JOBSEARCHER

SOC Lead

LeidosWashington, DCL7 ManagerSeptember 15th, 2026
Overview In this role you lead the Security Operations Center to ensure mission-critical cyber defense operations. You coordinate 24x7 SOC activities, drive incident response, and oversee reporting quality across teams. You will implement new tools, frameworks, and automation to improve detection, analysis, and response—aligning with DoD requirements. This position supports the GSM-O program’s PHISH efforts for J6, contributing to mission readiness and resilience. You will work with a multidisciplinary cybersecurity team to shape SOC processes and incident handling on a large-scale compute environment. ResponsibilitiesPlan, direct, and manage day-to-day SOC activities and high-tempo incident responseEnsure adherence to triage, analysis, incident response, and reporting processesDrive adoption of new tools, capabilities, frameworks, and methodologies across the SOCAccountable for timeliness and quality of SOC reportingInstill industry best practices in incident response, cyber analysis, case/knowledge management, and SOC operationsPromote automation and process efficiencies across SOC Key requirementsActive TS/SCI security clearanceBachelor’s degree (10+ years of cybersecurity experience)4+ years of supervising or managing teams5+ years of intrusion detection and/or incident handling experienceDoD 8140 Cyber Defense Analyst (511) Intermediate requirements at startAdvanced knowledge of planning, directing, and managing CIRT/SOC operations in large, complex environmentsMature understanding of incident response standards and SOC best practicesUS CitizenshipStrong written and verbal communicationExcellent analytical and troubleshooting skillsLeadership and people-management abilitiesIntrusion detectionIncident handlingCIRT/SOC operations management