29 Sep
|
BOBCARD
|
Goregaon
Role & responsibilities:
Role & Responsibilities:
Key highlights of the role are listed below (purely indicative and not limiting):
- Lead and manage daily SOC operations, including 24/7 monitoring and incident
response.
- Supervise, mentor, and develop SOC analysts (L1, L2)
- Establish and improve incident detection, triage, and response procedures
- Oversee security monitoring tools such as SIEM, SOAR, EDR, and threat intelligence
platforms.
- Coordinate and lead incident response efforts for security breaches and critical events.
- Develop and maintain SOC playbooks, runbooks, and standard operating procedures.
- Lead end-to-end incident response lifecycle (identify, contain, eradicate, recover)
- Coordinate cross-functional response involving IT, fraud, legal, and compliance teams.
- Monitor and report on security metrics, KPIs, and incident trends
- Collaborate with IT, risk, compliance, and other teams to strengthen security posture.
- Conduct threat hunting and ensure proactive defence strategies are in place
- Ensure compliance with security standards, policies, and regulatory requirements.
- Manage vendor relationships and security tools procurement.
- Prepare executive-level reports on security posture and incidents Monitor network
and application performance to identify and irregular activity.
- Advice IT security team to Deploy endpoint detection and prevention tools to thwart
malicious hacks.
- Design and conduct regular tabletop exercises and cyber drills
- Simulate attack scenarios relevant to credit card systems and payment environments
- Evaluate response effectiveness and improve organizational readiness
- Train stakeholders on incident response roles and responsibilities
- Ensure SOC operations comply with regulatory requirements (e.g., RBI, PCI-DSS).
- Support audits, risk assessments, and regulatory inspections
- Maintain documentation, logs, and reports for compliance purposes.
Applicants should possess the following attributes:
- Strong understanding of security operations, incident response, and threat management
- Hands-on experience with SIEM tools (e.g., Splunk, ArcSight, Sentinel)
- Knowledge of network security, endpoint security, and cloud security
- Familiarity with frameworks such as NIST, ISO 27001, and MITRE ATT&CK;/DEF3ND
- Solid analytical, problem-solving, and decision-making skills
- Excellent communication and leadership abilities
- Cyber Security Operations, exposure to security technologies like SIEM, VM, Forensics, UEBA, SOAR, TIP, DAM, Deception System, Anti APT etc.
📌 Sr. Manager/Manager - Security Operation Centre (SOC) (Goregaon)
🏢 BOBCARD
📍 Goregaon