TL;DR
SOC Team Lead / SOC Manager (Cybersecurity): Building and leading a Security Operations Center from scratch, defining processes, tools, and workflows to ensure effective security monitoring and incident response. Focus on hiring and managing a SOC team, owning shift planning and playbooks, and driving improvements across SIEM, EDR/XDR, SOAR platforms.
Location: Remote or Hybrid in Poland
Company
hirify.global is a pre-IPO software development company providing full-cycle services for enterprises and middle-sized firms, specializing in effective digital solutions using innovative technologies.
What you will do
- Hire and build a team of SOC Analysts (L1, L2, L3) from the ground up.
- Lead and manage the SOC team, ensuring 24/7 operations and shift planning.
- Define SOC procedures, playbooks, and escalation protocols.
- Act as the point of escalation for complex security incidents and investigations.
- Define and monitor SOC KPIs and metrics (MTTD, MTTR, SLA compliance).
- Drive tuning and improvements across SIEM, EDR/XDR, and SOAR platforms.
- Ensure compliance with regulatory frameworks (ISO 27001, NIS2).
Requirements
- Experience in security operations (SOC, CSIRT, MSSP) for 5+ years.
- Experience in a SOC Team Lead, Deputy Manager, or shift-lead role for 1+ year.
- Deep knowledge of security monitoring, detection, and incident handling.
- Experience with SIEM (e.g., Sentinel, Splunk, QRadar) and EDR/XDR platforms.
- Hands-on experience with incident triage, forensics, and escalation.
- Strong understanding of MITRE ATT&CK, cyber kill chain, and detection logic.
- English: B2 (Upper-Intermediate+) and above.
Nice to have
- Experience building SOCs from scratch or in startup environments.
- Familiarity with Microsoft Defender suite, Sentinel, and SOAR tools.
- Exposure to cloud-native monitoring (AWS, Azure, GCP).
- Relevant certifications (e.g., GCIA, GCIH, CISSP, Azure SC-200).
Culture & Benefits
- Opportunity to work fully remotely, from the office, or choose a hybrid variant.
- Collaboration with leaders in FinTech, Healthcare, Retail, Telecom.
- Guaranteed professional, financial, and career growth through mentoring and adaptation systems.
- Access to a corporate training portal with a constantly updated knowledge base.
- Compensation for certifications (AWS, PMP, etc.).
- English courses.
- Private health insurance and compensation for sports activities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →