SOC Lead
$160.96k - $227.36kID.me
Company OverviewID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 152 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 45 state government agencies, and 70+ healthcare organizations. More than 600+ consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me’s technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to “No Identity Left Behind” to enable all people to have a secure digital identity. To learn more, visit .ID.me is a full-time, in-office culture. Unless a specific job description explicitly states otherwise, all roles are on-site five days per week at one of our offices in McLean, VA; Mountain View, CA; New York City, NY; or Tampa, FL. Certain roles — such as field-based sales or other remote-by-design positions — may have different work arrangements as noted in their individual postings.At ID.me, we embrace the thoughtful use of AI tools in our daily work and there are even occasions where we leverage AI in our hiring process. However, during the interview process, we want to understand your individual skills and experiences. Therefore, we have guidelines on how AI can be appropriately used during your application and interviews which can be found here.Role Overview:ID.me is seeking a highly experienced SOC Lead to play a pivotal role in our advanced security operations. As a key member of our Security Operations team, you will be instrumental in safeguarding our digital identity ecosystem, bringing your deep expertise in incident response, threat hunting, and forensic analysis to the forefront. In this role, you will not only manage complex security incidents but also lead efforts to refine and optimize our security processes and tools. This position is ideal for a cybersecurity professional with extensive SOC experience who is looking to advance their career by taking on more responsibility, mentoring junior team members, and driving strategic initiatives within our SOC.Key Responsibilities:Lead cyber security incident response for cloud-native infrastructure, including investigating compromised containers, Kubernetes clusters, and CI/CD pipelines, and coordinating rapid isolation, remediation, and root-cause analysis across cloud workloads.Lead the technical initiatives including advanced host and network-based forensic collection and analysis, to ensure effective containment, eradication, recovery, and post-incident evaluation.Oversee the detection, analysis, and mitigation of complex insider threats and incidents, utilizing advanced security tools such as DLP, SIEM (e.g., Chronicle, Splunk), IDS/IPS, EDR, and firewalls.Conduct proactive threat hunting, identifying and responding to Indicators of Compromise (IOC) and Advanced Persistent Threat (APT) tactics, techniques, and procedures (TTPs), including cloud- and container-specific attack patterns.Lead projects related to security monitoring, incident response, and SOC process improvement, ensuring alignment with best practices and emerging threats.Mentor and provide technical guidance to junior SOC analysts, fostering a culture of urgency and continuous improvement for professional development within the team.Collaborate closely with Tier 2 and 3 staff and other cross-functional teams to ensure seamless detection, classification, and reporting of security incidents, adhering to and enhancing Standard Operating Procedures (SOPs).Maintain deep, hands-on awareness of security risks in cloud-native environments, including GCP, Kubernetes orchestration, and CI/CD pipelines, along with the mechanisms and processes that enable rapid incident detection and response in these environments.Leverage AI/ML tools and automation to augment incident response, accelerate threat triage, and streamline security operations.Stay abreast of the latest cybersecurity trends, tools, and technologies, driving the adoption of new solutions and methodologies to strengthen our incident response capabilities.Required Qualifications:Working knowledge of container security fundamentals (image scanning, runtime protection, container escape scenarios) and CI/CD pipeline security (secrets exposure, build/deploy compromise, supply chain risks).8+ years of experience in information security, with extensive hands-on experience in incident response, threat hunting, and forensic analysis.2+ years of demonstrated experience in a lead SOC role and responding to sophisticated threats.2+ years of hands-on experience performing incident response in cloud environments (preferably GCP), including investigating and remediating incidents involving Kubernetes/container workloads and CI/CD pipelines.4+ years of experience detecting, analyzing, and mitigating complex threats and incidents, utilizing advanced security tools (DLP, SIEM, IDS/IPS, EDR and firewalls).Preferred Qualifications:Strong background in cloud (preferably GCP) environments, Kubernetes orchestration, CI/CD pipelines, and DevOps principles.Deep expertise in container security, including runtime protection, image scanning, and service mesh security policies.Expertise in securing Infrastructure as Code (IaC) and GitOps deployment workflows, ensuring security guardrails are integrated into the pipeline.Experience leveraging AI/ML as a responder tool to accelerate incident response, threat detection, and SOC automation.Familiarity with AI/ML security best practices, including securing LLM deployments and protecting AI pipelines from adversarial attacks.Expertise in securing Infrastructure as Code (IaC) and GitOps deployment workflows, ensuring security guardrails are integrated