MSOC & DFIR Services Tower Lead
Role Purpose
Lead the Managed SOC and Digital Forensics & Incident Response stream, ensuring timely threat detection, incident handling, escalation protocols, and forensic investigations.
Key Responsibilities
Oversee SOC operations across L1, L2, and L3 tiers.
Define alert thresholds, escalation matrices, and incident runbooks.
Coordinate threat hunts and root cause analysis (RCA).
Manage DFIR tooling and evidence handling procedures.
Liaise with vendors for out-of-hours incident support.
Requirements
8–10 years in SOC leadership or DFIR roles.
Hands-on with incident response, malware analysis, SIEM triage.
Experience with forensic tools (, FTK, EnCase).
Certifications: GCFA, GCIH, or equivalent.