Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Operations Technical Lead (SOC Engineer/SME)

cFocus Software Incorporated

Cybersecurity Operations Technical Lead (SOC Engineer/SME) Position Title: Cybersecurity Operations Technical Lead (SOC Engineer/SME) Program: SBA – Enterprise Cybersecurity Services (ECS) Position Summary The Cybersecurity Operations Technical Lead (SOC Engineer/SME) serves as the senior technical lead responsible for engineering oversight, operational coordination, and technical execution of Security Operations Center (SOC) services supporting the SBA Enterprise Cybersecurity Services (ECS) program. The position provides advanced technical leadership for SOC engineering, cybersecurity monitoring, threat detection and analysis, incident response, vulnerability management, threat hunting, SIEM/EDR operations, operational reporting, SOC platform optimization, and continuous improvement of 24x7x365 cybersecurity operations. The Cybersecurity Operations Technical Lead acts as a primary technical advisor to Government leadership and coordinates directly with SOC analysts, engineers, incident responders, ISSOs, system owners, and executive stakeholders. Essential Duties and Responsibilities Provide technical leadership and operational oversight for enterprise SOC operations supporting SBA cybersecurity missions. Serve as the senior SOC engineering and cybersecurity operations subject matter expert (SME) supporting 24x7x365 operations. Lead SOC operational activities including security monitoring, threat detection, event correlation, incident response, and cybersecurity investigations. Support execution of SOC Operations Management activities identified under RFQ Task Area 3.5.3.2. Coordinate and oversee Tier 1, Tier 2, and Tier 3 SOC operations and incident response activities. Manage and optimize SIEM, EDR, IDS/IPS, vulnerability management, log management, and cybersecurity monitoring platforms. Provide technical oversight for cyber threat hunting, threat intelligence integration, malware analysis, and digital forensics activities. Develop and maintain SOC operational procedures, incident response playbooks, escalation procedures, and operational workflows. Support implementation and execution of cybersecurity communications plans and operational reporting requirements. Perform advanced analysis of network traffic, system logs, security alerts, indicators of compromise (IOC), and attack patterns. Coordinate incident response activities with Federal leadership, system owners, legal, privacy, inspector general, and other mission stakeholders. Develop cybersecurity operational dashboards, metrics, reports, and performance indicators aligned with SLA requirements. Support SOC platform engineering, tuning, automation, orchestration, and continuous operational improvement initiatives. Provide technical guidance for cloud security monitoring across Azure, AWS, Microsoft 365, Dynamics, Salesforce, and hybrid environments. Lead cybersecurity operational readiness activities including continuity of operations (COOP), disaster recovery, and emergency response support. Ensure cybersecurity operations align with NIST SP 800-61, NIST SP 800-53, CISA guidance, FISMA requirements, and federal cybersecurity standards. Support vulnerability management activities including Tenable SC operations, zero-day vulnerability tracking, and remediation coordination. Develop executive briefings, incident summaries, trend analysis reports, and operational recommendations for Government leadership. Provide mentoring, technical direction, and operational support to SOC analysts, engineers, and incident responders. Participate in working groups, technical collaboration meetings, and cybersecurity improvement initiatives. Minimum Qualifications Active Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or similar level certification. Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Assurance, Engineering, or related technical discipline. Additional relevant experience may substitute for degree requirements. Minimum of 10 years of progressive cybersecurity operations, SOC engineering, incident response, or cybersecurity analysis experience. Proven experience managing and/or leading successful local and remote teams in an operational environment. Proven experience and the ability to interact authoritatively with a diverse group of senior executives, managers, and subject matter authorities. Ability to navigate and work effectively across complex, geographically dispersed teams. Strong analytical, problem solving, organization, time management, and interpersonal skills as well as verbal and written communication skills. 8+ years’ experience implementing, tuning, maintaining and operating security operations capabilities such as Firewalls, VPN, IDS/IPS, SIEM, EDR, NDR, A/V, Email Content Filtering, Web Content Filtering, virtual technologies, etc. 5+ years’ experience with coding and scripting languages (i.e., JSON, Java, JavaScript, Python, SQL, PowerShell, PHP, C, C++, etc). Minimum of 5 years supporting or leading enterprise SOC operations in a federal environment. Demonstrated experience supporting 24x7x365 SOC operations, SIEM administration, incident response, and threat monitoring activities. Hands‑on experience with SIEM, EDR, IDS/IPS, network security monitoring, threat intelligence, and log aggregation platforms. Experience conducting incident triage, malware analysis, threat hunting, digital forensics, and root cause analysis. Experience supporting cloud security operations across AWS, Azure, Microsoft 365, or hybrid enterprise environments. Strong understanding of federal cybersecurity frameworks including FISMA, NIST RMF, NIST SP 800‑53 Rev. 5, NIST SP 800‑61, CISA guidance, and Zero Trust principles. Experience developing cybersecurity operational metrics, dashboards, executive reporting, and operational documentation. Excellent analytical, communication, leadership, coordination, and problem‑solving skills. Preferred Certifications Certified Information Systems Security Professional (CISSP) GIAC Certified Incident Handler (GCIH) GIAC Certified Forensic Analyst (GCFA) Certified Information Security Manager (CISM) CompTIA CySA+ Certified Ethical Hacker (CEH) Splunk Certified Architect or equivalent SIEM certification AWS or Microsoft Azure Security Certifications #J-18808-Ljbffr

