Cyber Security Architect
Wipro
Bengaluru, Karnataka, India
Job Description Position: SOC Lead (Security Operations Center Lead) Job Summary: The SOC Lead is a seasoned cybersecurity professional responsible for overseeing the daily operations of the Security Operations Center. This role involves managing a team of analysts, coordinating incident response efforts, ensuring the effectiveness of security tools and processes, and providing strategic guidance to enhance the organization's overall security posture. The SOC Lead collaborates with various stakeholders to develop and execute strategies that protect the organization's critical assets from cyber threats. Responsibilities: Lead and manage a team of SOC analysts, including hiring, training, performance evaluation, and career development. Oversee the day-to-day activities of the SOC, including incident monitoring, analysis, and response. Coordinate and drive incident response efforts for complex and high-impact security incidents. Develop and maintain SOC policies, procedures, and playbooks to ensure consistent and effective incident response. Must be able to manage the shifts/On-Call assignments for the management of the operations. Must be able to run and execute cyber Crisis simulation and table-top exercises for training of the team. Logically designing SOAR playbooks and helping the team manage the automation for Incident monitoring and response. Collaborate with IT, Legal, Compliance, and other departments to ensure alignment with security goals and regulatory requirements. Assess the effectiveness of security tools and technologies and recommend improvements or upgrades as needed. Provide strategic guidance and recommendations to senior management regarding security enhancements, threat landscape, and risk mitigation strategies. Stay up to date with emerging cybersecurity trends, threat intelligence, and best practices. Prepare and present regular reports on SOC activities, incident trends, and key performance indicators. Contribute to the development and maintenance of the organization's incident response and business continuity plans. Collaborate with internal teams and provide evidence for external/internal audits for risk governance and management. Qualifications: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience). Extensive experience working in a Security Operations Center environment, with progressively increasing responsibilities. Strong leadership and management skills, with a proven track record of leading and motivating teams. In-depth knowledge of cybersecurity technologies, tools, and best practices. Experience with incident response methodologies, crisis management, and handling high-stress situations. Excellent communication and interpersonal skills, with the ability to interact effectively with technical and non-technical stakeholders. Must have a hands-on experience of at least 4 years on EDR, NDR, SOAR, CSPM, CASB, IDS/IPS, and SIEM platforms. Relevant industry certifications such as SANS, CISSP, CISM, CISA, or equivalent are highly desirable. Ability to think strategically, analyze complex situations, and make informed decisions. Experience working with audit and regulatory compliance frameworks (e.g., GDPR, HIPAA, PCI DSS) is a plus. Demonstrated ability to drive process improvements and adapt to changing threat landscapes.