Job Summary The Security Operations Center Lead is responsible for leading the day-to-day operations of the University's Security Operations Center, including cybersecurity monitoring, alert triage ...
Job Summary The Security Operations Center Lead is responsible for leading the day-to-day operations of the University's Security Operations Center, including cybersecurity monitoring, alert triage ...
Job Summary The Security Operations Center Lead is responsible for leading the day-to-day operations of the University's Security Operations Center, including cybersecurity monitoring, alert triage ...
Job Summary The Security Operations Center Lead is responsible for leading the day-to-day operations of the University's Security Operations Center, including cybersecurity monitoring, alert triage ...
Security Operations Lead: Threat Hunting & Incident Response
Washington, DC · On-site
$126K - $243K/yr
A leading consulting firm in Washington, DC, seeks a Security Operations Lead to oversee SOC functions and lead a blended team of analysts and engineers. Responsibilities include directing incident ...
Security Operations Lead: Threat Hunting & Incident Response
Washington, DC · On-site
$126K - $243K/yr
A leading consulting firm in Washington, DC, seeks a Security Operations Lead to oversee SOC functions and lead a blended team of analysts and engineers. Responsibilities include directing incident ...
Security Operations Lead: Threat Hunting & Incident Response
Washington, DC · On-site
$126K - $243K/yr
A leading consulting firm in Washington, DC, seeks a Security Operations Lead to oversee SOC functions and lead a blended team of analysts and engineers. Responsibilities include directing incident ...
Security Operations Lead: Threat Hunting & Incident Response
Washington, DC · On-site
$126K - $243K/yr
A leading consulting firm in Washington, DC, seeks a Security Operations Lead to oversee SOC functions and lead a blended team of analysts and engineers. Responsibilities include directing incident ...
The Cybersecurity Operations Lead works closely with program leadership, infrastructure teams, cloud engineers, system administrators, and security stakeholders to maintain a resilient security ...
New
The Cybersecurity Operations Lead works closely with program leadership, infrastructure teams, cloud engineers, system administrators, and security stakeholders to maintain a resilient security ...
New
They are seeking an AI Cloud Security Operations Lead for the Americas to oversee the security operations of AI Data Centers, ensuring robust incident response and security measures are in place ...
They are seeking an AI Cloud Security Operations Lead for the Americas to oversee the security operations of AI Data Centers, ensuring robust incident response and security measures are in place ...
The LEGO Group is seeking a Security Coordinator to oversee 24/7 security operations from the Local Command Center and act as deputy to Site Security Management during incidents. You will coordinate ...
The LEGO Group is seeking a Security Coordinator to oversee 24/7 security operations from the Local Command Center and act as deputy to Site Security Management during incidents. You will coordinate ...
The LEGO Group is seeking a Security Coordinator to oversee 24/7 security operations from the Local Command Center and act as deputy to Site Security Management during incidents. You will coordinate ...
The LEGO Group is seeking a Security Coordinator to oversee 24/7 security operations from the Local Command Center and act as deputy to Site Security Management during incidents. You will coordinate ...
Security Specialist - Operations Lead
Arlington, VA · On-site
$132K - $221K/yr
Security Specialist - Operations Lead Location US-VA-Arlington ID 2026-4771 Category Security Administration Position Type Full-Time Remote No Clearance Required Top Secret/SCI Overview AMERICAN ...
Security Specialist - Operations Lead
Arlington, VA · On-site
$132K - $221K/yr
Security Specialist - Operations Lead Location US-VA-Arlington ID 2026-4771 Category Security Administration Position Type Full-Time Remote No Clearance Required Top Secret/SCI Overview AMERICAN ...
Security Operations Manager
Torrance, CA · On-site
Role As Security Operations Lead, you will build and own Northwood's security operations function - standing up SOC capabilities, leading incident response, and developing the detection and threat ...
