SOC Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

Peraton · 2 weeks ago

SOC Lead

Peraton is a next-generation national security company that drives missions of consequence. They are seeking an experienced SOC Lead to lead and mature cybersecurity monitoring, detection, and incident response operations supporting programs aligned to the Federal Aviation Administration (FAA). This role involves strategic and operational management of the SOC, including workforce leadership and continuous improvement of detection and response capabilities.

Information TechnologyRobotics
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Lead and manage SOC operations, including staffing models, shift coverage, and on-call rotations
Oversee incident response lifecycle (triage, containment, eradication, recovery) and serve as executive escalation authority
Supervise, mentor, and develop SOC Leads and Analysts; establish performance goals and training plans
Govern and optimize security monitoring tools (SIEM, EDR, IDS/IPS, SOAR, vulnerability scanners)
Establish and maintain SOC policies, SOPs, runbooks, and playbooks aligned with federal standards
Drive threat intelligence integration, detection engineering, and threat hunting programs
Ensure accurate incident documentation, metrics, and reporting to leadership and FAA stakeholders
Coordinate with network, cloud, application, and engineering teams to remediate vulnerabilities and systemic risks
Manage vendor relationships, contracts, and tool roadmaps for SOC capabilities
Lead tabletop exercises, incident simulations, audits, and after-action reviews
Track and report KPIs/SLAs, trends, and continuous improvement initiatives
Support change management, tool onboarding, and security architecture enhancements
Ability to brief executive leadership and translate technical risk into business impact
Manage budgets, staffing plans, and operational metrics

Qualification

SOC operations managementIncident response leadershipFederal cybersecurity frameworksSIEMEDR knowledgeThreat intelligence integrationAnalytical skillsVendor managementCommunication skillsLeadership skillsDecision-making skills

Required

U.S. Citizenship Required
Must have the ability to obtain / maintain a Public Trust clearance
12 years of cybersecurity experience
Experience managing SOC or incident response teams
Proven leadership in incident response, security monitoring, and SOC operations
Hands-on knowledge of SIEM, EDR/XDR, SOAR, and threat intelligence platforms
Strong understanding of federal cybersecurity frameworks and reporting requirements
Excellent leadership, communication, and decision-making skills under pressure
In-depth knowledge of RMF, NIST 800-53, NIST 800-61, and incident reporting obligations
Strong analytical skills for correlating events across multiple data sources and environments

Preferred

Exposure to FAA programs or NAS systems
Experience supporting federal, aviation, or other regulated environments
Degree in Cybersecurity, Information Assurance, or Systems Engineering
Certifications such as CISSP, CISM, GCED, GCIA, or GCIH
Experience supporting FAA, DOT, or transportation/aviation systems
Familiarity with cloud security monitoring, Zero Trust architectures, and SOAR automation
Experience leading detection engineering or advanced threat hunting programs

Benefits

Employees may be eligible for overtime
Shift differential
Discretionary bonus

Company

Peraton Fearlessly solving the toughest national security challenges.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Thomas Terjesen
Chief Information Officer
linkedin
Company data provided by crunchbase