About Company:
BDO is a global network of professional services firms with a presence in over 166 countries, revenue of over USD 14 billion, and experience of over 60 years. Its a leading service provider for the mid-markets with client service at its heart.
BDO India Services Private Limited (or BDO India) is the India member firm of BDO International. BDO India offers strategic, operational, accounting and tax, and regulatory advisory & assistance for both domestic and international organizations across a range of industries. BDO India is led by more than 300+ Partners & Directors with a team of over 10,000 professionals operating across 14 cities and 20 offices. We expect to grow sizably in the coming 3-5 years, adding various dimensions to our business and multiplying and increasing the current team size multi-fold.
Title: MSS (Managed Security Services) - Associate Director
Location: Gurgaon/ Bangalore/ Mumbai
Reports to: SOC Lead, Security Operations Centre (SOC)
Team: BAS Cyber (SOC)
Summary:
We are seeking SOC Associate Director with 12 to 15 years of hands-on experience in cybersecurity with significant experience leading enterprise or managed security services. This role is responsible to lead strategic and operational direction for SOC while ensuring delivery of scalable, resilient and high-quality detection and response. The candidate should have a proven track record of managing large security operations teams, driving service maturity and leading SOC transformation initiatives. The candidate should have experience on automating SOC activities thru various tools including SOAR.
Key Responsibilities:
- Establish governance frameworks, operational standards and performance metric for SOC.
- Lead SOC transformation initiatives, including adoption of emerging technologies and best practices.
- Drive continuous improvement initiatives focused on operational maturity, automation and detection effectiveness.
- Provide oversight for 24x7 SOC operations.
- Review operational performance, identify improvement opportunities and implement corrective actions when necessary.
- Act as the point of contact and support customers during any major security incidents and operational issues.
- Oversee workforce planning, including analyst capacity planning, roster strategy, succession planning and talent development.
- Build technical capability across the organization through coaching, knowledge sharing and structured development programs.
- Provide architectural and operation oversight for enterprise SIEM and SOAR platforms.
- Drive improvements in detection engineering, alert tuning, log onboarding and automation to enhance SOC effectiveness.
- Ensure SIEM, SOAR and Agentic platforms evolve to support changing requirements and emerging threats.
- Ensure detection content aligns with current threat landscape and MITRE frameworks.
- Promote adoption of security automation to improve investigation quality and operation efficiency.
- Establish effective collaboration industry peers and external threat intelligence providers to ensure actionable intelligence is incorporated into detection and response capabilities.
- Drive threat hunting initiatives with MSS team and continuous enhancements of detection capabilities.
Education & Qualification:
- 12 to 15 years of work experience in cybersecurity domain and security operations.
- A valid CISSP certificate.
- Have experience in design, deployment and operations of 1 cloud based SIEM.
- Bachelor's degree in engineering, Computer Science, Information Security, or a related discipline with Masters or MBA in Cybersecurity, Information Assurance or relevant discipline is highly desirable.