Security Operations Center (SOC) Manager
Quick Summary
Job Description : About us With over 200 brands sold in nearly 180 countries, Diageo is home to some of the world’s most iconic drinks. From Johnnie Walker and Guinness to Tanqueray,
Job Description :
With over 200 brands sold in nearly 180 countries, Diageo is home to some of the world’s most iconic drinks. From Johnnie Walker and Guinness to Tanqueray, Smirnoff and Don Julio, we craft brands chosen for life’s moments — from everyday connections to landmark celebrations.
Bring your talent, curiosity and ambition, and strive for your personal best alongside people who challenge, support and learn from each other. Together, as one outstanding team, we keep learning, improving and raising the bar for our brands, our business and each other.
Join us and play your part in making life’s moments mean a little more.
About the Role
~1 min readThe SOC Manager is responsible for leading and managing Security Operations Center (SOC) functions, ensuring effective 24×7 monitoring, detection, incident response, and threat hunting across enterprise IT, cloud, OT, and digital environments. This role focuses on operational excellence, team leadership, incident readiness, and continuous improvement, while aligning SOC activities with enterprise cybersecurity strategy and business objectives.
Responsibilities
~1 min read· Lead day-to-day SOC operations, ensuring continuous monitoring, detection, and response to security events and incidents.
· Manage L2/L3 SOC analysts, incident responders, and threat hunters, fostering a high-performance culture.
· Ensure adherence to incident response SLAs, escalation paths, and communication protocols.
· Act as the incident commander for major cyber incidents, coordinating technical response and stakeholder communication.
· Oversee incident triage, investigation, containment, eradication, and recovery activities.
· Conduct root-cause analysis and ensure corrective and preventive actions are implemented.
· Lead threat hunting activities using frameworks such as MITRE ATT&CK to identify advanced and stealthy threats.
· Coordinate post-incident reviews and lessons-learned sessions.
· Own and optimize SOC technologies including SIEM, SOAR, EDR/XDR, NDR, and threat intelligence platforms.
· Drive use-case development, tuning, and automation to reduce false positives and improve detection fidelity.
· Partner with engineering and IT teams to onboard new log sources and improve telemetry quality.
· Ensure SOC tooling aligns with enterprise architecture and cybersecurity strategy.
· Define, track, and report SOC KPIs and metrics (MTTD, MTTR, alert quality, incident trends).
· Drive continuous improvement initiatives using data, automation, and process optimization.
· Maintain and improve SOC playbooks, runbooks, and standard operating procedures.
· Support tabletop exercises, red-team/blue-team simulations, and readiness testing.
· Collaborate with GRC, IAM, Security Architecture, Cloud, OT, and Product Security teams.
· Act as a key liaison between SOC and IT, engineering, and business stakeholders.
· Support audits, regulatory inquiries, and risk assessments by providing operational evidence.
· Engage with vendors, MSSPs, and service providers, ensuring contractual SLAs are met.
· Recruit, onboard, and mentor SOC talent.
· Build career paths, training plans, and succession strategies for SOC staff.
· Foster a culture of learning, innovation, accountability, and resilience.
· Promote security awareness and collaboration across the organization.
Requirements
~1 min read· Bachelor’s degree in Computer Science, Information Security, Engineering, or related field.
· 8–12+ years of cybersecurity experience with 5+ years in SOC / incident response leadership.
· Strong hands-on experience with SIEM/SOAR platforms and security monitoring tools.
· Proven experience leading major cyber incidents in enterprise environments.
· Strong understanding of threat frameworks (MITRE ATT&CK) and attack methodologies.
· Experience working with globally distributed teams and 24×7 operations.
· Certifications such as CISSP, CISM, GCIA, GCIH, CRISC.
· Experience with cloud security monitoring (AWS/Azure/GCP).
· Experience managing MSSPs or outsourced SOC models.
· Strong executive communication and reporting skills.
What We Offer
~1 min readProtecting candidates is very important to us. All communications regarding your application will come from an email address ending in @diageo.com. In our recruitment process, we'll never ask for money.
Worker Type :
RegularPrimary Location:
Bangalore Karle Town SEZAdditional Locations :
Job Posting Start Date :
2026-09-10Location & Eligibility
Listing Details
- Posted
- October 7, 2026
- First seen
- October 7, 2026
- Last seen
- October 7, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 56%
- Scored at
- October 7, 2026
Signal breakdown
4 other jobs at
View all →Similar Security Operations jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.