into the pipeline.Deep expertise in container security, including runtime protection, image scanning, and service mesh security policies.Comprehensive understanding of email security, network monitoring, data loss prevention (DLP), OS forensics, and other key security domains.Advanced expertise in using and optimizing SIEM tools (Chronicle, Splunk) and other security technologies for high-level threat detection and incident response.Proven track record in developing insider threat detection strategies, writing detection signatures, and enhancing SOC processes.Strong experience in threat intelligence, with the ability to translate adversary tactics and techniques into actionable detection and mitigation strategies.Proficiency in leading forensic investigations across multiple operating systems, including Linux, MacOS, and Windows.Demonstrated proficiency in scripting languages (Python, bash, Go) and process automation.Mature soft skills, including collaboration, communication, teamwork, and adaptability.Advanced industry certifications, such as GCIA, GCIH, GCFA, CISSP, CKS (Certified Kubernetes Security Specialist), or cloud provider security certifications (e.g., GCP Professional Cloud Security Engineer), or equivalent.Prior experience in developing and implementing SOC SOPs and contributing to SOC maturity assessments.Ideal Candidate Will Thrive In Our Culture:Exhibits a deep passion for cybersecurity and is driven by the mission to protect and secure digital identities.Demonstrates exceptional problem-solving skills, with the ability to think critically and make decisive, informed decisions in high-pressure situations.Possesses strong leadership qualities, with the ability to mentor and inspire senior analysts while driving team performance.Maintains excellent oral and written communication skills, capable of conveying complex security issues to both technical and non-technical stakeholders.Is highly adaptable, embracing change and innovation in a fast-paced, dynamic work environment.The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role. ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit.Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors.Pay Range$160,963—$227,360 USDID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.ID.me participates in E-Verify.
- ID.me is seeking a highly experienced SOC Lead to play a pivotal role in our advanced security operations. Based in McLean, VA, you will manage complex incidents, mentor junior analysts, and drive strategic SOC initiatives across cloud-native environments. You will lead...Suggested
- ID.me is seeking a highly experienced SOC Lead to safeguard our digital identity ecosystem. As a key member of our Security Operations team, you will manage complex security incidents, lead threat hunting, and drive improvements across incident response processes in cloud...Suggested
- ...networks from sophisticated cyber threats. You will join a 24x7 SOC handling monitoring, detection, incident response, and vulnerability... ...on-prem and cloud environments. In Fort Belvoir, VA, you’ll lead investigations through the Incident Response lifecycle, correlate...Suggested
- ...001:2005 Information Security Management System (ISMS), and CMMI-DEV Level 3"Job DescriptionJob Description:There will be one Shift Lead in each shift. A Lead is the subject matter expert for all intrusion detection-monitoring activities during their assigned shift. The...SuggestedFor contractorsWork experience placementShift work
$112.8k - $257k
...programs to defend the nation against advanced threats and adversaries. Lead the development and integration of innovative cybersecurity... ...with senior clients regularly, including CIO, CISO, GRC, and SOC leaders, on cybersecurity challenges, and shape opportunities to...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...continuous security operations across enterprise infrastructure. You will lead threat detection, incident response, and proactive threat hunting... ...of breach attempts. This role ensures compliance with SOC 2, ISO 27001, and HIPAA frameworks, and requires a Bachelor's degree...
- Insight Global is seeking a Network Operations Shift Lead (3rd Shift) in Arlington, VA to supervise overnight operations for a highly secure... ..., networking, cybersecurity, and operations, with prior DoD/cleared NOC/SOC leadership experience. #J-18808-Ljbffr Insight GlobalShift workNight shift
- Rapid7 is seeking a Lead Detection & Response Analyst to drive technical excellence across our global SOC operations. You will lead response to high-impact threats, refine investigative workflows, and mentor the SOC team to advance detection capabilities. You will partner...
$93.5k - $144.89k
Certifiedarchivists in Arlington, VA, is looking for an Archival Supervisor to lead the Charlie Clark Center for Local History. This full-time position involves strategy implementation, mentorship of staff, and development of archival collections. The ideal candidate will...Full timeLocal area- JOB SUMMARY This role ensures timely, accurate processing of all aspects of the identification, investigation, and validation processes for Payment and Revenue Integrity products. The position monitors, prioritizes and distributes work to assigned team(s). The incumbent...For contractors
- KellyMitchell Group is seeking a SOC Project Manager to join our client’s team in Bethesda, Maryland. The role focuses on leading day-to-day SOC operations, incident response, and threat analysis in a hybrid on-premises/cloud environment. The position requires strong leadership...
