908,794open jobs
55,875companies
151,787added this week
Browse all
Salary
≈ $25k – $59k per year (Estimated)
Location
In office (Bengaluru)
Seniority
Staff · 10+ years exp

First seen by Alion on Aug 19, 2026.

Overview
Company
Impact
Profile match

Role Overview :

We are seeking a highly experienced and technically strong SOC Manager to lead and evolve our Security Operations Center into a mature, engineering-driven, and outcome-focused capability in the AI driven world.

This Role Requires a Hybrid Leader Who Can :

- Drive 24x7 SOC operations excellence.

- Own SIEM/SOAR engineering & detection lifecycle.

- Collaborate closely with Product & Development teams.

- Influence platform enhancements through operational intelligence.

- Build and mentor high-performing security teams.

- Highlight risks and gaps in logging methodologies.

- Improve security posture across multi-tenant cloud and on-prem environments.

Key Responsibilities :

SOC Operations Leadership & Incident Governance :

- Lead 24x7 SOC operations including detection, triage, escalation, containment, and recovery.

- Serve as final escalation point (L3/L4) for complex and high-severity incidents.

- Define and enforce incident response lifecycle aligned with NIST, ISO 27001, and MITRE ATT&CK.

- Ensure adherence to SLA / OLA targets (MTTA, MTTR, containment time).

- Conduct executive-level incident briefings and publish detailed RCA reports.

- Ensure compliance with organizational security policies and audit requirements.

- Oversee case quality assurance and investigation standards.

SOC Engineering & Detection Engineering :

- Own SIEM/SOAR architecture optimization and performance tuning.

- Lead log onboarding strategy (cloud, on-prem, hybrid environments).

- Ensure proper log normalization, parsing, enrichment, and correlation.

- Drive full detection use-case lifecycle :

1. Threat modelling.

2. Use-case creation.

3. Validation & tuning.

4. Performance measurement.

5. Decommissioning of ineffective rules.

- Reduce alert fatigue through risk-based alerting, contextual enrichment, and behavioural analytics.

- Implement detection-as-code practices with version-controlled rule management.

- Ensure high ingestion performance and scalable log retention strategies.

Threat Hunting & Advanced Analysis :

- Establish and lead proactive threat hunting programs.

- Map detection coverage against MITRE ATT&CK framework.

- Perform advanced investigations including:

1. Packet capture analysis.

2. Endpoint telemetry analysis.

3. Log correlation across multiple data sources.

- Integrate threat intelligence feeds and manage IOC lifecycle.

- Identify emerging attack patterns and update detection coverage accordingly.

Product Engineering & Platform Enhancement Ownership :

- Act as the primary SOC liaison for Product and Engineering teams.

- Translate operational pain points into structured enhancement requirements.

- Maintain and prioritize a backlog of platform improvements.

- Provide structured feedback on:

1. Detection gaps.

2. Alert noise.

3. Data ingestion latency.

4. Query performance issues.

5. UX inefficiencies impacting analysts.

- Participate in sprint planning and architecture discussions and provide inputs for enhancements.

- Be part of pilot validation of new features prior to production release.

- Quantify impact of enhancements (false positive & incident reduction %, MTTR improvement, automation coverage growth).

Client Onboarding & Security Architecture Oversight :

- Lead secure onboarding of customers across:

1. AWS / Azure / GCP.

2. On-prem data centers.

3. Hybrid architectures.

- Conduct log gap assessments and telemetry validation.

- Align detection coverage to client risk profiles.

- Participate in customer governance calls and QBRs.

- Provide architectural recommendations to improve customer security posture.

Team Leadership & Capability Development :

- Lead, mentor, and manage L1/L2/L3 analysts.

- Establish skill matrix and structured career progression roadmap.

- Conduct periodic case audits and performance reviews.

- Develop training programs in:

1. Advanced detection engineering.

2. Threat hunting.

3. Forensics.

4. Automation.

- Drive hiring, onboarding, and succession planning.

- Build a high-performance, accountability-driven culture.

Metrics, Reporting & Continuous Improvement :

- Define and monitor SOC KPIs:

1. MTTA / MTTR.

2. False positive ratio.

3. Detection accuracy.

4. Automation coverage.

5. Incident recurrence rate & reasoning.

- Publish monthly executive dashboards.

- Conduct quarterly SOC maturity assessments.

- Drive continuous improvement roadmap aligned with business growth.

Mandatory Technical Skills :

- 10-12 years of cybersecurity experience.

- Minimum 4 - 5 years in SOC Lead / SOC Manager role.

- Strong hands-on experience in at least one SIEM platform:

1. Splunk / Sentinel / QRadar / Elastic / AlienVault / DNIF / McAfee ESM.

- Experience implementing SOAR automation.

- Deep understanding of:

1. Network security (Firewall, IDS/IPS, WAF).

2. EDR/XDR platforms.

3. Cloud security (AWS, Azure).

4. Identity & Access Management.

- Strong knowledge of :

1. MITRE ATT&CK & Defend.

2. NIST & NIST IR Framework.

3. Defense-in-Depth architecture.

- Experience with query writing and log analysis on SIEM technologies.

Preferred Technical & Engineering Skills :

- Scripting (Python / PowerShell / Bash) would be added advantage.

- Exposure to DevSecOps environments.

- Knowledge of container and Kubernetes, cloud security.

- Data analytics for anomaly detection.

- Familiarity with compliance frameworks :

1. ISO 27001.

2. SOC 2.

3. PCI-DSS.

4. HIPAA.

Certifications (Preferred) :

- CISSP / CISM.

