1

Security Operations Consultant Jobs (NOW HIRING)

DevOps Consultant Job Location (Short): Alpharetta, Georgia-USA | Hampton, Virginia-USA | Houston ... Conduct security assessments and audits to identify and mitigate vulnerabilities in the ...

... consultant to the Regional Senior Leadership Team. Responsibilities: * Manages security operations, planning, directing, and organizing programs of multiple facilities. * Develops and implements ...

Showing results 21-40

Security Operations Consultant information

See salary details

$33.5K

$74.3K

$123.5K

How much do security operations consultant jobs pay per year?

As of Sep 13, 2026, the average yearly pay for security operations consultant in the United States is $74,277.00, according to ZipRecruiter salary data. Most workers in this role earn between $45,000.00 and $106,500.00 per year, depending on experience, location, and employer.

What does a Security Operations Consultant do?

A Security Operations Consultant is responsible for assessing, designing, and improving an organization's security operations. They provide expertise in threat detection, incident response, and security monitoring, often working with security tools and teams to strengthen defenses against cyber threats. Consultants may also develop policies, perform risk assessments, and guide organizations through compliance requirements. Their goal is to ensure effective identification and mitigation of security risks to protect critical assets.

What are the key skills and qualifications needed to thrive as a Security Operations Consultant?

To thrive as a Security Operations Consultant, you need expertise in cybersecurity principles, risk assessment, incident response, and a relevant degree or industry certifications such as CISSP or CISM. Familiarity with security information and event management (SIEM) systems, intrusion detection tools, and vulnerability scanning platforms is typically required. Strong analytical thinking, communication skills, and the ability to work under pressure set top performers apart in this role. These skills are crucial for effectively identifying and mitigating threats, advising clients, and ensuring organizational resilience in a constantly evolving security landscape.

What are some common challenges faced by Security Operations Consultants when working with client organizations?

Security Operations Consultants often encounter challenges such as integrating new security tools with existing client infrastructure, navigating organizational resistance to change, and aligning security measures with business objectives. They regularly work with cross-functional teams to identify vulnerabilities, develop incident response strategies, and ensure compliance with industry regulations. Building trust and clear communication with clients is essential for effectively implementing security recommendations and fostering a proactive security culture.

What is the difference between Security Operations Consultant vs Security Analyst?

AspectSecurity Operations ConsultantSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC, CISSP (preferred)
Work EnvironmentAdvisory roles, consulting firms, client sitesIn-house security teams, SOCs, IT departments
Employer & Industry UsageConsulting firms, cybersecurity service providersOrganizations with dedicated security teams
Search & Comparison IntentUnderstanding consulting roles, advisory servicesOperational security monitoring, incident response

Security Operations Consultants typically provide expert advice, strategy, and assessments for organizations' security posture, often working across multiple clients. Security Analysts focus on monitoring security systems, analyzing threats, and responding to incidents within a specific organization. While both roles require similar certifications and work in cybersecurity, their primary functions and work environments differ, with consultants offering guidance and analysts handling day-to-day security operations.

More about Security Operations Consultant jobs

What states have the most Security Operations Consultant jobs?

States with the most job openings for Security Operations Consultant jobs include:

What are popular job titles related to Security Operations Consultant jobs?

For Security Operations Consultant jobs, the most frequently searched job titles are:

Infographic showing various Security Operations Consultant job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $74,277 per year, or $35.7 per hour.

Security Operations Center (SOC) Manager

Plano, TX โ€ข On-site

Full-time

Re-posted 19 days ago


Key responsibilities

  • Oversee daily SOC operations, including security monitoring, alerting, and triage activities.

  • Lead incident response activities, providing technical leadership during high-severity incidents and investigations.

  • Manage and develop the security team through performance management, coaching, and recruitment.


Job description

At Armor, we are committed to making a meaningful difference in securing cyberspace. Our vision is to be the trusted protector and de facto standard that cloud-centric customers entrust with their risk. We strive to continuously evolve to be the best partner of choice, breaking norms and tirelessly innovating to stay ahead of evolving cyber threats and reshaping how we deliver customer outcomes. We are passionate about making a positive impact in the world, and we’re looking for a highly skilled and experienced talent to join our dynamic team.

Armor has unique offerings to the market so customers can a) understand their risk b) leverage Armor to co-manage their risk or c) completely outsource their risk to Armor.

Learn more at: https://www.armor.com

SUMMARY*

Armor is seeking a hands-on Security Operations Center (SOC) Manager to lead our global Security Operations and Incident Response team. This role is responsible for overseeing daily SOC operations, leading incident response activities, mentoring security professionals, and driving continuous improvements in our managed security services.

The ideal candidate is an experienced people leader with a strong technical background in security operations, cloud security, and incident response. This position partners closely with Engineering, Product, and Customer Success to deliver exceptional security outcomes for our customers.

