19 Nov
Information Security Operations Center (SOC) Service Lead
Michigan, Kalamazoo , 49001 Kalamazoo USA

Vacancy expired!

Information Security Operations Center (SOC) Service Lead

Work Location: Malvern PA, Parsippany NJ, or Kalamazoo MI

Summary:Our client is looking for a highly motivated individual to lead the Information Security Operations Center (SOC), a team responsible for the 24/7 monitoring, response and protection of information assets and data. You will be accountable for the overall effectiveness of the team including both internal and external resources leading by example and emphasizing overall strategy. You will serve as the primary incident response lead accountable for coordinating efforts in response to active threats and communication to executive stakeholders. Top candidates have deep understanding of threats and exploits, a strong understanding of systems and network forensics, a can-do attitude, proven leadership skills, ability to work under pressure and to make timely decisions.

Responsibilities:
  • Manage daily operations and effectiveness of the Security Operation Center (SOC)
  • Manage relationships with vendors including a Managed Security Service Provider (MSSP)
  • Drive standardization with an emphasis of automation of repeatable processes
  • Establish protocols, processes and standard operating procedures
  • Responsible for the development, monitoring and measure of Key Performance Indicators (KPI’s) used to determine overall SOC effectiveness and opportunities for improvement
  • Lead Incident Response efforts coordinating response activities across teams while communicating updates to executive management
  • Support strategic plans and projects driving and supporting overall Information Security goals and objectives
  • Oversee the technical delivery, operation and maintenance of the Security Infrastructure
  • Manage, monitor and enhance security infrastructure, tools, tactics and techniques
  • Develop a staff of varying skill levels
  • Work with internal stakeholders and partners to define business needs

Education:
  • Bachelor’s degree in Computer Science, Information Systems, Business Administration, or science related field is required; Master’s degree is preferred
  • Must possess one of the following certifications: CISSP, GCIH, GCIA, GREM, GCFA or equivalent

Experience:
  • 10+ years of hands on experience analyzing and responding to Information Security threats
  • 3+ years of management experience leading a technical operations team
  • Proficient in Security Technologies: SIEM (Splunk), SOAR (Phantom), Endpoint Detection and Response (EDR), Network and Email protections
  • In-depth knowledge of common attack vectors, common exploits and countermeasures
  • Development experience with SIEM/SOAR technologies
  • Strong understanding of system and network forensics
  • Familiar and experienced with MITRE ATT&CK Framework
  • Experience working in Pharmaceutical or other regulated industry
  • Strong process-oriented view
  • Expertise in platform security, administration and management, such as Microsoft Windows Server administration and/or Linux/UNIX system administration.
  • Experience with large scale IT projects and how various roles/teams work together to ensure success
  • Experience with systems architecture and data integration
  • Experience managing global partners and vendors
  • Experience working with creative and technical project teams with a natural curiosity and a drive for innovation

Knowledge, Skills, Abilities:
  • Highly developed communication and interpersonal skills with the ability to influence through personal credibility, integrity and professionalism
  • Excellent written and verbal communication skills
  • Relentless dedication to customer satisfaction/excellence
  • Strategic thinking and analytical skills
  • Ability to multitask and work in fast paced environment
  • Ability to foster collaborative decision making
  • Capable of working both independently and as a team member
  • Fluency in English (written and spoken) is a must

Vacancy expired!


Related jobs

Report job