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Operations Technical Lead (SOC Engineer/SME) in Washington DC vacancy
  •  ...cFocus Software Incorporated is seeking a Cybersecurity Operations Technical Lead (SOC Engineer/SME) in Washington, DC. This role involves providing technical leadership for SOC operations, managing cybersecurity monitoring and incident response, and ensuring compliance... 
    Suggested

    cFocus Software Incorporated

    Washington DC
    3 days ago
  •  ...seeking a Product Manager SME to work in the National...  ...2026. The WDP focuses on operational warfighting data and aims...  ...Security Operations Center Lead SME is the senior cybersecurity operations authority within...  .... This role leads the WDP SOC function in alignment with... 
    Suggested
    Contract work
    Shift work

    ECS Limited

    Falls Church, VA
    4 days ago
  • $90 - $130 per hour

     ...Support - SIEM & Data Pipeline Technical Lead / SME to join their team! This...  ...subject matter expert for cybersecurity data architecture,...  ...technical guidance to junior engineers and analysts Communicate...  ...and cloud security operations: AWS, Azure, O365 ~ Expertise... 
    Suggested
    Local area

    KellyMitchell Group

    Bethesda, MD
    4 days ago
  • $146k - $232k

     ...Koitecc Solutions is seeking a Cybersecurity Expert located in Washington DC to lead the establishment of a FedRAMP-compliant Security Operations Centre (SOC). The ideal candidate will have significant cybersecurity experience, specializing in SOC operations and incident... 
    Suggested

    Koitecc Solutions

    Washington DC
    3 days ago
  •  ...seeking an experienced Software Engineer – Subject Matter Expert (SME) to lead the design and development of cutting...  ...for geospatial intelligence operations. This role requires expertise in...  ...microservices and ensuring compliance with cybersecurity standards. Strong programming... 
    Suggested

    Unity Compass

    Alexandria, VA
    4 hours ago
  •  ...About the Job Security Operations Center (SOC) Lead Falls Church, Virginia...  ..., coordinates with other cybersecurity teams, and serves as...  ...GSLC, CCISO, or HCISPP). Technical Knowledge: Expert...  ...approach to consulting and engineering centers around using only... 
    Full time
    Contract work
    Work at office
    Remote work
    Shift work

    ZTI Solutions LLC

    Falls Church, VA
    1 day ago
  • OneMain Financial is seeking a Security Operations Center (SOC) Manager to lead its cybersecurity operations team in Washington, DC. The SOC Manager will oversee the security operations lifecycle, ensuring a robust security posture while managing daily operations. The ideal... 

