Talent.com
Cyber Security (SOC) - Team Lead
Cyber Security (SOC) - Team LeadSanganan IT Solutions Pvt Ltd. • Delhi, India
No longer accepting applications
Cyber Security (SOC) - Team Lead

Cyber Security (SOC) - Team Lead

Sanganan IT Solutions Pvt Ltd. • Delhi, India
30+ days ago
Job description

Job Title :

Team Lead - Security Operations Center (SoC)

Location : Noida / Singapore Office

WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME

Short notice period or immediate joiners are preferred.

Job Overview :

As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security Operations Center comprising Level 1, Level 2, and Level 3 SOC Analysts. You will ensure delivery of high-quality monitoring, detection, response, and threat intelligence services across internal and MSSP customer environments. In this leadership role, you’ll be responsible for analyst performance, escalation handling, service delivery compliance, and technical excellence. You will also lead the coordination of quarterly incident response exercises, customer reporting, and continuous process improvement initiatives.

This position plays a pivotal role in bridging tactical SOC operations and strategic business outcomes, reporting to the SOC Manager or Head of Cybersecurity Services.

Key Responsibilities :

1. Team Leadership & Tiered Analyst Management

Lead and supervise the SOC team across L1 (Monitoring / Triage), L2 (Investigation / Response), and L3 (Threat Hunting / Engineering) functions.

Set clear roles, escalation workflows, and KPIs across tiers; ensure consistent coverage, shift rotations, and SLA adherence.

Conduct regular performance reviews and targeted skill gap analysis.

Promote collaboration, accountability, and continuous learning across junior and senior analysts.

Foster readiness to handle high-severity security events through coaching and simulated training.

2. SOC Operations Oversight

Act as the final escalation point for critical, complex, or ambiguous incidents that exceed Level 3 thresholds.

Ensure effective triage, investigation, containment, and recovery workflows across all incident types.

Support 24 / 7 monitoring operations, ensuring shift efficiency, proper documentation, and accurate escalation.

Oversee the tuning and effectiveness of detection content, ensuring false positive reduction and high-fidelity alerting.

3. Customer Reporting & MSSP Service Quality

Ensure timely delivery of Weekly Threat Intelligence Digests, Biweekly Alert Tuning Reports, and Monthly / Quarterly MSSP Reports.

Review and validate customer-facing deliverables for accuracy, quality, and insight.

Lead or support monthly service review meetings and quarterly executive briefings with MSSP clients.

Track and report SOC performance against SLA / KPI metrics such as MTTD, MTTR, FPR, and escalation compliance.

4. Incident Response Tabletop & Planning

Lead planning, execution, and reporting of Quarterly Incident Response Tabletop Exercises across MSSP environments.

Collaborate with stakeholders from technical, compliance, and business functions to simulate realistic attack scenarios.

Ensure deliverables include scenario documentation, participant actions, gaps identified, and remediation plans.

5. Process Development & Optimization

Own the development, maintenance, and continuous improvement of SOC playbooks, SOPs, and runbooks across tiers.

Align SOC processes with customer onboarding requirements (log source validation, escalation matrix, SLA definitions, tooling integration).

Drive change control and governance for detection rule updates, log onboarding, and tooling enhancements.

6. Threat Intelligence & Strategic Defense

Collaborate with L3 analysts to ensure threat intelligence is operationalized into detection content and hunt scenarios.

Stay informed on industry trends, APT groups, and emerging TTPs, ensuring the SOC adapts proactively.

Required Skills & Qualifications :

1.

Education :

Bachelor’s degree in Information Security, Computer Science, or a related technical field.

Postgraduate education or executive leadership courses are advantageous.

2.

Certifications : Required :

Microsoft Certified : Security Operations Analyst Associate.

Preferred :

CompTIA CySA+, CISSP, or equivalent certifications.

GIAC (e.g., GCIA, GCIH, GMON)

CISSP or CISM

ITIL Foundation or service management certifications

English Language Proficiency :

IELTS (6.5+), TOEIC (800+), TOEFL (90+), or BEC Vantage

3.

Technical Skills :

Advanced knowledge of Microsoft Sentinel , KQL, and SOAR workflows.

Deep understanding of incident response, MITRE ATT&CK, threat intelligence, and SOC toolchains (EDR, UEBA, TIPs).

Familiarity with multi-tenant MSSP platforms, SIEM tuning, and SOC metrics reporting.

Knowledge of log source onboarding, change control processes, and secure communication protocols.

4.

Leadership & Soft Skills :

Strong leadership, coaching, and delegation skills across junior and senior technical roles.

Proven ability to translate technical findings into business-relevant impact.

Excellent communication and documentation skills for both technical teams and C-level stakeholders.

Organized, resilient, and calm under pressure, especially during major incident escalations and executive briefings.

Experience :

8-10+ years in cybersecurity or SOC operations, including 3-5+ years in a leadership role.

Prior experience managing multi-tier SOC teams or leading detection and response operations in an MSSP is highly preferred.

