





Tier-1 brand plus multiple metro locations increases applicant competition, though role specialization limits total applicants.
Deep SOC, SIEM and threat-hunting specialization makes cross-industry transferability low.
Requires SOC leadership, SIEM (Sentinel/Elastic), cloud security and MSSP experience, raising shortlisting strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead and manage Security Operations Centre (SOC) activities within a Managed Security Service Provider (MSSP) environment.
Oversee incident detection, investigation, response, escalation, threat hunting, and Microsoft Sentinel and Elastic SIEM administration.
Drive cloud security monitoring across Azure, AWS, and GCP; lead AI-enabled security automation initiatives; ensure compliance and governance; manage customer engagements and SLA compliance.
Experience leading a team of Security Operations analysts and engineers in an MSSP multi-customer environment.
Hands-on expertise with Microsoft Sentinel, Elastic Security SIEM, and cloud-native security tools (Azure Security Centre, AWS Security Hub, GCP Security Command Centre).
Knowledge of compliance frameworks like ISO 27001, SOC 2, PCI-DSS, NIST, CIS Controls.
Work Experience Required: Not explicitly mentioned in the JD.
Experienced in managing large-scale public cloud security monitoring environments (Azure, AWS, GCP) employing multiple cloud-native tools and SIEM platforms.
Skilled in developing detection engineering use cases mapped to frameworks like MITRE ATT&CK and implementing AI-driven SOC automation workflows.
Able to lead critical incident handling, complex forensic investigations, and drive operational improvements within a multi-disciplinary SOC team.