This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The SOC Manager provides strategic and operational leadership for the Security Operations Center, ensuring mature, resilient, and scalable security operations. This role goes beyond day-to-day management to drive detection strategy, incident readiness, automation, and continuous improvement, while serving as a key security leader and escalation point for the organization.
Job Responsibility:
Deliver in line with the overall SOC strategy, roadmap, and operating model
Mature SOC capabilities across people, process, and technology
Define and track SOC KPIs (MTTD, MTTR, alert quality, coverage)
Serve as executive escalation point for high-severity incidents
Act as Incident Commander for critical security incidents and breaches
Lead post-incident reviews and drive corrective actions
Coordinate with Legal, Privacy, Compliance, and Executive teams during incidents
Ensure incident response readiness through tabletop exercises and simulations
Oversee detection engineering, threat hunting, and intelligence programs
Ensure coverage aligned to MITRE ATT&CK and organizational risk
Reduce alert fatigue through tuning, automation, and analytics-driven improvements
Guide SOC evolution from reactive monitoring to proactive defense
Drive SOAR use cases and workflow automation to improve efficiency
Partner with Security Engineering and IT to onboard new log sources and telemetry
Evaluate and lead adoption of new security technologies
Lead multiple SOC teams or shift leads (Tier 1–3)
Develop career paths, succession planning, and advanced training programs
Hire and retain top SOC talent
build a high-performance culture
Own SOC policies, procedures, runbooks, and documentation
Deliver executive-level reporting on security posture, trends, and risks
Advise senior leadership on threat landscape and incident readiness
Collaborate with Engineering, Product, Legal, and Compliance teams
Requirements:
Bachelor’s degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
9+ years of cybersecurity experience, including 5+ years in SOC leadership
Deep hands-on experience with incident response and SOC tooling
Strong understanding of cloud, endpoint, network, and identity security
Proven ability to lead major security incidents and cross-functional teams
Nice to have:
Advanced certifications: CISSP, CISM, GIAC (GCIH, GCIA, GMON), or equivalent
Experience building or transforming SOC programs
Experience in highly regulated environments (healthcare, fintech, SaaS)
Exposure to detection engineering, purple teaming, or red team collaboration