SOC Manager
On-siteQuezon City, Metro Manila, Philippines
Job Summary
Lead and manage Security Operations Center functions, including security monitoring, alert triage, incident investigation, response activities, and operational readiness. Provide direct supervision, performance management, coaching, and career development for SOC personnel while overseeing detection and response capabilities utilizing modern security platforms. Serve as the primary escalation point for high-severity incidents, ensuring timely containment, eradication, recovery, and communication. Develop and maintain SOC operational procedures, standards, runbooks, and security monitoring requirements. Provide regular operational and executive-level reporting on security incidents, threat trends, SOC performance, and program maturity. Lead post-incident reviews, root cause analysis, and lessons learned to continuously improve detection and response capabilities. Lead and participate in detection engineering efforts to improve alert fidelity, reduce false positives, and expand coverage across the threat landscape. Expand and oversee SOC automation initiatives, including SOAR workflows and security playbooks, to improve MTTD and MTTR while reducing manual effort. Partner with threat intelligence and vulnerability management teams to enhance detection content, improve threat visibility, and strengthen detection capabilities. Manage staffing, workload distribution, shift coverage, and on-call rotations to maintain operational effectiveness.
Required Qualifications
- Bachelor's degree in Cybersecurity, Computer Science, or a related field (or equivalent experience)
- 7+ years of cybersecurity experience, including 3+ years of management or leadership responsibility within a SOC, Incident Response, or Security Operations environment
- Demonstrated experience leading cybersecurity operations teams and managing personnel, performance, and operational outcomes
- Strong experience overseeing incident response, security monitoring, threat detection, and defensive cybersecurity programs
Desired Qualifications
- Experience in managing vendors, service providers, budgets, and strategic cybersecurity initiatives preferred
- Industry certifications such as CISSP, CISM, GCIA, GCIH, CySA+, Security+, or equivalent certifications preferred
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.