Security Operations Manager
Torrance, CA · On-site
Role As Security Operations Lead, you will build and own Northwood's security operations function - standing up SOC capabilities, leading incident response, and developing the detection and threat ...
Cybersecurity Operations Lead
Mclean, VA · On-site
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
Cybersecurity Operations Lead
Mclean, VA · On-site
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
Cybersecurity Operations Lead
Mclean, VA · On-site
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
Cybersecurity Operations Lead
Mclean, VA · On-site
This role provides technical and operational leadership for security operations teams, driving ... Lead day-to-day cybersecurity operations supporting enterprise information systems. * Manage and ...
New
... security operations of AI Data Centers, ensuring secure operations and incident response across multiple locations. Responsibilities : • Serve as the primary on-call security lead for the Americas ...
... security operations of AI Data Centers, ensuring secure operations and incident response across multiple locations. Responsibilities : • Serve as the primary on-call security lead for the Americas ...
Data Center - Midtown Security Operations Shift Lead - 3 Shift Fri thru Mon 11pm-7am This position will require occasional crawling, crouching, climbing of stairs, kneeling, running, sitting ...
Data Center - Midtown Security Operations Shift Lead - 3 Shift Fri thru Mon 11pm-7am This position will require occasional crawling, crouching, climbing of stairs, kneeling, running, sitting ...
Description The Communication Security Operations Lead provides operational execution, and technical leadership for Department of State's (DOS) Communication Security Division's Operations support ...
Description The Communication Security Operations Lead provides operational execution, and technical leadership for Department of State's (DOS) Communication Security Division's Operations support ...
Network and Security Operations Manager
Tallassee, AL · On-site
$71K - $96K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Network and Security Operations Manager
Tallassee, AL · On-site
$71K - $96K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Network and Security Operations Manager
Duluth, GA · On-site
$78K - $104K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Network and Security Operations Manager
Duluth, GA · On-site
$78K - $104K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Network and Security Operations Manager
Tallassee, AL · On-site
$71K - $96K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Network and Security Operations Manager
Tallassee, AL · On-site
$71K - $96K/yr
Network & Security Operations Lead Position Summary We are seeking a highly skilled Network & Security Operations Lead to join our Enterprise IT Operations team as a technical leader. This is a key ...
Security Operations Team Lead
Atlanta, GA · On-site
$130K - $150K/yr
The Opportunity As a SOC Team Lead, you'll help shape the daily operations and technical excellence of our Security Operations Center. You'll lead a team of analysts, guide complex investigations ...
Security Operations Team Lead
Atlanta, GA · On-site
$130K - $150K/yr
The Opportunity As a SOC Team Lead, you'll help shape the daily operations and technical excellence of our Security Operations Center. You'll lead a team of analysts, guide complex investigations ...
Security Operations Lead information
See salary details
$12.98 - $17.64
18% of jobs
$18.32 is the 25th percentile. Wages below this are outliers.
$17.64 - $22.29
47% of jobs
$25.98 is the 75th percentile. Wages above this are outliers.
$22.29 - $26.94
13% of jobs
$26.94 - $31.60
4% of jobs
$31.60 - $36.25
3% of jobs
$36.25 - $40.91
4% of jobs
$40.91 - $45.56
2% of jobs
$45.56 - $50.22
2% of jobs
$50.22 - $54.87
2% of jobs
$54.87 - $59.53
3% of jobs
$59.53 - $64.18
1% of jobs
$12
$27
$64
How much do security operations lead jobs pay per hour?
How does a Security Operations Lead typically collaborate with other departments to ensure organizational security?
What is a Security Operations Lead?
