Cyber Ops Lead I SOC Lead (8+ years exp)
Draper, UT ( Need local candidate only)
Contract
ROLE DESCRIPTION
⢠5+ years of experience in a Security Operations Center or similar cyber defense role, including at least 1-2 years in a lead, senior analyst, or shift-lead capacity
⢠Act as the primary liaison between Cyber Defense and Tech Operations on issues that span both teams (eg., system changes, outages, access requests, infrastructure-related findings).
⢠Lead day-to-day SOC operations, including monitoring, alert triage, and initial incident response.
⢠Working knowledge Of SIEM, EDR, and case/ticket management tooling
SKILLS_REQUIRED
“Case & Queue Management
⢠Own the SOC case queue: triage incoming alerts, tickets, and requests; assign priority and
ownership; track cases through to resolution.
⢠Maintain SLAs for case handling and escalation; identify and clear bottlenecks before they become backlogs.
⢠Ensure consistent documentation, categorization, and closure quality across all cases.
SOC Leadership & Operations
Lead day-to-day SOC operations, including monitoring, alert triage, and initial incident response.
⢠Coordinate shift coverage and on-call rotations to maintain continuous monitoring.
⢠Serve as a senior escalation point for analysts on complex or ambiguous cases.
⢠Drive continuous improvement Of detection content, playbooks, and standard operating procedures.
Partnering with Technology Operations
⢠Act as the primary liaison between Cyber Defense and Tech Operations on issues that span both teams (eg., system changes, outages, access requests, infrastructure-related findings).
⢠Coordinate response and remediation activities that require Tech Operations involvement, ensuring clear handoffs and shared visibility into status.
⢠Participate in change management and operational reviews where security input is needed.
—