1

Soc Team Lead Jobs (NOW HIRING)

SOC Analyst (Tier 2)

Washington, DC · On-site

$105K - $115K/yr

Description Quantum Sky is searching for a Tier 2 SOC Analyst to support a federal government ... Full understanding of Tier 2 responsibilities/duties and how the duties feed into Team Lead and IR ...

... join their team. As a SOC Manager, you will be part of the Information Security Department ... Lead the development and implementation of the organization's Security Operations Center (SOC ...

SOC Analyst (Tier 2)

Washington, DC · On-site

$105K - $115K/yr

Quantum Sky is searching for a Tier 2 SOC Analyst to support a federal government customer in ... Full understanding of Tier 2 responsibilities/duties and how the duties feed into Team Lead and IR ...

SOC Analyst (Tier 2)

Washington, DC · On-site

$110K - $115K/yr

Description Quantum Sky is searching for a Tier 2 SOC Analyst to support a federal government ... Full understanding of Tier 2 responsibilities/duties and how the duties feed into Team Lead and IR ...

SOC Analyst (Tier 2)

Washington, DC · On-site

$110K - $115K/yr

Description Quantum Sky is searching for a Tier 2 SOC Analyst to support a federal government ... Full understanding of Tier 2 responsibilities/duties and how the duties feed into Team Lead and IR ...

The SOC Supervisor serves as both a tactical leader and a strategic manager. On the tactical side ... Review handoff logs and ensure continuity across shifts Team Leadership & People Management * Lead ...

Cybersecurity Team Lead

Lakewood, NJ · On-site

$110 - $160/hr

Security Team Lead (Technical & Compliance)Why Digacore? We'rea fast-paced, people-first MSP with ... Own and drive compliance initiatives including HIPAA, SOC 2, cyber insurance requirements, and ...

Lead communications with customers, internal IT teams, and executive stakeholders during major incidents * Ensure the team consistently meets SLAs for triage, response, escalation, and resolution

$120 - $190/hr

Lead and manage a team of SOC analysts, providing day‑to‑day direction, mentorship, and performance guidance * Establish and continuously improve SOC workflows, escalation procedures, and ...

Showing results 41-60

Soc Team Lead information

See salary details

$10

$25

$72

How much do soc team lead jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for soc team lead in the United States is $25.73, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $24.04 per hour, depending on experience, location, and employer.

What is a SOC Team Lead?

A SOC (Security Operations Center) Team Lead is a cybersecurity professional responsible for overseeing a team of security analysts who monitor, detect, and respond to security incidents within an organization's IT environment. They coordinate day-to-day operations, ensure effective incident response, and mentor team members. The SOC Team Lead also collaborates with other IT and security departments to strengthen the organization's overall security posture and implements best practices for threat detection and mitigation.

What does a SOC Team Lead do?

As a SOC Team Lead, balancing hands-on technical involvement with managing a team is a daily challenge. You will often need to oversee critical security incidents while also coordinating shift schedules, mentoring analysts, and ensuring that standard operating procedures are followed. Effective time management and delegation are key, as you'll be expected to provide guidance during high-pressure situations and foster team growth through regular feedback and training. Collaboration with other IT and security departments is also essential to streamline incident response and improve security posture.

What are the key skills and qualifications needed to thrive as a SOC Team Lead?

To thrive as a SOC Team Lead, you need a deep understanding of cybersecurity principles, incident response, and security operations, often backed by a degree in information security and certifications like CISSP or GIAC. Familiarity with SIEM platforms, intrusion detection systems, and ticketing tools is essential for monitoring and managing security events. Strong leadership, communication, and decision-making skills enable effective team management and cross-department coordination. These competencies are crucial to ensure the security team's efficiency, timely threat mitigation, and robust organizational cyber defense.

What is the difference between Soc Team Lead vs Security Analyst?

AspectSoc Team LeadSecurity Analyst
CredentialsTypically requires security certifications like CISSP, CISA, or CompTIA Security+Often holds certifications such as Security+, CEH, or GIAC
Work EnvironmentLeads security operations centers, managing team activities and incident responseAnalyzes security threats, monitors systems, and investigates incidents
Employer & Industry UsageCommon in organizations with dedicated SOC teams across industriesFound in various sectors, focusing on threat detection and analysis

The Soc Team Lead oversees security operations, managing a team and coordinating incident responses, while the Security Analyst focuses on monitoring, analyzing, and investigating security threats. The Soc Team Lead has more leadership responsibilities, whereas the Security Analyst is more hands-on with technical threat analysis.

