JOB DESCRIPTION
The Team Leader, Security Operations Center (SOC) oversees daily SOC operations, ensuring efficient security monitoring, incident response, and threat detection. This role provides hands-on leadership, mentoring SOC Analysts across shifts while fostering team collaboration and continuous improvement.
Key responsibilities include refining processes, developing playbooks, and ensuring seamless communication with Canadian clients and internal teams. The Team Leader also drives employee engagement, feedback collection, and team unity to enhance job satisfaction. Operating in shift rotations, this role ensures 24×7 leadership and operational excellence in Managed Security Services (MSS).
WHAT YOU DO:
• Lead daily SOC operations, providing hands-on leadership, guidance, and mentorship to SOC Analysts
across different shifts.
• Actively foster a culture of collaboration, open communication, and employee engagement, ensuring all SOC Analysts feel heard and valued.
• Continuously collect feedback from team members to drive improvements in operational efficiency,
process refinement, and overall job satisfaction.
• Promote team unity by encouraging knowledge sharing, cross-functional collaboration, and peer-to-peer mentorship.
• Monitor security alerts, oversee incident response activities, and ensure the efficient execution of security investigations.
• Conduct quality assurance reviews of SOC operations, analyzing key metrics to identify areas for
improvement.
• Provide technical and strategic support in detecting, analyzing, and mitigating security incidents, ensuring swift and effective resolution.
• Maintain up-to-date knowledge of attacker tools, tactics, and procedures (TTPs), leveraging intelligence sources to enhance threat detection capabilities.
• Act as a primary point of contact for internal teams and stakeholders, effectively communicating security risks, incidents, and recommended actions to both technical and non-technical audiences.
• Enhance SOC operational processes, develop playbooks, and refine incident response procedures to
improve efficiency and effectiveness.
• Develop and enforce SOC policies, ensuring consistent and effective security monitoring and incident
management practices.
• Conduct regular training sessions and simulated attack drills to keep the SOC team prepared for evolving threats.
• Collaborate with IT, network operations, and threat intelligence teams to strengthen the organization’s
cybersecurity posture.
• Provide regular reports and insights to senior management on SOC activities, threat trends, and incident response outcomes.
• Work in a shift rotation to provide continuous leadership and management of SOC Analysts across
different time zones.
WHAT YOU BRING:
• 5+ years of cybersecurity experience, with a strong background in security operations, incident response, and threat detection.
• Proven leadership or team management experience within a SOC or MSSP environment.
• Excellent English communication skills (written and verbal) to interact effectively with Canadian clients and internal teams.
• A degree in Information Technology, Computer Science, Cybersecurity, or equivalent experience.
• Hands-on experience working in an MSSP SOC environment, with expertise in SIEM platforms (especially Microsoft Sentinel), EDR solutions, and threat intelligence tools.
• Strong understanding of adversary tactics and techniques (TTPs), including obfuscation, persistence, and evasion, with experience leveraging MITRE ATT&CK.
• Proficiency in security monitoring tools, log analysis, and incident response methodologies.
• Strong leadership skills with the ability to mentor, develop, and guide a team of analysts.
• Ability to work under pressure, make quick decisions, and efficiently manage security incidents.
• Deep understanding of endpoint and network security, including IDS, IPS, EDR, and malware defenses.
• Industry-recognized cybersecurity certifications such as CEH, SC-200, SC-900, AZ-500, GCIH, or similar are a plus.
WHAT YOU DEMONSTRATE:
• Strong leadership skills, fostering a culture of collaboration, engagement, and continuous learning.
• Commitment to employee satisfaction, ensuring the team is engaged, motivated, and aligned with
organizational goals.
• Active collection of employee feedback, ensuring continuous improvement in processes, job satisfaction, and operational excellence.
• Proficiency in analyzing and troubleshooting security incidents, ensuring timely and effective resolution.
• A professional and empathetic approach, allowing for effective collaboration across diverse teams.
• A problem-solving mindset, capable of assessing challenges and suggesting innovative solutions.
• Strong communication skills, ensuring technical security concepts are conveyed effectively to both
technical and non-technical stakeholders.
• A forward-thinking approach to cybersecurity, continuously improving SOC strategies to stay ahead of
evolving threats.
• A passion for security trends, continuous learning, and exploring new technologies to strengthen SOC
capabilities.
AS PART OF THE TEAM:
• Are looking for a motivated and experienced SOC Team Lead to support our Managed Threat and
Response (MDR) customers.
• Expect the successful candidate to manage active cybersecurity incidents, while providing hands-on
technical leadership and support.
• Leverage cutting-edge technologies and proactive security strategies to stay ahead of cyber threats.
• Foster a culture of teamwork, collaboration, and knowledge sharing to enhance SOC performance and
employee engagement.
• Value innovation, adaptability, and continuous improvement, ensuring we remain ahead in the ever
evolving cybersecurity landscape.
• Prioritize diversity, inclusion, and a supportive work environment, where every team member feels heard,valued, and empowered to succeed.
More Information
- Salary Offers tbd
- Experience Level Manager