
Head of Security Operations Center (Head of SOC)
Nice to have's
Job description
About the Position
We are looking for a Head of Security Operations Center (Head of SOC) to lead, mature, and operate our resilient security operations capability. In this role, you will own the defense of our environment, ensuring fast and precise threat detection, investigation, containment, and exposure reduction. You will lead our security operations function, making the organization faster in responding to threats while continuously improving controls across the attack surface.
Responsibilities
- Own Cyber Defense execution across SOC, detection engineering, incident response, and exposure remediation
- Lead alert triage quality, escalation standards, incident command, and response coordination
- Prioritize critical vulnerabilities and exposures using asset criticality, exploitability, and business impact
- Manage Cyber Defense dashboards, runbooks, remediation follow-up, and operational metrics
- Coordinate with IT, Platform, Product, GRC, Legal, and business owners during incidents and remediation
- Build and develop the Cyber Defense team, including hiring, onboarding, mentoring, and retaining security talent
- Drive continuous improvement of detection coverage, response playbooks, and security controls based on lessons learned and threat intelligence
- Report on Cyber Defense performance, incidents, and risk posture to security leadership and stakeholders
Requirements
- 10+ years of experience in Information Security
- 3+ years in a security management or team lead role with direct people management experience
- Hands-on experience managing SOC operations, leading incident command, and driving MTTD/MTTR improvement
- Ability to design, validate, and maintain detection logic across SIEM, EDR, and cloud platforms, with a deep understanding of runbook development and false-positive reduction
- Knowledge of top attack scenarios (ATO, credential theft, privilege escalation, data exfiltration) and ability to map detections to threat models like MITRE ATT&CK
- Experience prioritizing vulnerabilities using CVSS and asset criticality to reduce exposure aging
- Hands-on experience with at least one enterprise SIEM (Splunk, Microsoft Sentinel, Chronicle, Elastic) and SOAR tooling
- Understanding of cloud-native security controls and monitoring in AWS, GCP, or Azure
- Understanding of IAM, PAM, SSO, and identity-related attack vectors relevant to detection and response
- Ability to define, track, and communicate security KPIs and operational dashboards to technical and executive audiences
- English - Upper-Intermediate or higher
- Ukrainian - Fluent
Nice to Have
- Experience in fintech, e-commerce, or other high-risk industries with complex threat landscapes
- Hands-on background as a SOC analyst, incident responder, or detection engineer prior to moving into management
- Experience building a SOC or Cyber Defense function from scratch or significantly maturing an existing one
- Familiarity with threat intelligence platforms and threat-informed defense methodologies
- Relevant certifications: CISSP, CISM, GIAC (GSOM, GCED, GCIH) or equivalent
We Offer
- 20 paid vacation days per year
- 10 paid sick leave days per year
- Public holidays as per the company’s approved Public holiday list
- Medical budget
- Opportunity to work remotely
- Professional education budget
- Language learning budget
- Wellness budget (gym membership, sports gear and related expenses)
Apply for this Job
indicates a required field
© JustMarkets Tech. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.
JustMarkets is a global multi-asset broker that has been shaping the industry since its founding in 2012. We work with clients in more than 160 countries.JustMarkets’s mission is to create a convenient and transparent trading environment where everyone can reach their full investment potential. We strive to offer superior spreads, execution, service.JustMarkets’s vision is to become the world’s most customer-centric broker, where everyone can trade and invest in a simple and transparent way.The essence of JustMarkets lies in its core values, which guide every action and shape each process, ensuring that our commitment to these values is reflected in all our endeavors.The success story at JustMarkets is written by a dynamic and innovative team of dedicated professionals. The diverse team from 10 different countries, and it’s what truly sets JustMarkets apart. As a rapidly growing team, JustMarkets is always on the lookout for like-minded individuals who resonate with our culture and values.Explore opportunities at JustMarkets and become a part of our team of professionals!Why Choose Us:— We are known for being a dependable employer, fostering trust and reliability among our team, and as a broker, nurturing genuine relationships with clients and partners.— We actively track market trends and employ modern management and business approaches, ensuring ongoing growth and development for both the company and its employees.— We value transparent interaction and open communication between teams, management, andC-levelexecutives, where everyone feels empowered to express themselves, ask questions, raise concerns, and voice their ideas.— Working in a multinational environment on one product gives you valuable experience of collaborating with different cultures united by a common goal.
More at JustMarkets Tech
All 196 roles
Enterprise & Cloud Security Manager
JustMarkets Tech

Customer Support Specialist - Malay Speaker
JustMarkets Tech

Talent Acquisition Specialist (Accounting)
JustMarkets Tech

Partner Relationship Manager – Uzbek Speaker
JustMarkets Tech · Uzbekistan
Similar jobs

Middle SOC Analyst/ SecOps Engineer
Agiliway · Lviv +1

Middle SOC Analyst/ SecOps Engineer
Agiliway · Lviv +1

Middle SOC Analyst/ SecOps Engineer
Agiliway · Lviv +1

Middle SOC Analyst/ SecOps Engineer
Agiliway · Lviv +1