1

Csoc Manager Jobs (NOW HIRING)

The CSOC Lead Analyst will be responsible to: * Lead a CSOC shift to monitor security reporting ... Review open case management reports, progress investigations, assess potential risks and determine ...

The CSOC Lead Analyst will be responsible to: * Lead a CSOC shift to monitor security reporting ... Review open case management reports, progress investigations, assess potential risks and determine ...

Sr. Security Operations Analyst

Atlanta, GA · Hybrid

$92K - $120K/yr

Overview The Senior Cybersecurity Analyst - CSOC is a Senior level non-management role that reports directly to the CSOC Manager. They will be responsible for guiding a hybrid team of security ...

As a member of a CSOC shift, monitor security reporting systems, dashboards and indicators of ... Validate SIEM/EDR/SOAR security alerts, open case management investigations and perform ...

As a member of a CSOC shift, monitor security reporting systems, dashboards and indicators of ... Validate SIEM/EDR/SOAR security alerts, open case management investigations and perform ...

Primary Focus - Security Data Management • Own and drive the end to end onboarding of security logs required by CSOC monitoring, detection, and investigation platforms. • Partner directly with ...

Primary Focus - Security Data Management • Own and drive the end to end onboarding of security logs required by CSOC monitoring, detection, and investigation platforms. • Partner directly with ...

The role involves managing the onboarding of security logs, ensuring data quality, and improving monitoring capabilities within the CSOC. Responsibilities : • Own and drive the end to end ...

next page

Showing results 1-20

Csoc Manager information

See salary details

$24.5K

$59.5K

$116K

How much do csoc manager jobs pay per year?

As of Jun 8, 2026, the average yearly pay for csoc manager in the United States is $59,525.00, according to ZipRecruiter salary data. Most workers in this role earn between $42,000.00 and $68,500.00 per year, depending on experience, location, and employer.

What is the difference between Csoc Manager vs Security Analyst?

AspectCsoc ManagerSecurity Analyst
CredentialsCertifications like CISSP, CISM, CompTIA Security+Certifications like Security+, CEH, CISSP (optional)
Work EnvironmentOversees security operations, manages teams, strategic planningPerforms security monitoring, incident response, vulnerability assessment
Employer & Industry UsageCommon in large organizations, security service providers

The Csoc Manager focuses on managing security operations and teams, while the Security Analyst handles day-to-day security monitoring and incident response. Both roles require relevant certifications, but the Csoc Manager has a broader strategic and managerial scope.

How does a CSOC Manager typically collaborate with other departments to ensure effective cybersecurity operations?

A CSOC Manager regularly works with IT, compliance, and executive leadership to coordinate incident response, share threat intelligence, and establish security protocols. They facilitate cross-departmental communication to ensure that security measures align with business objectives and regulatory requirements. Effective collaboration is crucial for timely threat identification and resolution, and the CSOC Manager often leads or participates in regular meetings, training sessions, and incident debriefs to keep all stakeholders informed and prepared.

What are the key skills and qualifications needed to thrive as a CSOC Manager, and why are they important?

To thrive as a CSOC (Cyber Security Operations Center) Manager, you need a solid background in information security, incident response, and risk management, typically supported by a degree in cybersecurity or a related field and relevant experience. Familiarity with SIEM tools, intrusion detection/prevention systems, and certifications such as CISSP or CISM are usually expected. Exceptional leadership, analytical thinking, and communication skills help you lead teams, manage crises, and coordinate with stakeholders. These skills and qualifications are essential to effectively protect organizational assets, ensure robust cyber defense, and respond rapidly to security threats.

What is a CSOC Manager?

A CSOC Manager is responsible for overseeing the operations of a Cyber Security Operations Center (CSOC). Their main duties include managing security analysts, monitoring for cyber threats, coordinating incident response, and ensuring the organization's IT infrastructure remains secure. They also develop security policies, maintain compliance with regulations, and continuously improve security processes. The CSOC Manager acts as a key leader in defending the organization against cyber attacks.
CSOC Lead Analyst

CSOC Lead Analyst

Peraton

Portland, OR • On-site

Full-time

Posted 9 hours ago


Peraton rating

8.3

Company rating: 8.3 out of 10

Based on 52 frontline employees who took The Breakroom Quiz

37th of 203 rated it services


Job description

Responsibilities

**Position is Contingent Upon Award**

Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting our national critical infrastructure. This is your chance to make an impact on one of the nation's vital organizations, working alongside leaders in cybersecurity engineering, operations, forensics, threat analysis, data science, and systems integration.

