At least 5-8+ years of progressive experience in cybersecurity, with at least 2-3 years in a leadership/management role within a Security Operations Center (SOC) or incident response team.
Proven experience leading and mentoring security professionals.
Demonstrated success in managing major security incidents from detection to resolution.
Experience with SIEMIDR platforms and security automation.
Experience in developing and implementing security policies, procedures, and playbooks.
Job Brief
Manage the overall development, communication and implementation of strategies and programs of Cyber Security Incident Response, Incident Investigation, and Threat Intelligence and Hunting teams.
Responsible for ensuring that the team effectively monitors, analyzes, and responds to security alerts, providing an essential layer of defense for the organization.
Will work closely with all stakeholders to ensure seamless security operations and effective incident management.
Key Responsibilities
Incident Response: Oversee investigations and emergency response planning.
Team Management: Recruit, train, and supervise security personnel.
Technology Oversight: Manage surveillance systems, access controls, and cybersecurity tools.
Technical Skills
Leadership and Team Management: Strong leadership skills with experience managing and mentoring a team of cybersecurity professionals.
Ability to motivate and guide team members, ensuring that they perform effectively under pressure.
Technical Expertise: In-depth knowledge of cybersecurity monitoring, alerting, and incident response processes. Familiarity with SOC/SIEM technologies and an understanding of how to leverage these tools effectively.
Communication and Collaboration: Excellent communication skills, with the ability to engage and collaborate with both internal teams and external service providers. Ability to articulate complex technical concepts to non-technical stakeholders and senior management.
Problem-Solving and Decision-Making: Strong problem-solving abilities, particularly in the context of monitoring and incident response. Ability to make critical decisions quickly and effectively in high-pressure situations.
Continuous Improvement: Commitment to staying updated on the latest developments in cybersecurity monitoring and incident response.
Ability to drive continuous improvement initiatives within the monitoring and alerting function