About the job
As the SOC Supervisor, you will take charge of the Security Operations Center (SOC), emphasizing expertise in LogRhythm SIEM (preferred) or similar SIEM technologies. Your leadership will ensure continuous 24/7 monitoring, detection, analysis, and response to security threats. You will manage personnel, processes, and technology to deliver exceptional service while aligning with security best practices and business objectives.
Key Responsibilities:
- Provide strategic leadership and operational oversight for the SOC, ensuring proficient delivery of security monitoring and incident response services utilizing LogRhythm SIEM.
- Establish, implement, and continually refine SOC policies, procedures, playbooks, and operational standards to align with industry best practices.
- Guarantee 24/7 security monitoring, timely detection, investigation, and response to security incidents across both customer and internal environments.
- Act as the primary escalation point for high-severity and complex security incidents, ensuring effective coordination, communication, and resolution.
- Oversee the architecture, administration, tuning, upgrades, and overall performance of the LogRhythm SIEM platform.
- Lead the development of SIEM use cases, optimize correlation rules, and continuously reduce false positives to enhance detection capabilities.
- Manage log source onboarding, data quality, retention, and ensure compliance with contractual and regulatory requirements.
- Direct and manage the complete incident response lifecycle, including root cause analysis, lessons learned, and post-incident reporting.
- Mentor and develop SOC personnel (L1/L2/L3), including performance management, training plans, and succession planning.
- Ensure effective shift scheduling, resource planning, and workload distribution to maintain service continuity.
- Monitor compliance with SLAs, KPIs, internal controls, and customer contractual obligations.
- Prepare and present operational, technical, and executive-level reports on SOC performance, incidents, and risk trends.
- Serve as a trusted security advisor to customers and internal stakeholders, providing insights on the threat landscape and risk posture.
