The SOC Supervisor provides strategic and operational leadership to the Security Operations Center, directing a multidisciplinary team of analysts to deliver continuous threat monitoring, incident response and cyber‑defense services. The role aligns SOC capabilities with organizational objectives and recognized frameworks (ITIL, NIST CSF, MITRE ATT&CK), safeguards system availability and performance, and ensures service‑level and customer‑satisfaction targets are consistently achieved. Responsibilities include cultivating a high‑performance culture, standardizing and automating processes, optimizing tooling and runbooks, and serving as the principal liaison with clients and internal stakeholders to communicate risk posture, performance metrics and improvement initiatives.
- Oversee continuous tracking of security events and alerts using SIEM tools.
- Analyze and correlate security data to identify potential threats and vulnerabilities.
- Ensure timely and accurate detection of security incidents to maintain high system availability and security posture.
- Lead the SOC team in responding to security incidents, ensuring effective containment, eradication, and recovery.
- Act as Incident Manager for major incident outages, coordinating cross-functional responses.
- Work closely with and in support of the IT Operations Center, Service Desk, Engineering team and vendors to expedite issue resolution.
- Develop and implement incident response plans, playbooks, and standard operating procedures (SOPs).
- Coordinate with external partners, law enforcement, and other stakeholders during major security incidents.
- Perform analysis and reporting of different metrics related to team performance and incident handling.
- Prepare comprehensive reports, metrics, and presentations for senior management and stakeholders.
- Identify opportunities for automation and process improvement to enhance the SOC’s operational efficiency.
- Support the overall management and process improvements for SOC in accordance with company goals.
- Implement and manage automated workflows, scripts, and tools to streamline security operations and incident response.
- Maintain detailed and accurate documentation of security incidents, response actions, and lessons learned.
- Contribute to the development and enhancement of Standard Operational Procedure (SOP) documentation and security policies.
- Contribute to the hiring, mentoring, performance management and retention of staff.
- Follow up team members yearly goals.
- Conducts monthly, midyear and annual reviews.
- Receives services for onboard clients and ensures the team can deliver the support.
- Serve as backup for Security Operation Center analysts as needed.