Join Peraton in supporting a large critical infrastructure operator to defend its corporate and operations networks from nation-state attacks, ensure the confidentiality, integrity, and availability of its systems and operations infrastructure, and comply with federal and industry cybersecurity regulation. As a lead analyst in a 24x7x365 Cybersecurity Operations Center (CSOC), the position provides leadership of CSOC shift staff to monitor the company's networks and systems using Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR) and Security Orchestration, Automation, and Response (SOAR) systems such as Splunk, CrowdStrike, Nessus Security Center, Axonius, Swimlane, Websense, NetFlow and other tools to identify and investigate anomalies and thwart cyberattacks. Duties include analyzing security alerts, leading investigations, assessing threats, and implementing procedures to respond to incidents as a senior member of the company's CSOC.

Primary Responsibilities:

The CSOC Lead Analyst will be responsible to:

  • Lead a CSOC shift to monitor security reporting systems, dashboards and indicators of suspicious activity and unauthorized access for an extensive critical infrastructure covering 8 states
  • Validate SIEM/EDR/SOAR security alerts, open case management investigations and direct analyst staff investigations
  • Review open case management reports, progress investigations, assess potential risks and determine issue priority and escalation path
  • Review threat and vulnerability advisories issued by various government organizations
  • Conduct research to determine the applicability of advisories to the operator environment
  • Interact with internal Subject Matter Experts and functional groups to request information, discuss events, escalate issues and coordinate a response
  • Formulate mitigation recommendations and document investigations
  • Prepare shift reports and brief CSOC Manager, infrastructure stakeholders and corporate management on active investigations
  • Conduct open source research and stay abreast of the latest cyber threats and security tools

Additional Responsibilities:

  • Perform network and systems analysis of intrusion alerts to the network infrastructure and anomalous traffic, applications, operating systems, firewalls, proxy devices and malware detection, security incidents or anomalies flagged by monitoring tools, triage, and escalate them as warranted
  • Perform in-depth security analysis of alerts from firewalls and reviewing system logs for suspicious patterns, perform preliminary incident response, event analysis and threat intelligence
  • Investigate threats across multiple data systems and create incident review cases on notable events
  • Investigate flagged alerts, determine if they are real threats, and follow designated response and containment procedures
  • Confirm continuous data flows from system logs, PCAP captures, and intelligence feeds into the SIEM systems
  • Review flagged events that are detrimental to the company's overall security posture; analyze and detect sophisticated and nuanced attacks, discern false positives and draft reports of results for management
  • Correlate network and system sensor events
  • Conduct advanced forensic event investigation of logs and network protocol traffic and identify anomaly and potential threats
  • Provide near real-time and short-term correlation of data collected by the SIEM/EDR tools and investigate threats across data types over specific study time frames or systems
  • Provide strategic analysis and near real-time auditing, investigating, reporting, and coordinating tracking of security-related flagged incidents
  • Analyze intelligence feeds from systems, other analysts, and outside agencies, and integrate learnings into protection devices
  • Recommend changes to security assets such as firewalls, VPNs, to remediate issues or improve defensive posture to CSOC and security management
  • Review and process cybersecurity alerts and threat intelligence feeds and notifications provided by external government agencies and cybersecurity organizations, evaluate and recommend internal distribution as warranted
  • Assist with CSOC daily tasks and operations such as CSOC communications, completeness and fidelity of CSOC reports, and status of incident cases as directed by management
  • Recommend new and improved SIEM/EDR threat indicators

#PLABS26

Qualifications

Required:

  • U.S. Citizenship Required
  • Must have the ability to obtain / maintain a DOE L Level or DOE Secret clearance
  • Degree in computer science, engineering, cybersecurity, information technology, or related field
  • Minimum of 8 years experience with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
  • Cybersecurity experience in roles such as security monitoring, threat and risk assessment, incident response, forensic analysis, offensive testing, controls assessment, vulnerability research or CSOC operations
  • Understanding of industry cybersecurity standards such as FISMA, NIST 800 series, and regulatory compliance requirements
  • Demonstrated strategic thinking, CSOC operations leadership, or broad understanding of risk management
  • Strong analytical and problem-solving skills to investigate and assess security risks
  • Excellent verbal and written communications skills
  • Ability to communicate technical issues to both infrastructure owners and management
  • Must be able to work on a 4-month 24x7x365 shift rotation schedule

Desired:

  • Hold cybersecurity certification such as CISSP, CISM, SSCP, GIAC GSEC, OSCP, CEH, CISA SSCP, GIAC GCIH (GCIH), EC-Council CSA
  • A master's degree in computer science, engineering, cybersecurity, information technology, or related field
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIME

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017