What are the responsibilities and job description for the SOC Manager position at HW3?
Security Operations Center (SOC) Manager
A large, globally recognized enterprise is seeking a SOC Manager to lead and continue maturing a 24x7 security operations function supporting a complex global environment.
This role will be responsible for leading a geographically distributed team of analysts, driving threat detection and incident response capabilities, and helping shape the future direction of the organization's security operations program. The successful candidate will combine hands-on operational leadership with longer-term strategic planning and process improvement.
Location
- Jacksonville, FL (hybrid)
What You'll Be Doing
Team Leadership
- Lead, mentor, and develop a distributed SOC team operating across multiple regions and time zones
- Foster a culture of accountability, collaboration, and continuous improvement
- Support hiring, training, workforce planning, and career development initiatives
- Manage staffing and on-call coverage to support 24x7 operations
Security Operations & Incident Response
- Oversee day-to-day security operations, including monitoring, investigation, containment, and response activities
- Ensure consistent execution of incident response procedures and operational playbooks
- Coordinate response efforts with internal technology, risk, legal, privacy, and business stakeholders
- Drive operational excellence across the incident management lifecycle
Threat Detection & Monitoring
- Lead ongoing improvements across SIEM, XDR, NDR, threat intelligence, and related security technologies
- Enhance detection coverage, alert quality, and automation capabilities
- Monitor emerging threats and translate intelligence into actionable detection and response strategies
Reporting & Governance
- Establish and track key operational metrics including MTTD, MTTR, incident trends, and detection effectiveness
- Deliver reporting and insights to senior leadership
- Ensure alignment with security policies, regulatory requirements, and industry frameworks
Program Development
- Contribute to the ongoing evolution and maturity of the security operations program
- Identify opportunities for process optimization, automation, and technology enhancement
- Support vendor evaluations, technology selection, tabletop exercises, and security readiness initiatives
What We're Looking For
- 8 years of experience within cybersecurity operations, threat detection, incident response, or security engineering
- Prior experience leading SOC teams or managing security operations functions
- Strong knowledge of attacker tactics, techniques, and procedures (TTPs)
- Hands-on experience with enterprise security technologies including SIEM, EDR/XDR, and threat intelligence platforms
- Proven ability to lead teams during high-pressure security events
- Strong communication skills with the ability to engage technical and executive stakeholders
Preferred Experience
- Experience within large-scale, highly regulated, or complex enterprise environments
- Familiarity with cloud security operations across AWS, Azure, or GCP
- Experience supporting globally distributed security operations teams
- Industry certifications such as CISSP, CISM, GCIH, GCED, or similar
- Experience supporting executive-level communications during security incidents
Salary : $160,000 - $165,000