Lead, coach, and develop SOC staff across multiple experience levels * Conduct regular 1-on-1 meetings focused on performance, growth, and career development * Manage shift schedules, coverage plans ...
Lead, coach, and develop SOC staff across multiple experience levels * Conduct regular 1-on-1 meetings focused on performance, growth, and career development * Manage shift schedules, coverage plans ...
As your initial project assignment, you will support the unique needs of our client as a SOC/NOC Engineer - Lead - Shift Work. Job Summary As a Lead SOC/NOC Engineer, you will provide technical ...
As your initial project assignment, you will support the unique needs of our client as a SOC/NOC Engineer - Lead - Shift Work. Job Summary As a Lead SOC/NOC Engineer, you will provide technical ...
SOC Manager
Washington, DC · On-site
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
SOC Manager
Washington, DC · On-site
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
SOC Manager
Washington, DC · On-site +1
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
SOC Manager
Washington, DC · On-site +1
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
SOC Manager
Washington, DC · On-site
Lead security monitoring, alert triage, escalation, investigation, containment, and incident ... Support 24x7 operational continuity, shift coverage, and incident escalation as required. * Perform ...
SOC Manager
Washington, DC · On-site
Lead security monitoring, alert triage, escalation, investigation, containment, and incident ... Support 24x7 operational continuity, shift coverage, and incident escalation as required. * Perform ...
SOC Manager
Washington, DC · On-site +1
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
SOC Manager
Washington, DC · On-site +1
Experience building and maintaining shift schedules, call trees, and stakeholder notification ... Lead post-incident reviews and root cause analysis sessions, document findings, and translate ...
NY · On-site
Lead and manage the daily operations of the 24x7x365 SOC, ensuring timely detection, triage ... Coverage, Shift Discipline, and On-Call: * Establish and own a defined, rotating, documented ...
NY · On-site
Lead and manage the daily operations of the 24x7x365 SOC, ensuring timely detection, triage ... Coverage, Shift Discipline, and On-Call: * Establish and own a defined, rotating, documented ...
SOC Watch Officer
$130/hr
Serve as the shift escalation point for complex or high-severity events; determine when incidents require SOC Team Lead or program leadership notification * Ensure accurate, timely documentation of ...
Quick apply
SOC Watch Officer
$130/hr
Serve as the shift escalation point for complex or high-severity events; determine when incidents require SOC Team Lead or program leadership notification * Ensure accurate, timely documentation of ...
SOC Manager
New York, NY · On-site
Lead and scale the MDR operation - Own and evolve the Artemis Apollo SOC, directing shift coverage, staffing ratios, and day-to-day operations as the team and customer base grow. * Set the operating ...
SOC Manager
New York, NY · On-site
Lead and scale the MDR operation - Own and evolve the Artemis Apollo SOC, directing shift coverage, staffing ratios, and day-to-day operations as the team and customer base grow. * Set the operating ...
SOC Manager
Manhattan, NY · On-site
Lead and scale the MDR operation - Own and evolve the Artemis Apollo SOC, directing shift coverage, staffing ratios, and day-to-day operations as the team and customer base grow. * Set the operating ...
SOC Manager
Manhattan, NY · On-site
Lead and scale the MDR operation - Own and evolve the Artemis Apollo SOC, directing shift coverage, staffing ratios, and day-to-day operations as the team and customer base grow. * Set the operating ...
Serve as the shift escalation point for complex or high-severity events; determine when incidents require SOC Team Lead or program leadership notification * Ensure accurate, timely documentation of ...
Quick apply
Serve as the shift escalation point for complex or high-severity events; determine when incidents require SOC Team Lead or program leadership notification * Ensure accurate, timely documentation of ...
NY · On-site
Lead and manage the daily operations of the 24x7x365 SOC, ensuring timely detection, triage ... Coverage, Shift Discipline, and On‑Call: * Establish and own a defined, rotating, documented ...
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
Quick apply
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
Lead SOC Analyst/Threat Hunter
Culpeper, VA · On-site
$225K/yr
As a Lead SOC Analyst, you will provide input to security strategy , the threat hunting program ... Shift work typically includes one week per month Monday - Sunday, 11 AM - 7 PM and occasional ...
Lead SOC Analyst/Threat Hunter
Culpeper, VA · On-site
$225K/yr
As a Lead SOC Analyst, you will provide input to security strategy , the threat hunting program ... Shift work typically includes one week per month Monday - Sunday, 11 AM - 7 PM and occasional ...
