Manager - Security Operations
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
We are looking for an experienced SOC Manager to lead and mature the organization's Security Operations capability. The role will be responsible for SOC operations, threat detection, incident response, threat hunting, threat intelligence, SOAR automation, insider threat monitoring and security scripting. The ideal candidate should have a strong combination of people leadership and hands-on technical expertise, with the ability to lead analysts while personally driving complex investigations, threat hunts, automation and detection improvements.
Key Responsibilities:
Lead day-to-day SOC operations and security monitoring.
Manage L1/L2/L3 SOC analysts, and threat hunters.
Lead incident bridges during major cyber incidents.
Conduct root-cause analysis and post-incident reviews.
Develop lessons learned and preventive controls.
Manage staffing, shift planning, training and technical development.
Ensure adherence to SOC SLAs, KPIs and operational objectives.
Act as the escalation point for P1/P2 (Major) security incidents.
Drive continuous improvement of SOC maturity and operational efficiency.
Establish and lead a proactive Threat Hunting program.
Develop hypothesis-driven hunts based on adversary behavior and emerging threats.
Consume and analyze external/internal intelligence feeds.
Develop threat actor profiles and campaign assessments.
Automate repetitive SOC analyst activities.
Develop automated enrichment and response workflows.
Establish and mature the Insider Threat Detection & Response capability.
Develop insider-threat detection use cases.
Support insider-risk investigations while maintaining privacy and compliance requirements.
Required Skills/Qualifications:
Strong people leadership, mentoring and team-building skills.
Strong stakeholder-management and cross-functional collaboration skills.
Ability to balance strategic SOC transformation with hands-on technical execution.
Experience with SIEM and SOAR platforms, such as CrowdStrike Falcon Next-Gen SIEM and Palo Alto Network Cortex XSOAR.
Hands-on experience with EDR/XDR solutions, like CrowdStrike Falcon.
In-depth knowledge of Windows, Linux, Active Directory/Entra ID, Azure Cloud Platform, and networking protocols (DNS, HTTP(s), SMTP, LDAP, TCP/IP).
Hands-on scripting experience using Python, PowerShell, Bash/Shell, KQL, REST APIs, JSON and Regex.
Preferred Qualifications:
9-13 years of experience in cybersecurity, with at least 3 years in threat hunting.
Relevant certifications such as GIAC Certified Threat Hunter (GCTI/GCTH), GIAC Certified Forensic Analyst (GCFA/GNFA), CISSP, CISA or equivalent certifications.
Providence’s vision to create ‘Health for a Better World’ aids us to provide a fair and equitable workplace for all in our employment, whether temporary, part-time or full time, and to promote individuality and diversity of thought and background, and acknowledge its role in the organization’s success. This makes us committed towards equal employment opportunities, regardless of race, religion or belief, color, ancestry, disability, marital status, gender, sexual orientation, age, nationality, ethnic origin, pregnancy, or related needs, mental or sensory disability, HIV Status, or any other category protected by applicable law. In furtherance to our mission in building a more inclusive and equitable environment, we shall, from time to time, undertake programs to assist, uplift and empower underrepresented groups including but not limited to Women, PWD (Persons with Disabilities), LGTBQ+ (Lesbian, Gay, Transgender, Bisexual or Queer), Veterans and others. We strive to address all forms of discrimination or harassment and provide a safe and confidential process to report any misconduct.
Contact our Integrity hotline also, read our Code of Conduct .
Key Skills for This Role
Full Job Posting
About Providence
Providence, one of the US’s largest not-for-profit healthcare systems, is committed to high quality, compassionate healthcare for all. Driven by the belief that health is a human right and the vision, ‘Health for a better world’, Providence and its 121,000 caregivers strive to provide everyone access to affordable quality care and services.
Providence has a network of 51 hospitals, 1,000+ care clinics, senior services, supportive housing, and other health and educational services in the US.
Providence India is bringing to fruition the transformational shift of the healthcare ecosystem to Health 2.0. The India center will have focused efforts around healthcare technology and innovation, and play a vital role in driving digital transformation of health systems for improved patient outcomes and experiences, caregiver efficiency, and running the business of Providence at scale.
Why Us?
Best In-class Benefits
Inclusive Leadership
Reimagining Healthcare
Competitive Pay
Supportive Reporting Relation
Job Title: Manager - Security Operations
Role Summary
We are looking for an experienced SOC Manager to lead and mature the organization's Security Operations capability. The role will be responsible for SOC operations, threat detection, incident response, threat hunting, threat intelligence, SOAR automation, insider threat monitoring and security scripting. The ideal candidate should have a strong combination of people leadership and hands-on technical expertise, with the ability to lead analysts while personally driving complex investigations, threat hunts, automation and detection improvements.
