IT & OT SOC Manager
Houston
Thursday, 07 May 2026
The Security Operations Center (SOC) Manager is a player/coach role and responsible for leading and overseeing enterprise-wide security operations across both Information Technology (IT) and Operational Technology (OT) environments supporting all detection and response activities. This role ensures continuous monitoring, investigation, and response to cyber threats through a combination of internal SOC resources, AI-driven tooling, and third-party Managed Detection and Response (MDR) partners. The SOC Manager is accountable for supplier performance, detection quality, detection engineering, response effectiveness, and overall alignment with organizational requirements. The IT & OT SOC Manager provides strategic and operational leadership for SOC analysts and guidance to security engineers, drives SOC maturity through automation and AI augmentation, and ensures consistent, high-quality outcomes across internal teams and external service providers. This role works closely with IT, OT, Engineering, Infrastructure, Legal, Compliance, and executive leadership to strengthen the organization’s overall security posture. II. Essential Duties and Responsibilities Lead day-to-day operations as a player/coach of the Security Operations Center (SOC) providing 24 x 7 monitoring, detection, and response across IT and OT environments. Manage SOC personnel, including staffing, training, performance management, and on-call or shift coverage. Oversee incident detection, investigation, response, and escalation processes for both IT and industrial control system (ICS) environments. Drive adoption, governance, and continuous improvement of AI-enabled SOC capabilities, including machine-learning-based detections, analytics, and response automation. Ensure traditional and AI-driven detections and automation are properly tuned, measurable, explainable, and aligned with SOC procedures and risk tolerance. Manage relationships with Managed Detection and Response (MDR) providers, including onboarding, operational integration, SLAs, performance reviews, and escalation handling. Ensure effective monitoring and protection of OT/ ICS, SCADA, and critical infrastructure environments in partnership with engineering and operations teams. Own SOC operational metrics and reporting, including detection and response, alert quality, detection coverage, and automation effectiveness. Maintain SOC policies, procedures, playbooks, and documentation aligned with industry frameworks (e.g., NIST, MITRE ATT&CK, MITRE ATT&CK for ICS)Collaborate with IT, OT, Infrastructure, Compliance, and executive leadership to continuously strengthen the organization’s security posture. Demonstrated experience operationalizing AI and ML-driven security capabilities. Experience in industrial, logistics, utilities, or critical infrastructure organizations. Strong communication skills with the ability to brief executives during high-impact incidents III. Qualifications A. Required Qualifications Bachelor's Degree (accredited) in Computer Science, MIS, Business Administration, or in lieu of degree. High School Diploma or GED (accredited) and 4 years of relevant work experience . years of relevant work experience (in addition to education requirement). B. Preferred Qualifications Experience managing or operating alongside Managed Detection and Response (MDR) or MSSP providers. Hands-on experience with SIEM, SOAR, EDR, and security automation platforms. Working knowledge of OT/ ICS security, including industrial networks and operational constraints. Proven track record managing security operations teams in large hybrid corporate environments. Certifications: CISSP, GCIH, GCED, GCIA, or GICSP, Cy. SA , or equivalent. Experience leading SOC transformation initiatives involving automation, AI augmentation, and vendor consolidation IV. Physical Requirements. Listed below are key points regarding physical demands, physical and occupational risks, and the work environment of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the job.? Office: This job primarily operates in a professional office environment and routinely requires the use of standard office equipment such as computers, phones, copy machines, etc. V. Benefits At WM, each eligible employee receives a competitive total compensation package including Medical, Dental, Vision, Life Insurance and Short Term Disability. As well as a Stock Purchase Plan, Company match on 401 K, and more! Our employees also receive Paid Vacation, Holidays, and Personal Days. Please note that benefits may vary by site.