25 Aug
|
Tech Mahindra
|
Noida
25 Aug
Tech Mahindra
Noida
Job Profile
Telecom SOC Program Director
Experience
15 years (Telecom SOC Mandatory)
Job Summary The SOC Manager will lead end to end Security Operations for a telecom environment, ensuring robust monitoring, detection, and response across IT, network, and telecom infrastructure. The role requires deep expertise in Splunk SIEM and Palo Alto Cortex XSOAR, along with strong telecom domain knowledge and experience handling regulatory and compliance requirements across African telecom markets.
Key Responsibilities ‿ SOC Operations & Leadership • Lead and manage a 24x7 SOC supporting telecom environments • Manage L1/L2/L3 analysts and incident responders • Align SOC processes with NIST CSF, ISO 27001, MITRE ATT&CK; • Track KPIs such as MTTD, MTTR, SLA adherence
Incident Detection & Response • Oversee monitoring using Splunk SIEM / ES • Handle telecom fraud, signaling attacks, DDoS • Coordinate incident response across teams
SIEM & SOAR Engineering • Develop and optimize Splunk use cases and dashboards • Onboard telecom logs (HLR, HSS, SBC, billing)
• Build automation playbooks in Cortex XSOAR • Mandatory: Design and implement telecom specific detection use cases in Splunk • Mandatory: Hands on experience in large scale log onboarding for telecom systems
Splunk Architecture & Deployment (Multi Country)
• Design and deploy Splunk architecture across multiple countries/regions • Experience with distributed and clustered Splunk environments • Manage multi tenant and geo separated data ingestion and search heads • Ensure compliance with data residency and regulatory requirements • Optimize performance, scalability, and high availability across regions
Telecom Domain Knowledge • Core networks: 2G/3G/4G/5G • Protocols: SS7, Diameter, SIP, GTP • Threats: SIM swap, IRSF, signaling attacks • 5G security and network slicing
Telecom Compliance & Regulatory (Africa)
• AU Malabo Convention, Smart Africa initiatives • Nigeria NDPR, Kenya DPA, South Africa POPIA • Telecom regulators: NCC, ICASA, CAK • Lawful interception, data protection, breach reporting
Skills & Qualifications • Solid experience with Splunk and Cortex XSOAR • Knowledge of EDR, NDR, firewalls, cloud security • SIEM use case engineering and SOAR automation • Mandatory: Experience in telecom specific use case development and log onboarding • Mandatory: Experience designing and managing multi country Splunk deployments
Certifications • CISSP, CISM, CEH, GCIH • Splunk and Palo Alto certifications • ITIL Foundation
📌 Security Program Manager (Noida)
🏢 Tech Mahindra
📍 Noida