The SOC Supervisor leads and manages the Security Operations Center (SOC), ensuring 24x7 monitoring, detection, analysis, and response to security threats, while overseeing people, processes, and technology to deliver high-quality service and maintain alignment with security best practices and business objectives.
Requirements
- Provide strategic leadership and operational oversight for the Security Operations Center (SOC), ensuring effective delivery of security monitoring and incident response services using LogRhythm SIEM.
- Establish, enforce, and continuously improve SOC policies, procedures, playbooks, and operational standards in alignment with industry best practices.
- Lead SIEM use-case development, correlation rule optimization, and continuous reduction of false positives to enhance detection effectiveness.
- Manage log source onboarding, data quality, retention, and compliance with contractual and regulatory requirements.
- Direct and manage the full incident response lifecycle, including root cause analysis, lessons learned, and post‐incident reporting.
- Lead, mentor, and develop SOC personnel (L1/L2/L3), including performance management, training plans, and succession planning.
- Monitor and ensure compliance with SLAs, KPIs, internal controls, and customer contractual obligations.
- Prepare and deliver operational, technical, and executive‐level reports on SOC performance, incidents, and risk trends.