SOC Lead, Professional Services Delivery Engineer IV - IN

🏢 Rackspace US, Inc. · all Rackspace US, Inc. jobs
📍 India
📅 Posted 2026-08-06 · via Himalayas
🏷 SOC-Lead,Security-Operations-Manager,Cybersecurity-Lead,MSSP-Security-Engineer,SIEM-Administrator,Cybersecurity-Delivery-Lead,SOC-Team-Lead
Apply on original site ↗

About Rackspace Cyber Defence

Rackspace Cyber Defence is our next generation cyber defence and security operations capability that builds on 20+ years of securing customer environments to deliver proactive, risk-based, threat-informed and intelligence-driven security services.

Our purpose is to enable our customers to defend against the evolving threat landscape across on-premises, private cloud, public cloud, and multi-cloud workloads.

Our goal is to go beyond traditional security controls to deliver cloud-native, DevOps-centric, fully integrated 24x7x365 cyber defense capabilities that deliver a proactive , threat-informed , risk-based , intelligence-driven approach to detecting and responding to threats.

Our mission is to help our customers:

- Proactively detect and respond to cyber-attacks – 24x7x365.

- Defend against new and emerging risks that impact their business.

- Reduce their attack surface across private cloud, hybrid cloud, public cloud, and multi-cloud environments.

- Reduce their exposure to risks that impact their identity and brand.

- Develop operational resilience.

- Maintain compliance with legal, regulatory and compliance obligations.

What we’re looking for

To support our continued success and deliver a Fanatical Experience™ to our customers, Rackspace Cyber Defence is looking for a Security Lead for security Operations.

This role is particularly well-suited to a self-starting, experienced, and motivated Security Lead, who is commercially aware, service-oriented, and has a proven record of accomplishment in delivering and managing a security operations centre (SOC.)

The Security Lead will be the face of Rackspace’s security services and responsible for the leadership and management of a multi-disciplinary security operations centre (SOC) that serve Rackspace Cyber Defense customers.

SOC Lead to oversee Security Operations Centre (SOC) activities within an MSSP environment. The ideal candidate will be responsible for leading security operations, threat hunting, incident response, Microsoft Sentinel administration, cloud security monitoring, compliance audits, documentation management, and team development. Support and Implement cloud security monitoring across Azure, AWS, and GCP.
Key Accountabilities

- Lead SOC operations in an MSSP environment. (Microsoft Sentinel)

- Manage incident detection, investigation, response, and escalation.

- Conduct proactive threat hunting and detection engineering.

- Administer and optimize Microsoft Sentinel and Elastic Security SIEM platforms.

- Design and manage Elastic Cloud Serverless SIEM deployments and integrations.

- Develop security use cases, dashboards, alerts, and automation workflows.

- Maintain SOC documentation, playbooks, SOPs, and reports.

- Support cloud security monitoring across Azure, AWS, and GCP.

- Drive AI-enabled security initiatives and operational improvements.

- Support security audits, compliance, and governance activities.

- Lead and mentor SOC analysts and engineers.

- Manage customer engagements, service delivery, and SLA compliance.

- Critical Incident Handling (P1) & Closure and Deep investigation and analysis of critical security incidents.

- Post-breach forensic incident analysis reporting and Advanced threat hunting.

- Develop custom dashboards and reporting templates and Develop complex to customer-specific use cases.

- Threat Hunting & Detection Engineering: Develop use cases and detection rules based on emerging threats and attack techniques and perform analysis and map threats to MITRE ATT&CK framework.

AI & Security Automation: Implement automation and orchestration work flows to improve SOC efficiency.

Compliance, Audit & Governance Ensure compliance with ISO 27001, SOC 2, PCI-DSS, NIST, CIS Controls, and other regulatory requirements.
Skills & Experience

- Experience of leading a team of Security Operations analysts and Engineers.

- Experience of working in MSSP in multi-customer env

← All remote jobs