1

Cyber Security Lead Jobs (NOW HIRING)

Cybersecurity Lead Location: San Jose, CA (Hybrid) Type: Full-Time Company Overview Incedo is a US-based consulting, data science and technology services firm with over 4000 people helping clients ...

PKI Cybersecurity Lead

Quantico, VA · On-site

$117K - $158K/yr

PKI Cybersecurity Lead Position Summary: The PKI Cybersecurity Lead is responsible for overseeing the planning, implementation, and management of enterprise Public Key Infrastructure solutions and ...

Client Solution Architects (CSA) is currently seeking a Cybersecurity Lead to support a program onsite* in the Washington DC area. For nearly 50 years, CSA has delivered integrated technology and ...

Description Client Solution Architects (CSA) is currently seeking a Cybersecurity Lead to support a program onsite* in the Washington DC area. For nearly 50 years, CSA has delivered integrated ...

Cybersecurity Lead The Cybersecurity Lead serves as a hands-on technical leader responsible for uniting offensive and defensive security operations to continually improve the company's ability to ...

Cybersecurity Lead

Quantico, VA · On-site

$90K - $124K/yr

OverviewMano Lani is looking for a Cybersecurity Lead to provide dedicated information assurance and Cyber compliance oversight for all Marine Corps PKI information technology systems, including ...

PKI Cybersecurity Lead Position Summary: The PKI Cybersecurity Lead is responsible for overseeing the planning, implementation, and management of enterprise Public Key Infrastructure solutions and ...

What You'll Do Lead Cybersecurity Strategy * Define, own, and scale Intersect's cybersecurity program to support a fast-growing, cloud-first environment * Establish security policies, frameworks, and ...

SPA has a near-term need for a Cybersecurity Lead. Responsibilities Key duties associated with this role include but are not limited to the following: * Design, develop, and implement comprehensive ...

SPA has a near-term need for a Cybersecurity Lead. Responsibilities Key duties associated with this role include but are not limited to the following: * Design, develop, and implement comprehensive ...

The PKI Cybersecurity Lead is responsible for overseeing the planning, implementation, and management of enterprise Public Key Infrastructure solutions and services, ensuring secure issuance and ...

OSG is growing its Governance, Risk, and Compliance function and is seeking an experienced GRC Cybersecurity Lead to take ownership of the cybersecurity GRC program. This high-visibility role ...

Cybersecurity Lead

Washington, DC

$126K - $170K/yr

Collaborating closely with IT, cybersecurity, and senior management teams to align security goals with business objectives and report on the organization's risk posture. * Advanced knowledge of ...

About the role The Cyber Security Lead Architect - SOC & Incident Response is the senior technical authority responsible for architecting, governing, and continuously improving security detection ...

Cybersecurity Lead

Washington, DC · On-site

$125K - $169K/yr

Collaborating closely with IT, cybersecurity, and senior management teams to align security goals with business objectives and report on the organization's risk posture. * Advanced knowledge of ...

next page

Showing results 1-20

Cyber Security Lead information

See salary details

$57K

$133K

$186K

How much do cyber security lead jobs pay per year?

As of Jun 16, 2026, the average yearly pay for cyber security lead in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is a Cyber Security Lead job?

A Cyber Security Lead is responsible for overseeing an organization's cybersecurity strategy, ensuring the protection of networks, systems, and data from cyber threats. They lead security teams, implement best practices, and collaborate with IT and business units to mitigate risks. Their role includes threat analysis, incident response, compliance enforcement, and security awareness training. They also stay updated on emerging threats and technologies to strengthen the organization's defenses.

What are the key skills and qualifications needed to thrive in the Cyber Security Lead position, and why are they important?

To thrive as a Cyber Security Lead, you need expertise in network security, threat assessment, incident response, and risk management, typically validated by a bachelor’s degree in computer science or a related field. Familiarity with tools like SIEM platforms, vulnerability scanners, firewalls, and certifications such as CISSP or CISM are highly valued. Strong leadership, effective communication, and problem-solving skills enable you to guide teams and convey complex security concepts to diverse stakeholders. These abilities are crucial for proactively defending organizational assets, managing security teams, and maintaining robust cyber defenses in a dynamic threat landscape.

What are the typical daily responsibilities of a Cyber Security Lead?

As a Cyber Security Lead, your day-to-day tasks often include overseeing threat monitoring, coordinating responses to incidents, and reviewing or updating security policies and procedures. You'll manage a team of security analysts, provide guidance during investigations, and collaborate with IT and business units to implement best practices. Additionally, you may regularly assess vulnerabilities, conduct training sessions, and keep leadership informed about current risks and compliance issues. This role requires staying current with evolving threats and guiding the organization’s security strategy to minimize risks.

