Full-Time SOC Manager
Endava is hiring a remote Full-Time SOC Manager. The career level for this job opening is Manager and is accepting Warsaw, Poland based applicants remotely. Read complete job description before applying.
Endava
Job Title
Posted
Career Level
Career Level
Locations Accepted
Share
Job Details
We are seeking a Security Operations Manager to lead and enhance our global Security Operations Center (SOC) across multiple regions.
This role is responsible for strategic leadership, operational oversight, and continuous improvement of security monitoring, incident response, and threat detection capabilities.
The ideal candidate has strong leadership skills, a deep understanding of SOC operations, and experience in managing global security teams to ensure a proactive and effective security posture.
Responsibilities:
- Lead and manage the global Security Operations Center (SOC), ensuring 24/7 security monitoring, incident response, and threat management.
- Develop and execute SOC strategies to enhance security operations, automation, and efficiency.
- Oversee SOC processes, staffing, and operational workflows to align with business and security objectives.
- Drive continuous improvement in SOC capabilities, ensuring adherence to industry best practices and frameworks (NIST, MITRE ATT&CK, ISO 27001, SOC2, etc.).
- Establish and refine KPIs, metrics, and reporting to measure SOC performance and risk reduction.
- Lead the incident response function, ensuring rapid detection, containment, and remediation of security incidents.
- Oversee threat intelligence integration and proactive threat hunting efforts to identify and mitigate risks before exploitation.
- Collaborate with cross-functional teams to improve security response capabilities and drive automation using SOAR platforms.
- Act as the primary escalation point for major security incidents, coordinating response and communication across global teams.
- Build and mentor a high-performing global SOC team, fostering a culture of continuous learning and collaboration.
- Define and implement SOC training programs, including tabletop exercises and attack simulation drills.
- Ensure SOC analysts, engineers, and threat hunters are aligned with emerging threats and evolving security landscapes.
- Oversee the implementation and optimization of security technologies, including SIEM, SOAR, EDR, IDS/IPS, and cloud security tools.
- Drive SOC automation and orchestration to improve response times and operational efficiency.
- Collaborate with IT, DevOps, and Security Engineering teams to integrate security best practices into broader business processes.
Required Qualifications & Experience:
- 5+ years of experience in security operations, SOC management, or cybersecurity leadership roles.
- Proven experience leading global security operations teams in an enterprise environment.
- Strong understanding of SOC tools and technologies
- Experience with security frameworks such as MITRE ATT&CK, NIST, ISO 27001, SOC2, and CIS Controls.
- Expertise in incident response, threat intelligence, and security automation.
- Strong leadership, stakeholder management, and communication skills.
- Familiarity with cloud security best practices (AWS, Azure, Google Cloud).
- Ability to work in a fast-paced, high-pressure environment and handle security incidents efficiently.
Preferred Qualifications:
- Security certifications such as CISM, CISSP, GCIA, GCIH, CSOM or SOC-related credentials.
- Experience in security automation and orchestration (SOAR) to improve SOC efficiency.
- Experience working with regulatory compliance (SOC2, ISO27001, GDPR, NIST 800-53, etc.).