1

Security Operations Center Manager Jobs in Bellingham, MA

Support cloud security posture management across all cloud environments, including finding ... repeatable security operations tasks. * Write clear, documented, and reviewable code and ...

Security Operations Analyst

Boston, MA · On-site

$129K - $171K/yr

... center. As the world enters an era of strategic competition, Anduril is committed to bringing ... ABOUT THE TEAM Anduril's Detection and Response team is looking for a Security Operations Analyst ...

Security Operations Analyst

Boston, MA · On-site

$129 - $171/hr

... center. As the world enters an era of strategic competition, Anduril is committed to bringing ... ABOUT THE TEAM Anduril's Detection and Response team is looking for a Security Operations Analyst ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to ... Developing and managing integrations across third-party platforms, security tools, and Google ...

Exciting SOC Manager, 6 plus months (Hybrid), contract opportunity in Boston, MA Requirements * 5 plus years of management experience in a 24/7 security operations center and leading a Security SOC ...

Exciting SOC Manager, 6 plus months (Hybrid), contract opportunity in Boston, MA Requirements * 5 plus years of management experience in a 24/7 security operations center and leading a Security SOC ...

Exciting SOC Manager, 6 plus months (Hybrid), contract opportunity in Boston, MA Requirements * 5 plus years of management experience in a 24/7 security operations center and leading a Security SOC ...

Showing results 41-60

Security Operations Center Manager information

See Bellingham, MA salary details

$35.9K

$80.6K

$144K

How much do security operations center manager jobs pay per year?

As of Sep 5, 2026, the average yearly pay for security operations center manager in Bellingham, MA is $80,554.00, according to ZipRecruiter salary data. Most workers in this role earn between $53,300.00 and $103,000.00 per year, depending on experience, location, and employer.

What is a Security Operations Center Manager?

A Security Operations Center (SOC) Manager is a professional responsible for overseeing the daily operations of a security operations center, where security analysts monitor, detect, and respond to cybersecurity threats. The SOC Manager leads and manages the team, develops security policies and procedures, and ensures the organization’s digital assets are protected from cyber attacks. They also coordinate incident response efforts, manage security tools and technologies, and report on security posture to leadership. Their role is critical in maintaining the overall security and resilience of an organization’s IT infrastructure.

What are the key skills and qualifications needed to thrive as a Security Operations Center Manager?

To thrive as a Security Operations Center (SOC) Manager, you need strong knowledge of cybersecurity principles, incident response, and risk management, typically backed by a degree in information security or computer science and several years of security experience. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications such as CISSP or CISM is highly valued. Leadership, critical thinking, and effective communication are crucial soft skills for managing teams and coordinating responses to threats. These competencies ensure the SOC operates efficiently, mitigates security risks, and maintains organizational resilience against cyber threats.

What are some common challenges faced by Security Operations Center Managers, and how can they be addressed?

Security Operations Center (SOC) Managers often face challenges such as managing high alert volumes, ensuring effective communication between teams, and staying updated with evolving cyber threats. Addressing these challenges involves implementing efficient incident triage processes, fostering a collaborative team environment, and investing in continuous training and automation tools. Regularly reviewing and updating response protocols also helps maintain operational effectiveness and team morale.

What is the difference between Security Operations Center Manager vs Security Analyst?

AspectSecurity Operations Center ManagerSecurity Analyst
CertificationsCISSP, CISM, GIAC certifications often preferredCompTIA Security+, GIAC Security Essentials (GSEC)
Work EnvironmentLeads SOC team, manages security operationsMonitors security alerts, analyzes threats
Employer & Industry UsageCommon in large enterprises, government agenciesFound across various industries, including finance, healthcare

The Security Operations Center Manager oversees the entire security team and operations, focusing on strategy and management. In contrast, the Security Analyst primarily monitors security systems and responds to threats. Both roles require relevant certifications and are integral to cybersecurity teams, but they differ in scope and responsibilities.

What cities near Bellingham, MA are hiring for Security Operations Center Manager jobs?

Cities near Bellingham, MA with the most Security Operations Center Manager job openings:

Infographic showing various Security Operations Center Manager job openings in Bellingham, MA as of August 2026, with employment types broken down into 84% Full Time, 12% Part Time, 1% Temporary, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $80,554 per year, or $38.7 per hour.