What is the difference between Security Operations Lead vs Security Analyst?
| Aspect | Security Operations Lead | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISM | CompTIA Security+, CEH, GIAC |
| Work Environment | Oversees security teams, manages incident response, develops security strategies | Monitors security alerts, analyzes threats, implements security measures |
| Employer & Industry Usage | Used in organizations with security teams, corporate security departments | Common in security operations centers (SOCs), IT departments |
The Security Operations Lead typically manages security teams and develops strategies, requiring leadership skills and certifications like CISSP. In contrast, a Security Analyst focuses on monitoring and analyzing security threats, often holding certifications like Security+ or CEH. Both roles are essential in cybersecurity but differ in responsibilities and scope.
What are the key skills and qualifications needed to thrive as a Security Operations Lead?

Full-time
Re-posted 14 days ago
Job description
The Security Operations Center Lead is responsible for leading the day-to-day operations of the University's Security Operations Center, including cybersecurity monitoring, alert triage, incident response coordination, operational reporting, and continuous improvement of SOC processes. This position serves as the primary operational lead for the SOC and provides technical supervision, mentorship, and professional development for undergraduate and graduate student analysts. The position ensures that security events are investigated, documented, escalated, and remediated in accordance with approved procedures, response playbooks, and institutional priorities. The lead collaborates closely with Information Technology Services, the Information Security Office, Help Desk, Client Services, and other university stakeholders and external partners to protect University systems, data, services, and users while supporting the broader mission of cybersecurity education, workforce development, and institutional risk reduction.
FGCU is building a culture of curiosity, commitment and collaboration. We value employees who successfully work with others and drive positive change through critical thinking and decisive action. If you thrive in an environment of innovation, accountability and mutual respect, you will find a good home here.
Job Description
Typical duties may include but are not limited to:
- Leads day-to-day Security Operations Center (SOC) activities, including security monitoring, alert triage, investigation, escalation, incident response coordination, operational reporting, and analyst shift oversight.
- Participates in after-hours incident response, emergency escalation, and on-call support as needed to address significant cybersecurity events or operational requirements.
- Recruits, hires, trains, mentors, and supervises undergraduate and graduate student analysts. Provides ongoing coaching, performance feedback, and career development support.
- Develops and maintains a structured student analyst training program covering alert triage, SIEM operations, threat detection, MITRE ATT&CK methodologies, digital forensics fundamentals, investigation procedures, and incident response workflows.
- Develops or supports cybersecurity exercises, tabletop scenarios, and incident response drills to evaluate readiness and improve coordination among SOC personnel, ITS teams, and university stakeholders.
- Establishes analyst progression standards, operational guardrails, and escalation thresholds to ensure student analysts operate within approved authority and documented procedures.
- Performs security monitoring, investigation, and incident response activities as needed to maintain SOC operations during periods of reduced student staffing or elevated operational demand.
- Reviews, validates, and directs security investigations, ensuring security events are properly analyzed, documented, escalated, and communicated in accordance with established policies, procedures, and response playbooks.
- Serves as the operational lead during significant cybersecurity incidents, coordinating response activities with Information Technology Services (ITS), university leadership, legal counsel, human resources, communications personnel, and external partners as appropriate.
- Maintains and improves detection, monitoring, and response capabilities across security technologies, including SIEM, endpoint detection and response (EDR), cloud security platforms, and related cybersecurity tools.
- Develops, maintains, and updates SOC playbooks, standard operating procedures, workflows, and documentation to support consistent and effective security operations.
- Manages relationships with managed security service providers (MSSPs), incident response vendors, and other external security partners to support monitoring, investigation, and response activities.
- Supports security operations and incident response activities involving regulated or sensitive institutional data, including data subject to FERPA, GLBA, PCI DSS, HIPAA where applicable, and university policies.
- Escalates actionable cybersecurity risks, incidents, and operational concerns to the Chief Information Security Officer (CISO) and other designated stakeholders.
- Maintains security operations documentation and reports on security metrics, incident trends, operational performance, and student program outcomes.
- Conducts or supports audits, compliance activities, and security reviews.
