×
Register Here to Apply for Jobs or Post Jobs. X

SOC Manager

Job in San Francisco, San Francisco County, California, 94199, USA
Listing for: TEKsystems
Full Time position
Listed on 2026-09-03
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 96000 - 103000 USD Yearly USD 96000.00 103000.00 YEAR
Job Description & How to Apply Below

Job Description

As the Manager, Cyber Threat Intelligence & Security Operations, you will lead a team of approximately 12 cybersecurity professionals across Threat Intelligence, Detection Engineering, Security Operations, and Incident Response. This is a hands‑on technical management position responsible for the operational effectiveness of the Security Operations Center while driving the organization's threat intelligence program and continuously improving detection capabilities. You will work closely with Security Engineering, Identity & Access Management, Cloud Security, Enterprise Architecture, Legal, Privacy, Fraud Prevention, and Information Technology teams to ensure cyber threats are rapidly identified, investigated, and mitigated.

Responsibilities
  • Lead, mentor, and develop a multidisciplinary team consisting of:
    • Cyber Threat Intelligence Analysts
    • Detection Engineers
    • SOC Analysts
    • Incident Responders
  • Foster a collaborative, high-performing culture focused on operational excellence and continuous learning
  • Provide technical coaching, career development, and mentorship across the organization
  • Establish operational priorities and coordinate security response activities across multiple teams
  • Serve as the escalation point during significant security incidents
  • Lead day‑to‑day Security Operations Center activities including monitoring, investigation, containment, eradication, and recovery efforts
  • Direct major cyber incident response activities from identification through post‑incident review
  • Ensure operational readiness for security events across cloud, on‑premises, endpoint, identity, and application environments
  • Drive continuous improvement of operational procedures, investigation methodologies, and response playbooks
  • Partner with Security Engineering to improve operational supportability of security platforms
  • Lead the enterprise Cyber Threat Intelligence program
  • Oversee intelligence collection, analysis, enrichment, and dissemination
  • Monitor emerging threat actors, campaigns, vulnerabilities, and industry trends
  • Translate external intelligence into actionable defensive capabilities
  • Manage Indicators of Compromise (IOCs), adversary tracking, and threat intelligence repositories
  • Produce executive and technical threat intelligence briefings
  • Partner with Fraud, Legal, Privacy, and business leadership regarding emerging cyber risks
  • Lead development and continuous improvement of enterprise detection capabilities
  • Oversee SIEM content development and detection engineering
  • Drive detection use‑case development and continuous tuning
  • Improve alert fidelity while reducing false positives
  • Lead proactive threat hunting initiatives
  • Develop new analytics based on adversary tactics, techniques, and procedures (TTPs)
  • Ensure security content aligns with the MITRE ATT&CK framework and current threat landscape
  • Provide technical leadership for security operations technologies including:
    • Google Sec Ops
    • Crowd Strike Falcon
    • Cortex XSOAR
    • MISP Threat Intelligence Platform
    • Tanium
  • Collaborate with Security Engineering regarding architecture, upgrades, integrations, and operational improvements across the enterprise security technology stack
  • Lead enterprise cyber incident response activities
  • Coordinate investigations involving malware, ransomware, insider threats, account compromise, phishing, and advanced attacks
  • Direct technical response teams during high‑severity incidents
  • Conduct post‑incident reviews and identify opportunities to strengthen defenses
  • Develop and maintain incident response procedures, playbooks, and operational readiness
  • Support regulatory investigations, internal audits, and security assessments
  • Prepare executive summaries and threat reports for security leadership
  • Partner closely with:
    • Security Engineering
    • Identity & Access Management
    • Enterprise Security Architecture
    • Legal
    • Privacy
    • Fraud Prevention
    • Information Technology
  • Contribute to long‑term cyber defense strategy and operational planning
Basic Qualifications
  • 7-10 years of experience in Cyber Security with expertise in Security Operations, Threat Intelligence, Detection Engineering, and Incident Response
  • Previous experience leading technical cybersecurity teams
  • Proven experience managing enterprise…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary