Titre du poste ou emplacement
RECHERCHES RÉCENTES

SOC Director

GoSecure

Toronto, ON

Posté aujourd'hui

Détails de l'emploi :

Temps plein
Gestion

Avantages :

Programmes d'aide aux employés
Options d'achat d'actions

GoSecure is recognized as a leader and innovator in cybersecurity solutions. The company is the first and only to integrate an Endpoint and Network threat detection platform, Managed Detection and Response services, and Cloud/SaaS delivery. Together, these capabilities provide the most effective response to the increased sophistication of continuously evolving malware and malicious insiders that target people, processes and systems. With focus on innovation quality, integrity, and respect, GoSecure has become the trusted provider of cybersecurity products and services to organizations of all sizes, across all industries globally. To learn more, please visit: https://www.gosecure.net.


GoSecure offers a creative and challenging work environment, a competitive benefit package, and a great atmosphere to foster career growth. Come put your career on the leading-edge and bring your talents to a much sought-after high growth opportunity in technology- GoSecure!
GoSecure is an Equal Opportunity Employer committed to hiring a diverse work team (EEO/AA).

Summary

The SOC Manager will lead the day-to-day operations and continuous improvement of the Security Operations Center (SOC). This role is responsible for providing leadership, technical expertise, and operational guidance to SOC team members while ensuring the effective detection, investigation, and response to security threats.

A key responsibility of this role is to continuously improve SOC efficiency, scalability, and effectiveness through process optimization, automation, and the adoption of AI-enabled technologies.

As a leader within a managed security services organization, the SOC Manager will also play an important client-facing role, helping manage client relationships, resolve complex service and operational issues, and support sales and account teams with technical cybersecurity expertise.

Duties and Responsibilities

  • Lead the day-to-day functions of the SOC, including security monitoring, detection, investigation, incident response, escalation, and coordination.
  • Collaborate closely with the Engineering team to identify, develop, and integrate internally developed technologies into SOC processes, workflows, and service delivery capabilities to improve operational effectiveness and scalability.
  • Manage, mentor, and develop SOC team members, including establishing development roadmaps to maintain and advance their technical and professional skills.
  • Drive continuous improvement of SOC processes and workflows, with a focus on increasing analyst productivity, reducing repetitive manual tasks, and improving the quality and consistency of security operations.
  • Identify, evaluate, and implement opportunities to leverage AI, automation, SOAR, and agentic technologies across SOC workflows, including alert triage, enrichment, investigation, threat hunting, detection engineering, incident response, and reporting.
  • Develop and maintain an automation strategy for the SOC, prioritizing opportunities based on operational impact, risk, scalability, and return on investment.
  • Establish and monitor operational metrics and KPIs to measure SOC effectiveness and efficiency, including alert volumes, analyst workload, automation rates, response times, false-positive rates, and MTTD/MTTR.
  • Lead problem management activities for recurring or significant operational issues, including root-cause analysis, corrective and preventive actions, ownership tracking, and coordination with engineering and other internal teams to ensure issues are resolved sustainably.
  • Identify recurring incidents, process failures, and service delivery issues and translate them into opportunities for process, technology, automation, or service improvements.
  • Provide leadership during major security incidents and coordinate response activities across multiple departments and stakeholders.
  • Act as a senior point of contact for clients on SOC-related matters, including service performance, escalations, security incidents, operational challenges, and improvement initiatives.
  • Build and maintain strong client relationships, understand client security objectives and concerns, and ensure SOC services continue to deliver measurable value.
  • Participate in client governance, service reviews, executive discussions, and other client-facing activities as required.
  • Partner with engineering, security operations, product, and other teams to improve GoSecure's detection and response capabilities and overall security posture.
  • Support Sales, Account Management, and Customer Success teams as a SOC subject-matter expert, including participation in prospect and client meetings, technical presentations, solution discussions, RFP/RFI responses, and other pre-sales or expansion activities.
  • Translate technical SOC capabilities into clear business value for both technical and executive audiences and help ensure proposed solutions are operationally achievable.
  • Provide clients with technical consulting and guidance regarding networks, security controls, detection and response capabilities, and SOC best practices.
  • Promote operational excellence through documentation, standardized procedures, quality assurance, knowledge sharing, and continuous improvement.
  • Other duties as required.

Requirements and Experience

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent professional experience. Relevant security certifications such as CISSP, CISM, CISA, CCSP, GCIH, GIAC, OSCP, OSEE, or GREM are considered an asset.
  • Mandatory bilingualism: French AND English
  • Microsoft Expert
  • Demonstrated experience as a technical lead, SOC leader, or people manager within a security operations environment.
  • Strong understanding of SOC operating models, processes, workflows, and performance management, with demonstrated experience improving operational efficiency.
  • Strong client management and communication skills, with experience managing client expectations, escalations, service issues, and relationships in a managed services or other client-facing environment.
  • Experience with structured problem management, root-cause analysis, and continuous improvement methodologies, with the ability to drive complex operational issues through to sustainable resolution.
  • Experience supporting sales or pre-sales activities, with the ability to explain complex SOC and cybersecurity capabilities to technical, business, and executive stakeholders.
  • Hands-on experience with security automation and orchestration technologies, including SOAR platforms, APIs, scripting, workflow automation, or equivalent technologies.
  • Practical understanding of AI and generative AI technologies and their application within cybersecurity operations, including opportunities and risks associated with using AI to augment SOC analysts and automate security workflows.
  • Experience designing or implementing automated workflows for areas such as alert enrichment, triage, investigation, incident response, threat intelligence, detection engineering, or reporting.
  • Ability to analyze SOC operational data and metrics to identify inefficiencies, bottlenecks, automation opportunities, and areas for process improvement.
  • In-depth experience with SIEM technologies and security analytics platforms such as Microsoft Sentinel, Splunk, Google SecOps, QRadar, or equivalent technologies.
  • Experience with formal security frameworks and models such as MITRE ATT&CK and CIS Critical Security Controls.
  • Strong background in security incident handling, threat intelligence, detection engineering, and threat hunting.
  • Experience with technologies commonly implemented in SOC environments, including EDR/XDR, NDR, IDS/IPS, firewalls, DLP, email security, web proxies, identity security, and cloud security platforms.
  • Understanding of networking protocols such as IP, DNS, HTTP/S, SMTP, and related protocols, as well as the OSI model.
  • Strong leadership, communication, and stakeholder management skills, with the ability to operate effectively across SOC analysts, engineering teams, clients, executives, and sales organizations.
  • Strong curiosity regarding emerging AI, automation, and cybersecurity technologies, combined with the ability to evaluate new capabilities pragmatically and translate them into measurable operational improvements.

Why come to GoSecure?

-3 weeks' vacation, 5 personal days, paid bereavement days

-13 paid holidays

-Group insurance plan: health, dental, vision, disability, life, travel

-Employee assistance program (Dialogue)

-RRSP and matching employer contribution

-Peer recognition program and other awards granted throughout the years

-Company stock options

-Discounts on a variety of merchants

-Young and dynamic team always striving to improve

and much more!

Partager un emploi :