    OneMain Financial

    Washington DC
    11 hours ago
  • $210k - $250k

     ...0 Job Tittle: IT Project Lead, SME Location: Washington, DC...  ...Lead - SME serves as the ISaaS Technical Director and Team Lead, with...  ...the successful technical, operational, and financial execution of...  ...Security Operations • Assess cybersecurity risks, identify threats, and... 
    Temporary work
    For subcontractor

    Agile Defense

    Washington DC
    1 day ago
  • $110k - $215k

     ...an experienced Software Engineer – Subject Matter Expert (SME) to lead the design, development...  ...intelligence (GEOINT) operations through modern Agile, DevSecOps...  ...software engineer and technical advisor for mission...  ...customer and IC-wide cybersecurity, data governance, and... 
    Contract work

    Unity Compass

    Alexandria, VA
    6 hours ago
  • IT Project Lead - SME / Active Top Secret Location: National Capital...  ...guidelines. Serve as the Technical Expert and official point of...  ...or programs. May manage an operating office and supervise professional...  ...as results of planned cybersecurity assessments on systems and data... 
    For contractors
    For subcontractor
    Work at office

    Peraton

    Washington DC
    1 day ago
  • $160k - $210k

     ...hiring for an SME RPA Application...  ...strategic guidance, technical leadership, and...  ...Proficiency in leading RPA platforms and...  ...development aligned with cybersecurity and compliance...  ...in fast‑paced operational environments....  ...improvement, or workflow engineering. Strong... 
    Currently hiring

    Govcio LLC

    Alexandria, VA
    6 days ago
  • $131.3k - $237.35k

     ...seeking an experienced SME Software Developer to...  ...government partners, engineers, and other industry teammates to translate operational and strategic requirements...  ..., customer tools, cybersecurity, and user interfaces....  .... Mentor and provide technical guidance to junior and... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    4 days ago
  •  ...Endpoint Vulnerability Management Sme/Technical Lead Bethesda, MD Require employee(s) performing endpoint vulnerability management functions...  ...credentials to reflect knowledge, skills, and experience operating endpoint vulnerability assessment tools, agent- and network-... 

    Merit 321

    Bethesda, MD
    1 day ago
  •  ...cFocus Software seeks a Lead Cybersecurity Engineer to join our program supporting...  ...scale, complex cybersecurity operations. Proven experience leading...  ...accuracy. Collaborate with SOC/NOC teams to improve threat...  ...validation. Provide technical leadership for Zero Trust,... 
    Remote work
    Night shift

    cFocus Software Incorporated

    Washington DC
    3 days ago
  •  ...Lead Cybersecurity Engineer Washington, DC Type: Contract Category: Security...  ...will collaborate with SOC, NOC, and incident response teams...  ...capabilities and will provide technical leadership to improve risk posture and operational effectiveness. Due to client... 
    Hourly pay
    Contract work
    Local area
    Remote work
    Night shift

    Eliassen Group

    Washington DC
    6 days ago
  •  ...Subject Matter Expert (SME) The Subject Matter Expert (SME) will lead technical and analytical efforts for the U.S. Department of Transportation's National...  ...for code management and collaboration. Data Engineering & Development Build and optimize ETL (Extract... 
    Remote work

    Savan Group

    Washington DC
    1 day ago
  •  ...A technology firm is seeking a seasoned SME Software Engineer Lead to enhance data and analytics capabilities for the Department of War. The ideal candidate will have extensive experience in software development, Agile methodologies, and leading teams. Responsibilities... 

    Via Logic LLC

    Alexandria, VA
    3 days ago
  •  ...Title: DevSecOps (Kubernetes) Engineer SME Clearance: US Citizen (...  ...Helm charts, and comes with cybersecurity and other governance policies...  ...teach and work with custom operators and CRDs in Kubernetes as needed...  ...disability ~ Industry-Leading Weekly Pay Schedule ~ Home... 
    Weekly pay
    Temporary work
    Remote work
    Home office

    Rackner

    Washington DC
    16 days ago
  •  ...Technical Lead Developer - 0098 Department: Federal Services Employment...  ...workflows to improve operational efficiency. Ensure compliance...  ...Section 508 accessibility and cybersecurity standards. Provide...  ...Collaborate with data analytics and engineering teams for solution delivery... 
    Full time
    Immediate start

    TeleSolv Consulting

    Washington DC
    4 hours ago
  •  ...JPI is seeking a Technical Lead Developer to provide organizational redesign and integration of legacy engineering and logistics processes into applications. Experience of 10+...  ...Expertise (Civil Engineering, Cybersecurity) on data management, strategic priorities... 