ESSENTIAL DUTIES AND RESPONSIBILITIES (Additional duties may be assigned as required)*

Team Leadership and Development

  • Directly manage a team of Incident Response Consultants and Security Operations professionals, including performance management, career development, regular 1:1s, and goal-setting.
  • Lead the upskilling and rapid professional development of team members, ensuring readiness for evolving security challenges and agentic workflows.
  • Participate in recruiting new team members through a collaborative hiring process, including interviewing, evaluating candidates, and onboarding.
  • Coach and mentor team members on technical skills, customer consultation techniques, and professional growth.
  • Build and maintain a high-performance culture focused on customer outcomes, continuous improvement, and operational excellence.

SOC Transformation and Modernization

  • Lead the transformation of the SOC into a modern agentic security operations center, leveraging AI-augmented workflows and automation to enhance detection, response, and operational efficiency.
  • Drive modernization initiatives across the security operations function, including process optimization, tooling enhancements, and capability development.
  • Work cross-functionally to rapidly operationalize new security capabilities and integrate them into SOC responsibilities (e.g., CSPM, Defender for OT, Purview, and emerging platforms).
  • Collaborate with Armor’s engineering team to evaluate, build, and implement emerging technologies, including AI/ML-assisted detection, automated response, and cloud-native security tools.
  • Work with engineering to design and optimize agentic AI processes that maintain human oversight, accountability, and security standards.

Security Operations and Incident Response

  • Oversee SOC triage operations, ensuring adequate coverage, quality, and consistent delivery of security monitoring and alerting services.
  • Serve as a senior escalation point for high-severity incidents, providing hands-on technical leadership through complex investigations and customer engagements.
  • Manage security policy creation and maintenance across multiple platforms (AV, FIM, IDS, NGFW, EDR, WAF, etc.).
  • Oversee security tooling management, ensuring proper configuration, optimization, and operational readiness.
  • Conduct quality reviews of team deliverables, including incident reports, customer recommendations, and detection content.
  • Contribute to incident response playbook development, detection use-case creation, and consultation framework improvements.

Customer Outcomes and Organizational Collaboration

  • Evolve SOC operations to prioritize customer outcomes, including security improvement, risk reduction, security resilience, and compliance achievement.
  • Collaborate with the broader organization to ensure security operations capabilities align with customer needs and business objectives.
  • Partner with Engineering, Product, and Customer Success teams on service improvements and capability development.
  • Monitor and report on team performance, balancing customer outcome metrics with operational efficiency and SLA adherence.
  • Coordinate with international teams to ensure consistency in procedures, escalation handling, and customer experience.

Required Skills

  • Security Operations Leadership
    • 5+ years of experience in Security Operations, Incident Response, or Managed Security Services.
    • Experience leading or managing SOC or Incident Response teams.
  • Security Operations Technologies
    • Hands-on experience with SIEM, EDR/XDR, SOAR, and threat intelligence platforms.
  • Cloud Security
    • Strong understanding of Azure, AWS, or GCP security, including identity, networking, and workload protection.
  • Automation & Detection
    • Experience with Python, PowerShell, or KQL.
    • Experience building detection logic, response automation, or security playbooks.
  • AI-Assisted Security Operations
    • Experience using AI/LLM tools (such as GitHub Copilot, Claude, Microsoft Security Copilot, or equivalent) to improve security operations, detection engineering, incident response, or analyst productivity.
    • Understanding of AI/LLM security risks, including prompt injection, data leakage, hallucinations, and secure use of AI-generated content.
  • People Leadership
    • Experience in coaching, mentoring, hiring, and developing technical teams.
    • Strong communication skills with customers, executives, and cross-functional partners.
Preferred Qualifications
  • Threat hunting and forensic investigations
  • Detection engineering (Sigma, YARA)
  • Compliance frameworks (PCI-DSS, HIPAA, SOC 2)
  • Git and DevSecOps workflows
  • Experience leading distributed/global teams
  • Microsoft Defender, Sentinel, and Defender XDR
  • Relevant certifications (GCIH, GCFA, CISSP, CySA+, AZ-500, SC-200, SC-300)

WHY ARMOR
Join Armor if you want to be part of a company that is redefining cybersecurity. Here, you will have the opportunity to shape the future, disrupt the status quo, and be a part of a team that celebrates energy, passion, and fresh thinking. We are not looking for someone who simply fills a role – we want talent who will help us write the next chapter of our growth story.

Armor Core Values:

  • Commitment to Growth: A growth mindset that encourages continuous learning and improvement with adaptability in the face of challenges.
  • Integrity Always: Sustain trust through transparency + honesty in all actions and interactions regardless of circumstances.
  • Empathy In Action: Active understanding, compassion and support to the needs of others through genuine connection.
  • Immediate Impact: Taking initiative with swift, informed actions to deliver positive outcomes.
  • Follow-Through: Dedication to delivering finished results with attention to quality and detail to achieve the desired outcomes.
Work Environment

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. The noise level in the work environment is usually low to moderate. The work environment may be in either an office setting, at the company’s data center, at a client location or at an industry trade event.

Equal Opportunity Employer - It is the policy of the company to comply with all employment laws and to afford equal employment opportunity to individuals in all aspects of employment, including in selection for job opportunities, without regard to race, color, religion, sex, national origin, age, disability, genetic information, veteran status, or any other consideration protected by federal, state or local laws.