Cybersecurity Operations Technical Lead (SOC Engineer/SME)
cFocus Software Incorporated
Cybersecurity Operations Technical Lead (SOC Engineer/SME) Position Title: Cybersecurity Operations Technical Lead (SOC Engineer/SME) Program: SBA – Enterprise Cybersecurity Services (ECS) Position Summary The Cybersecurity Operations Technical Lead (SOC Engineer/SME) serves as the senior technical lead responsible for engineering oversight, operational coordination, and technical execution of Security Operations Center (SOC) services supporting the SBA Enterprise Cybersecurity Services (ECS) program. The position provides advanced technical leadership for SOC engineering, cybersecurity monitoring, threat detection and analysis, incident response, vulnerability management, threat hunting, SIEM/EDR operations, operational reporting, SOC platform optimization, and continuous improvement of 24x7x365 cybersecurity operations. The Cybersecurity Operations Technical Lead acts as a primary technical advisor to Government leadership and coordinates directly with SOC analysts, engineers, incident responders, ISSOs, system owners, and executive stakeholders. Essential Duties and Responsibilities Provide technical leadership and operational oversight for enterprise SOC operations supporting SBA cybersecurity missions. Serve as the senior SOC engineering and cybersecurity operations subject matter expert (SME) supporting 24x7x365 operations. Lead SOC operational activities including security monitoring, threat detection, event correlation, incident response, and cybersecurity investigations. Support execution of SOC Operations Management activities identified under RFQ Task Area 3.5.3.2. Coordinate and oversee Tier 1, Tier 2, and Tier 3 SOC operations and incident response activities. Manage and optimize SIEM, EDR, IDS/IPS, vulnerability management, log management, and cybersecurity monitoring platforms. Provide technical oversight for cyber threat hunting, threat intelligence integration, malware analysis, and digital forensics activities. Develop and maintain SOC operational procedures, incident response playbooks, escalation procedures, and operational workflows. Support implementation and execution of cybersecurity communications plans and operational reporting requirements. Perform advanced analysis of network traffic, system logs, security alerts, indicators of compromise (IOC), and attack patterns. Coordinate incident response activities with Federal leadership, system owners, legal, privacy, inspector general, and other mission stakeholders. Develop cybersecurity operational dashboards, metrics, reports, and performance indicators aligned with SLA requirements. Support SOC platform engineering, tuning, automation, orchestration, and continuous operational improvement initiatives. Provide technical guidance for cloud security monitoring across Azure, AWS, Microsoft 365, Dynamics, Salesforce, and hybrid environments. Lead cybersecurity operational readiness activities including continuity of operations (COOP), disaster recovery, and emergency response support. Ensure cybersecurity operations align with NIST SP 800-61, NIST SP 800-53, CISA guidance, FISMA requirements, and federal cybersecurity standards. Support vulnerability management activities including Tenable SC operations, zero-day vulnerability tracking, and remediation coordination. Develop executive briefings, incident summaries, trend analysis reports, and operational recommendations for Government leadership. Provide mentoring, technical direction, and operational support to SOC analysts, engineers, and incident responders. Participate in working groups, technical collaboration meetings, and cybersecurity improvement initiatives. Minimum Qualifications Active Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or similar level certification. Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Assurance, Engineering, or related technical discipline. Additional relevant experience may substitute for degree requirements. Minimum of 10 years of progressive cybersecurity operations, SOC engineering, incident response, or cybersecurity analysis experience. Proven experience managing and/or leading successful local and remote teams in an operational environment. Proven experience and the ability to interact authoritatively with a diverse group of senior executives, managers, and subject matter authorities. Ability to navigate and work effectively across complex, geographically dispersed teams. Strong analytical, problem solving, organization, time management, and interpersonal skills as well as verbal and written communication skills. 