    JPI

    Washington DC
    2 days ago
  •  ...Technical Lead Developer TeleSolv Consulting has an immediate opportunity...  ...workflows to improve operational efficiency. Ensure...  ...Section 508 accessibility and cybersecurity standards. Provide technical...  ...with data analytics and engineering teams for solution delivery... 
    Temporary work
    Immediate start

    TeleSolv Consulting

    Washington DC
    4 days ago
  •  ...Lead Security Engineer At B&A, we foster and embrace...  ...Subject Matter Expert (SME)-level Lead Security...  .... This role provides technical and management leadership...  ...Authorization to Operate (ATO) activities, and...  ...accordance with the NIST Cybersecurity Framework and NIST SP... 
    Full time
    Work at office
    Local area

    Bart and Associates Inc

    Suitland, MD
    4 days ago
  •  ...a Subject Matter Expert (SME)–level Lead Security Engineer to lead application security...  .... This role provides technical and management leadership...  ...drive Authorization to Operate (ATO) activities, and direct...  ...53 controls and the NIST Cybersecurity Framework Proven... 
    Contract work
    Work at office
    Flexible hours

    Onyx Government Services,LLC

    Suitland, MD
    1 day ago
  •  ...Bachelor’s degree in Cybersecurity, Information...  ...identity security, or PAM engineering Demonstrated experience...  ...Experience leading or supporting enterprise...  ...improvements Collaborate with SOC, IAM, cloud, and...  ...standards for PAM operations Provide technical leadership and... 

    cFocus Software Incorporated

    Washington DC
    2 days ago
  •  ...Solutions is seeking a talented Cyber Security Engineer SME in Bethesda, MD. This role offers the opportunity to provide critical technical support to our Intelligence Community...  ...candidate will work in a hands-on capacity while leading a security team, ensuring compliance, and... 

    Xcelerate Solutions

    Bethesda, MD
    4 days ago
  •  ...seeking a highly skilled Cloud Engineer Subject Matter Expert (SME) to join our team. The...  ...to development teams on operational issues involving database...  ...our service offerings. Lead and mentor team members in...  ...full compliance with cybersecurity requirements; and, review... 
    Flexible hours
    2 days per week

    Ignite IT, LLC

    Suitland, MD
    3 days ago
  • Ampcus, Inc is seeking a SOC/NOC Operations Manager in Washington, DC. The role involves overseeing 24x7x365 security and network monitoring operations, ensuring operational workflows, staffing coverage, and effective incident handling. Ideal candidates must possess CISSP... 
    Night shift

    Ampcus, Inc

    Washington DC
    3 days ago
  • $92k - $184k

    A federal contracting company in Washington, DC is seeking a Task Operations Support Manager (TASM) - SME to oversee mission-critical operations for a federal client. The role involves ensuring quality control and collaboration with teams, as well as analyzing challenges... 

    Contact Government Services, LLC

    Washington DC
    4 days ago
  • A federal contractor in Washington, DC, is seeking a skilled Task Operations Support Manager (TASM) - SME to oversee mission-critical operations. The candidate must possess exceptional leadership and expertise, along with an active DoD Top Secret/SCI clearance. Responsibilities... 
    For contractors

    CGS Federal (Contact Government Services)

    Washington DC
    11 hours ago
  •  ...D&G Solutions is seeking a Technical Lead Developer to support U.S. Coast...  ...workflows that improve how engineering, facilities, and capital...  ...to support daily operations and leadership decisions....  ...Collaborate with engineering, cybersecurity, and data teams to ensure systems... 
    Permanent employment
    Full time
    Work at office
    Remote work
    Flexible hours
    3 days per week

    D&G Solutions

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Operations Technical Lead (SOC Engineer/SME). Be the first to apply!