More about Cyber Security Lead jobs
What cities are hiring for Cyber Security Lead jobs? Cities with the most Cyber Security Lead job openings:
What are the most commonly searched types of Cyber Security Lead jobs? The most popular types of Cyber Security Lead jobs are:
What states have the most Cyber Security Lead jobs? States with the most job openings for Cyber Security Lead jobs include:
What job categories do people searching Cyber Security Lead jobs look for? The top searched job categories for Cyber Security Lead jobs are:
Infographic showing various Cyber Security Lead job openings in the United States as of June 2026, with employment types broken down into 1% As Needed, 87% Full Time, and 12% Part Time. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity Lead

Qode

San Jose, CA • On-site

Full-time

Posted 10 days ago


Job description

Position: Cybersecurity Lead
Location: San Jose, CA (Hybrid)
Type: Full-Time
Company Overview
Incedo is a US-based consulting, data science and technology services firm with over 4000 people helping clients from our six offices across US, Mexico and India. We help our clients achieve competitive advantage through end-to-end digital transformation. Our uniqueness lies in bringing together strong engineering, data science, and design capabilities coupled with deep domain understanding. We combine services and products to maximize business impact for our clients in telecom, Banking, Wealth Management, product engineering and life science& healthcare industries.
Role Overview:
The Cybersecurity Lead serves as a hands-on technical leader responsible for uniting offensive and defensive security operations to continually improve the company's ability to detect, respond to, and recover from cyber threats.
This role will lead the Blue Team in managing and enhancing security monitoring tools, detection pipelines, and incident response processes, while also coordinating Red Team simulations that measure and improve the company's defensive posture.
Reporting to the Director of Cybersecurity, this leader bridges strategy and execution driving the mission to emulate adversaries, strengthen controls, and transform findings into actionable defence improvements.
Key Responsibilities:
Blue Team Operations and Tool Management
  • Lead and oversee the management, configuration, and tuning of security detection and response platforms, including:
  • SIEM (e.g., Splunk, PANW, or Azure Sentinel)
  • EDR/XDR (e.g., CrowdStrike, SentinelOne, Microsoft Defender)
  • SOAR automation platforms
  • Network IDS/IPS, NDR, and threat intelligence platforms (TIPs)
  • Ensure all detection tools are integrated for end-to-end visibility across endpoints, cloud environments, and production systems
  • Define standards for log collection, parsing, and correlation to enhance alert accuracy and reduce false positives
  • Drive continuous tuning of detection rules, signatures, and use cases to align with MITRE ATT&CK and emerging threats
  • Collaborate with IT and Engineering teams to ensure security telemetry is fully integrated into cloud and CI/CD environments
  • Oversee threat hunting, alert triage, and incident response playbook execution across the security stack
  • Partner with DevOps and infrastructure teams to embed security monitoring hooks into hybrid environments and new deployments

Red Team and Offensive Security
  • Design and conduct controlled adversary emulation exercises to test detection and response capabilities
  • Execute attack chains including phishing, privilege escalation, persistence, and lateral movement using real-world TTPs
  • Develop and maintain custom adversary scripts and payloads to simulate targeted threats
  • Provide detailed post-exercise reports with actionable defensive improvement recommendations
  • Collaborate with Blue Team engineers to operationalize detections based on Red Team findings

Incident Response and Continuous Improvement
  • Lead or co-lead major incident response efforts, coordinating containment, investigation, and recovery
  • Build and maintain detailed incident response runbooks, integrating lessons learned from purple team exercises
  • Conduct root cause analysis and lead retrospectives that drive measurable improvements in detection and resilience
  • Integrate threat intelligence and forensic insights into detection content and defensive playbooks.
  • Plan and execute adversarial simulations that validate threat detection, alert fidelity, and incident response readiness
  • Develop the roadmap for continuous improvement of detection coverage, response automation, and control validation
  • Serve as a technical escalation point for complex investigations, guiding both Red and Blue Team staff
  • Translate technical results into executive-level insights that demonstrate risk reduction and readiness improvement

Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience)
  • 8+ years of cybersecurity experience, with proven leadership across Blue, Red, or Purple Team operations
  • Demonstrated ownership of enterprise security detection tools, including SIEM, EDR/XDR, SOAR, and threat intel platforms
  • Strong understanding of MITRE ATT&CK, Cyber Kill Chain, and threat emulation frameworks.
  • Deep technical expertise in one or more of the following areas:
  • Endpoint and network forensics
  • Cloud security monitoring (AWS, Azure, GCP)
  • Scripting and automation (Python, PowerShell, Bash)
  • Security engineering in hybrid or production environments
  • Proven ability to lead incident response and purple team exercises from start to finish
  • Certifications such as OSCP, GCFA, GCIH, GPEN, GXPN, or GCTI highly desirable
  • Strong communication and leadership skills, with ability to engage both executive stakeholders and technical teams

Preferred Experience:
  • Experience in enterprise or production-scale environments, ideally within SaaS, networking, or hybrid cloud infrastructures
  • Familiarity with DevSecOps practices, CI/CD pipeline security, and cloud-native monitoring
  • Prior experience mentoring Blue Team analysts and managing tool life cycles and vendor relationships
  • Exposure to purple team automation frameworks (e.g., AttackIQ, Caldera, Scythe)

AI Use Guidelines for Interviews:
Our interviews are designed to reflect your own skills and thinking. The use of AI or recording tools during live interviews is not permitted unless explicitly invited by the interviewer or approved in advance as part of a reasonable accommodation. If these tools are used inappropriately or in a way that misrepresents your work, your application may not move forward in the process.
Targeted compensation guideline:
Compensation will vary based on number of factors, including market demand for specific skills, role type, job level, and individual qualifications. Final salary offers are determined by considerations including, but not limited to, subject matter expertise, demonstrated skill level, relevant experience, geographic location, education, certifications, and training.