Technology Career Framework - Role Details
Career Family Cyber Security
Role Type Cyber Security Manager
Role Rank Security Operations Manager
Current Rank:
Manager / Assistant Director
CS / CBS
Leads the delivery and maintenance of cyber security engineering
services, for large or more complex projects, using advanced
technical capabilities.
Responsible for the implementation and development of the
security policies, procedures and standards within the SOC
function
Will be responsible to work collaboratively with peers and
supervisors for providing effective security monitoring and
incident response service through triage, investigation,
Career
communication, and reporting.
Framework
He/She will also work collaboratively with team members and
Role
managers to respond to and resolve information security incidents,
Description
maintain and follow procedures for security alerting, and
participate in security investigations.
Define business drivers and operational requirements for SIEM
solutions and work with business stakeholders
He/She needs to articulate security issues and recommendations to
IT project teams and management.
Management of both staffing and financial/budget requirements.
The Soc Manager holds overall accountability for the operation of
the SOC.
Responsibilitie Leads teams who monitor, investigate and protect sensitive data
s and systems from intrusions and security breaches, leveraging
advanced technical knowledge and showing technical leadership
in aspects of cyber security to maximise efficiency, reliability and
value while driving continuous improvement efforts
Operate as second level escalation point for Threat Detection and
Response Centre.
Identify, prioritize and respond to security threats
Collaborate with security architectures, engineering and operations
to ensure effective SOC monitoring is implemented
for all environments
Publish weekly and monthly reports to the clients.
Ensure that all incidents are recorded and tracked to meet audit,
compliance and legal requirements.
Maintain an inventory of the procedures used by the TDR team
and regularly evaluate the TDR procedures and add, remove, and
update the procedures as appropriate
Actively investigates the latest security vulnerabilities, advisories,
incidents, and penetration techniques and notifies the manager
when appropriate.
Coach less experienced team members on policies and procedures
that contribute to maintaining the confidentiality, integrity, and
availability of the data residing on or transmitted to/from/through
enterprise workstations, servers, and other systems and in
databases and other data repositories.
Advanced understanding of tools and technologies utilised in
cyber security
Fair Understanding of Linux, TCP/IP, Network Security,
encryption standards etc.
Good knowledge in forensic technologies and tools
Technical Knowledge in application development (Microsoft technologies).
Skills & Excellent communication skills; written and verbal.
Knowledge Good Attitude and Presentation skills
Good investigative, analytical and problem-solving skills
Ability to work in a team, with little supervision and using own
initiative
Leadership, management, administration and oversight
Minimum of 10+ years of experience in one or more of the
following:
Working in a Security Monitoring/Security Operations Center
environment (SOC)
Incident Handling and Incident Response.
Demonstrate both technical acumen and critical thinking abilities
Experience
Strong interpersonal and presentation skills
Ability to work with minimal levels of supervision or oversight
Customer Service oriented - Meets commitments to customers;
Seeks feedback from customers to identify improvement
opportunities
Typical
B. Tech./ B.E. candidate with sound technical skills
Education
Typical
CISSP, GCIH, GCFA, GCIA, GSEC, GIAC,
Certifications
Similar Titles Cyber Security Manager
in the Market Manager Security Operations Centre
Leadership
Capabilities
Available
Technical
Learning
Skills and
Capabilities
Technologies
and Tools