

    VAPT Lead - OSCP Certified (Japan)

    Cubical Operations LLPMangalore, IN
    Senior Manager – VAPT (OSCP Certified).Any Metro City in India (Hybrid) – Mumbai / Bangalore / Delhi / Chennai / Hyderabad. Frequent travel to Japan (as per project requirement).We are seeking a hig...Show moreLast updated: 11 days ago
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Mangalore, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaMangalore, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

    Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

    Client of Prasha Consultancy Services Private LimitedMangalore, IN
    Remote
    Immediate or Early Joiners Only.A US Based IT MNC is looking for Lead Network Engineer for one of their Banking Client.Client is looking for an expert in Manage / Support – firewalls, Checkpoint secu...Show moreLast updated: 6 days ago
    • Promoted
    Senior Security Consultant

    Senior Security Consultant

    Claranet IndiaMangalore, IN
    Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Operations Center Analyst

    Security Operations Center Analyst

    MyRemoteTeam IncMangalore, IN
    Hiring : Senior SOC Analyst (Remote).Tier 2 or higher) for a potential long-term project.If you’re a cybersecurity professional passionate about investigation, threat analysis, and proactive defense...Show moreLast updated: 13 hours ago
    • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Tiger AdvisoryMangalore, IN
    Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 21 days ago
    • Promoted
    Head of Cybersecurity Practice (Global)

    Head of Cybersecurity Practice (Global)

    Timus Consulting ServicesMangalore, IN
    Head of Cybersecurity Practice (Global).Minimum 10 years with cybersecurity consulting, services, or leadership roles.Timus Consulting is a global leader in Governance, Risk, and Compliance (GRC) a...Show moreLast updated: 2 days ago
    • Promoted
    Cyber Security GRC Consultant ( Hybrid : Pune)

    Cyber Security GRC Consultant ( Hybrid : Pune)

    DigiHelic Solutions Pvt. Ltd.Mangalore, IN
    This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party risk. You will contribute to aligning busine...Show moreLast updated: 7 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Sennovate Inc.Mangalore, IN
    Sennovate is an Information Security managed Security Service provider (MSSP) that specializes in Identity and Access Management (IAM) and Security Operations Center (SOC) powered by AI.For more in...Show moreLast updated: 10 days ago
    • Promoted
    Senior Security & Compliance Manager

    Senior Security & Compliance Manager

    ConfidentialMangalore, IN
    Senior Security & Compliance Manager (Independent Contractor, Remote).Remote (Must work US hours, 6 AM – 2 PM Pacific Time or 9am - 5pm Eastern Time). The Senior Security & Compliance Manager will o...Show moreLast updated: 10 days ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesMangalore, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 11 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CBTSmangalore, karnataka, in
    Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 2 days ago
    • Promoted
    • New!
    Illumio- Zero Trust Microsegmentation

    Illumio- Zero Trust Microsegmentation

    CareerXperts ConsultingMangalore, IN
    Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 19 hours ago
    • Promoted
    Senior SAP Security & Cloud Operations Consultant

    Senior SAP Security & Cloud Operations Consultant

    Hexad Infosoft INMangalore, IN
    Job Title : Senior SAP Security & Cloud Operations Consultant.We are seeking a highly experienced.Senior SAP Security & Cloud Operations Consultant. SAP transformation program spanning both on-premis...Show moreLast updated: 2 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aimangalore, karnataka, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Network Security Engineer

    Network Security Engineer

    Tata Consultancy ServicesMangalore, IN
    Role : Network Security - Firewall Palo Alto.Hands on experience on Palo Alto network firewalls including Configuration, Firewall rules management. Panorama Management : Proficiency in managing Palo A...Show moreLast updated: 30+ days ago