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
Quick apply
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
NY · On-site
Lead and manage the daily operations of the 24x7x365 SOC, ensuring timely detection, triage ... Coverage, Shift Discipline, and On-Call: * Establish and own a defined, rotating, documented ...
NY · On-site
Lead and manage the daily operations of the 24x7x365 SOC, ensuring timely detection, triage ... Coverage, Shift Discipline, and On-Call: * Establish and own a defined, rotating, documented ...
SOC Analyst
Overland Park, KS · On-site
You will work a dedicated shift inside our 24/7 Cyber Fusion Center, monitoring and triaging ... Lead for improvement. * Communicate clearly in tickets. Every ticket you touch should be ...
SOC Analyst
Overland Park, KS · On-site
You will work a dedicated shift inside our 24/7 Cyber Fusion Center, monitoring and triaging ... Lead for improvement. * Communicate clearly in tickets. Every ticket you touch should be ...
SOC Operations Manager
Washington, DC · On-site
$150/hr
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
Quick apply
SOC Operations Manager
Washington, DC · On-site
$150/hr
Lead the Tier 2 Threat Watch Officer function; serve as the senior operational authority for event ... Produce accurate shift reports, incident summaries, and escalation notifications for program ...
Lead SOC Analyst/Threat Hunter
Culpeper, VA · On-site
$225K/yr
As a Lead SOC Analyst, you will provide input to security strategy , the threat hunting program ... Shift work typically includes one week per month Monday - Sunday, 11 AM - 7 PM and occasional ...
Lead SOC Analyst/Threat Hunter
Culpeper, VA · On-site
$225K/yr
As a Lead SOC Analyst, you will provide input to security strategy , the threat hunting program ... Shift work typically includes one week per month Monday - Sunday, 11 AM - 7 PM and occasional ...
Soc Shift Lead information
See salary details
$11.78 - $14.79
3% of jobs
$14.79 - $17.81
16% of jobs
$18.60 is the 25th percentile. Wages below this are outliers.
$17.81 - $20.83
22% of jobs
The median wage is $22.25 / hr.
$20.83 - $23.84
18% of jobs
$26.76 is the 75th percentile. Wages above this are outliers.
$23.84 - $26.86
16% of jobs
$26.86 - $29.87
12% of jobs
$29.87 - $32.89
6% of jobs
$32.89 - $35.90
5% of jobs
$35.90 - $38.92
1% of jobs
$38.92 - $41.94
0% of jobs
$41.94 - $44.95
0% of jobs
$11
$25
$44
How much do soc shift lead jobs pay per hour?
What cities are hiring for Soc Shift Lead jobs?
Cities with the most Soc Shift Lead job openings:
What states have the most Soc Shift Lead jobs?
States with the most job openings for Soc Shift Lead jobs include:
What are popular job titles related to Soc Shift Lead jobs?
For Soc Shift Lead jobs, the most frequently searched job titles are:

SOC Supervisor
Remote
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 14 days ago
Job description
We are seeking an experienced SOC Supervisor to lead the day-to-day operations of our Security Operations Center. This role is responsible for managing SOC personnel, overseeing alert and incident response workflows, ensuring service levels and quality standards are met, and driving continuous operational improvement.Â
The SOC Supervisor serves as both a tactical leader and a strategic manager. On the tactical side, this person oversees queue health, coordinates major incident response, removes blockers for engineers, and acts as the highest point of operational escalation. On the strategic side, the role focuses on people leadership, process governance, KPI reporting, quality assurance, and SOC maturity initiatives.Â
This is a leadership role for someone who can balance operational oversight, incident command, coaching and development, and continuous process improvement in a fast-paced managed services environment.
