Cyber Tier 1 Deputy Team Lead
$87.1k - $157.45kLeidos
Leidos is seeking a Cyber Tier 1 Deputy Team Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Center (NOSC) support, cyber analysis, application development, and a 24x7x365 support staff. Department of Homeland Security (DHS), Network Operations Security Center (NOSC) is a U.S. Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS NOSC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.The Cyber Tier 1 (Monitoring and Analysis) team provide 24x7 support across 4 different shifts. We have front half shifts (day and night) and back half shifts (day and night). The front half shift will work 12-hour shifts from Sunday – Tuesday and alternating Wednesdays. The back half shift will work 12-hour shifts from Thursday – Saturday and alternating Wednesdays. Candidates must have the ability to work non-core hours, if necessary.Duties include network security monitoring and detection, proactively searching for threats, inspecting traffic for anomalies and new malware patterns, investigating and analyzing logs, providing analysis and response to alerts, and documenting activity in NOSC investigations and Security Event Notifications (SENs).The Cyber Tier 1 Deputy Team Lead is a critical role within the Network Operations and Security Center (NOSC), created to enhance operational efficiency, streamline processes, and improve the overall cybersecurity posture. This role emphasizes continuous improvement of effectiveness and efficiency, ensuring consistent communication and task completion across all shifts, and providing quality assurance and content enhancement for cybersecurity investigations and monitoring tools.Primary ResponsibilitiesOnboarding Optimization: Lead efforts to reduce onboarding time through continuous observation and assessment of operations and administrative processes.Implement process improvements to enhance efficiency and reduce unnecessary efforts, leveraging Lean Six Sigma methodologies.Process Improvement: Continuously review and refine Standard Operating Procedures (SOPs) and workflows to ensure they are modern, efficient, and aligned with current needs.Collaborate with the SOAR team and other special teams to enhance automation and workflow capabilities.Customer Service Enhancement: Provide superior customer service to the Department of Homeland Security (DHS) by accurately identifying and addressing ad hoc requests from federal leadership.Act as a point of contact for high-level leaders and leads on the federal side to ensure clear communication and understanding of requirements.Training and Tools Management: Oversee and maintain compliance with required training programs, including on-the-job cybersecurity training and DHS-mandated e-learning courses.Manage and maintain access to cybersecurity tools, ensuring all team members have the necessary permissions to perform their roles effectively.Provide training on the use of various cybersecurity tools to team members, enhancing their capability to use the tools efficiently.Shift Liaison and Task Management: Ensure that all shifts (Front Days, Back Days, Front Nights, Back Nights) do not miss important emails or tasks, maintaining consistency in task completion.Monitor and follow-up on asks to ensure they are addressed and not overlooked, addressing gaps in previous processes.Quality Assurance and Content Improvement: Perform quality assurance checks on Splunk comment closures, Splunk investigations, and cybersecurity investigations (ECMs).Conduct quality checks on EBMs or proxy and firewall blocks submitted within the network.Review trends and data to develop better content for Splunk alerting and monitoring.Continuously work to improve the accuracy and efficiency of monitoring content by analyzing investigation trends.Process and Workflow Enhancement: Collaborating with the federal cybersecurity leads to reduce waste and improve meaningful cybersecurity processes.Engage with various teams to explore new methods to improve the work environment and cybersecurity services, including liaising with SOAR engineers and other special teams.Tools and Service Evaluation Test and evaluate new tools and services requested by the customer in a testing or development environment, providing critical feedback and analysis before enterprise-wide acquisition.Collaborate on feature development and enhancement of existing tools by testing new features and providing insights to optimize their functionality for the organization.Basic QualificationsAll NOSC Deputy Team Lead candidates shall have one of the following: Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 4 years total professional experience;Associate’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 6 years total professional experience;High school diploma and AND a minimum of 8 years total professional experience;And, professional experience in at least two of the areas listed below:GenAI/AutomationVulnerability AssessmentIntrusion Prevention and DetectionAccess Control and AuthorizationPolicy EnforcementApplication SecurityProtocol AnalysisFirewall ManagementIncident ResponseEncryptionWeb-FilteringAdvanced Threat ProtectionMilitary experience and training may be considered in lieu of degreeActive advanced cybersecurity certification(s)Experience conducting detailed technical analysis of Cybersecurity Events and IncidentsMust have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.Must have one of the following certifications: CCNA-Security, CYSA+, GICSP, GSEC, Security+ CE, CND, SSCPCandidates should also demonstrate the