What are the responsibilities and job description for the Senior Manager, Security Operations position at OP Recruiting?
As a key leader within the Information Security organization, the Security Operations Manager is responsible for overseeing day?to?day security operations and ensuring the effective detection, investigation, containment, and remediation of cyber threats impacting the enterprise. This role manages a team of analysts, drives operational readiness, and strengthens the organization’s security posture through continuous improvement, technical
leadership, and cross?department collaboration.
The Security Operations Manager must be capable of operating independently,
demonstrating advanced critical?thinking skills, strong analytical capabilities, sound
judgment under pressure, and the ability to comprehend and address complex technical and organizational challenges without relying solely on predefined checklists or prescriptive
workflows.
Responsibilities listed below represent the minimum expectations for this role. Additional duties may be assigned as necessary to support business, regulatory, or operational objectives.
Essential Duties And Responsibilities
Security Operations Leadership
Team Management & Development
Incident Response Ownership
Threat Detection, Monitoring & Analysis
Cross?Functional Collaboration
Process, Playbooks & Documentation
Technology Ownership & Optimization
Analytics, Reporting & Metrics
AI?Enablement & Automation Integration
On?Call Requirement & After?Hours Support
Qualifications / Requirements
Education & Experience
leadership, and cross?department collaboration.
The Security Operations Manager must be capable of operating independently,
demonstrating advanced critical?thinking skills, strong analytical capabilities, sound
judgment under pressure, and the ability to comprehend and address complex technical and organizational challenges without relying solely on predefined checklists or prescriptive
workflows.
Responsibilities listed below represent the minimum expectations for this role. Additional duties may be assigned as necessary to support business, regulatory, or operational objectives.
Essential Duties And Responsibilities
Security Operations Leadership
- Oversee day?to?day SOC operations across cloud, on?premises, endpoint, and application
- Provide technical direction and operational leadership to SOC analysts.
- Ensure all security events and incidents are managed consistently, accurately, and in
Team Management & Development
- Lead, mentor, and coach SOC analysts to support skill development, analytical capability,
- Assist in performance evaluations, guide career progression, and foster a culture of
- Establish expectations for independent analysis, strong reasoning, and effective
Incident Response Ownership
- Direct and coordinate incident response activities, including investigation, containment,
- Provide real?time guidance to analysts during high?severity incidents and ensure timely,
- Serve as an escalation point for complex investigations or ambiguous threat scenarios
Threat Detection, Monitoring & Analysis
- Evaluate and enhance detection coverage, analytic depth, and SOC visibility.
- Partner with threat intelligence, engineering, and architecture teams to refine detection
- Ensure SOC maintains awareness of emerging threats and incorporates relevant
Cross?Functional Collaboration
- Coordinate with IT Infrastructure, Networking, Application, Clinical, and Cybersecurity
- Collaborate closely with Compliance and HR during internal investigations requiring log
- Support audit engagements, including SOC2 and regulatory requirements (e.g., HIPAA,
Process, Playbooks & Documentation
- Develop, maintain, and continuously improve SOC playbooks, incident response
- Identify and eliminate operational bottlenecks, introducing process efficiencies based on
Technology Ownership & Optimization
- Oversee SOC technologies including SIEM, EDR/XDR, SOAR, threat intelligence platforms,
- Ensure platform configurations, alerting logic, and integrations remain optimized for
Analytics, Reporting & Metrics
- Track SOC KPIs and operational metrics to effectively communicate security posture,
- Deliver concise, executive?ready reporting on incidents, trends, risks, and opportunities
AI?Enablement & Automation Integration
- Identify opportunities to leverage AI and automation to improve SOC efficiency, reduce
- Explicit leadership of AI?driven security solutions and responsible AI governance
- Partner with engineering teams to integrate automation into investigation and response
On?Call Requirement & After?Hours Support
- Participation in the on?call rotation as needed by operational needs.
- Incident response and CSIRT activation may require engagement during evenings, nights,
- Maintain readiness to support critical and high?severity incidents requiring immediate
- Participation and engagement in tabletop exercises and risk assessments
- Penetration testing participation (internal/external; cloud/mobile/app) with third-party
- Cloud security strategy definition and execution (posture management, tenant onboarding,
- Authoring enablement documentation for assessments and platform integrations.
- Additional responsibilities may be assigned as necessary based on evolving technologies,
Qualifications / Requirements
Education & Experience
- Bachelor’s degree preferred in computer science, information systems, cybersecurity, or a
- 7 years of professional experience in cybersecurity, with at least 4 years of experience in
- Experience leading or mentoring SOC analysts or incident responders.
- Strong expertise in security operations, incident response, threat detection, and
- Skilled with SOC technologies such as SIEM, EDR/XDR, SOAR, and threat intelligence
- Familiarity with cloud security principles, vulnerability management programs, and
- Foundational scripting or automation experience preferred.
- Strong communication skills with the ability to convey complex technical scenarios clearly.
- Ability to operate independently and make informed decisions under pressure.
- High level of integrity, analytical capability, and situational awareness.
- Security Operations Center (SOC) Team
- Cybersecurity Architecture
- IT Infrastructure & Networking
- Compliance, Privacy, & Audit
- Business Solutions and Application Teams
- Legal
- HR
- Direct supervision of SOC analysts.
- May assist with vendor coordination, renewals, and SOC technology recommendations.