Security Operations Manager (Mumbai)

Security Operations Manager (Mumbai)

31 Aug
|
Angel One
|
Mumbai

31 Aug

Angel One

Mumbai

Remote: Hybrid

Security Operations Center (SOC) ManagerLocation:BengaluruAbout the RoleWe are seeking an experienced Security Operations Center (SOC) Manager to lead our Cyber Defense function and strengthen the organization's capability to detect, investigate, and respond to cyber threats across enterprise environments.This role will be responsible for overseeing Security Operations, Threat Intelligence, Threat Hunting, Incident Response, Digital Forensics, and Active Defense capabilities. The ideal candidate will bring solid leadership experience, deep technical expertise, and a proven track record of building and maturing enterprise cyber defense programs.What You Will DoSecurity Operations & MonitoringLead and manage Security Operations Center (SOC) activities for continuous monitoring of enterprise environments.Oversee detection and analysis of threats across endpoints, networks, identities, cloud platforms, and applications.Ensure effective prioritization and escalation of incidents based on business impact and risk.Continuously improve SOC processes, playbooks, detection logic, and automation workflows.Support integration of security tools, telemetry sources, and automation platforms to enhance visibility and response capabilities.Threat Intelligence & Threat HuntingCollect, analyze, and operationalize cyber threat intelligence from internal and external sources.Track adversary behaviors, campaigns, and tactics aligned with MITRE ATT&CK.Develop; and publish actionable intelligence reports to support detection and defense strategies.Conduct proactive threat hunting activities to identify advanced threats that evade automated controls.Collaborate with Security Engineering teams to close detection gaps and improve security monitoring.Incident Response & Digital ForensicsLead incident triage, containment, eradication,



and recovery efforts.Coordinate response activities during significant security incidents.Conduct digital forensic investigations and root cause analysis.Maintain and improve incident response playbooks and escalation procedures.Deliver post-incident reviews and lessons learned to strengthen organizational resilience.Partner with Legal, HR, Communications, and business stakeholders during major incidents.Advanced Cyber DefensePerform malware analysis and reverse engineering for high-severity incidents.Manage deception technologies and active defense initiatives.Conduct dark web monitoring and threat intelligence investigations to identify emerging risks.Execute purple team exercises to validate detection and response effectiveness.Monitor attack surface intelligence and emerging exposure risks.Leverage SOAR and XDR platforms to automate investigations and accelerate response activities.Reporting & LeadershipDevelop and maintain key security metrics including MTTD, MTTR, detection accuracy, and false positive rates.Produce dashboards, executive reports, and actionable insights for leadership and the CISO organization.Publish internal threat advisories related to vulnerabilities, exploits, and global threat trends.Build, mentor, and develop a high-performing SOC team through coaching and capability development.Drive continuous improvement initiatives based on operational metrics and intelligence insights.What Success Looks LikeEarly detection and rapid containment of cyber threats.Intelligence-led cyber defense operations.Improved visibility across cloud, network, endpoint,



and hybrid infrastructure environments.Enhanced incident response maturity and forensic readiness.Strong collaboration with Security Engineering and Assurance teams.Measurable improvements in detection effectiveness and response performance.Who You AreRequired Experience10–14 years of experience in Cyber Security, Security Operations, Incident Response, Threat Hunting, or Cyber Defense.Proven experience managing Security Operations Centers and cyber defense teams.Experience leading enterprise-scale incident response and investigation activities.Technical SkillsStrong understanding of SIEM, SOAR, EDR/XDR, NDR, Firewall, and Threat Intelligence platforms.Deep knowledge of network protocols including TCP/IP, DNS, HTTP, and SMTP.Experience with endpoint, server, and cloud telemetry across AWS, Azure, and GCP.Expertise in threat hunting, detection engineering, and adversary simulation techniques.Knowledge of MITRE ATT&CK;, Cyber Kill Chain, and Diamond Model frameworks.Hands-on experience in digital forensics, malware analysis, and incident response.Scripting and automation skills using Python, PowerShell, or Bash.Experience working with IOC management, threat intelligence feeds, and sandboxing technologies.Understanding of identity security, email security, SaaS security monitoring, and attack surface management.Preferred CertificationsCISSP, SSCPCISMCertified SOC Analyst (CSA)Certified Ethical Hacker (CEH)EC-Council Certified Incident Handler (ECIH)CompTIA Security+, CySA+, CASP+GIAC Security CertificationsAdditional certifications related to Threat Hunting, Incident Response, Digital Forensics, and Security LeadershipPreferred Industry BackgroundFinTechE-commerceTechnology & Cloud Service ProvidersIT ServicesCritical Infrastructure & EnergyMSSP / MDR OrganizationsIf you are passionate about building intelligence-driven cyber defense capabilities and leading high-performing security teams, we encourage you to apply.

📌 Security Operations Manager (Mumbai)
🏢 Angel One
📍 Mumbai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security operations manager (mumbai) / mumbai

Subscribe to this job alert:

Get the latest job offers by email for: security operations manager (mumbai) / mumbai