SOC Lead Consultant

2 weeks ago


Singapore NCS Group Full time

Direct message the job poster from NCS Group

Talent Acquisition Business Partner @ NCS Group | Driving Growth Through People | Strategic Recruiter & Talent Advisor

NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary things, creating lasting value and impact for our communities, partners, and people. Our diverse workforce of 13,000 has delivered large-scale, mission-critical, and multi-platform projects for governments and enterprises in Singapore and the APAC region.

As the Practice Manager within a Managed Security Services Provider (MSSP) – Detect & Response, you will lead the end-to-end operation and strategic development of the Security Operations Center (SOC). You are responsible for delivering high-quality, 24x7 threat detection and incident response services to multiple clients across different industries. You will oversee the design, execution, and continuous improvement of SOC capabilities, while managing a team of analysts, engineers, and threat hunters. Your role is both technical and client-facing — ensuring operational excellence, regulatory compliance, and client satisfaction.

What will you do?

  • Lead and mentor SOC analysts (L1–L3), engineers, and threat hunters.
  • Develop and maintain shift coverage for 24x7 or follow-the-sun SOC operations.
  • Oversee training, certifications (e.g., GCIA, GCIH, OSCP), and career progression.
  • Evaluate and implement next-gen SOC technologies (SIEM, SOAR, EDR, XDR, UEBA, etc.).

Talent Development and Shift Management

  • Mentor SOC analysts and engineers, developing career paths and skill matrices.
  • Ensure adequate staffing, training, and cross-coverage for critical operations.
  • Oversee training, certifications (e.g., GCIA, GCIH, OSCP), and career progression.
  • Develop and maintain shift coverage for 24x7 or follow-the-sun SOC operations.

Client Facing Security Operations & Incident Response

  • Oversee onboarding of new MSSP clients — log ingestion, use case development, tuning, integration.
  • Ensure timely detection, triage, escalation, and resolution of security incidents.
  • Maintain and improve SOPs, runbooks, and incident response workflows.
  • Act as escalation point for major incidents, threat trends, or client concerns.
  • Participate in client briefings, security reviews, compliance audits, and incident post-mortems.

Service Excellence & Metrics

  • Track and report SOC KPIs: MTTD, MTTR, alert volumes, false positive rates, SLA adherence.
  • Maintain SOC documentation, incident response processes, and audit-readiness (e.g., ISO 27001, PCI-DSS, SOC 2).
  • Support compliance needs of clients (e.g., MAS TRM, HIPAA, GDPR).

Client / Stakeholder Engagement

  • Interface with clients, senior executives, or business units to communicate SOC effectiveness, threat posture, and incident handling.
  • Support onboarding of new customers, including use cases and rules tuning.
  • Participate in audits, tabletop exercises, and post-incident reviews.

The ideal candidate should possess:

  • Bachelor's degree in Cybersecurity, Computer Science, or related field.
  • Minimum 10 years of cybersecurity experience, including at least 3 years of leading SOC teams or MSS operations.
  • Expertise with SIEM/SOAR platforms (e.g., Splunk, QRadar, Google SecOps, Sentinel, XSOAR).
  • Hands-on understanding of network forensics, endpoint detection, cloud security, and TTPs.
  • Strong knowledge of network security, endpoint defense, malware analysis, and TTPs.
  • Familiar with frameworks such as MITRE ATT&CK, NIST CSF, ISO 27001.
  • Proven ability to manage clients across various industries with different risk profiles.
  • Experience running SOCs in MSSP or hybrid environments (cloud/on-prem).
  • Experience in project management
  • Ability to translate technical alerts into business risk language.
  • Familiarity with cloud-native security (AWS/Azure/Google), log pipelines, and automation.
  • Passion for mentoring and upskilling SOC staff.
  • Business acumen and ability to align cyber strategy to business goals.
  • Experience working in regulated industries (finance, healthcare, government).
  • Experience working with MSSPs, vendors, or global teams.

We are driven by our AEIOU beliefs—Adventure, Excellence, Integrity, Ownership, and Unity—and we seek individuals who embody these values in both their professional and personal lives. We are committed to our Impact: Valuing our clients, Growing our people, and Creating our future.

Together, we make the extraordinary happen.

Learn more about us at ncs.co and visit our LinkedIn career site.