- CEH.

- CompTIA Security+.

- GIAC Certifications (GCIA / GCIH / GCED).

- Cloud Security Certifications (AWS / Azure / GCP/ Oracle).

Leadership Competencies :

- Strong executive communication and stakeholder management.

- Ability to manage high-pressure incidents.

- Strategic thinking with operational excellence.

- Engineering mindset with product-oriented thinking.

- Strong documentation and governance discipline.

Work Model :

- Mandatory 5-day work from office (Bangalore or Mumbai).

- On-call availability during major incidents or IR situations.

Skills :

- Security Incident Response.

- Communication Skills.

- Collaboration.

- Cybersecurity Strategy.

- Certifications Management.

- Threat Analysis.

- Continuous Learning.

- Leadership Team Management.

- Policy Development.

Skills

Cyber Security, Security Operations Center, SIEM, SOAR, Information Security, Threat Modeling, Cloud Security, Security Architect

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
908,794 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Bengaluru
≈ $107k – $210k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree
Cybersecurity
HIPAA
FedRAMP
Apply
$93k – $115k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree
Cybersecurity
HIPAA
FedRAMP
Apply
$97k per year • In office • Full-Time • High School Diploma • United States
DevOps
Windows
Unix
Apply
≈ $53k – $132k per year (Estimated) • In office • 3+ years exp • Bachelor's Degree • Cairo
Python
PowerShell
Bash
DevOps
Rest API
Docker
Incident Management
Linux
Cybersecurity
Wireshark
ISO 27001
NIST CSF
CVE
Management
Agile
Apply
≈ $112k – $220k per year (Estimated) • In office • Secret • Full-Time • 7+ years exp • Bachelor's Degree • San Diego
Management
Agile
Apply
$154k – $200k per year • In office • 8+ years exp • Bachelor's Degree • United States
Python
SQL
Databases
Snowflake
Databricks
AI/ML
Copilot
Claude Code
LLM
DevOps
Rest API
Azure
CI/CD
Cybersecurity
Least Privilege
Apply
≈ $63k – $158k per year (Estimated) • Remote (location not specified) • 2+ years exp • Bachelor's Degree
Python
SQL
AI/ML
Scikit-learn
Machine Learning
Apply
$177k – $229k per year • In office • 8+ years exp • New Haven
DevOps
GCP
Analytics
Microsoft Excel
Management
Outlook
Apply
$160k – $260k per year • Remote (likely United States) • 1+ year exp • Bachelor's Degree
Python
AI/ML
SciPy
NumPy
Analytics
Matplotlib
Apply
$137k – $203k per year • Remote (United States) • Full-Time • 8+ years exp • Bachelor's Degree • United States
Python
Python
Flask
Django
Databases
PostgreSQL
Apply
≈ $18k – $38k per year (Estimated) • In office • 5+ years exp • Mumbai
DevOps
IAM
Cybersecurity
ISO 27001
NIST CSF
SOC 2
FedRAMP
Apply
≈ $11k – $32k per year (Estimated) • In office • 4+ years exp • Bengaluru
JavaScript
PHP
Cybersecurity
Burp Suite
Metasploit
Nmap
OWASP ZAP
SQLmap
OWASP Top 10
MobSF
Frida
OWASP
QA
Postman
Apply
≈ $20k – $43k per year (Estimated) • In office • 8+ years exp • Bengaluru
DevOps
IAM
Cybersecurity
ISO 27001
PCI DSS
SOC 2
SIEM
DLP
Apply
≈ $20k – $43k per year (Estimated) • In office • 7+ years exp • Bengaluru
Python
PowerShell
C++
AI/ML
Red Teaming
DevOps
GCP
Azure
AWS
Docker
Kubernetes
IAM
Cybersecurity
Wireshark
Metasploit
Nmap
Nessus
Cobalt Strike
Impacket
BloodHound
Mimikatz
NetExec
Prowler
Hashcat
Responder
Sliver
Mythic
Havoc
ScoutSuite
MITRE ATT&CK
GoPhish
Evilginx2
Covenant
Pacu
Active Directory
Apply
≈ $17k – $44k per year (Estimated) • In office • 5+ years exp • Bengaluru
Python
JavaScript
TypeScript
SQL
C#
Python
Flask
FastAPI
Django
C#
ASP.NET Core
Entity Framework Core
Databases
PostgreSQL
Redis
AI/ML
Pandas
NumPy
Machine Learning
Frontend
RxJS
Angular
Sass
NgRx
DevOps
GCP
Azure DevOps
GitHub Actions
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Bitbucket
GitHub
GitLab
Management
Agile
Scrum
Apply
Sr Workday Analyst 11 hours ago
≈ $13k – $26k per year (Estimated) • In office • Full-Time • 3+ years exp • Chennai • Coimbatore • Hyderabad • Mumbai • Pune
Analytics
Microsoft Excel
Apply
≈ $31k – $69k per year (Estimated) • Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • Bengaluru
Apply
≈ $21k – $48k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
Python
Ruby
AI/ML
AI Agents
DevOps
Jenkins
DHCP
Wi-Fi
Management
Jira
Apply
≈ $53k – $110k per year (Estimated) • Hybrid • Full-Time • 12+ years exp • Bachelor's Degree • Pune • Bengaluru • Mumbai • Hyderabad
AI/ML
Edge AI
DevOps
AIOps
Management
Agile
Apply
≈ $18k – $40k per year (Estimated) • In office • Full-Time • 3+ years exp • Bengaluru
Apply
See all jobs
This is one of many
908,794 more open roles from verified company boards, updated every day.