What makes the role special
This is a high-impact leadership role at the core of our cybersecurity strategy. As Head of SOC, you will own the 24 × 7 monitoring and operation of the Group-IB MXDR platform safeguarding our own environment and delivering managed detection and response for external customers. You’ll build and scale a world-class SOC, lead a top-tier team, and roll out cutting-edge technologies in a fast-moving, mission-driven setting.
Tasks to solve
- Lead a high-performing SOC team (analysts L1–L3, threat hunters, shift leads).
- Ensure 24/7 monitoring and rapid incident response aligned with SLAs.
- Provide a best-in-class MDR service for external clients, including onboarding, multi-tenant monitoring, threat hunting, and incident response that meet contracted SLAs.
- Develop and optimize processes for detection, investigation, and escalation of threats.
- Establish a strong KPI and reporting framework for SOC efficiency and quality.
- Drive SOC maturity and alignment with frameworks like SOC CMM, MITRE ATT&CK and NIST.
- Collaborate with global DFIR, Threat Intelligence and Investigations teams.
- Act as a point of escalation for major incidents and crisis response.
Requirements
- 5+ years of experience in Security Operations, including at least 2 years in a management role.
- Proven expertise with SOC technologies (SIEM, SOAR, EDR, log management, threat intel platforms).
- Deep understanding of cybersecurity incident response lifecycle and best practices.
- Strong knowledge of MITRE ATT&CK, NIST frameworks, and threat detection techniques.
- Hands-on experience leading distributed or shift-based teams.
- Excellent communication skills in English (Upper-Intermediate+).
- Ability to work under pressure and make decisions in high-stakes situations.
Additional requirements
- Relevant certifications such as CISSP, GCIH, GCFA are a strong advantage.
- Experience in MSSP or MDR environments is a plus.
- Familiarity with compliance requirements (e.g., GDPR, ISO 27001, SOC 2) preferred.
- Strong analytical mindset and continuous improvement attitude.
- Experience working in international or multicultural teams is a plus.