- Conducts post-incident reviews and broader security process evaluations to identify lessons learned, document corrective actions, and recommend improvements to detection logic, response procedures, communication workflows, and operational controls to enhance overall SOC effectiveness and operational efficiency. Communicates technical security findings, risks, and operational impacts in clear, non-technical language suitable for university leadership and business stakeholders.
- Contributes to broader information security initiatives including cloud security, identity and access management, security awareness, and emerging technology governance efforts.
Other Duties:
- Performs other job-related duties as assigned.
Additional Job Description
Required Qualifications:
- This position requires nine years of directly related full-time experience or, as an alternative, a Bachelor's degree from an accredited institution in Cybersecurity, Computer Science, Informatics, Information Systems, or related field and five years of full-time experience directly related to the job functions.
- Experience with SOC operations, security monitoring, incident response, or related cybersecurity functions, including conducting cybersecurity investigations, alert triage, or security event analysis.
- Experience with enterprise SIEM, EDR, or similar platforms.
- Experience utilizing Microsoft security tools, including Microsoft Entra ID, Microsoft Sentinel, Active Directory, Microsoft Defender, Microsoft 365 security features or comparable enterprise security tools.
- Any appropriate combination of relevant education, experience, and/or certifications may be considered.
Preferred Qualifications:
- Five years full time experience in cybersecurity operations, incident response, or threat detection.
- Two years experience in managing, coaching, or mentoring technical staff or junior analysts
- Familiarity with NIST CSF, NIST 800-53, FERPA, and HIPPA.
- Experience working in Higher Education.
- Familiarity with Higher Education technologies, including Banner, Workday, Canvas, Blackboard, and research computing infrastructure.
- Experience designing security training or formal curricula.
- Experience with Microsoft Sentinel, Microsoft Defender XDR, Microsoft Entra ID, Microsoft Purview, or related Microsoft security technologies.Experience with SOAR platforms.
- CISSP, CISM, Security+, GCIH, GCIA, CISA, or similar certifications.
Knowledge, Skills & Abilities:
- Proven ability to think strategically and approach challenges with creativity.
- Demonstrated track record of reliability, meeting goals, and holding oneself accountable.
- Strong interpersonal skills and experience working effectively across teams.
- Knowledge of security strategies (operating system hardening, vulnerability management, change management, application testing/patching, security tools, and software products).
- Knowledge of network/system security access, management, and testing.
- Knowledge of applicable security policies, best practices, and principles.
- Knowledge of standard computer logging processes and understanding of the types of events logged.
- Skill in identifying complex problems and reviewing related information to develop and evaluate options and implement solutions.
- Excellent interpersonal skills.
- Advanced verbal and written communication skills and the ability to present effectively to small and large groups.
- Ability to take initiative to plan, organize, coordinate and perform work in various situations when numerous and competing demands are involved.
- Ability to collaborate and work effectively within the community and willing to contribute to a team effort.
- Ability to work independently and follow through on assignments.
- Ability to translate security concepts to all areas of the business.
- Ability to interpret log data and investigate potential issues.
- Ability to prepare network/system diagrams and advise on secure implementations of systems and services.
- Ability to discern between security breaches and more innocent technical bugs.
- Ability to participate in after-hour incident response or emergency escalation activities as needed.
Institutional Values & Behavioral Expectation
In this role, the successful candidate will be expected to:
- Seek out new approaches to improve outcomes; remain open for feedback and new ideas.
- Lead with integrity; consistently produce high-quality work; persevere to overcome obstacles to meet deadlines and achieve deliverables.
- Share information and insights thoughtfully; build partnerships across departments; communicate respectfully; support colleagues to achieve common goals.
Pay Grade 19
FGCU is a State University System of Florida member and an Equal Opportunity and Equal Access employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, disability, or protected veteran status.
About Florida Gulf Coast University
Sourced by ZipRecruiter
Industry
Colleges, universities, and professional schools
Company size
1,001 - 5,000 Employees
Headquarters location
Fort Myers, FL, US
Year founded
1991