Create a job alert for this search

Cyber Security Lead • Delhi, India

Related jobs
Cyber Defense and Compliance Lead

Cyber Defense and Compliance Lead

SCG • New Delhi, Delhi, India
About SCG in India SCG’s entry into India emphasizes trust, governance, and sustainability —and cybersecurity is central to protecting operations, customers, and partners in a connected world...Show more
Last updated: 17 hours ago • Promoted • New!
Cyber Defense & IR

Cyber Defense & IR

Talent Worx • Noida, UP, IN
Quick Apply
JOB DESCRIPTION .Experience : 3+ years with at-least 2-3 years in client facing advisory consulting role and managing a medium sized team .Preferred Certific...Show more
Last updated: 30+ days ago
Network Team Lead

Network Team Lead

Yotta Data Services Private Limited • Delhi, India, India
We are looking for an energetic and dynamic Network Team Lead with 7 plus years of experience in a data center networking domain with 1-3 years of experience in Software Defined Networking(SDN) spe...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Lead

Cyber Security Lead

Societe Generale Global Solution Centre • Delhi, India
Responsibilities : Job Description Ability to identify, propose, design and run the operational and security risk Controls. Sound understanding of various cybersecurity controls and their relevance t...Show more
Last updated: 17 days ago • Promoted
Cybersecurity Incident Response Lead

Cybersecurity Incident Response Lead

Sanganan IT Solutions Pvt Ltd. • Noida, Republic Of India, IN
Level 2 Senior Security Operations Center (SOC) Analyst.WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME. Short notice period or immediate joiners are prefe...Show more
Last updated: 7 hours ago • Promoted • New!
Security Lead

Security Lead

Emeritus • Delhi, Delhi, India
Role Overview Daskalos is seeking a Security Lead to drive hands-on security across applications, cloud infrastructure and operations. This is a remote role for someone with 8-10 years of practical...Show more
Last updated: 2 days ago • Promoted
Manager- Cyber Defense Center

Manager- Cyber Defense Center

EXL • Noida, Uttar Pradesh, India
Manager – Cyber Defense Center Primary Responsibility Managing CDC operations @ 24 • 7 Understanding of alerts (SIEM, EDR, DLP), handling escalations, communications, notifications of higher priori...Show more
Last updated: 22 days ago • Promoted
Senior Cyber Security Operation Lead

Senior Cyber Security Operation Lead

CrimsonLogic • Delhi, India
Working Experience Requirements Minimum 10 + years.Proven experience in managing 24x7 SOC operations.Hands-on experience with SIEM platforms (e. Job Responsibilities & Duties Supervise daily SOC ope...Show more
Last updated: 7 days ago • Promoted
Soc (Cyber Security) - L2

Soc (Cyber Security) - L2

Sanganan IT Solutions Pvt Ltd. • Noida, Republic Of India, IN
Level 2 Senior Security Operations Center (SOC) Analyst.WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME. Short notice period or immediate joiners are prefe...Show more
Last updated: 3 hours ago • Promoted • New!
Cybersecurity Awareness Manager

Cybersecurity Awareness Manager

EXL • Noida, Uttar Pradesh, India
We are looking for a dynamic and experienced Cybersecurity Awareness Manager to lead the development and execution of security awareness initiatives across the organization.The ideal candidate will...Show more
Last updated: 21 days ago • Promoted
Lead

Lead

Yotta Data Services Private Limited • Delhi, India
Yotta Data Services | Powering Digital Transformation with Scalable Cloud, Colocation, and Managed Services.Yotta Data Services offers a comprehensive suite of cloud, data center, and managed servi...Show more
Last updated: 28 days ago • Promoted
Lead Engineer Cyber Security

Lead Engineer Cyber Security

GE Vernova • Noida, Uttar Pradesh, India
As a Lead Cyber Security Engineer at GE Vernova Grid Solutions you will play a crucial role in designing implementing and optimizing the cybersecurity requirement for EHV / HV substations (AIS / GIS / HV...Show more
Last updated: 19 days ago • Promoted
SOAR, Cyber security

SOAR, Cyber security

Talent Worx • Noida, UP, IN
Quick Apply
Tech / MSc (IT, Computer Science) / MCA.Develop and optimize Security Orchestration, Automation, and Response (SOAR) solutions to enhance organizational security posture. Integrate various security ...Show more
Last updated: 30+ days ago
Cybersecurity Officer – SCG India

Cybersecurity Officer – SCG India

SCG • New Delhi, Delhi, India
SCG’s entry into India emphasizes.The Cybersecurity Officer safeguards SCG’s systems, data, and networks against threats, ensuring. Monitor security alerts, incidents, and system vulnerabilities.Imp...Show more
Last updated: 30+ days ago • Promoted
Cybersecurity Onboarding and Enablement Lead

Cybersecurity Onboarding and Enablement Lead

Sanganan IT Solutions Pvt Ltd. • Noida, Republic Of India, IN
MSSP Onboarding & Enablement Consultant (Cyber Security + MSS).Noida / Singapore (SGT timezone alignment).WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME....Show more
Last updated: 30+ days ago • Promoted
TC Cyber Security IAM Implementation and Cyber Consulting- Manager

TC Cyber Security IAM Implementation and Cyber Consulting- Manager

EY Studio+ Nederland • Delhi, Delhi, India
At EY were all in to shape your future with confidence.Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help to ...Show more
Last updated: 2 days ago • Promoted
Security Operation Delivery Manager

Security Operation Delivery Manager

Capgemini • Ghaziabad, IN
The Security Operation Delivery Manager is responsible for overseeing cybersecurity operations delivery, ensuring service excellence, and driving performance through data insights and stakeholder e...Show more
Last updated: 10 hours ago • Promoted • New!
Lead

Lead

Mindsprint • Delhi, India
We are seeking a highly experienced and dynamic Info security Grow Capability professional to join our team.The ideal candidate will have 4 to 9 years of experience in Endpoint Security Profile Des...Show more
Last updated: 30+ days ago • Promoted