Envision Employment Solutions
is currently looking for a
SOC Manager
for one of our partners, a leading Digital Bank!
Job Summary
The
SOC Manager
leads the Bank's Security Operations Center (SOC), ensuring effective detection, response, containment, and recovery from cybersecurity incidents. This role owns 24/7 security monitoring, incident response, threat analysis, and stakeholder coordination during major cyber incidents, and is central to strengthening the Bank's overall cyber resilience.
Responsibilities
-
Lead and coordinate the end-to-end cybersecurity incident response lifecycle, including identification, containment, eradication, recovery, and post-incident review.
-
Oversee 24/7 security monitoring and incident handling activities, ensuring adherence to defined response procedures, escalation paths, and SLAs.
-
Develop, maintain, and continuously improve incident response frameworks, playbooks, processes, and readiness exercises (e.g., tabletop exercises, simulations).
-
Oversee threat intelligence, threat hunting, and security investigations to proactively identify emerging threats and reduce organizational risk.
-
Act as the primary escalation point during major cyber incidents, coordinating with internal stakeholders, senior management, and relevant teams.
-
Provide timely incident reporting, root cause analysis, and remediation recommendations to leadership and regulatory bodies as required.
-
Manage and mentor SOC analysts, ensuring appropriate shift coverage, skill development, and operational readiness.
-
Ensure SOC tooling (SIEM, SOAR, EDR, threat intelligence platforms) is optimized and effectively utilized.
-
Ensure SOC operations align with regulatory and compliance requirements applicable to the banking sector.
Requirements
-
Bachelor's degree in Computer Science, Information Security, or a related field.
-
Minimum of 7–10 years of overall cybersecurity experience, including 4–5 years specifically leading or running a Security Operations Center (SOC).
-
Strong knowledge of incident response frameworks (e.g., NIST, SANS) and security operations best practices.
-
Hands-on experience with SIEM, SOAR, EDR, and threat intelligence platforms.
-
Relevant certifications preferred (e.g., CISSP, CISM, GCIH, GCFA, or equivalent).
-
Experience within banking or financial services cybersecurity operations is strongly preferred.
-
Strong leadership skills with experience managing SOC analyst teams.
-
Excellent crisis management, stakeholder coordination, and reporting skills.