{"schemaVersion":"jobsearcher.job.v1","id":"9441782e3e0bcacf5e22246a","url":"https://jobsearcher.com/jobs/9441782e3e0bcacf5e22246a","canonicalUrl":"https://jobsearcher.com/jobs/9441782e3e0bcacf5e22246a","title":"Lead SecOps Engineer - Cloud Sec Spec 3","description":"Lead SecOps Engineer (Cloud Sec Spec 3)\nLocation: Washington, DC\nWork Authorization: US Citizen\n\nRole Summary\nThe Lead SecOps Engineer serves as the senior technical lead responsible for designing, building, and operationalizing the SBA Google SecOps Enterprise Plus environment. This role oversees SIEM/SOAR architecture, data ingestion pipelines, threat‑intelligence integration, and ensures the platform meets FedRAMP High security and operational requirements.\nRoles & Responsibilities\n· Lead the design and implementation of the Google SecOps Enterprise Plus tenant.\n· Architect ingestion pipelines from Microsoft Sentinel, Entra ID, AWS GovCloud, and on‑premises log sources.\n· Validate parser coverage across 700+ supported log types.\n· Oversee deployment of curated detections, UEBA, and Gemini-assisted investigation workflows.\n· Direct integration of Zero Trust and IAM telemetry (Okta, Entra).\n· Ensure platform alignment with SBA insider‑threat and privileged‑access monitoring requirements.\n· Provide senior-level guidance across all phases: Initiate & Design, Build & Integrate, Detect & Tune, Operationalize & Transition.\n· Support runbook development, training, and transition to steady-state operations.\nProfessional Experience Required\n· 10+ years of experience in cloud security engineering, SIEM/SOAR architecture, or enterprise security operations.\n· Extensive experience with Google SecOps, BigQuery UDM, and cloud-native security platforms.\n· Experience integrating multi-cloud telemetry (Azure, AWS, on-prem).\n· Experience leading enterprise-scale security modernization projects.\nEducational Qualification\n· Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field (Master’s preferred).\nCertifications\n· Industry certifications such as Google Cybersecurity Professional, CISSP, CCSP, GIAC, or equivalent.","company":"Softthinksolutionsinc","rawCompany":"softthinksolutionsinc","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-09-06T13:29:04.171Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead SecOps Engineer - Cloud Sec Spec 3","description":"Lead SecOps Engineer (Cloud Sec Spec 3)\nLocation: Washington, DC\nWork Authorization: US Citizen\n\nRole Summary\nThe Lead SecOps Engineer serves as the senior technical lead responsible for designing, building, and operationalizing the SBA Google SecOps Enterprise Plus environment. This role oversees SIEM/SOAR architecture, data ingestion pipelines, threat‑intelligence integration, and ensures the platform meets FedRAMP High security and operational requirements.\nRoles & Responsibilities\n· Lead the design and implementation of the Google SecOps Enterprise Plus tenant.\n· Architect ingestion pipelines from Microsoft Sentinel, Entra ID, AWS GovCloud, and on‑premises log sources.\n· Validate parser coverage across 700+ supported log types.\n· Oversee deployment of curated detections, UEBA, and Gemini-assisted investigation workflows.\n· Direct integration of Zero Trust and IAM telemetry (Okta, Entra).\n· Ensure platform alignment with SBA insider‑threat and privileged‑access monitoring requirements.\n· Provide senior-level guidance across all phases: Initiate & Design, Build & Integrate, Detect & Tune, Operationalize & Transition.\n· Support runbook development, training, and transition to steady-state operations.\nProfessional Experience Required\n· 10+ years of experience in cloud security engineering, SIEM/SOAR architecture, or enterprise security operations.\n· Extensive experience with Google SecOps, BigQuery UDM, and cloud-native security platforms.\n· Experience integrating multi-cloud telemetry (Azure, AWS, on-prem).\n· Experience leading enterprise-scale security modernization projects.\nEducational Qualification\n· Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field (Master’s preferred).\nCertifications\n· Industry certifications such as Google Cybersecurity Professional, CISSP, CCSP, GIAC, or equivalent.","datePosted":"2026-09-06T13:29:04.171Z","dateModified":"2026-09-06T13:29:04.171Z","hiringOrganization":{"@type":"Organization","name":"Softthinksolutionsinc","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"9441782e3e0bcacf5e22246a"},"url":"https://jobsearcher.com/jobs/9441782e3e0bcacf5e22246a"}}