Job description
Envision Employment Solutions is currently looking for a SOC Manager for one of our partners, a leading Digital Bank!
Job Summary The SOC Manager leads the Bank's Security Operations Center (SOC), ensuring effective detection, response, containment, and recovery from cybersecurity incidents.
This role owns 24/7 security monitoring, incident response, threat analysis, and stakeholder coordination during major cyber incidents, and is central to strengthening the Bank's overall cyber resilience.
Responsibilities Lead and coordinate the end-to-end cybersecurity incident response lifecycle, including identification, containment, eradication, recovery, and post-incident review.
Oversee 24/7 security monitoring and incident handling activities, ensuring adherence to defined response procedures, escalation paths, and SLAs.
Develop, maintain, and continuously improve incident response frameworks, playbooks, processes, and readiness exercises (e.
g., tabletop exercises, simulations).
Oversee threat intelligence, threat hunting, and security investigations to proactively identify emerging threats and reduce organizational risk.
Act as the primary escalation point during major cyber incidents, coordinating with internal stakeholders, senior management, and relevant teams.
Provide timely incident reporting, root cause analysis, and remediation recommendations to leadership and regulatory bodies as required.
Manage and mentor SOC analysts, ensuring appropriate shift coverage, skill development, and operational readiness.
Ensure SOC tooling (SIEM, SOAR, EDR, threat intelligence platforms) is optimized and effectively utilized.
Ensure SOC operations align with regulatory and compliance requirements applicable to the banking sector.
Bachelor's degree in Computer Science, Information Security, or a related field.
Minimum of 7–10 years of overall cybersecurity experience, including 4–5 years specifically leading or running a Security Operations Center (SOC).
Strong knowledge of incident response frameworks (e.
g., NIST, SANS) and security operations best practices.
Hands-on experience with SIEM, SOAR, EDR, and threat intelligence platforms.
Relevant certifications preferred (e.
g., CISSP, CISM, GCIH, GCFA, or equivalent).
Experience within banking or financial services cybersecurity operations is strongly preferred.
Strong leadership skills with experience managing SOC analyst teams.
Excellent crisis management, stakeholder coordination, and reporting skills.
This job post has been translated by AI and may contain minor differences or errors.