:
- 7 years for Lead or 10 Years for SOC Manager of experience in SOC, Incident Response, Security Engineering, or Cyber Defense, with proven team leadership experience.
- Lead 247 SOC operations, managing Tier 13 analysts, incident escalation, SLAs, workflows, and operational processes.
- Act as the senior escalation point for complex security incidents, driving triage, investigation, containment, eradication, and recovery.
Tech Stack & Expertise :
- SIEM platforms : Splunk, Microsoft Sentinel, QRadar, or LogRhythm (SPL, use cases, correlation rules, detection engineering).
- Security tools : EDR/XDR, IDS/IPS, Firewalls, SOAR.
- Threat hunting : MITRE ATT&CK;, threat intelligence, IOCs, TTPs, behavioral analytics.
- DFIR : Malware analysis, log/packet analysis, evidence handling, incident investigation.
- Cloud Security : AWS, Azure, and GCP workplace monitoring.
- Scripting : Python, PowerShell, or Bash for automation and SOC optimization.
Requirements :
- Excellent leadership, communication, and mentoring skills.
- Expertise in NIST CSF, MITRE ATT&CK;, Cyber Kill Chain, and SOC maturity improvement.
📌 Security Operations Center Lead/Manager (India)
🏢 Rectras
📍 India