SOC Manager
# SOC Manager **Taalum Group** · Doha · `On-site` 🕒 **Статус:** *Опубликовано: 7 дней назад* · *Источник: Indeed* --- ### About the Role Job Summary: We are seeking an experienced SOC Manager to lead and manage the Security Operations Center (SOC), providing operational leadership for security monitoring, detection, incident response, threat analysis, vulnerability coordination, and security operations improvement. The successful candidate will have strong hands-on knowledge of enterprise cybersecurity, SIEM, EDR/XDR, network security, identity security, cloud security, threat intelligence, incident response, and security monitoring. This role will establish and maintain an effective 24x7 security operations capability, lead complex security incidents, improve detection and response processes, manage SOC analysts and security engineers, and work closely with Infrastructure, Development, IT Operations, and management to reduce cyber risk and strengthen the organization's overall security posture. Required Qualifications: · Bachelor’s degree in computer science, Information Technology, Engineering, or related field. · 8+ years of cybersecurity experience, with significant hands-on experience in SOC operations, security monitoring, incident response, or security engineering. · Demonstrated experience managing or leading a SOC team in an enterprise environment. · Strong hands-on experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, Elastic, or equivalent. · Strong experience with EDR/XDR platforms such as Microsoft Defender, CrowdStrike, SentinelOne, or equivalent. · Strong understanding of network security including firewalls, IDS/IPS, VPN, segmentation, TCP/IP, DNS, proxy technologies, and network traffic analysis. · Strong understanding of Windows and Linux security, Active Directory, Entra ID/Azure AD, authentication, privileged access, and endpoint security. · Hands-on experience with cloud security monitoring and incident response in Azure and/or Google Cloud environments. · Strong knowledge of incident response lifecycle, threat hunting, malware analysis concepts, vulnerability management, and security investigation techniques. · Experience developing and tuning SIEM correlation rules, detection use cases, dashboards, alerts, and security queries. · Experience with MITRE ATT&CK, threat intelligence, IOC analysis, and security incident classification. · Working knowledge of scripting and automation using PowerShell, Python, Bash, or equivalent. · Strong understanding of cybersecurity frameworks and controls including ISO 27001, NIST CSF, CIS Controls, and related security practices. Preferred Certifications: · CISSP – Certified Information Systems Security Professional. · GIAC certifications such as GCIH, GCIA, or GCFA are an advantage. · Certified SOC Analyst (CSA), Security+, CySA+, or equivalent. · Microsoft Certified: Security Operations Analyst Associate (SC-200) is an advantage. · Microsoft Certified: Cybersecurity Architect Expert or equivalent is an advantage. Work Location: In person
Наблюдалась 2026-10-07, впервые 2026-09-29, источник — Indeed.