Vice President - Security Operations Center and Cyber Defense
Saviynt
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
6,001 open operations roles across 636 companies are on ApplySarthi right now, most of them in Bengaluru (206), Hyderabad (144), Mumbai (126).
- Business Operations AssociateBjak
- Business Operations Werkstudent (m/w/d)Aampere
- Head of Delivery OperationsKraken
- Head of Legal OperationsSitecore
- Praktikant Operations & Office Management (m/w/d)CKM Group
What operations roles keep asking for: Supply chain (15%), Excel (14%) — counted across their open postings here.
AWS jobs · Azure jobs · GCP jobs · SIEM jobs
Saviynt has 83 open roles listed here.
- Global Head of Procurementbengaluru
- Named Enterprise Account Executive - Ohio
- Vice President Field Sales - Public Sector
- Sr. Benefits Specialist
- Global Head of Procurement
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for operations roles keep coming back to Supply chain, Excel. Practise those questions before you sit with Saviynt.
Questions you are likely to be asked
- Why do you want to join Saviynt?
- What is your experience with SIEM? Tell me one thing you learned the hard way.
- How do you keep secrets and access safe in your infrastructure?
- Walk me through how code gets from a commit to production where you work.
- Tell me about an outage you handled. What did you learn from it?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Vice President - Security Operations Center and Cyber Defense at Saviynt interview free →The Vice President of Security Operations Center (SOC) at Saviynt is responsible for leading and evolving the organization’s global cyber defense capabilities. This role owns 24/7 security operations, threat detection and response, threat hunting, and incident response. The VP SOC will define the cyber defense strategy, ensure rapid and effective response to security incidents, and provide clear, risk-based insights to executive leadership and the board. This role combines strategic vision, operational excellence, and deep technical credibility to protect the organization against modern and emerging threats. The ideal candidate will have a proven track record of 15+ years leading high-performing cybersecurity teams, proactively identifying and mitigating threats, and driving strategic security initiatives. WHAT YOU WILL BE DOING: Lead and continuously mature a 24/7 global Security Operations Center (SOC) to detect, analyze, and respond to cyber threats in real time. Refine the SOC operating model, coverage strategy, escalation paths, and incident command structure. Serve as Incident Commander for incidents including global coverage. Direct overall IR activities. Ensure high-fidelity alerting, reduced false positives, and measurable improvements in detection and response effectiveness (MTTD, MTTR). Develop and execute a Threat Hunting strategy to proactively identify advanced, stealthy, and persistent threats before escalation. Drive adversary-focused detection aligned to MITRE ATT&CK and D3FEND, threat intelligence, and real-world attack patterns. Establish and maintain IR playbooks, runbooks, escalation procedures, and cross-functional coordination with IT, Legal, Communications, Risk, and Compliance. Lead forensic investigations, root cause analysis, and post-incident reviews to strengthen controls and prevent recurrence. Lead tabletop exercises, red/purple team engagements, and breach simulations to test readiness. Oversee Attack Surface Management (ASM) to continuously identify, monitor, and reduce external and internal exposure across cloud, SaaS, identity, endpoints, and networks. Oversee Dark Web Monitoring initiatives to detect leaked credentials, data exposure, insider threats, and early indicators of compromise. Collaborate closely with Threat Intelligence teams to track adversary TTPs, emerging threats, and sector-specific risks, translating intelligence into actionable detections and controls. Develop and execute a comprehensive Cyber Defense strategy, aligning security operations with business objectives, risk appetite, and regulatory requirements. Own the SOC technology stack, including SIEM, SOAR, EDR/XDR, CNAPP, cloud security tooling, case management, and forensic platforms. Drive automation and orchestration to reduce manual effort and scale SOC operations efficiently. Manage, mentor, and grow high-performing teams across SOC, Threat Hunting, Incident Response, and Threat Intelligence functions. Establish career paths, training programs, and succession planning for security operations talent. Partner with Product, Engineering, Infrastructure, Legal and HR teams to ensure alignment with security frameworks and regulatory obligations. Present clear, business-aligned cyber risk metrics, threat trends, and program updates to executive leadership and the board. WHAT YOU BRING: Bachelor’s or master’s degree in computer science, Information Security, or a related field. Or equivalent work experience with demonstrated results. 15+ years of experience leading cybersecurity teams across SOC, Threat Hunting, Incident Response, Attack Surface Management, Dark Web Monitoring and Threat Intelligence. Proven executive leadership and crisis management experience handling major security incidents and board-level communications. Deep expertise in MITRE ATT&CK, threat intelligence frameworks, adversary emulation, and digital forensics. Strong hands-on and architectural understanding of SIEM, SOAR, EDR/XDR, and cloud security technologies (AWS, Azure, GCP). Experience designing and executing cyber defense strategies in large-scale, complex enterprise environments. Solid knowledge of offensive security techniques and attacker methodologies, with the ability to translate them into effective defensive strategies Certifications - CISSP, CISM, CCSP, or equivalent are nice to have but not a requirement
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- AI Detection Engineer - SOC Analyst IVSaviynt · bengaluru
- Associate Principal Engineer - JavaSaviynt · bengaluru
- Associate Principal Engineer - JavaSaviynt · bengaluru
- Associate Principal Technical Support EngineerSaviynt · bengaluru
- Enterprise Account ExecutiveSaviynt
- Global ControllerSaviynt
- Group Vice PresidentSaviynt
- HR Business Partner - Americas GTM and FinanceSaviynt
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on lever · posted 2026-07-07. ApplySarthi collects openings and links to application pages; the role is advertised by Saviynt, not by us.