8+ years’ experience implementing, tuning, maintaining and operating security operations capabilities such as Firewalls, VPN, IDS/IPS, SIEM, EDR, NDR, A/V, Email Content Filtering, Web Content Filtering, virtual technologies, etc. 5+ years’ experience with coding and scripting languages (i.e., JSON, Java, JavaScript, Python, SQL, PowerShell, PHP, C, C++, etc). Minimum of 5 years supporting or leading enterprise SOC operations in a federal environment. Demonstrated experience supporting 24x7x365 SOC operations, SIEM administration, incident response, and threat monitoring activities. Hands‑on experience with SIEM, EDR, IDS/IPS, network security monitoring, threat intelligence, and log aggregation platforms. Experience conducting incident triage, malware analysis, threat hunting, digital forensics, and root cause analysis. Experience supporting cloud security operations across AWS, Azure, Microsoft 365, or hybrid enterprise environments. Strong understanding of federal cybersecurity frameworks including FISMA, NIST RMF, NIST SP 800‑53 Rev. 5, NIST SP 800‑61, CISA guidance, and Zero Trust principles. Experience developing cybersecurity operational metrics, dashboards, executive reporting, and operational documentation. Excellent analytical, communication, leadership, coordination, and problem‑solving skills. Preferred Certifications Certified Information Systems Security Professional (CISSP) GIAC Certified Incident Handler (GCIH) GIAC Certified Forensic Analyst (GCFA) Certified Information Security Manager (CISM) CompTIA CySA+ Certified Ethical Hacker (CEH) Splunk Certified Architect or equivalent SIEM certification AWS or Microsoft Azure Security Certifications #J-18808-Ljbffr
- ...cFocus Software Incorporated is seeking a Cybersecurity Operations Technical Lead (SOC Engineer/SME) in Washington, DC. This role involves providing technical leadership for SOC operations, managing cybersecurity monitoring and incident response, and ensuring compliance...Suggested
- ...seeking a Product Manager SME to work in the National... ...2026. The WDP focuses on operational warfighting data and aims... ...Security Operations Center Lead SME is the senior cybersecurity operations authority within... .... This role leads the WDP SOC function in alignment with...SuggestedContract workShift work
$90 - $130 per hour
...Support - SIEM & Data Pipeline Technical Lead / SME to join their team! This... ...subject matter expert for cybersecurity data architecture,... ...technical guidance to junior engineers and analysts Communicate... ...and cloud security operations: AWS, Azure, O365 ~ Expertise...SuggestedLocal area$146k - $232k
...Koitecc Solutions is seeking a Cybersecurity Expert located in Washington DC to lead the establishment of a FedRAMP-compliant Security Operations Centre (SOC). The ideal candidate will have significant cybersecurity experience, specializing in SOC operations and incident...Suggested- ...seeking an experienced Software Engineer – Subject Matter Expert (SME) to lead the design and development of cutting... ...for geospatial intelligence operations. This role requires expertise in... ...microservices and ensuring compliance with cybersecurity standards. Strong programming...Suggested
- ...About the Job Security Operations Center (SOC) Lead Falls Church, Virginia... ..., coordinates with other cybersecurity teams, and serves as... ...GSLC, CCISO, or HCISPP). Technical Knowledge: Expert... ...approach to consulting and engineering centers around using only...Full timeContract workWork at officeRemote workShift work
- OneMain Financial is seeking a Security Operations Center (SOC) Manager to lead its cybersecurity operations team in Washington, DC. The SOC Manager will oversee the security operations lifecycle, ensuring a robust security posture while managing daily operations. The ideal...
$210k - $250k
...0 Job Tittle: IT Project Lead, SME Location: Washington, DC... ...Lead - SME serves as the ISaaS Technical Director and Team Lead, with... ...the successful technical, operational, and financial execution of... ...Security Operations • Assess cybersecurity risks, identify threats, and...Temporary workFor subcontractor$110k - $215k
...an experienced Software Engineer – Subject Matter Expert (SME) to lead the design, development... ...intelligence (GEOINT) operations through modern Agile, DevSecOps... ...software engineer and technical advisor for mission... ...customer and IC-wide cybersecurity, data governance, and...Contract work- IT Project Lead - SME / Active Top Secret Location: National Capital... ...guidelines. Serve as the Technical Expert and official point of... ...or programs. May manage an operating office and supervise professional... ...as results of planned cybersecurity assessments on systems and data...For contractorsFor subcontractorWork at office
$160k - $210k
...hiring for an SME RPA Application... ...strategic guidance, technical leadership, and... ...Proficiency in leading RPA platforms and... ...development aligned with cybersecurity and compliance... ...in fast‑paced operational environments.... ...improvement, or workflow engineering. Strong...Currently hiring$131.3k - $237.35k
...seeking an experienced SME Software Developer to... ...government partners, engineers, and other industry teammates to translate operational and strategic requirements... ..., customer tools, cybersecurity, and user interfaces.... .... Mentor and provide technical guidance to junior and...Local areaImmediate start- ...Endpoint Vulnerability Management Sme/Technical Lead Bethesda, MD Require employee(s) performing endpoint vulnerability management functions... ...credentials to reflect knowledge, skills, and experience operating endpoint vulnerability assessment tools, agent- and network-...
