Job Description

Job Description
St. Fox Consultancy is seeking a highly experienced and strategic SOC Head Architect to lead the design, evolution, and governance of enterprise-grade Security Operations Center (SOC) architectures. This role requires deep expertise in SOC strategy, detection engineering, incident response, and integration of SIEM, SOAR, EDR/XDR, NDR, and threat intelligence platforms.

Key Responsibilities:

SOC Architecture & Strategy
β€’ Define and own end-to-end SOC architecture (People, Process, Technology).
β€’ Design scalable SOC models – MSSP SOC, Hybrid SOC, Cloud SOC, and In-house SOC.
β€’ Establish SOC maturity models aligned with frameworks such as NIST CSF, NIST 800-61, ISO 27001, and MITRE ATT&CK. β€’ Drive roadmap planning for SOC modernization, automation, and AI-led detection.

Pre-Sales & Customer Advisory
β€’ Engage with CISOs, CXOs, and security leadership to understand business risks and SOC requirements.
β€’ Lead technical discovery, architecture workshops, and solution design discussions.
β€’ Own SOC-related RFP/RFI responses, solution blueprints, and pricing inputs.
β€’ Present SOC architecture, use cases, and value propositions to enterprise customers.
β€’ Support PoCs for SIEM, SOAR, EDR/XDR, UEBA, and Threat Intelligence platforms.

SOC Engineering & Operations Enablement
β€’ Design detection strategies, correlation rules, and use-case frameworks.
β€’ Define SOC workflows for alert triage, incident response, threat hunting, and escalation.
β€’ Architect SOAR playbooks for automated response and enrichment.
β€’ Guide log source onboarding, data normalization, and retention strategies. β€’ Ensure SOC performance metrics (MTTD, MTTR, false positives, coverage).

Post-Sales & Delivery Governance
β€’ Provide architectural oversight during SOC deployments and transitions.
β€’ Review and validate configurations, dashboards, and reporting frameworks.
β€’ Mentor SOC managers, architects, and L2/L3 analysts.
β€’ Act as escalation point for complex incidents and architectural challenges.
β€’ Collaborate with OEMs for advanced troubleshooting and roadmap alignment.

Requirements

Required Skills & Qualifications

β€’ 8+ years in SOC architecture or leadership roles.
β€’ Proven experience designing and managing enterprises or MSSP SOCs.

Technical Expertise

β€’ SIEM: Splunk, IBM QRadar, LogRhythm, ArcSight, Sentinel, etc.
β€’ SOAR: Palo Alto Cortex XSOAR, Splunk Phantom, Swimlane, etc.
β€’ EDR/XDR: CrowdStrike, SentinelOne, Microsoft Defender, Trellix.
β€’ NDR: Darktrace, Vectra, ExtraHop (or equivalent).
β€’ Threat Intelligence: Anomali, MISP, Recorded Future, etc.
β€’ Cloud Security: AWS/Azure/GCP logging, CSPM, CNAPP integration.
β€’ Strong understanding of detection engineering, threat hunting, and IR playbooks.

Frameworks & Standards

β€’ MITRE ATT&CK, Cyber Kill Chain
β€’ NIST CSF, NIST 800-61, ISO 27001
β€’ Zero Trust Architecture, SOC maturity models

Benefits

What We Offer:

● Competitive salary and benefits package.
● Opportunities for professional growth and advancement.
● Exposure to cutting-edge technologies and projects.
● A collaborative and supportive work environment.

How to Apply:

Interested candidates should submit a detailed resume and a cover letter outlining their qualifications and experience relevant to the role applied for. Applications should be sent via our careers portal or to [email protected]


St. Fox is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.


Requirements
Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field. ● Professional certifications such as CISSP, CISA, CISM, or similar are highly preferred. ● Proven experience in cybersecurity roles with expertise in SSE, SASE, Identity Management, XDR, and SOC operations. ● Strong knowledge of networking protocols, encryption technologies, and security vulnerabilities. ● Experience with cloud security architectures and hybrid environments. ● Proficient in incident handling, malware analysis, and forensic approaches. ● Excellent problem-solving skills and the ability to manage multiple tasks under tight deadlines. ● Strong communication and interpersonal skills, with fluency in English for both verbal and written communication. Technologies Preferred: (At Least 3) ● Cisco SSE(Secure Service Edge) ● ZIA - Zscaler Internet Access and Zscaler Private Access (ZPA) ● Fortinet - Secure Access Service Edge(SASE), Secure Services Edge(SSE) ● Palo Alto Prisma Access Preferred Experience: ● For L3: 8+ years of experience with leadership responsibilities and advanced project management skills.

Apply for this Position

Ready to join ? Click the button below to submit your application.

Submit Application