More about Soc Team Lead jobs

What states have the most Soc Team Lead jobs?

States with the most job openings for Soc Team Lead jobs include:

Infographic showing various Soc Team Lead job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 20% Part Time, and 3% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $53,524 per year, or $25.7 per hour.

Security Operations Center (SOC) Chief

Revolutional, LLC

Suitland, MD • On-site

$175 - $235K/hr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 23 days ago


Job description

Revolutional delivers advanced technology solutions and mission support to federal agencies across civilian, health, and national security environments. We apply modern capabilities, including AI/ML, cloud, cybersecurity, and IT modernization to solve complex challenges, enable faster and more secure operations, and drive measurable mission outcomes.

We are redefining how federal technology gets built and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy.

Security Operations Center (SOC) Chief

Location: Suitland, MD Onsite – Government-controlled secure facility

Terms: Full-time

Salary Range: $175-$235k DOE

Clearance: Active Top Secret/SCI required 

Travel: 0-10%

Project Description

This position leads the Security Operations Center for a federal enterprise cybersecurity program operating within government-controlled secure facilities. The SOC Chief is the senior operational authority for all SOC activities — overseeing cyber defense operations, serving as primary incident commander, and coordinating directly with government federal personnel on security events, program risk, and organizational security posture. The environment is high-pressure with rapidly changing priorities, and the SOC Chief is expected to operate effectively in both.

The core challenge: sustaining a high-performing SOC across continuous cyber defense and incident response operations — managing program delivery, leading Information Security GAP Analysis, and commanding incident response efforts — all within a classified, government-controlled environment where execution quality and stakeholder trust are non-negotiable.

Position Description

As SOC Chief at Revolutional, you are the senior leader and operational authority for the Security Operations Center. You oversee all SOC activities, own program tracking and risk management, lead the Information Security GAP Analysis function, and serve as primary incident commander during active security events. You are the principal interface between the contractor SOC team and government federal personnel, and you carry both the technical credibility and organizational leadership to make that interface work under pressure.

You bring 7 to 10 years of experience spanning SOC management and incident response command — both are explicitly required, not interchangeable. You operate in full alignment with the NICE Cybersecurity Workforce Framework across the Cyber Defense Analyst (PR-CDA-001) and Cyber Defense Incident Responder (PR-CIR-001) work roles, and you ensure your team meets all applicable role-based training requirements.

Responsibilities
  • Oversee all SOC activities across cyber defense monitoring, alert triage, incident response, and threat analysis functions; serve as the senior operational and organizational authority for the SOC
  • Maintain program tracking mechanisms including project schedules, risk registers, and issue logs; identify risks and issues early, develop mitigation strategies, and drive corrective actions to closure
  • Ensure all SOC program deliverables are produced on time and to quality standards; hold the team accountable to contractual and program performance obligations
  • Lead the Information Security GAP Analysis function; assess current security posture against applicable frameworks and standards, identify gaps, and communicate findings and remediation priorities to government stakeholders
  • Serve as primary incident commander during active security events; direct incident response operations, make real-time decisions on containment and escalation, and ensure coordinated, effective response across all participating teams
  • Coordinate directly with government federal personnel on SOC performance, security events, program risk, and organizational security matters; maintain a trusted, transparent stakeholder relationship
  • Operate effectively in a high-pressure environment with changing priorities; resource and reprioritize SOC activities dynamically without losing operational continuity or delivery quality
  • Ensure full SOC team compliance with NICE Cybersecurity Workforce Framework role definitions and role-based training requirements across PR-CDA-001 and PR-CIR-001 work roles
  • Develop and maintain SOC operational standards, playbooks, and governance documentation; drive continuous improvement through after-action reviews and lessons learned
  • Produce executive-level SOC status reports, incident summaries, risk assessments, and program health updates for government and program leadership
What You Bring (Requirements)Baseline Requirements
  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience)
  • 7 to 10 years of experience in cybersecurity with demonstrated, concurrent expertise in both SOC management and incident response command — both are required
  • Proven experience as a primary incident commander during active, high-severity security events in a federal or classified environment
  • Active Top Secret/SCI clearance (Final) required
  • Must work onsite within a government-controlled secure facility
Technical & Domain Capabilities
  • Deep experience overseeing SOC operations across cyber defense monitoring, alert triage, threat analysis, and continuous incident response in enterprise federal environments
  • Demonstrated incident response command experience: directing multi-team response operations, making real-time containment and escalation decisions, and managing stakeholder communications during active events
  • Experience leading Information Security GAP Analysis: assessing security posture against frameworks and standards, identifying deficiencies, and producing prioritized remediation findings
  • Proficiency with program management disciplines: project tracking, risk register management, issue mitigation, and deliverable quality oversight in a federal contract environment
  • Experience coordinating directly with government federal personnel as the primary contractor interface on security operations and program performance matters
  • Working knowledge of NICE Cybersecurity Workforce Framework PR-CDA-001 (Cyber Defense Analyst) and PR-CIR-001 (Cyber Defense Incident Responder) role definitions and training requirements
  • Familiarity with applicable federal cybersecurity compliance frameworks: FISMA, NIST SP 800 series, and related standards as they apply to SOC operations and GAP analysis
Core Strengths
  • Composed and decisive under pressure — you command incident response operations in high-stakes, fast-moving situations without losing clarity or organizational control
  • Strong program manager: you track risk, manage deliverables, and hold teams accountable without sacrificing the operational tempo the mission requires
  • Credible government interface: you communicate with federal personnel with transparency, technical authority, and the professionalism that sustains long-term trust
  • Organizational leader who builds high-performing SOC teams, enforces standards, and drives continuous improvement as a standing operating principle
Certifications

