
Closed
Posted
Paid on delivery
I am standing up a brand-new, fully remote Global Security Operations Center and need an architect who can design the entire stack—from concept through to an operational runbook—focused on proactive threat detection and monitoring. My primary concern is cyber-attack defence, so the design must give equal weight to: • real-time network security visibility, • endpoint telemetry and response, • cloud-native threat detection, and • data-centric security controls that track sensitive information wherever it sits. You will take ownership of the overall architecture, tool selection, integration methodology, and workflow design that lets a geographically distributed security team see, triage, and respond to threats 24/7. I expect you to map out log collection, SIEM/SOAR configuration, alerting logic, escalation paths, KPIs, and the governance model needed for continuous improvement. Deliverables I need from you: 1. High-level architecture diagram with technology recommendations (commercial and open-source options welcome). 2. Detailed build sheet covering sizing, licensing, and deployment sequencing. 3. Playbook/runbook drafts for initial monitoring and incident response. 4. Gap analysis against common frameworks (e.g., NIST, MITRE ATT&CK) to show coverage of network, endpoint, cloud, and data threats. 5. A 30-60-90 day roadmap to move from design to a live “minimum viable GSOC”. If you have previously designed or led remote SOC/GSOC builds and can articulate how your approach will reduce mean-time-to-detect and mean-time-to-respond, I’m ready to review your proposal and timeline.
Project ID: 40343214
2 proposals
Remote project
Active 16 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
2 freelancers are bidding on average ₹35,000 INR for this job

Hi, I can design and deliver a fully remote GSOC architecture that prioritizes real-time visibility, proactive detection, and fast response, while keeping the stack scalable and cost-efficient. Approach: I’ll build a layered architecture covering network (NDR), endpoint (EDR/XDR), cloud (CSPM + runtime), and data security (DLP/DSPM). Logs will be centralized into a SIEM (Splunk/Elastic/Sentinel options), enriched with threat intel, and mapped to MITRE ATT&CK for strong detection coverage. SOAR automation will handle triage, enrichment, and response to reduce analyst workload and improve MTTR. What you’ll get: High-level + detailed architecture diagrams Build sheet (sizing, licensing, deployment sequence) Playbooks/runbooks (phishing, malware, lateral movement, data exfiltration) Gap analysis aligned with NIST CSF and MITRE ATT&CK Clear escalation matrix, KPIs (MTTD, MTTR, false positives), and governance model 30-60-90 Plan: 0–30: Architecture, tool selection, initial log ingestion 30–60: Detection rules, EDR/NDR integration, baseline playbooks 60–90: SOAR automation, tuning, GSOC go-live My focus is not just tooling, but reducing noise and enabling a distributed team to detect and respond faster with confidence. Ready to get started.
₹25,000 INR in 7 days
0.0
0.0

Hi there, Building a Global Security Operations Center (GSOC) is not just about collecting logs—it's about achieving total visibility and controlling system entropy. I don't just build architectures; I design resilient "digital organisms." What I bring to your project: Architectural Blueprint: Comprehensive GSOC design aligned with NIST standards and the MITRE ATT&CK framework for proactive threat hunting. Advanced Log Management: Implementation of "concrete-solid" logging systems (ensuring zero data loss even during system stress). Custom Visualization: I specialize in high-impact dashboards (Node-based grids) that provide real-time status of critical infrastructure. Scalable Documentation: Full runbooks and operational guides that make the architecture manageable and future-proof. I have recently developed a prototype system (Project RA21) that monitors 33 critical nodes with a custom-built hexagonal dashboard, proving that complex data can be made intuitive and actionable. I am ready to help you build a GSOC that doesn't just see threats but understands them. Let's hop on a chat to discuss how we can leave a mark on this architecture. Best regards, Stefan Todorov Offensive Security Architect
₹45,000 INR in 14 days
0.0
0.0

Kuala Lumpur, Malaysia
Member since Jun 21, 2019
₹12500-37500 INR
$250-750 USD
$1500-3000 USD
₹1500-12500 INR
₹1250-2500 INR / hour
₹1500-12500 INR
$250-750 USD
₹600-1000 INR
$250-750 USD
$15-25 USD / hour
$10-300 USD
₹750-1250 INR / hour
$10-30 USD
$250-750 USD
$250-750 USD
$250-750 USD
$30-250 USD
€8-40 EUR
$30-250 USD
₹12500-37500 INR