Security Operations Center (SOC) Team Lead III

30 Jun 2024

Vacancy expired!

We are seeking a SOC Team Lead to join a remote team for our client, who is in the Life Insurance industry. Reporting to the Cyber Operations Manager this role is responsible for leading the day-to-day operations of the client's Security Monitoring Service. In this role you'll guide a small team of security staff in running an effective security operations center (SOC). Your background will help us ensure we have a high probability of detecting and responding to the organizations most significant threats. As a Service Lead you will regularly meet with leadership and stakeholders to present, discuss, and plan service capabilities and status. Having previous experience either running a SOC or serving in a senior SOC role, you'll understand how to build a program that is effective and efficient and doesn't get stuck drowning in false positives. Job description:
  • Lead the daily operations of our Security Monitoring team in detecting, analyzing, and responding to organizational security events.
  • Drive implementation and maturity of SOC capabilities.
  • Ensure quality service delivery to internal customers across current and future capabilities including SIEM, Triage/Investigate/Response, Phishing Email Analysis and Response, Threat Detection Development, Cyber Threat Intelligence, Adversary Hunt, and Insider Threat Detection & Response.
  • Manage relationships with service vendors including our external Managed Security Systems Provider (MSSP).
  • Implement service metrics (SLAs/KRIs/KPIs) and provide customer outreach to inform customers of service capability, effectiveness, and maturity.
  • Represent the service across the organization, partnering with our business units to understand their needs and how Security Monitoring can best serve them.
  • Define, maintain, and socialize a Security Monitoring strategy/roadmap, Service Catalog, and related policies, standards, procedures, and controls.
  • Provide guidance and mentorship to other SOC staff.

Experience
  • 8+ years of experience in Information Security.
  • 2+ years of experience working in in a Security Operations Center. 1+ year serving in a senior role.
  • Experience managing or leading SOC operations within an enterprise environment.
  • Understanding of current attack tools, tactics, procedures, and how to detect and/or mitigate them.
  • Experience with security operations technologies including SIEM, EDR, Cyber Threat Intelligence, Adversary Hunting, and Security Orchestration (SOAR).
  • Experience implementing SOC technologies and capabilities such as UBA, XDR, Adversary Simulation, Attack Ranges, Risk Based Alerting, etc.
  • Experience with Splunk Enterprise Security, CrowdStrike, or Palo Alto XSOAR.
  • Experience extending SOC capabilities into IaaS/Cloud environments (AWS, Azure).
  • Demonstrable experience with leading a team
  • Experience with IT Service Management. Especially around the delivery of security services.

We are an equal opportunity employer and make hiring decisions based on merit. Recruitment, hiring, training, and job assignments are made without regard to race, color, national origin, age, ancestry, religion, sex, sexual orientation, gender identity, gender expression, marital status, disability, or any other protected classification. We consider all qualified applicants, including those with criminal histories, in a manner consistent with state and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance.

  • ID: #43710269
  • State: California Newportbeach 92603 Newportbeach USA
  • City: Newportbeach
  • Salary: Competitive
  • Job type: Contract
  • Showed: 2022-06-30
  • Deadline: 2022-08-28
  • Category: Et cetera