ROLE & RESPONSIBILITIESOperational Oversight & Incident HandlingÂ
- Oversee daily SOC operations and monitor the health of the alert and ticket queue
- Balance workloads across SOC team members to ensure efficient operations
- Act as Incident Commander during critical or high-impact security incidents
- Lead communications with customers, internal IT teams, and executive stakeholders during major incidents
- Ensure the team consistently meets SLAs for triage, response, escalation, and resolution
- Remove technical, operational, or cross-functional blockers impacting investigations
- Serve as the highest point of operational escalation for the team or shift
- Review handoff logs and ensure continuity across shiftsÂ
Team Leadership & People ManagementÂ
- Lead, coach, and develop SOC staff across multiple experience levels
- Conduct regular 1-on-1 meetings focused on performance, growth, and career development
- Manage shift schedules, coverage plans, on-call rotations, and time-off requests
- Build training plans and support skill development for junior and mid-level analysts
- Address performance, behavioral, and engagement issues promptly and professionally
- Foster a collaborative, accountable, and blameless team culture
- Support internal talent progression and promotion readinessÂ
Quality AssuranceÂ
- Conduct regular QA reviews of closed, escalated, and high-impact tickets
- Ensure SOC documentation is accurate, complete, professional, and audit-ready
- Identify recurring quality issues or knowledge gaps across the team
- Provide clear, actionable feedback to improve analysis quality and communication
- Address stakeholder feedback related to investigation quality or customer communicationÂ
Process Governance & PlaybooksÂ
- Enforce the use of approved playbooks, SOPs, and standardized workflows
- Ensure team members contribute to the creation and maintenance of playbooks
- Review and approve updates to core SOC processes and response procedures
- Maintain operational compliance with internal standards and relevant regulatory requirements
- Drive consistency in incident handling and reduce reliance on tribal knowledgeÂ
Operational ImprovementÂ
- Analyze SOC metrics such as time to triage, time to contain, response efficiency, and queue aging
- Identify process bottlenecks and implement workflow improvements
- Advocate for tooling enhancements, automation opportunities, and detection tuning
- Partner with Detection Engineering, Threat Intelligence, IT, and other teams to close operational gaps
- Reduce analyst fatigue and false positives through process and technology improvements
- Help mature the SOC from a reactive function into a proactive security operationÂ
Reporting, Communication & OwnershipÂ
- Generate and present KPI and performance reporting to leadership on a regular basis
- Provide accurate, transparent updates on SOC operations, risks, and team performance
- Represent the SOC in cross-functional meetings and stakeholder discussions
- Proactively identify risks to service delivery, including staffing shortages, tooling issues, and process gaps
- Take accountability for team outcomes and lead root cause analysis and corrective actions when issues ariseÂ
- Strong leadership and people management skills in a SOC, NOC, or security operations environment
- Experience leading major incident response and serving in an incident command role
- Deep understanding of SOC workflows, escalation paths, case management, and alert triage operations
- Ability to manage queue health, prioritize competing operational demands, and maintain SLA performance
- Strong communication skills with the ability to engage technical teams, customers, and executive stakeholders
- Experience with QA reviews, documentation standards, and audit-ready case handling
- Ability to use metrics and reporting to drive operational decisions and continuous improvement
- Knowledge of playbook development, SOP governance, and process standardization
- Familiarity with detection tuning, SOAR/automation opportunities, and operational tooling improvements
- Strong coaching, mentoring, and performance management capabilities
- Ability to stay calm and decisive in high-pressure situations
- Strong organizational skills and ability to balance tactical response with strategic initiativesÂ
- 5+ years of experience in Security Operations, Incident Response, or Cybersecurity Operations
- 2+ years of experience in a leadership, supervisory, or team lead role within a SOC or similar environment
- Experience managing analysts or engineers across multiple levels of seniority
- Proven experience overseeing security incidents, escalations, and operational workflows in a 24x7 or shift-based environment
- Experience working with SOC tooling such as SIEM, SOAR, EDR/XDR, ticketing systems, and case management platforms
- Strong understanding of incident response processes, threat detection, escalation management, and security operations best practices
- Experience with KPI development, SLA tracking, and operational performance reporting
- Familiarity with audit, compliance, and documentation requirements relevant to security operations
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field preferred
- Industry certifications such as Security+, CySA+, GCIH, GCIA, CISSP, or equivalent are preferredÂ
- This is a full-time remote role, 8am - 5pm EST, Monday - Friday. Occasional travel for CTS Cybersecurity and team building events is expected (3-4 times a year).
The salary range for this role is $110,000 - $115,000.
BENEFITS- Competitive compensation
- Health Insurance (medical, vision, dental), 80% covered for employee-only plans and 75% covered for employee-spouse, employee-kids, and employee-family plans
- Flexible Spending Account (FSA)
- Health Savings Account (HSA)
- Employee Assistance Program (EAP)
- Retirement Plan (401(k)) with company match
- Commuter Benefits
- Short-Term Disability Insurance fully paid by the company
- Long-Term Disability Insurance fully paid by the company
- Life and AD&D Insurance, with optional Supplemental Life Insurance
- Paid Time Off, including Paid Parental Leave
- 10 Holidays
- 2 Floating Holidays
CTS participates in the E-Verify Program. As part of this program, the company provides the federal government with your Form I-9 information to confirm your employment eligibility in the United States.
Learn more at www.e-verify.gov (information available in English and Spanish).