The SOC Supervisor leads and manages the Security Operations Center (SOC), with a focus on LogRhythm SIEM (preferred) or any other SIEM. The role ensures 24x7 monitoring, detection, analysis, and response to security threats, while overseeing people, processes, and technology to deliver high-quality service and maintain alignment with security best practices and business objectives.
Responsibilities & Duties:
- Provide strategic leadership and operational oversight for the Security Operations Center (SOC), ensuring effective delivery of security monitoring and incident response services using LogRhythm SIEM.
- Establish, enforce, and continuously improve SOC policies, procedures, playbooks, and operational standards in alignment with industry best practices.
- Ensure 24x7 security monitoring, timely detection, investigation, and response to security incidents across customer and internal environments.
- Serve as the primary escalation point for high‑severity and complex security incidents, ensuring proper coordination, communication, and resolution.
- Oversee LogRhythm SIEM architecture, administration, tuning, upgrades, and overall platform health and performance.
- Lead SIEM use‑case development, correlation rule optimization, and continuous reduction of false positives to enhance detection effectiveness.
- Manage log source onboarding, data quality, retention, and compliance with contractual and regulatory requirements.
- Direct and manage the full incident response lifecycle, including root cause analysis, lessons learned, and post‑incident reporting.
- Lead, mentor, and develop SOC personnel (L1/L2/L3), including performance management, training plans, and succession planning.
- Ensure effective shift scheduling, resource planning, and workload distribution to maintain service continuity.
- Monitor and ensure compliance with SLAs, KPIs, internal controls, and customer contractual obligations.
- Prepare and deliver operational, technical, and executive‑level reports on SOC performance, incidents, and risk trends.
- Act as a trusted security advisor to customers and internal stakeholders, providing guidance on threat landscape and risk posture.
Qualifications
- Bachelor’s degree in computer science, Information Technology, or a related field.
- 5–8+ years of experience in Security Operations or SOC environments.
- Minimum of 3+ years of hands-on experience with LogRhythm SIEM (preferred).
- 2–4+ years of experience in a supervisory or managerial SOC role.
- Experience in Managed Security Services (MSS) or multi-tenant SOC environments is highly preferred.
Additional Information
Technical Skills:
- Strong hands-on experience with LogRhythm SIEM (preferred), including administration and operations.
- Solid understanding of security monitoring, incident handling, and threat detection.
- Experience with log management, network security, endpoint security, and cloud environments.
- Knowledge of MITRE ATT&CK framework and threat intelligence concepts.
- Native Arabic speaker and professional in English language.
Job Location: Manama-Bahrain