One or more of the following is required or strongly preferred:

  • CISSP, CISM, GCIH (GIAC Certified Incident Handler), GCIA (GIAC Certified Intrusion Analyst), CySA+, or equivalent senior security operations or incident response credential
  • Role-based training required per NICE Cybersecurity Workforce Framework PR-CDA-001 and PR-CIR-001 — must be current or completed within required timeframes
Nice to Have (Differentiators)
  • Prior SOC Chief, SOC Director, or equivalent senior SOC leadership experience in a federal civilian or intelligence community environment
  • Formal incident command training or experience applying ICS/NIMS frameworks to cybersecurity incident response operations
  • Experience leading Information Security GAP Analysis against NIST CSF, RMF, or equivalent federal frameworks
  • Experience managing classified SOC operations at the TS/SCI level within SCIFs or other government-controlled secure facilities
  • PMP certification or equivalent program management credential
  • Experience building or maturing a SOC from early operational capability to full program maturity

#DICE #LinkedIn

___________________________________________________________________________________________________________

Here at Revolutional we are pleased to have been repeatedly recognized for our outstanding work culture, the innovative work we do, and the employees on our team who make a difference each day.  Some of these recognitions include:  

  • Recognized as a Top 20 "Best Place to Work in Virginia"
  • Recipient of Department of Labor's HireVets Gold Medallion
  • Great Place to Work Certification for five years running
  • A Virginia Chamber of Commerce Fantastic 50 company
  • A Northern Virginia Technology Council Tech 100 company 
  • Inc. 5000 list of fastest growing companies for eleven years
  • Two-time SBA SBIR Tibbett's Award winner
  • Virginia Values Veterans (V3) Certification

We recognize that every bit of our success is the result of our teams of hard-working, motivated, and innovative professionals who are proud to call themselves part of the Revolutional family!   In addition to competitive compensation, a family-focused culture, and a dynamic, productive work environment, we offer all full-time employees a variety of benefits including, but not limited to

  • Traditional and HSA- eligible medical insurance plans 
  • 100% employer-paid dental and vision insurance options 
  • 100% employer-sponsored STD, LTD, and life insurance
  • 5% 401(k) company matching
  • Flexible-schedules and teleworking options
  • Paid holidays and PTO Accrual Plans
  • Paid Parental Leave
  • Professional development and career growth opportunities 
  • Team and company-wide events, recognition, and appreciation-- and so much more! 

Check out our Revolutional | LinkedIn to find out a little more about who we are and if we are the right next step for your career!   

Revolutional is an Equal Opportunity Employer providing equal employment opportunity to all employees and applicants for employment without regard to race, color, religion, national origin, age, gender, gender identity, sexual orientation, disability, or genetics. Revolutional does and will take affirmative action to employ and advance in employment individuals with disabilities and protected veterans.  To perform the above job successfully, an individual must possess the knowledge, skills, and abilities listed; meet the education and work experience required; and must be able to perform each essential duty and responsibility satisfactorily.  Other duties in addition to those listed may be assigned as necessary to meet business needs.  Reasonable accommodation will be made to enable an applicant with a disability to successfully apply for and/or perform the essential duties of the job.  If you are in need of an accommodation, please contact HR@revolutional.com.  

"Know Your Rights: Workplace Discrimination is Illegal" Poster | U.S. Equal Employment Opportunity Commission