Advanced Cyber Defense Practice Lead

Booz Allen Hamilton

Huntingdon

On-site

GBP 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Booz Allen Hamilton is seeking an Advanced Cyber Defense Practice Lead to shape and deliver cutting-edge cyber defense capabilities for multinational clients. You will work with CTO and R&D to modernize SOC and Fusion Center operations, drive AI-enabled workflows, and guide regional delivery across Europe, North America, and Asia.

Ideal candidates have extensive SOC, detection engineering, and executive advisory experience, with strong proposals, roadmaps, and stakeholder management skills.

Qualifications

  • Design and implement SOC or Cyber Fusion Center operating models with governance and performance metrics.
  • Provide advisory support to CISOs and cyber defense leaders on strategy and target-state design.
  • Lead proposals, technical narratives, roadmaps, and client-ready presentations.

Responsibilities

  • Lead the transformation of SOC, CSIRT, and cyber defense functions in large enterprises.
  • Guide AI-enabled SOC concepts and detection engineering across regions (Europe, North America, Asia).
  • Deliver high-impact client engagements, including architecture, execution, and quality oversight.

Skills

SOC design
Executive stakeholder engagement
Threat-informed methodologies
Mature security operations
Proposal shaping

Education

Bachelor’s degree with 12+ years experience
14+ years experience without degree

Tools

SIEM
SOAR
XDR
EDR
NDR
IAM
Splunk

Job description

Advanced Cyber Defense Practice Lead

The Opportunity: Shape and deliver Booz Allen’s advanced cyber defense capabilities, working closely with internal CTO and R&D to develop and implement solutions for CISOs, cyber defense leaders, and security operations teams. Design next‑generation operating models, modernize SOC and Fusion Center capabilities, and strengthen detection engineering and use‑case lifecycle management. Guide modern SOC, Cyber Fusion Center, and detection and response transformation initiatives for large multinational enterprises across select international regions, including Europe, North America, and Asia. Drive adoption of AI‑enabled and agentic SOC concepts in practical, mission‑focused ways. Lead the building or transforming of SOC, CSIRT, or cyber defense functions in complex enterprise environments. Lead solution design, proposal shaping, high‑impact technical engagement, and client delivery. Manage and grow a team while supporting business development, thought leadership, and overall operational excellence. Join us. The world can't wait.

You Have:
  • 5+ years of experience designing and implementing SOC or Cyber Fusion Center operating models, including governance, workflows, escalation paths, coverage models, and performance metrics
  • Experience in detection engineering and use‑case lifecycle management, including triage, tuning, enrichment, prioritization, and measurement across enterprise telemetry
  • Experience with advanced cyber defense tools and enablers such as security telemetry pipelines, AI‑enabled SOC workflows, automation, machine learning, and behavioral or anomaly analytics
  • Experience advising senior stakeholders, including CISOs and cyber defense leaders, on strategy, maturity, gaps, target‑state design, and actionable improvement roadmaps
  • Experience with SIEM, SOAR, XDR, EDR, NDR, IAM, cloud security platforms, and enterprise security technologies
  • Experience developing proposals, technical solution narratives, roadmaps, business cases, and client‑ready presentations
  • Experience coaching and leading multidisciplinary technical teams, and operating effectively in a high‑growth, entrepreneurial environment
  • Ability to lead client delivery, including solution architecture, technical execution, engagement leadership, and quality oversight
  • Bachelor’s degree and 12+ years of experience leading and supporting modern SOC, Cyber Fusion Center, CSIRT, cyber defense, or detection and response programs in large, complex enterprise environments, or 14+ years of experience leading and supporting modern SOC, Cyber Fusion Center, CSIRT, cyber defense, or detection and response programs in large, complex enterprise environments in lieu of a degree
Nice If You Have:
  • Experience translating enterprise cyber defense into client delivery, including executive facilitation, structured problem solving, stakeholder alignment, and polished written and verbal communication, and applying MITRE ATT&CK, cyber kill chain concepts, threat intelligence, threat hunting, purple teaming, adversary emulation, deception, exposure management, or related threat-informed methodologies to improve detection and response
  • Experience with cyber defense maturation journeys, operating model transformation, Cyber Fusion Center design, CSIRT development, security operations modernization, or managed detection and response transformation
  • Experience with cloud security operations, SaaS security, identity-centric detection and response, OT or I CS cyber defense, or large-scale hybrid enterprise security environments
  • Experience across both production security data pipelines and AI/ML-enabled detection or prioritization, including where advanced analytics are useful and where rules, signatures, automation, or human judgment remain necessary
  • Experience creating thought leadership, presenting at industry events, leading technical workshops, or supporting market-facing cyber defense campaigns that build credibility with CISO and cyber defense communities
  • Ability to travel up to 25% of the time based on client and business needs, and adapt global methodologies to regional market needs, regulatory expectations, language requirements, and client operating environments
  • Ability to engage senior stakeholders while maintaining credibility with technical SOC and cyber defense teams
  • Possession of strong executive communication skills Master’s degree CISSP, CISM, GIAC, GCIH, GCIA, GMON, GCTI, SANS, CREST, OSCP, Splunk, or Cloud Security Certifications
Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud.

You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools.

However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

About Booz Allen

Booz Allen is an advanced technology company. We build commercial-grade products and solutions for America’s most critical defense, civil, and national security priorities.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Know Your Rights Poster Accommodations

Applicants who need a reasonable accommodation for any part of the application, hiring, or employment process because of a disability, a sincerely held religious belief, practice, or observance, or as otherwise required by applicable law should contact the Booz Allen Help Desk by calling 1-877-927-8278 or sending an email to helpdesk@bah.com.

We will review requests on an individualized basis and provide reasonable accommodations consistent with applicable law.

Data Privacy

For more information on how Booz Allen uses your information, please see our Careers Privacy Policy.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Advanced Cyber Defense Practice Lead
Advanced Cyber Defense Practice Lead

Booz Allen Hamilton • Cambridgeshire and Peterborough

On-site
GBP 150,000 - 230,000
Target Analyst
Target Analyst

Booz Allen Hamilton • Huntingdon

On-site
GBP 59,000 - 133,000
All-Source Intelligence Data Scientist
All-Source Intelligence Data Scientist

Booz Allen Hamilton • Cambridgeshire and Peterborough

On-site
GBP 74,000 - 168,000
EU Resilience Lead
EU Resilience Lead

Booz Allen Hamilton • Cambridgeshire and Peterborough

On-site
GBP 90,000 - 130,000
Modeling & Simulation Engineer, Senior
Modeling & Simulation Engineer, Senior

Booz Allen Hamilton • United Kingdom

Remote
GBP 75,000 - 170,000
Knowledge Management Specialist
Knowledge Management Specialist

Booz Allen Hamilton • Cambridgeshire and Peterborough

On-site
GBP 58,000 - 131,000
Full Stack Developer
Full Stack Developer

Booz Allen Hamilton • Cambridgeshire and Peterborough

On-site
GBP 74,000 - 168,000
Health benefits
Life insurance
Disability benefits
+7
Signals Analyst
Signals Analyst

Booz Allen Hamilton • Cambridgeshire and Peterborough, Harrogate

On-site
GBP 46,000 - 104,000
Wargaming Analyst, Mid
Wargaming Analyst, Mid

Booz Allen Hamilton • United Kingdom

Remote
GBP 58,000 - 133,000
Senior Consultant, Proactive Services. Cloud & AI (Unit 42)
Senior Consultant, Proactive Services. Cloud & AI (Unit 42)

Palo Alto Networks • London

On-site
GBP 70,000 - 90,000