Direct day-to-day SOC operations, including threat detection, incident response, and continuous monitoring activities.
Manage, mentor, and guide local and remote cybersecurity analysts and engineers.
Serve as the escalation point for high-priority incidents and complex security events.
Technical Oversight:
Design, implement, and optimize security infrastructure and tools, including Firewalls, VPNs, IDS/IPS, SIEM, EDR, NDR, A/V, Email and Web Content Filtering, and Virtualization technologies.
Ensure integration and interoperability between systems to enable centralized monitoring and response.
Develop and maintain automation scripts, dashboards, and playbooks to streamline threat detection and response processes.
Leadership & Collaboration:
Provide authoritative cybersecurity guidance to senior executives, technical leads, and federal stakeholders.
Foster collaboration between operations, architecture, and compliance teams to align operational efforts with policy objectives.
Communicate operational risks, trends, and remediation progress to leadership in clear, actionable terms.
Process & Continuous Improvement:
Drive the implementation of federal and NIST-based cybersecurity frameworks (NIST SP 800-53, 800-61, 800-137, etc.).
Establish metrics, reporting standards, and best practices for SOC performance and cyber defense maturity.
Champion the integration of AI, automation, and orchestration tools to improve SOC efficiency and resilience.
Requirements
Bachelor's degree in Computer Science or closely related discipline is required
8+ years’ experience implementing, tuning, maintaining and operating security operations capabilities such as Firewalls, VPN, IDS/IPS, SIEM, EDR, NDR, A/V, Email Content Filtering, Web Content Filtering, virtual technologies, etc.
5+ years’ experience with coding and scripting languages (i.e., JSON, Java, JavaScript, Python, SQL, PowerShell, PHP, C, C++, etc.
Proven experience managing and/or leading successful local and remote teams in an operational environment.
Proven experience and the ability to interact authoritatively with a diverse group of senior executives, managers, and subject matter authorities.
Strong analytical, problem solving, organization, time management, and interpersonal skills as well as verbal and written communication skills.
Strong hands on experience with Microsoft Security Suite (Defender, Sentinel, Security Center)
CISSP, CEH, or similar level certification
Must be a US Citizen and able to obtain a Public Trust Clearance
**Preferred Qualifications**
Public Trust or higher clearance
AWS Security Hub, CloudTrail and Cloudwatch experience.
IT - Security & Resilience Engineer focusing on vulnerability management for LBBW, leading security initiatives and ensuring compliance in a regulated banking environment.
IT - Security & Resilience Chief Engineer focusing on SIEM at LBBW, leading complex security projects and enhancing IT security architecture across the bank.
Engineering Manager leading production technology and IT security department at Uniper in Landshut. Responsible for project management and technological advancement in power generation.
Contremaître protecteur supervisant des équipes sur des propriétés ferroviaires actives. Organiser les séances d'information et garantir la sécurité et l'efficacité des travaux en utilisant les règles d'exploitation ferroviaire.
Life and health insurance financial security advisor serving clients by providing advice and maintaining business relationships. Focused on sales of insurance products and services based on client needs.
Senior Defensive Security Advisor at Desjardins identifying and mitigating threats across systems and networks. Leading complex initiatives and collaborating with stakeholders for effective security posture.
Director of Security overseeing all safety and security operations for Women & Infants Hospital. Responsible for deterring crime, protecting premises, and managing transport services.
Responsable Pôle Sécurité Médiation Fraude managing security operations for public transport services in Metz. Ensuring safety and compliance while optimizing fraud prevention strategies.
Cyber Security Engineer at Regions focusing on cloud and infrastructure security. Designs and implements cybersecurity solutions while providing technical support and guidance.
IAM Security Engineer focusing on identity and access management automation in a dynamic digital assets company. Contributing to scaling IAM infrastructure through automated solutions and secure user lifecycle management.