Aiopsgroup Ad logo

Security Operations Manager

Hiring from
Bulgaria
Work type
Hybrid
Posted
Is this job info correct?
Show job description

About us:

valantic BG is a multidisciplinary digital competency center that builds extensive e-commerce expertise and a track record of successfully delivered projects. We provide specialized services at the intersection of e-commerce, data, and technology. Our portfolio includes Consulting, Customer Acquisition & Retention, Commerce Implementation, CX Monitoring, and 24/7 Support Services. We are committed to helping global enterprise clients achieve sustainable digital growth, while maintaining strong client relationships and delivering meaningful results.


valantic is a leading provider of digital transformation services and one of the most dynamic companies in the fields of digital solutions, consulting, and software. The company is trusted by numerous major brands and internationally recognized organizations. With its unique structure of divisions, competence centers, and expert teams, valantic offers solutions tailored precisely to the digitalization needs of modern businesses - from strategy to implementation.


What Are You Going to Do?

We are seeking a versatile Security Operations Manager to drive technical defense, security design, and cross-functional governance. In this hybrid leadership and technical role, you will lead and develop our SOC team, shape enterprise security architecture, manage vulnerability lifecycles, own incident escalation, and act as a primary technical bridge to the CISO for Governance, Risk, and Compliance (GRC) initiatives.


Please note that this role may require on-call shifts availability.


Main Responsibilities:

  • SOC Leadership & Incident Response: Lead day-to-day SOC operations, triage critical security incidents, define response playbooks, and mentor Tier 1–3 analysts.
  • Team Leadership & Development: Line-manage and grow the security operations team - shift and on-call planning, recruitment and onboarding, goal setting, performance reviews, and individual development plans that support progression from Tier 1 through Tier 3.
  • Escalation & Major Incident Management: Own the severity classification model and escalation matrix, act as incident commander during major incidents, and coordinate the response across IT, Legal, Communications and executive stakeholders, including regulatory notification timelines where applicable.
  • Reporting & Security Metrics: Define and report the operational KPIs for the function - detection and response times, detection coverage, incident trends, and vulnerability remediation against SLA - with regular reporting to the CISO and periodic risk summaries to executive leadership and audit.
  • Security Architecture & Engineering: Design and implement resilient enterprise security architectures across hybrid and cloud environments, ensuring secure-by-design principles for infrastructure and applications. Lead Security architecture initiatives
  • Vulnerability Management: Direct continuous vulnerability scanning, risk prioritization, remediation tracking, and cross-team patch management workflows.
  • GRC Collaboration & CISO Partnership: Partner closely with the CISO to align technical operations with compliance frameworks (e.g., ISO 27001, NIS2, SOC 2, NIST CSF), audit requirements, and risk registers.
  • Technical Security Awareness: Oversee technical setup of security awareness campaigns, simulated phishing operations, and security enablement programs for the organization.
  • Tooling & Automation: Evaluate, deploy, and optimize modern security tooling (SIEM, EDR/XDR, SOAR, IAM) to maximize operational efficiency and threat visibility.


What Do We Expect?

  • Experience: 7+ years in cybersecurity, including proven experience leading SOC teams or security operations alongside hands-on security architecture design.
  • Leadership: Demonstrated experience leading a team of security analysts, including hiring, shift planning, performance management, and developing people.
  • Escalation & Crisis Handling: Proven track record of owning escalation paths and leading the response to major security incidents under time pressure.
  • Reporting: Experience defining security metrics and presenting them to senior management, including the ability to translate technical exposure into business risk.
  • Technical Mastery: Deep knowledge of threat detection, log analytics, incident handling, cloud security architecture (Azure, AWS, or GCP), and vulnerability scanning platforms.
  • Governance & Risk: Strong working knowledge of regulatory and compliance frameworks with demonstrated ability to translate GRC requirements into actionable technical controls.
  • Communication & Alignment: Exceptional stakeholder management skills, capable of communicating complex technical risks to executive leadership and mentoring technical engineers.
  • Certifications (Preferred): CISSP, CISM, CCSP, GCIA, GCIH, or equivalent technical credentials.


Why Join Us?

  • Competitive remunerations and benefits package
  • Opportunity to grow your career and get exposure to international brands, working on complex multi-technology projects
  • Friendly, yet competitive work environment where everyone's success is celebrated
  • Flexible working hours/working location

Similar jobs

Apply for this job