← Back to job listings
MS
SOC Manager
Managed Services · Riyadh, Riyadh Province, Saudi Arabia
About The Role
Managed.sa is seeking an experienced SOC Manager to lead Security Operations Center activities, strengthen threat detection and incident-response capabilities, and ensure the effective delivery of SOC services.
The ideal candidate combines hands-on cybersecurity expertise with strong leadership, stakeholder management, and operational reporting skills.
Key Responsibilities
- Lead daily SOC operations, including security monitoring, alert triage, investigation, escalation, and incident response.
- Manage, coach, and support SOC analysts while ensuring compliance with defined procedures and service levels.
- Lead the investigation and response to major security incidents.
- Work with SIEM platforms such as Splunk, QRadar, or Elastic.
- Develop and improve detection rules, use cases, playbooks, and escalation procedures.
- Conduct root-cause analysis and post-incident reviews.
- Support digital forensics and evidence-handling activities.
- Monitor emerging cyber threats, attack vectors, and adversary techniques.
- Track SOC performance through SLAs, KPIs, and operational metrics.
- Prepare incident, operational, and management reports.
- Coordinate with clients and internal technical teams during security incidents.
- Identify team development and training needs.
- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or a related field.
- 5–7 years of cybersecurity experience, with strong exposure to SOC operations and incident response.
- Previous experience leading SOC activities, security operations, or technical teams.
- Hands-on experience with Splunk, QRadar, Elastic, or similar SIEM platforms.
- Strong knowledge of cyber threats, attack vectors, detection techniques, and defense strategies.
- Strong understanding of incident response and digital forensics.
- Familiarity with MITRE ATT&CK, threat intelligence, endpoint security, and network-security monitoring.
- Strong leadership, analytical, communication, and stakeholder-management skills.
- Ability to work full-time on-site in Riyadh.
Preferred Certifications
Relevant certifications such as
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Intrusion Analyst (GCIA)
- Certified Information Systems Security Professional (CISSP)
- Certified Ethical Hacker (CEH)
- Equivalent cybersecurity certifications
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring