Cyber Tier 1 Deputy Team Lead
$87.1k - $157.45kLeidos
Leidos is seeking a Cyber Tier 1 Deputy Team Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Center (NOSC) support, cyber analysis, application development, and a 24x7x365 support staff.
Department of Homeland Security (DHS), Network Operations Security Center (NOSC) is a U.S. Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS NOSC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.
The Cyber Tier 1 (Monitoring and Analysis) team provide 24x7 support across 4 different shifts. We have front half shifts (day and night) and back half shifts (day and night). The front half shift will work 12-hour shifts from Sunday – Tuesday and alternating Wednesdays. The back half shift will work 12-hour shifts from Thursday – Saturday and alternating Wednesdays. Candidates must have the ability to work non-core hours, if necessary.
Duties include network security monitoring and detection, proactively searching for threats, inspecting traffic for anomalies and new malware patterns, investigating and analyzing logs, providing analysis and response to alerts, and documenting activity in NOSC investigations and Security Event Notifications (SENs).
The Cyber Tier 1 Deputy Team Lead is a critical role within the Network Operations and Security Center (NOSC), created to enhance operational efficiency, streamline processes, and improve the overall cybersecurity posture. This role emphasizes continuous improvement of effectiveness and efficiency, ensuring consistent communication and task completion across all shifts, and providing quality assurance and content enhancement for cybersecurity investigations and monitoring tools.
Primary Responsibilities
- Onboarding Optimization:
- Lead efforts to reduce onboarding time through continuous observation and assessment of operations and administrative processes.
- Implement process improvements to enhance efficiency and reduce unnecessary efforts, leveraging Lean Six Sigma methodologies.
- Process Improvement:
- Continuously review and refine Standard Operating Procedures (SOPs) and workflows to ensure they are modern, efficient, and aligned with current needs.
- Collaborate with the SOAR team and other special teams to enhance automation and workflow capabilities.
- Customer Service Enhancement:
- Provide superior customer service to the Department of Homeland Security (DHS) by accurately identifying and addressing ad hoc requests from federal leadership.
- Act as a point of contact for high-level leaders and leads on the federal side to ensure clear communication and understanding of requirements.
- Training and Tools Management:
- Oversee and maintain compliance with required training programs, including on-the-job cybersecurity training and DHS-mandated e-learning courses.
- Manage and maintain access to cybersecurity tools, ensuring all team members have the necessary permissions to perform their roles effectively.
- Provide training on the use of various cybersecurity tools to team members, enhancing their capability to use the tools efficiently.
- Shift Liaison and Task Management:
- Ensure that all shifts (Front Days, Back Days, Front Nights, Back Nights) do not miss important emails or tasks, maintaining consistency in task completion.
- Monitor and follow-up on asks to ensure they are addressed and not overlooked, addressing gaps in previous processes.
- Quality Assurance and Content Improvement:
- Perform quality assurance checks on Splunk comment closures, Splunk investigations, and cybersecurity investigations (ECMs).
- Conduct quality checks on EBMs or proxy and firewall blocks submitted within the network.
- Review trends and data to develop better content for Splunk alerting and monitoring.
- Continuously work to improve the accuracy and efficiency of monitoring content by analyzing investigation trends.
- Process and Workflow Enhancement:
- Collaborating with the federal cybersecurity leads to reduce waste and improve meaningful cybersecurity processes.
- Engage with various teams to explore new methods to improve the work environment and cybersecurity services, including liaising with SOAR engineers and other special teams.
- Tools and Service Evaluation
- Test and evaluate new tools and services requested by the customer in a testing or development environment, providing critical feedback and analysis before enterprise-wide acquisition.
Collaborate on feature development and enhancement of existing tools by testing new features and providing insights to optimize their functionality for the organization.
Basic Qualifications
- All NOSC Deputy Team Lead candidates shall have one of the following:
- Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 4 years total professional experience;
- Associate’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 6 years total professional experience;
- High school diploma and AND a minimum of 8 years total professional experience;
- And, professional experience in at least two of the areas listed below:
- GenAI/Automation
- Vulnerability Assessment
- Intrusion Prevention and Detection
- Access Control and Authorization
- Policy Enforcement
- Application Security
- Protocol Analysis
- Firewall Management
- Incident Response
- Encryption
- Web-Filtering
- Advanced Threat Protection
- Military experience and training may be considered in lieu of degree
- Active advanced cybersecurity certification(s)
- Experience conducting detailed technical analysis of Cybersecurity Events and Incidents
- Must have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.
- Must have one of the following certifications: CCNA-Security, CYSA+, GICSP, GSEC, Security+ CE, CND, SSCP
Candidates should also demonstrate the following:
- Extensive knowledge of a SOC’s/NOSC’s purpose and role within an organization
- Detailed understanding of common network ports and protocols (e.g. TCP/UDP, ICMP, DNS, SMTP, etc)
- Expertise with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).
- Expertise with packet analysis tools such as Wireshark
- Able to perform critical thinking and analysis to investigate cyber security alerts
- Extensive knowledge of common malware and attack vectors
- Extensive experience with Windows operating systems and standard OS logging
- Extensive experience with Antivirus, DLP, and host-based firewalls
Preferred Qualifications
- Familiarity with other continuous improvement methodologies, e.g. Theory of Constraints
- Strong analytical skills with the ability to perform quality assurance and content improvement.
- Demonstrated ability to liaise between multiple teams and organizational levels.
- Excellent communication skills, both written and verbal, with the ability to interact effectively with federal leadership and team members across all shifts.
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
August 21, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $87,100.00 - $157,450.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
- ...candidate to fulfill a role as a Security Operations Center (SOC) Tier I Cyber Security Analyst supporting the Department of Homeland Security... ...date Previous experience on a Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer...CyberFull timeLocal area
- ...Tangent Technologies LLC is seeking a qualified Security Operations Center (SOC) Tier I Cyber Security Analyst to support the Department of Homeland Security in Chandler, AZ. This entry-level position requires US citizenship and an Active DoD Secret Clearance. Candidates...Cyber
$86k - $138k
ResponsibilitiesPeratons' Cyber Mission sector is looking for a SOC Team Lead to support the Department of Homeland Security.Location: Chandler, AZ.Role and Responsibilities: Investigate and analyze all response activities related to cyber incidents within the network environment...CyberContract workShift work- ...Sr. Cyber Security Engineer Hiring Manager: Marlene Veum Head of Cybersecurity Department... ...New Level: P3 ICP: 20 Salary: Tier 1 - $116,657.00 - $129,665.00 - $143,890.00... ...exercises (table top, blue and purple team, etc.) Tech Skills Needed...Cyber
- ...Position: Lead ServiceNow Developer Term: 12+ Months... ...Exposure Management Engineering team. The successful candidate will... ...enterprise solutions for our client's Cyber Security Vulnerability... ...clients with such topics ~1+ years of experience with web...CyberWork experience placement
- Avnet is seeking a Cyber Incident Response Analyst in Chandler, Arizona. The role involves collaborating with a global team on incident response and utilizing the CrowdStrike platform for... ...background in cybersecurity, preferably with 1-3 years of experience and a bachelor's...Cyber
- ...partner awards in the past year\n * $1.4M+ total charitable... ...alignment between Insight\u2019s sales teams and Cohesity\u2019s organization... ...high-potential opportunities for cyber resilience and modern data protection solutions. Lead initial discovery calls leveraging...CyberFull timeLocal areaImmediate startRemote workFlexible hours
- ...industry and partner awards in the past year $1.4M+ total charitable contributions in 2024... ...will get to: Collaborate with the sales team and partners on opportunities and solutions... ...Job Segment: Outside Sales, Project Manager, Cyber Security, Developer, Sales, Technology,...CyberLocal areaImmediate start
- ...something great? Want to join a 17,000-member team that works on the technology that powers... ...actively exploited vulnerabilities under the EU Cyber Resilience ActSecurity Standards &... ...improvement initiatives aligned to IEC 62443-4-1, ASPICE, and ISO/SAE 21434.Track the evolving...CyberFull timeWork at office
- ...ServiceNow Lead Software Engineer Seeking a ServiceNow Lead Software... ...Management Engineering team to lead, implement, and support... ...responsibilities for company's ServiceNow Cyber Security Vulnerability... ...; or similar Vendor Package ~1+ years of experience with web...Cyber
$82.6k - $162.8k
Position Summary Join our Deloitte Cyber team to deliver powerful solutions to help our... ...outnumber human identities by ratios of 45:1 to 100:1 in enterprise environments. Our... ...sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage...CyberLocal areaVisa sponsorship$63.9k - $95.9k
...electrical ground support equipment (EGSE) team supports our programs with the design,... ...drawings, specifications, and test procedures.Leading teams or personnel in the execution of... ...test systems or systems subject to cyber security policies.Management or tracking...CyberShift work$14k
...industry and partner awards in the past year $1.4M+ total charitable contributions in 202... .... Your interactions with the sales teams,partnersand clients willprovideyouthe ability... ...Phoenix Job Segment: Pre-Sales, Developer, Cyber Security, Outside Sales, Sales, Technology...CyberLocal areaImmediate start$118.7k - $243.7k
...focused leader who can influence teams, mentor engineers, and ensure... ...professional relationshipsAbility to lead projects or workstreamsAbility... ...US deliver services including: Cyber SecurityTechnology... ...-on delivery experienceMinimum 1 year of people and/or process...Cyber- ...Group (MUFG), one of the world’s leading financial groups. Across the... ...day. A member of our recruitment team will provide more details.Hours... ...in office 3 days per week and 1 day remotely.The working hours... ...degree in Information Technology, Cyber Security, Computer Science, or...CyberFull timeWork at officeLocal areaRemote work3 days per week
