Senior Manager/Manager - Tech Consulting - Cyber Defence Lead (SOC Operations) - Al Khobar
Job description
Senior Manager / Manager – Cyber Defence Lead (SOC Operations)
Location: Eastern Region, Kingdom of Saudi Arabia (KSA)
Service Line: Consulting – Cybersecurity
Rank: Manager / Senior Manager
Overview
As part of the Cybersecurity practice, this role will lead the Cyber Defence function for a mission-critical client in the Eastern Region of Saudi Arabia. The position is responsible for overseeing 24/7 Security Operations Centre (SOC) activities, ensuring advanced cyber defence capabilities, and maintaining compliance with regulatory frameworks in KSA while meeting contractual commitments.
Key Responsibilities
- Lead 24/7 SOC operations, ensuring continuous monitoring and incident response (eyes-on-glass model)
- Oversee and optimize cyber defence technologies such as SIEM, SOAR, TIP, EDR, and Vulnerability Management tools
- Drive incident detection, triage, response, and recovery activities
- Ensure compliance with KSA cybersecurity regulations including NCA and CST frameworks
- Establish and maintain SOC processes, playbooks, and automation strategies
- Monitor and report on SLAs, KPIs, and operational metrics to meet contractual obligations
- Lead client governance, reporting, and escalation management
- Manage and develop SOC teams operating across 24/7 shifts
- Drive continuous improvement including threat hunting, detection engineering, and use case optimization
Skills and Attributes for Success
- Strong leadership capability in high-pressure, mission-critical environments
- Deep expertise in SOC operations and cyber defence lifecycle
- Ability to communicate complex cybersecurity topics to executive stakeholders
- Experience delivering managed security services at scale
- Strong analytical mindset focused on risk reduction and operational excellence
To Qualify for the Role, You Must Have
- Bachelor’s degree in Cybersecurity, IT, or related field
- 5–8+ years (Manager) / 8–12+ years (Senior Manager) of cybersecurity experience
- Proven experience leading 24/7 SOC operations
- Hands-on experience with SIEM, SOAR, EDR, TIP, and Vulnerability Management platforms
- Strong knowledge of KSA cybersecurity frameworks (NCA, CST)
- Experience managing SLAs, KPIs, and client contracts
Ideally, You’ll Also Have
- Certifications such as CISSP, CISM, GCIA, GCIH, CEH, or vendor certifications
- Experience in threat intelligence, threat hunting, and automation
- Exposure to critical national infrastructure or high-security environments
What We Offer
- Opportunity to lead mission-critical cyber defence operations in KSA
- Exposure to national-level cybersecurity initiatives
- Collaborative environment with strong learning and career development opportunities
- Competitive compensation aligned with market standards