Remote job
SOC Manager
Job details
About this role
Role overview A Security Operations Center (SOC) Manager leads the team responsible for monitoring, investigating, and responding to cybersecurity incidents within a managed services environment. The position blends hands-on technical oversight with people leadership, ensuring that detection, triage, and remediation processes run smoothly across client environments.
Responsibilities - Coordinate and supervise a team of security analysts handling monitoring, detection, and incident response activities - Oversee triage and investigation of security alerts, ensuring threats are contained, escalated, and documented appropriately - Develop, maintain, and refine SOC playbooks, standard operating procedures, and escalation paths - Track and report on key security metrics, incident trends, and overall team performance for internal and client stakeholders - Partner with engineering, infrastructure, and service delivery teams to strengthen detection coverage and remediation workflows - Support ongoing improvements to tooling, automation, and process maturity across the SOC
Requirements - Demonstrated experience leading or managing a security operations, incident response, or cyber defense team - Strong working knowledge of SIEM platforms, threat detection techniques, and incident response methodologies - Familiarity with common attack vectors, malware behavior, network and host forensics, and vulnerability management concepts - Solid communication and coordination skills when working with both technical staff and non-technical stakeholders - Relevant certifications such as CISSP, CISM, or GIAC are commonly expected
Benefits and work setup - Remote working arrangement available within Romania - Operates within a managed services IT context, supporting multiple client environments