Back to jobs

Regional SOC Lead

Job description

JOB DESCRIPTION

Position Title:

Regional SOC Team Lead

 

 

Reports to:

Security Operations Manager

Location:

Global

 

Summary:

Reporting to the Security Operations Manager, you will be a key leader responsible for building, managing, and scaling a team of Security Operations specialists in the region. You will provide strategic direction and operational oversight, ensuring the team consistently delivers high-standard, proactive, and reactive security operations services. Your primary focus will be on people management, process optimization, and stakeholder engagement to align security operations with broader business objectives. This is a hands-on technical role and team leadership position that requires deep technical knowledge to guide and empower your team. This role requires you to be on-call, meaning you must be available to respond to urgent issues or requests during designated periods.

 

Key Responsibilities:

Team Leadership & People Management:

Lead, mentor, and manage a team of SOC analysts at all levels, including senior analysts.

Conduct regular performance reviews, set goals, and drive career development plans for team members.

Manage team schedules, resource allocation, and ensure appropriate coverage for 24/7 security operations.

Foster a culture of continuous learning, collaboration, and high performance within the team.

Strategic & Operational Oversight:

Develop and execute the regional SOC strategy, defining key performance indicators (KPIs) and metrics to measure team effectiveness.

Serve as the primary escalation point for all high-severity security incidents and provide command and control during major incidents.

Oversee the continuous improvement of regional incident response playbooks, runbooks, and operational procedures.

Ensure the team's technical controls, processes, and response capabilities remain relevant and effective against emerging threats.

Stakeholder Management:

Act as the primary security representative for regional business units and IT leadership.

Present comprehensive reports on regional threats, attacks, incidents, and operational performance to both technical and executive-level audiences.

Collaborate with global security teams, threat intelligence, and detection engineering to align regional priorities with global initiatives.

 

What you’ll bring:

Leadership & Management Experience:

A minimum of 5 years in Security Operations, with at least 3 years in a team lead or management role responsible for direct reports.

Proven experience in managing a shift-based or 24/7 security operations team.

Demonstrable ability to hire, develop, and retain top talent in the cybersecurity field.

Deep Technical Knowledge:

This is a hands-on role, you must possess expert-level knowledge of IDS, SIEM, EDR/XDR, and other cybersecurity technologies to provide effective guidance and make informed strategic decisions.

Strong understanding of threat landscapes, TTPs, and incident response methodologies.

Communication & Business Acumen:

Exceptional verbal communication and presentation skills, with the ability to articulate complex security risks and strategies to non-technical stakeholders and senior management.

Strong organizational, documentation, and technical writing skills.

Strategic Mindset:

Ability to act as a thought leader, identifying and championing opportunities for continuous improvement and strategic growth of the security function.

Experience in developing and implementing operational strategies and roadmaps.

Nice to have:

A degree in Computer Science, Cyber Security, or a related field.

Advanced leadership or management certifications, such as CISSP or CISM.

Technical certifications such as SANS GIAC (GCIA, GCIH), demonstrating a strong technical foundation to support your leadership.