Seniority level
  • Seniority levelMid-Senior level
Employment type
  • Employment typeFull-time
Job function
  • Job functionInformation Technology, Consulting, and Analyst
  • IndustriesIT Services and IT Consulting

Referrals increase your chances of interviewing at NCS Group by 2x

Get notified about new Computer Security Specialist jobs in Singapore, Singapore.

Third-Party Security Risk Management, ConsultantDeputy Manager (IT Cyber Security) - ContractTechnology & Cyber Security Risk AnalystCybersecurity Consultancy and Solutioning (1-year traineeship programme)Cybersecurity Incident Response ConsultantCyber Engagement Lead, Mandiant Consulting, Google CloudSecurity Consultant (Microsoft Purview)|ContractCyber Security Consultant - Red Team SpecialistAVP/VP (12 months contract), Cybersecurity (Governance Oversight)TDI – Technology Information Security Officer (TISO) – VP(Senior) Cyber Security Consultant & Penetration TesterSenior Security Consultant (Governance Risk & Compliance)Principal Consultant – Infrastructure and CybersecurityCybersecurity Consultant (Cloud Security)Consultant/Senior Consultant, Data Protection SpecialistAsst Director / Snr Cybersecurity Consultant (GSA), CIIMicrosoft 365 Security & Compliance Consultant

We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
  • SOC Manager

    7 days ago


    Singapore GATEWAY SEARCH PTE. LTD. Full time

    **Responsibilities** - Responsible for the success of the Managed Security Services. - Design, build, operate and maintain the Security Operations Center (SOC). - Attain and maintain SOC certifications. - Well-versed in technologies such as SIEM, EDR, SOAR, Network Analytics, Endpoint Analytics, Threat Intelligence, Threat Intelligence Platform. - Train and...

  • SOC Lead

    2 weeks ago


    Singapore GOLDTECH RESOURCES PTE LTD Full time

    Roles & ResponsibilitiesJoin our global Security Operations Center (SOC) as a Security Analyst III, where you'll play a crucial role in delivering Managed Security Services (MSS) to global clients. You'll lead incident investigations, optimize detection strategies and collaborate across teams to proactively defend enterprise infrastructure. This role is...

  • SOC Manager

    1 week ago


    Singapore NCS Full time

    **SOC Manager**: **Date**:17 Dec 2024 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary...


  • Singapore U3 Infotech Pte Ltd. Full time

    SOC Manager Job **Responsibilities**: Managing day to day SOC operations Work closely with HQ SOC team members, oversees, manages ,improves security policies, Standard Operating Procedures, incident response workflows, playbooks, etc Work closely with presales consultant in prospecting new customers Establish connect with prospective clients by...


  • Singapore TechBridge Market Full time

    **Job Information**: Workplace - On-SiteIndustry - Computer and Network SecurityCity - SingaporeState/Province - No valueCountry - SingaporeZip/Postal Code - 000000- If you are passionate about playing a key role in the success of the region’s largest pure-play cybersecurity expertise and innovation, we want to hear from you!- Our client is a...


  • Singapore Hays Full time

    Senior Consultant/ SOC Analyst Hays Technology is looking for a Senior Consultant/ SOC Analyst to help our client undertake an operational responsibility in performing cyber threat discovery. What you will be doing: - To understand data structures, analysing, visualising and, transforming them to uncover cyber-attack patterns or derive insights. - Using...


  • Singapore NCS Full time

    **Lead Consultant, IT Security**: **Date**:1 Aug 2025 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve...

  • L2 SOC Analyst Lead

    3 days ago


    Singapore Monster SG Pte Limited Full time

    Roles & Responsibilities We are seeking a seasoned Level 2 SOC Analyst Lead to spearhead threat operations, mentor junior analysts, and drive advanced investigations within a high-stakes 24/7 Security Operations Center. You will be responsible for incident response leadership, threat hunting, forensic analysis, and client governance, while ensuring...


  • Singapore beBeeSecurity Full time $100,000 - $150,000

    About the RoleThe Senior SOC Operations Lead is a key position that oversees the daily operations of our Security Operations Center (SOC). This senior-level role provides strategic leadership and technical guidance to ensure the highest level of security operations for our clients.ResponsibilitiesLead by example, providing technical guidance and oversight to...

  • SOC Manager

    2 weeks ago


    Singapore JJ Consulting Services Full time

    Our Client is an established company in Singapore, who is seeking to recruit a SOC Manager. **SOC Manager** - To perform threat monitoring, advance triage, incident response, and follow up on customer query - Monitor, review and profile the events. - Assess each event based on factual information and wider contextual information available - Produce reports...