$134.5k - $265.1k
Position Summary Deloitte Cyber understands the unique... ...cybersecurity. Deloitte’s Cyber team helps our clients navigate the... ...Engineer (FDE) Manager, you will lead delivery of cybersecurity and AI... ...Git, Azure DevOps).We require 1+ years of experience for all areas...CyberLocal areaVisa sponsorship$82.6k - $162.8k
...help clients and internal delivery teams move from AI principles to practices: risk tiering, model and agent inventories,... ...Growth and Transformation on the Cyber team, you will be responsible for... ...professional relationshipsAbility to lead projects or workstreamsAbility to...CyberLocal areaVisa sponsorship- ...and partner awards in the past year $1.4M+ total charitable contributions... ...Industry and Delivery Leadership team. You possess a proven track record of leading transformational programs, driving... ...Market Phoenix Job Segment Consulting, Cyber Security, Procurement, Strategic...CyberLocal areaImmediate start
$105.4k - $207.8k
...Senior Consultant in Deloitte Cyber’s Digital Trust & Privacy practice... ...with product and engineering teams, and communicate effectively with... ...relationshipsAbility to lead projects or workstreamsAbility... ...Python, Java, or Node.js, and 1+ years of experience delivering...CyberLocal areaVisa sponsorship- ...CUI). Job Summary We are seeking a hands‑on Cyber Incident Response Analyst to join a... ...In this role, you will be part of a global team operating in a follow‑the‑sun model across... ...remediate threats. Work Experience Typically 1 to 3 years with bachelor's or equivalent....CyberPermanent employmentTemporary workWork experience placementFlexible hours
- ...? Want to join a 17,000-member team that works on the technology that... ...across one of the world's leading semiconductor companies. Reporting... ...company-wide readiness for the EU Cyber Resilience Act and other... ...3D, STRIDE, OWASP, IEC 62443-4-1, and ISO 21434.Support product...CyberFull timeWork at officeWorldwide
- ...NovaSource Power Services is the world's #1-ranked solar operations and maintenance (O... ...global fleet. Currently, the engineering team provides three main functions for the business... ...,... Basic knowledge of approved cyber security practices. SCADA Qualifications...CyberTemporary workFor subcontractorWork at officeLocal areaRemote workWorldwideFlexible hours
- ...internationally. Our client has $1.4 trillion in assets and more than 270,000 team members in more than 35 countries... .... This person serves as technical lead responsible for specific areas of... ...intrusion detection monitoring, scanning, cyber threat reporting, and development/...CyberRelocation
$85k - $140k
Job Description:In this role, the Team Manager will be expected to hold team members accountable... ...clients first, doing the right thing, leading with exceptional ideas, committing to... ...communities and more than 80,000 employees in 1,200 offices across 42 countries. At...Temporary workLocal area- ...Team Manager Lead with purpose. Grow with support. At Panera, our leaders are celebrated for bringing out the best in their teams. Enjoy great... ...Opportunity Is For You If: ~ Minimum age: 18 years of age. ~1+ years of restaurant management experience preferred. ~...Flexible hoursShift workNight shift
$104k - $166k
...experienced Penetration Tester for its Federal Strategic Cyber Group. Location: Chandler, AZ and Washington DC.Role... ...mobile, IoT, and High Value Asset (HVA) systems.You will lead technical engagements, drive red team operations, and collaborate closely with SOC, incident...CyberContract workCurrently hiringShift work- Position SummaryWe are seeking an experienced Cyber Security Analyst to join our cybersecurity team. In this critical role, the successful candidate will be tasked... ...identifying vulnerabilities, mitigating risks, and leading incident response efforts. The ideal candidate will...Cyber
- ...industry and partner awards in the past year$1.4M+ total charitable contributions in 2024... ...between Insight and partner sales teams working with all Insight sales segments to... ...managing accounts of significant size. Must have Tier 1 vendor experience and knowledge. Must have...Local areaImmediate start
$112k - $179k
...Cybersecurity Engineer for its Federal Strategic Cyber group. Location: Chandler, AZ or... ...engineering for AI/GenAI-enabled systems.Provide Tier III engineering support and technical... ...reaches of the galaxy. As the world’s leading mission capability integrator and transformative...CyberContract workShift work- ...this role:Wells Fargo is seeking a Senior Lead Digital Product Manager in Technology as part... ...leader to serve as Product Owner for the Cyber Security Operations (CSO) product area... ...partner closely with cybersecurity operations teams, engineering organizations, product...CyberFull timeWork experience placement
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Tier 1 Deputy Team Lead. Be the first to apply!
- member team lead Chandler, AZ
- team leader production Chandler, AZ
- site leader Chandler, AZ
- team leader training Chandler, AZ
- team lead data science Chandler, AZ
- team leader day shift Chandler, AZ
- market leader Chandler, AZ
- compliance team leader Chandler, AZ
- manufacturing team lead Chandler, AZ
- focus group leader Chandler, AZ