- ...cFocus Software seeks a Lead Cybersecurity Engineer to join our program supporting... ...scale, complex cybersecurity operations. Proven experience leading... ...accuracy. Collaborate with SOC/NOC teams to improve threat... ...validation. Provide technical leadership for Zero Trust,...Remote workNight shift
- ...Lead Cybersecurity Engineer Washington, DC Type: Contract Category: Security... ...will collaborate with SOC, NOC, and incident response teams... ...capabilities and will provide technical leadership to improve risk posture and operational effectiveness. Due to client...Hourly payContract workLocal areaRemote workNight shift
- ...Subject Matter Expert (SME) The Subject Matter Expert (SME) will lead technical and analytical efforts for the U.S. Department of Transportation's National... ...for code management and collaboration. Data Engineering & Development Build and optimize ETL (Extract...Remote work
- ...A technology firm is seeking a seasoned SME Software Engineer Lead to enhance data and analytics capabilities for the Department of War. The ideal candidate will have extensive experience in software development, Agile methodologies, and leading teams. Responsibilities...
- ...Title: DevSecOps (Kubernetes) Engineer SME Clearance: US Citizen (... ...Helm charts, and comes with cybersecurity and other governance policies... ...teach and work with custom operators and CRDs in Kubernetes as needed... ...disability ~ Industry-Leading Weekly Pay Schedule ~ Home...Weekly payTemporary workRemote workHome office
- ...Technical Lead Developer - 0098 Department: Federal Services Employment... ...workflows to improve operational efficiency. Ensure compliance... ...Section 508 accessibility and cybersecurity standards. Provide... ...Collaborate with data analytics and engineering teams for solution delivery...Full timeImmediate start
- ...JPI is seeking a Technical Lead Developer to provide organizational redesign and integration of legacy engineering and logistics processes into applications. Experience of 10+... ...Expertise (Civil Engineering, Cybersecurity) on data management, strategic priorities...
- ...Technical Lead Developer TeleSolv Consulting has an immediate opportunity... ...workflows to improve operational efficiency. Ensure... ...Section 508 accessibility and cybersecurity standards. Provide technical... ...with data analytics and engineering teams for solution delivery...Temporary workImmediate start
- ...Lead Security Engineer At B&A, we foster and embrace... ...Subject Matter Expert (SME)-level Lead Security... .... This role provides technical and management leadership... ...Authorization to Operate (ATO) activities, and... ...accordance with the NIST Cybersecurity Framework and NIST SP...Full timeWork at officeLocal area
- ...a Subject Matter Expert (SME)–level Lead Security Engineer to lead application security... .... This role provides technical and management leadership... ...drive Authorization to Operate (ATO) activities, and direct... ...53 controls and the NIST Cybersecurity Framework Proven...Contract workWork at officeFlexible hours
- ...Bachelor’s degree in Cybersecurity, Information... ...identity security, or PAM engineering Demonstrated experience... ...Experience leading or supporting enterprise... ...improvements Collaborate with SOC, IAM, cloud, and... ...standards for PAM operations Provide technical leadership and...
- ...Solutions is seeking a talented Cyber Security Engineer SME in Bethesda, MD. This role offers the opportunity to provide critical technical support to our Intelligence Community... ...candidate will work in a hands-on capacity while leading a security team, ensuring compliance, and...
- ...seeking a highly skilled Cloud Engineer Subject Matter Expert (SME) to join our team. The... ...to development teams on operational issues involving database... ...our service offerings. Lead and mentor team members in... ...full compliance with cybersecurity requirements; and, review...Flexible hours2 days per week
- Ampcus, Inc is seeking a SOC/NOC Operations Manager in Washington, DC. The role involves overseeing 24x7x365 security and network monitoring operations, ensuring operational workflows, staffing coverage, and effective incident handling. Ideal candidates must possess CISSP...Night shift
$92k - $184k
A federal contracting company in Washington, DC is seeking a Task Operations Support Manager (TASM) - SME to oversee mission-critical operations for a federal client. The role involves ensuring quality control and collaboration with teams, as well as analyzing challenges...- A federal contractor in Washington, DC, is seeking a skilled Task Operations Support Manager (TASM) - SME to oversee mission-critical operations. The candidate must possess exceptional leadership and expertise, along with an active DoD Top Secret/SCI clearance. Responsibilities...For contractors
- ...D&G Solutions is seeking a Technical Lead Developer to support U.S. Coast... ...workflows that improve how engineering, facilities, and capital... ...to support daily operations and leadership decisions.... ...Collaborate with engineering, cybersecurity, and data teams to ensure systems...Permanent employmentFull timeWork at officeRemote workFlexible hours3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Operations Technical Lead (SOC Engineer/SME). Be the first to apply!
- network operations center team lead Washington DC
- operations lead Washington DC
- operations leader Washington DC
- technical leader Washington DC
- technical lead Washington DC
- application operations engineer Washington DC
- operations engineer Washington DC
- production operations engineer Washington DC
- remote operation drilling engineer Washington DC
- operations quality engineer Washington DC