Security Operations Engineer

RadNet

Somerville, MA • On-site

$110K - $120K/yr

Full-time

Posted 15 days ago


RadNet rating

6.5

Company rating: 6.5 out of 10

Based on 169 frontline employees who took The Breakroom Quiz

572nd of 898 rated healthcare providers


Job description

Responsibilities

The Security Operations Engineer builds and operates security controls, tooling, and automation across DeepHealth's cloud and corporate environments. This role is responsible for configuring, integrating, and maintaining the enterprise security tooling stack, developing detection content, and automating security operations tasks so that controls are repeatable, version-controlled, and auditable.

Working within DeepHealth's established security frameworks and under the direction of the Director, Security Operations, this position operates and tunes security controls, detection content, and guardrails. Independent validation of those controls sits with the security operations watch function — a deliberate separation that keeps the control environment defensible under audit. Remediation follows system ownership across Cloud Operations, Platform, and Application Development; this role supplies technical guidance and implements fixes directly where the control is security-owned.

This position operates within a regulated healthcare environment across a global operating footprint, with obligations under HIPAA, ISO/IEC 27001, and SOC 2. The role reports to the Director, Security Operations, with future reporting to the Manager, Security Operations as that position is established.

  • Build, configure, integrate, and tune the enterprise security tooling stack across cloud and corporate environments.
  • Develop and maintain detection content, correlation rules, and response automation within the SIEM and SOAR platform.
  • Onboard new log sources and telemetry feeds, validating ingestion completeness, parsing accuracy, and field normalization.
  • Administer and tune endpoint detection and response tooling, including policy configuration, exclusion governance, and coverage validation.
  • Integrate security tooling with adjacent platforms through APIs to reduce manual handling and improve data quality.
  • Implement and maintain security configurations, guardrails, and baselines across Google Cloud Platform, Amazon Web Services, and Microsoft Azure.
  • Build and maintain security automation and infrastructure-as-code using Terraform or an equivalent framework, so that controls are version-controlled, repeatable, and auditable.
  • Implement policy-as-code and preventive guardrails using native cloud policy engines or an equivalent open policy framework.
  • Support cloud security posture management across all cloud environments, including finding deduplication, theme mapping, and routing to owning teams.
  • Harden cloud resources including compute, storage, database, container, and serverless services against established benchmarks.
  • Configure and maintain Microsoft 365 and Entra ID security controls, including conditional access, identity protection, and Defender workloads in a hybrid directory environment.
  • Implement and maintain least-privilege access models, roles, and policies across multiple cloud identity systems.
  • Implement container and Kubernetes security controls, including role-based access control, workload security standards, image scanning, and runtime protection.
  • Implement and maintain secrets management practices and tooling, and support the elimination of hard-coded credentials across environments.
  • Operate vulnerability management tooling, validate scan coverage, and translate raw scanner output into prioritized, owner-routed findings.
  • Provide technical remediation guidance to cloud, platform, identity, application, and endpoint owners, who retain accountability for closure of findings in their systems.
  • Implement engineering fixes for findings that fall to security-owned tooling and configuration.
  • Support remediation tracking for penetration test and vulnerability assessment findings by supplying technical detail and validating that fixes are technically sound.
  • Support incident detection and response through hands-on technical investigation, including log analysis, endpoint examination, identity and authentication tracing, and cloud audit log review.
  • Support escalations raised by the external managed security partner by supplying technical analysis and environment context.
  • Provide feedback into detection quality and alert tuning to reduce noise and improve signal for the monitoring function.
  • Contribute technical findings to post-incident review, and implement the resulting control and detection improvements.
  • Participate in tabletop exercises and resilience testing, and act on the technical gaps those exercises surface.
  • Document all engineering changes to security controls through the change management process, including validation criteria and rollback plans.
  • Produce and maintain runbooks, playbooks, and technical operating procedures for repeatable security operations tasks.
  • Write clear, documented, and reviewable code and configuration so that work can be inspected, maintained, and handed over without dependence on any one individual.
  • Support audit, certification, and customer assurance activities by producing technical evidence on request.
  • Maintain accurate inventory of security tooling, control coverage, licensing position, and control operating status.
  • Maintain strict confidentiality of security testing results, control configuration detail, and investigative material, and follow established standards for external disclosure.

