
SOC Lead, Professional Services Delivery Engineer IV
Posted Aug 5

Posted Aug 5
This is a fully remote position, open to applicants in India.
• Oversee SOC operations within an MSSP setting utilizing Microsoft Sentinel
• Supervise incident detection, investigation, response, and escalation processes
• Engage in proactive threat hunting and detection engineering activities
• Manage and enhance Microsoft Sentinel and Elastic Security SIEM platforms
• Design and oversee Elastic Cloud Serverless SIEM deployments and integrations
• Create security use cases, dashboards, alerts, and automation workflows
• Maintain documentation for SOC, including playbooks, SOPs, and reports
• Facilitate cloud security monitoring across Azure, AWS, and GCP
• Propel AI-driven security initiatives and operational enhancements
• Assist with security audits, compliance, and governance tasks
• Mentor and lead SOC analysts and engineers
• Oversee customer interactions, service delivery, and adherence to SLAs
• Manage and resolve P1 critical incidents
• Conduct in-depth investigation and analysis of significant security incidents
• Generate post-breach forensic incident analysis reports
• Develop tailored dashboards, reporting templates, and specific use cases for clients
• Align threats with the MITRE ATT&CK framework
• Implement automation and orchestration workflows to enhance SOC productivity
• Ensure adherence to ISO 27001, SOC 2, PCI-DSS, NIST, CIS Controls, and other regulatory standards
• Proven experience leading a team of Security Operations analysts and engineers
• Background in working within an MSSP in a multi-customer context
• Familiarity with large-scale public cloud environments
• Proficient in Azure Security Centre and Microsoft Sentinel
• Experience with Qualys and Microsoft Defender for vulnerability management
• Knowledge of CrowdStrike and Microsoft Defender for Endpoint management
• Experience with GCP Security Command Center and Chronicle
• Proficient in AWS Security Hub and AWS GuardDuty
• Familiarity with the Microsoft Defender XDR suite
• Self-driven and proactive, with a keen eye for detail
• Eagerness to learn, grow, and exceed customer expectations
• Ability to convey security concepts to both technical and non-technical audiences
• Preferred: Microsoft Certified Cybersecurity Architect Expert (SC-100)
• Preferred: Microsoft Certified Security Operations Analyst (SC-200)
• Preferred: AZ-500 Azure Security Engineer certification
• Equal opportunity for employment
• Accommodation for disabilities or special needs
• Chance to work alongside talented colleagues and create a lasting impact in the IT sector
• Opportunities for career development and growth implied by 'learn and grow'
TRC Worldwide Engineering, Inc.
Versar Global Solutions
Alta Material Handling
CEQEL Critical Commissioning, LLC
Get handpicked remote jobs straight to your inbox weekly.