following:Extensive knowledge of a SOC’s/NOSC’s purpose and role within an organizationDetailed understanding of common network ports and protocols (e.g. TCP/UDP, ICMP, DNS, SMTP, etc)Expertise with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).Expertise with packet analysis tools such as WiresharkAble to perform critical thinking and analysis to investigate cyber security alertsExtensive knowledge of common malware and attack vectorsExtensive experience with Windows operating systems and standard OS loggingExtensive experience with Antivirus, DLP, and host-based firewallsPreferred QualificationsFamiliarity with other continuous improvement methodologies, e.g. Theory of ConstraintsStrong analytical skills with the ability to perform quality assurance and content improvement.Demonstrated ability to liaise between multiple teams and organizational levels.Excellent communication skills, both written and verbal, with the ability to interact effectively with federal leadership and team members across all shifts.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:August 21, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $87,100.00 - $157,450.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Ashburn, VA; 8333 Chandler AZ Home Office; Bay Saint Louis, MSType: Full time
- Leidos is seeking a Tier 3 Cyber Threat Intelligence Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Operations (NOSC) support, cyber analysis, and application development.Department of Homeland...CyberFull timeShift work
$77.5k - $176k
...people skills and system administrator knowledge makes you the team hero, solving one problem after another. What if you could use those... ...meteorological and oceanographic data through the maintenance, cyber hardening, and configuration of critical IT systems, in...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
Cybersecurity Risk Assessment SpecialistThe Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats... ...of action. As an information security risk specialist on our team, you’ll use your experience to work with military agencies to...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...Cyber Security Solutions R&D Analyst We are seeking a Cyber Security Solutions R&D Analyst to support research, development, and engineering... ...problem-solver and subject matter contributor, working across teams to research solutions, analyze security gaps, and support the...CyberImmediate startFlexible hours
$70k - $80k
...Analyst (Computer Security Incident Response Team) Location: Stennis, MS Employment... ...role is critical to minimizing the impact of cyber incidents, coordinating recovery activities... ...Bachelor's degree or a minimum of one (1) year of experience in cybersecurity operations...CyberFull timeImmediate startFlexible hoursShift workNight shiftRotating shift$70 - $80 per hour
...Information security, Systems security, Cyber security, Cissp certification, Active secret... ...of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000... ...TEKsystems Global Services We’re a leading provider of business and technology services...CyberContract workTemporary work$107.9k - $195.05k
...innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our...Full timeWork at officeImmediate startNight shift- ...impossible routine. Come shape the future with us.IT Rocket Lab’s IT team is responsible for how our global teams access information and... ...systems and people, from finance to launch operations.LEAD, IT SUPPORTBased on site at one of Rocket Lab’s locations in Middle...Permanent employmentLocal areaImmediate startFlexible hoursShift workAfternoon shift
$25 - $50 per hour
...Role Overview TSA is accepting applications for Lead and Supervisory Transportation Security Officers at airports in Bay Saint Louis... ...opportunities Key Responsibilities Supervise screening teams Ensure TSA compliance Train and mentor officers Manage...Shift workNight shiftWeekend work- ...lifecycle.Collaborate with scientists, analysts, software developers, and mission stakeholders to deliver data-driven capabilities Help lead the design, development, testing, deployment, and sustainment of software applications supporting NAVOCEANO and CNMOC missions....Full timeInterim roleWork at office
- ENFRA LLC seeks a Field Foreman to supervise the installation team and subcontractors in a designated area, ensuring project progress... ...aligns with specifications and safety standards. The role requires leading on-site activities, coordinating tools and materials, and...For subcontractor
- ...distribution centers, store support center or with our private fleet team, we are proud to provide a wide range of career opportunities. We... ...Summary: Function as a cashier and/or stocker and act in a lead capacity in the absence of the store manager or assistant store...Work experience placementSeasonal workRelocation package
- ...This is an on-site position at CNMOC Headquarters and requires an active TS/SCI clearance . Key Responsibilities Lead and support the transition of existing operational CDS RMF packages into Xacta 360 . Develop, update, review, and maintain RMF...Full timeImmediate start
- ...items at everyday low prices in convenient neighborhood locations. Job Details Function as a cashier and/or stocker and act in a lead capacity in the absence of the store manager or assistant store manager. Assist in setting and maintaining plan-o-grams and programs...Work experience placementSeasonal workRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Tier 1 Deputy Team Lead. Be the first to apply!