PLEASE NOTE: This is not an exhaustive list of all duties, responsibilities and requirements of the position described above.  Other functions may be assigned and management retains the right to add or change duties at any time.

Minimum Qualifications, Education and Experience

  • 4+ years of hands-on experience in security operations, security engineering, or a comparable technical security role. (Required)
  • Bachelor's degree in information technology, computer science, cybersecurity, or a related field, or equivalent professional experience. (Required)
  • 2+ years of hands-on cloud security experience across at least one major cloud provider; Google Cloud Platform and Amazon Web Services preferred. (Required)
  • 2+ years operating and tuning a SIEM platform, including working with detection content and log sources. (Required)
  • 1+ year administering Microsoft 365 and Entra ID security controls in a hybrid directory environment. (Required)
  • Working knowledge of security automation; experience with scripting and infrastructure-as-code is required, with Terraform experience preferred. (Required)
  • Working knowledge of cloud security posture management and preventive controls. (Required)
  • Working knowledge of container and Kubernetes security, including role-based access control and image scanning. (Required)
  • Working knowledge of secrets management tooling and practices. (Required)
  • Practical experience with endpoint detection and response tooling. (Required)
  • Working knowledge of vulnerability management and the finding remediation lifecycle, including risk-based prioritization. (Required)
  • Scripting capability in at least one of: Python, PowerShell, or Bash. (Required)
  • Familiarity with recognized security frameworks including NIST Cybersecurity Framework, ISO/IEC 27001, and SOC 2. (Required)
  • Able to communicate technical findings clearly in writing and verbally to both technical and non-technical audiences. (Required)
  • Able to manage assigned work independently and escalate appropriately. (Required)
  • Available to support incident response activity outside standard business hours as required. (Required)
  • Microsoft Office experience. (Required)
  • Industry certification such as Security+, CompTIA CySA+, or a cloud provider security certification. (Preferred)
  • Experience in healthcare, medical device, or another regulated industry, and working familiarity with HIPAA obligations. (Preferred)
  • Experience working alongside or integrating with a managed security service provider. (Preferred)

Quality Standards

  • Communicates, cooperates, and consistently functions professionally and harmoniously with all levels of supervision, co-workers, visitors, and vendors.
  • Demonstrates initiative, personal awareness, professionalism and integrity, and exercises confidentiality in all areas of performance. 
  • Follows all local, regional and country laws concerning employment.
  • Follows all DeepHealth policies and procedures.
  • Follows data privacy, compliance, safety and confidentiality standards at all times.
  • Practices universal safety precautions.
  • Promotes good public relations on the phone and in person.
  • Adapts and is willing to learn new tasks, methods, and systems.
  • Reports to work regularly as scheduled; consistently punctual with respect to working hours, meal and rest breaks, and maintains satisfactory personal attendance in accordance with DeepHealth guidelines.
  • Completes job responsibilities in a quality and timely manner.

Travel

This position requires domestic / international travel up to 10%.

Working Environment

Remote

Physical Demands

This position often requires sitting, standing, walking, bending, twisting, reaching with hands and arms, using hands and fingers, handling, or feeling, speaking, listening, and high-level cognitive thinking. Also, must be able to lift up to 10 pounds occasionally.

Work Authorization / Visa Sponsorship: DeepHealth does not provide immigration sponsorship for this position, including sponsorship for employment-based visas or other work authorization requiring employer sponsorship. Candidates must be legally authorized to work in the United States without current or future sponsorship from DeepHealth for the duration of employment.


What RadNet employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


RadNet logo

About RadNet

Sourced by ZipRecruiter

At RadNet, we are Leading Radiology Forward. RadNet aligns innovative solutions to deliver high-quality, cost-effective consumer-focused healthcare. Backed by 40 years of experience and with over 10,000 employees and over 380 imaging centers in 9 states, we are positioned for the future of healthcare.

Industry

Health care and social assistance

Company size

5,001 - 10,000 Employees

Headquarters location

Los Angeles, CA, US

Year founded

1980

Social media