SOC Lead / Manager
SOC Lead / Manager
Role Focus
Technical and operational leadership of company’s SOC and managed detection operations. This position will oversee day-to-day SOC activity, analyst performance, investigation quality, escalation processes, and service delivery while remaining technically involved in security operations. Remote position, must be based in the U.S. without requiring sponsorship/3rd party.
Target Candidate
- Strong background working within a SOC, MDR, or security operations environment
- Prior experience leading or managing SOC analysts
- Strong SIEM, EDR, endpoint, identity, and security monitoring experience
- Experience with alert triage, investigation, escalation, threat detection, and incident coordination
- CrowdStrike experience strongly preferred
- Experience with Microsoft 365, Entra ID, Windows environments, and cloud security telemetry
- Ability to improve SOC workflows, playbooks, detection processes, escalation procedures, and operational metrics
- Strong understanding of common attacker techniques and how they present across endpoint, identity, email, and network telemetry
- Comfortable interacting directly with clients during escalations and security events
- Ability to mentor analysts and improve investigative quality
- Able to work closely with DFIR and security engineering teams when incidents escalate beyond routine SOC operations
- Eligible to work for any U.S. employer without ever requiring sponsorship or a 3rd party
- Able to pass a background check
Level: Lead / Manager
Preference: Technically strong SOC leader who has operated within a SOC environment and can actively contribute to investigations, rather than someone focused primarily on administrative management.
Compensation: $95,000–$135,000 and benefits package