Director overseeing integrated security operations, focusing on SOC management and cyber defense strategies for a fintech company in Canada.
Responsibilities
Lead the integration and ongoing management of multiple SOCs, ensuring unified processes, toolsets, and response protocols.
Direct operations for cyber security detection tools and technologies, aligning deployment and monitoring with enterprise risk appetite.
Manage talent acquisition, development, and retention to support the evolving needs of the integrated SOC environment.
Ensure effective governance and compliance with organizational policies and regulatory standards across all subsidiaries.
Maintain oversight of defensive security capabilities that directly impact the SOC’s effectiveness (e.g. Endpoint protection, Identity protection and monitoring etc.)
Oversee establishment of expanded use cases for Identity Threat Detection and Response, Insider risk management.
Accountable for endtoend ITDR operational ownership, including tooling strategy, control effectiveness, integration with IAM platforms, coordination with fraud and business teams, and executivelevel reporting on identity risk and attack trends.
Foster a collaborative environment between subsidiary SOC teams, promoting knowledge sharing and unified incident response.
Continuously assess and optimize SOC operations, identifying opportunities for improvement and innovation.
Manages performance and operational excellence of teams supporting cyber security tools under purview. Providing data driven insight into performance.
Ensures processes and monitoring measures are in place to ensure cyber security tools operate effectively and deployment coverage align with organization risk appetite.
Manage team’s talent and skill to ensure appropriate alignment with needs of administering technologies under purview. Ensure alignment and support of the Cyber defense centre with investigations into cyber events, with clear responsibilities and escalation paths for regulatory notifications.
Ensures expanded SIRT (Security Incident Response Team) structure supports responsiveness required to address current attack velocity trends.
Drive cross-functional collaboration to achieve objectives of the SOC.
Responsible for maintaining the standards, procedures and guidelines for domains under purview.
Provide technical guidance for team and subject matter advice to stakeholders.
Provide business view of SOC stability and executive reporting to support oversight.
Requirements
**Technical Expertise: **Strong understanding of SOC technologies, cyber security protection tools, network security, and Zero Trust Network Access principles.
**Operational Excellence:** Ability to establish, monitor, and optimize service levels, ensuring effective coverage and performance across subsidiaries.
**Stakeholder Engagement:** Excellent communication and relationship management skills to coordinate with senior leadership, subsidiary teams, and external partners.
**Governance & Compliance: **Deep knowledge of cyber security governance, regulatory requirements, and best practices for encryption, certificates, and network device hardening.
Strong engineering or security architecture knowledge, (prior hands-on technology engineering experience is preferred)
Service management or service excellence experience (i.e. IT service Management)
**Strategic Vision: **Ability to develop and execute a unified SOC strategy, integrating multiple subsidiaries to deliver effective cyber defense and operational resilience.
**Leadership & Team Building:** Proven experience in leading diverse teams, fostering a culture of collaboration, accountability, and continuous improvement across integrated operations.
Cyber Operations Lead ensuring coordination of cyber operations between the Security Operations Center and internal business units. Enhancing security through effective incident response and threat management initiatives.
Solution Sales Manager enhancing revenue in financial services, focusing on ServiceNow IRM and Tanium solutions. Collaborating with teams and engaging C - level executives in Austria and Switzerland.
Senior Internal SOC Analyst leading security triage and investigations for Darktrace, utilizing AI - driven cybersecurity technology. Collaborating on incident response and mentorship within a hybrid work environment.
Security Operations Intern responsible for security monitoring at Paddy Power Betfair. Involves data loss prevention investigations and content filtering analysis with a commitment to improving security posture.
SOC Analyst L2 responsible for managing and analyzing security incidents in digital transformation. Contributing directly to the protection of companies and infrastructures.
Senior Manager leading global IT security operations to protect company data and assets at Keenova. Overseeing incident response, monitoring, and cybersecurity capabilities with strategic oversight.
Security Operations Center leader at Woven by Toyota, managing triage and response to security alerts in Japan. Collaborating with global SOCs to ensure 24/7 operations.
GSOC Analyst responsible for security operations at Paramount Studios. Developing workflows, incident response, and risk monitoring in a dynamic team environment.