Key Responsibilities:
Lead day-to-day SOC operations and security monitoring.
Manage L1/L2/L3 SOC analysts, and threat hunters.
Lead incident bridges during major cyber incidents.
Conduct root-cause analysis and post-incident reviews.
Develop lessons learned and preventive controls.
Manage staffing, shift planning, training and technical development.
Ensure adherence to SOC SLAs, KPIs and operational objectives.
Act as the escalation point for P1/P2 (Major) security incidents.
Drive continuous improvement of SOC maturity and operational efficiency.
Establish and lead a proactive Threat Hunting program.
Develop hypothesis-driven hunts based on adversary behavior and emerging threats.
Consume and analyze external/internal intelligence feeds.
Develop threat actor profiles and campaign assessments.
Automate repetitive SOC analyst activities.
Develop automated enrichment and response workflows.
Establish and mature the Insider Threat Detection & Response capability.
Develop insider-threat detection use cases.
Support insider-risk investigations while maintaining privacy and compliance requirements.
Required Skills/Qualifications:
Strong people leadership, mentoring and team-building skills.
Strong stakeholder-management and cross-functional collaboration skills.
Ability to balance strategic SOC transformation with hands-on technical execution.
Experience with SIEM and SOAR platforms, such as CrowdStrike Falcon Next-Gen SIEM and Palo Alto Network Cortex XSOAR.
Hands-on experience with EDR/XDR solutions, like CrowdStrike Falcon.
In-depth knowledge of Windows, Linux, Active Directory/Entra ID, Azure Cloud Platform, and networking protocols (DNS, HTTP(s), SMTP, LDAP, TCP/IP).
Hands-on scripting experience using Python, PowerShell, Bash/Shell, KQL, REST APIs, JSON and Regex.
Preferred Qualifications:
9-13 years of experience in cybersecurity, with at least 3 years in threat hunting.
Relevant certifications such as GIAC Certified Threat Hunter (GCTI/GCTH), GIAC Certified Forensic Analyst (GCFA/GNFA), CISSP, CISA or equivalent certifications.
Providence’s vision to create ‘Health for a Better World’ aids us to provide a fair and equitable workplace for all in our employment, whether temporary, part-time or full time, and to promote individuality and diversity of thought and background, and acknowledge its role in the organization’s success. This makes us committed towards equal employment opportunities, regardless of race, religion or belief, color, ancestry, disability, marital status, gender, sexual orientation, age, nationality, ethnic origin, pregnancy, or related needs, mental or sensory disability, HIV Status, or any other category protected by applicable law. In furtherance to our mission in building a more inclusive and equitable environment, we shall, from time to time, undertake programs to assist, uplift and empower underrepresented groups including but not limited to Women, PWD (Persons with Disabilities), LGTBQ+ (Lesbian, Gay, Transgender, Bisexual or Queer), Veterans and others. We strive to address all forms of discrimination or harassment and provide a safe and confidential process to report any misconduct.
Contact our Integrity hotline also, read our Code of Conduct .
About Providence Global Center LLP
Verified company details for this employer are not available yet.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at Providence Global Center LLP
Principal Software Engineer
Hyderabad, IND
About the Role We are seeking a highly experienced and hands-on Principal Software Engineer to help define and build the next generation of our enterprise Observability and Operational Intelligence Platform . This role c
Sr. Cybersecurity Operations Analyst
Hyderabad, IND
Job Summary The IAM Operations Engineer is responsible for the day-to-daazy operations and support of Identity and Access Management (IAM) platforms and processes. The role ensures timely provisioning, modification, and
Manager - Software Engineering • Clinical & Revenue Cycle Applications
Hyderabad, IND
Role Summary Lead the strategy, architecture, engineering delivery, and adoption of Providence's Observability and Operational Intelligence Platform (iTelemetry) . This role combines people leadership, platform engineeri
Senior Analyst Data Analytics
Hyderabad, IND
Principal Software Engineer
Hyderabad, IND
Sr. Cybersecurity Operations Analyst
Hyderabad, IND
Manager - Software Engineering • Clinical & Revenue Cycle Applications
Hyderabad, IND
Manager - Executive Recruitments
Hyderabad, IND
Lead Consultant IAM
Hyderabad, IND
Director - Delivery Excellence
Hyderabad, IND
Senior Analyst Data Analytics
Hyderabad, IND
Sr. Manager - Sales
Hyderabad, IND