Manager - Security Operations

About Providence

Providence, one of the US’s largest not-for-profit healthcare systems, is committed to high quality, compassionate healthcare for all. Driven by the belief that health is a human right and the vision, ‘Health for a better world’, Providence and its 121,000 caregivers strive to provide everyone access to affordable quality care and services.

Providence has a network of 51 hospitals, 1,000+ care clinics, senior services, supportive housing, and other health and educational services in the US.

Providence India is bringing to fruition the transformational shift of the healthcare ecosystem to Health 2.0. The India center will have focused efforts around healthcare technology and innovation, and play a vital role in driving digital transformation of health systems for improved patient outcomes and experiences, caregiver efficiency, and running the business of Providence at scale.


Why Us?

  • Best In-class Benefits
  • Inclusive Leadership
  • Reimagining Healthcare
  • Competitive Pay
  • Supportive Reporting Relation

Job Title: Manager - Security Operations

 

Role Summary:

We are looking for an experienced SOC Manager to lead and mature the organization's Security Operations capability. The role will be responsible for SOC operations, threat detection, incident response, threat hunting, threat intelligence, SOAR automation, insider threat monitoring and security scripting. The ideal candidate should have a strong combination of people leadership and hands-on technical expertise, with the ability to lead analysts while personally driving complex investigations, threat hunts, automation and detection improvements.

 

Key Responsibilities:

  • Lead day-to-day SOC operations and security monitoring.
  • Manage L1/L2/L3 SOC analysts, and threat hunters.
  • Lead incident bridges during major cyber incidents.
  • Conduct root-cause analysis and post-incident reviews.
  • Develop lessons learned and preventive controls.
  • Manage staffing, shift planning, training and technical development.
  • Ensure adherence to SOC SLAs, KPIs and operational objectives.
  • Act as the escalation point for P1/P2 (Major) security incidents.
  • Drive continuous improvement of SOC maturity and operational efficiency.
  • Establish and lead a proactive Threat Hunting program.
  • Develop hypothesis-driven hunts based on adversary behavior and emerging threats.
  • Consume and analyze external/internal intelligence feeds.
  • Develop threat actor profiles and campaign assessments.
  • Automate repetitive SOC analyst activities.
  • Develop automated enrichment and response workflows.
  • Establish and mature the Insider Threat Detection & Response capability.
  • Develop insider-threat detection use cases.
  • Support insider-risk investigations while maintaining privacy and compliance requirements.

 

 

Required Skills/Qualifications:

  • Strong people leadership, mentoring and team-building skills.
  • Strong stakeholder-management and cross-functional collaboration skills.
  • Ability to balance strategic SOC transformation with hands-on technical execution.
  • Experience with SIEM and SOAR platforms, such as CrowdStrike Falcon Next-Gen SIEM and Palo Alto Network Cortex XSOAR.
  • Hands-on experience with EDR/XDR solutions, like CrowdStrike Falcon.
  • In-depth knowledge of Windows, Linux, Active Directory/Entra ID, Azure Cloud Platform, and networking protocols (DNS, HTTP(s), SMTP, LDAP, TCP/IP).
  • Hands-on scripting experience using Python, PowerShell, Bash/Shell, KQL, REST APIs, JSON and Regex.

 

Preferred Qualifications:

  • 9-13 years of experience in cybersecurity, with at least 3 years in threat hunting.
  • Relevant certifications such as GIAC Certified Threat Hunter (GCTI/GCTH), GIAC Certified Forensic Analyst (GCFA/GNFA), CISSP, CISA or equivalent certifications.

 

 

Providence’s vision to create ‘Health for a Better World’ aids us to provide a fair and equitable workplace for all in our employment, whether temporary, part-time or full time, and to promote individuality and diversity of thought and background, and acknowledge its role in the organization’s success. This makes us committed towards equal employment opportunities, regardless of race, religion or belief, color, ancestry, disability, marital status, gender, sexual orientation, age, nationality, ethnic origin, pregnancy, or related needs, mental or sensory disability, HIV Status, or any other category protected by applicable law. In furtherance to our mission in building a more inclusive and equitable environment, we shall, from time to time, undertake programs to assist, uplift and empower underrepresented groups including but not limited to Women, PWD (Persons with Disabilities), LGTBQ+ (Lesbian, Gay, Transgender, Bisexual or Queer), Veterans and others. We strive to address all forms of discrimination or harassment and provide a safe and confidential process to report any misconduct.

Contact our Integrity hotline also, read our Code of Conduct.