- ...Job Description Job Description\n Inova Fairfax Medical Campus - Adult Echo Lab is looking for a dedicated Cardiac Sonographer Lead to join the Inova Fairfax Medical Center Echo Lab is an advanced echo imagining center with a strong emphasis on clinical excellence...Full timeRemote workRelocation packageMonday to FridayFlexible hoursDay shift
- ...evidence management, and ongoing compliance operations. We are seeking a highly organized and technically skilled CMMC Assessment Lead to oversee the planning, preparation, coordination, and support of customer CMMC assessments conducted by authorized C3PAOs. This...For contractorsRemote work
$139.5k - $188.7k
...experience- 5+ years of dissecting financial data and identifying patterns that support business strategy experience- 5+ years of leading cross-functional initiatives that drive financial performance and strategy experience- Bachelor's degree in accounting or related field...WorldwideFlexible hours$222k - $332k
...shape the future of space defense.KBR Defense and Intel (D&I) Growth Organization is looking to hire a Navy/Maritime Division Growth Lead who will work in partnership with D&I operations leadership and Navy/Maritime Account Executive(s) to develop and refine the growth...Full timeTemporary workCasual workLocal areaRelocation packageFlexible hours$112k - $179k
ResponsibilitiesPeraton is a leading provider of Information Operations (IO) and Irregular Warfare (IW) capabilities to the U.S. government. Comprised of strategic communications professionals, Psychological Operations (PSYOP) and Military Information Support Operations...Contract workShift work$125k - $156k
...operational risk, future capabilities, and resource investment decisionsORCA has an immediate need for a Modeling and Simulation Team Lead to provide high level analytic oversight and strategic guidance for Navy campaign analysis. #KS #MC Responsibilities The...Immediate startFlexible hours$135k - $216k
ResponsibilitiesPeraton is seeking an experienced Analytic Lead to provide oversight and guidance to a team using multi-INT data to develop comprehensive and accurate identity intelligence on behalf of a national-level customer. The lead analyst will evaluate diverse datasets...Contract workShift work$85k - $120k
You will lead a team of analysts responsible for creating data-driven analysis, practice tools, and content for an audience of legal and tax professionals. You will recommend, design, and lead cross-team projects to support the broader roadmap and strategy for Bloomberg...Full timeContract workShift work$167k - $251k
...million families across the country. Join an organization where your work contributes to a greater purpose.Position Overview:The Senior Lead, Risk Identification & Insights owns independent analysis of risk data, and leads external horizon scanning to surface risks before...Local area$86.8k - $198k
...you to help us solve complex problems for our clients. As a member of our strategic deterrence and nuclear integration team, you’ll lead the analysis and coordination of our client's official policy and position statements related to international treaties and agreements...Full timeContract workPart timeWork at officeLocal areaRemote work- ASRC Federal Technology Solutions, LLC is seeking a .Net Team Lead to support a government contract located in Arlington, VA. Position requires one to work on client site. Location: Arlington, VA (onsite)Clearance: Active Secret clearanceSummary: ASRC Federal Technology...Contract work
- ...of our work, too. Visit us here to find out more about Accenture's Oracle practice (.)You Are:A senior Oracle Utilities Integration Lead who brings both the architectural vision and the hands-on delivery credibility to own a complex integration workstream end-to-end. You...Full timeWork experience placementLive inWork at officeLocal areaRemote work
$180k - $200k
...Position Title: Supply Chain and Supplier Management Lead Location: Arlington, Virginia Category: Contingent upon contract award Schedule (FT/PT): Full Time Travel Required: Yes Shift: Day Remote Type: Hybrid Clearance required:...Full timeContract workTemporary workFor contractorsLocal areaRemote workFlexible hoursShift work$116.2k - $229.1k
...communication skillsMeticulous attention to detail and quality of work productAbility to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-paced and dynamic environmentStrong interpersonal...Local area$125k - $175k
OverviewWe are seeking a Vulnerability Management Lead responsible for planning, executing, and continuously maturing the enterprise vulnerability management program across a large-scale, complex IT environment supporting more than 30,000 enterprise assets, including servers...- ...applied research, and advanced technology organization working in the public interest. With objectivity and integrity at our core, we lead federally funded research and development centers for U.S. government agencies - collaborating with industry and academia to deliver...Local area3 days per week
$112k - $179k
ResponsibilitiesPeraton is a leading provider of Information Operations (IO) and Irregular Warfare (IW) capabilities to the U.S. government. Comprised of strategic communications professionals, Psychological Operations (PSYOP) and Military Information Support Operations...Contract workShift work- ...generation facilities, your contributions will help define the future of the built environment. This isn’t just a job, it’s a chance to lead innovation, engineer impact, and build a legacy of excellence.Each and every role throughout our organization makes a difference in...Contract workWork at office
- ...governance decisions to ensure U.S. military forces retain military superiority in the future.We have a near-term need for a Program Lead SETA to provide onsite support out of Arlington, VA.ResponsibilitiesThe candidate will apply a strong technical background and a...Contract workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC Lead. Be the first to apply!

