Deputy Security Operations Center Manager
Core
Lead day-to-day operations of the Security Operations Center (SOC), ensuring consistent monitoring, detection, and response to security incidents across the environment.
Role type
Senior IC security operations manager
Builds
SOC operational stability, incident response capabilities, and detection coverage
Domain
Cybersecurity / Security Operations
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
SOC operations leadership, incident response, SIEM platforms, EDR tools, SOAR workflow automation, detection use case development, SOC metrics and KPI reporting, vendor management
Preferred skills
CISSP/CISM/GIAC certifications, Splunk/Elastic/QRadar, cloud-native security (AWS/Azure/GCP), healthcare compliance (HIPAA), Python/PowerShell scripting, threat hunting, MITRE ATT&CK framework
Technologies
SIEM, EDR, SOAR, Splunk, Elastic, QRadar, AWS, Azure, GCP, Python, PowerShell
Responsibilities
Lead day-to-day SOC operations and manage 24/7 staffing/scheduling; supervise and mentor SOC analysts and shift leads; coordinate incident response and drive root cause analysis; tune core SOC tooling to improve detection and reduce false positives; define and report SOC performance metrics to leadership; partner with threat intelligence and engineering teams to harden systems; manage vendor relationships and third-party monitoring services
Seniority
Senior, hands-on IC with leadership responsibilities