22by7 Solutions
Delivery HEAD Managed SOC at 22by7 Solutions in Bengaluru
Skills
Job Description
Key Responsibilities
1. Managed SOC Delivery
- Own end-to-end delivery of Managed SOC services across multiple customers and projects.
- Ensure delivery against agreed SLAs, KPIs, OLAs, quality, security and customer experience metrics.
- Lead SOC operations across L1/L2/L3 monitoring, detection, investigation, incident response and escalation management.
- Establish and continuously improve SOC operating processes, governance and service management practices.
- Drive automation and AI/ML adoption to improve SOC efficiency and reduce manual effort.
- Drive use-case development, tuning, threat hunting, detection engineering and continuous service improvement.
- Improve MTTD, MTTR, false-positive rates and overall SOC productivity.
2. Next-Generation SOC Transformation
- Lead the evolution from traditional monitoring-based SOC to a Next-Generation SOC operating model.
- Drive adoption of SOAR, XDR/EDR, NDR, UEBA, threat intelligence, advanced analytics and automation.
- Develop proactive threat-hunting and advanced incident-response capabilities.
- Evaluate emerging cybersecurity technologies and identify opportunities to enhance the Managed SOC portfolio.
3. Presales & Solutioning
- Lead/support presales engagements for Managed SOC and Cybersecurity Services.
- Understand customer security requirements and translate them into scalable SOC solutions and service models.
- Own/support RFP/RFI/RFQ responses, solution architecture, technical proposals, SoWs, effort estimation, pricing and transition plans.
- Participate in customer workshops, presentations, solution discussions and technical demonstrations.
- Partner with Sales to identify upsell, cross-sell and new-account opportunities.
4. P&L & Commercial Management
- Own the P&L for assigned Managed SOC projects/accounts.
- Drive revenue, gross margin, utilization, cost optimization and project profitability.
- Monitor project financial performance against budgets, forecasts and commercial commitments.
- Manage scope, resource costs, change requests and potential revenue leakage/margin erosion.
- Contribute to annual business planning and growth strategy for the SOC practice.
5. Team Handling & People Leadership
- Lead, manage and mentor the Managed SOC organization, including SOC Managers, Technical Leads and L1/L2/L3 security analysts/engineers.
- Own team structure, capacity planning, shift coverage, resource allocation and workforce planning across 24x7 SOC operations.
- Build and maintain a high-performing SOC team with clear roles, accountability, goals and performance measures.
- Drive recruitment, onboarding, capability development, certification and succession planning for critical SOC roles.
- Conduct performance reviews, set KRAs/KPIs and provide regular coaching and feedback.
- Identify skill gaps and create technical upskilling plans across SIEM, SOAR, XDR, threat hunting, incident response and security engineering.
- Develop second-line leadership and ensure adequate succession coverage for key operational roles.
- Manage employee engagement, retention and productivity while maintaining operational discipline.
- Create a culture of continuous learning, innovation, accountability and customer focus.
6. Customer & Stakeholder Management
- Act as the senior delivery point of contact for strategic Managed SOC customers.
- Build relationships with CISOs, CIOs, CTOs, IT/Security Heads and senior customer stakeholders.
- Conduct periodic governance and executive service reviews.
- Own critical escalations and ensure timely resolution of service issues and incidents.
- Drive customer satisfaction, retention, renewals and expansion of services.
7. Governance, Risk & Compliance
- Ensure SOC operations comply with contractual, regulatory and information-security requirements.
- Drive adherence to relevant security frameworks and industry standards.
- Establish governance for incident, change, problem and service-improvement management.
- Ensure documentation, audit readiness and appropriate security controls are maintained.
Required Experience & Qualifications
- 10+ years of overall experience in Cybersecurity, IT Infrastructure, Managed Security Services or related domains.
- Minimum 56 years of recent, strong experience in SOC Delivery / Managed SOC operations.
- Proven experience managing multiple SOC customers/projects in an MSSP or Managed Services environment.
- Strong exposure to Next-Generation SOC / modern SOC operating models.
- Experience in cybersecurity presales, solutioning and customer-facing engagements.
- Demonstrated experience managing project/account P&L and commercial performance.
- Strong team-handling experience across technical and operational cybersecurity functions.
- Experience working with senior customer stakeholders and managing critical escalations.
Technical Exposure
- SIEM: Splunk, Microsoft Sentinel, IBM QRadar or equivalent.
- SOAR and security automation.
- XDR / EDR, NDR and UEBA.
- Threat Intelligence Platforms.
- Threat Hunting and Detection Engineering.
- Incident Response and Digital Forensics.
- Security Analytics and Cloud Security.
- Identity & Access Security.
- AI/ML applications in SOC operations.
Key Competencies
- Cybersecurity domain expertise and operational leadership.
- Strategic thinking and business acumen.
- Presales and consultative solutioning.
- P&L, commercial and financial acumen.
- People leadership, coaching and team building.
- Customer relationship and stakeholder management.
- Program/project management and operational excellence.
- Negotiation, communication and executive presentation skills.
- Data-driven decision making and continuous improvement mindset.
Key Performance Indicators (KPIs)
- Managed SOC revenue growth and project profitability.
- Gross margin and cost optimization.
- Customer retention, renewal and CSAT.
- SLA/KPI compliance and service quality.
- MTTD and MTTR improvement.
- SOC productivity and automation.
- Resource utilization and capacity management.
- Presales contribution and win conversion.
- Upsell/cross-sell revenue contribution.
- Team productivity, retention and capability development.
Ideal Candidate Profile
The ideal candidate is a Cybersecurity/SOC leader who combines strong technical depth with business, delivery and people leadership. The person should be equally comfortable discussing SOC architecture with a CISO, solutioning an RFP with Sales/Presales, managing a critical customer escalation, leading a 24x7 SOC team and reviewing project profitability with senior management.