SOC Lead
Serviqual - JobsRiche Terre, MauritiusJune 10, 2026
On-site
Full-time
SOC
Management
ServiQual is looking for a Lead SOC Manager to take ownership of its Security Operations capability across both internal monitoring and client environments. This is a leadership role with strong operational depth. You will be expected to structure, run, and continuously improve the SOC while ensuring high-quality service delivery to our clients (including SOC monitoring, incident response, and support to VAPT, audit, and forensic engagements). You are not here to “manage alerts”. You are here to build an SOC that clients trust and that engineers respect.
Key Responsibilities
- Lead and manage SOC operations across multiple client environments (including SOC and upcoming
- engagements)
- Supervise and develop SOC analysts and security engineers (L1–L3)
- Own incident detection, triage, escalation, and response across all monitored environments
- Act as Incident Lead during critical security events (client-facing when required)
- Ensure proper onboarding of new clients into SOC (log sources, use cases, coverage)
- Improve and maintain detection rules, playbooks, and response procedures aligned with real-world threats
- Work closely with:
- VAPT team (to integrate findings into detection use cases)
- Audit/compliance team (ISO 27001, regulatory requirements)
- Forensics and intelligence teams (for advanced investigations)
- Drive integration of threat intelligence into SOC operations
- Maintain and report on SOC KPIs (MTTD, MTTR, SLA adherence, detection coverage)
- Ensure service quality and professionalism in all client interactions
- Support pre-sales or technical discussions when SOC capability is involved
Required Profile & Qualification
- 6+ years in cybersecurity, with proven SOC leadership experience
- Strong hands-on experience with SIEM (Microsoft Sentinel, Taegis)
- Solid background in EDR/XDR
- Incident response
- Log analysis and correlation
- Experience working in client-facing environments (MSSP or consulting) is critical
- Exposure to VAPT, threat hunting, or forensic investigations
- Understanding of attacker techniques (MITRE ATT&CK)