Lead Cyber Defense: Incident Response & SOC Manager

University of Connecticut

Storrs (CT)

On-site

USD 95,000 - 124,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Defined contribution with employer 401
Excellent healthcare options
35 hour work week
22 paid vacation days per year
Employee tuition waivers

Job summary

University of Connecticut seeks an experienced Incident Response Manager & Security Operations Team Lead to guide the Security Operations and Incident Response functions within the Information Security Office. You will lead a team of cybersecurity professionals in monitoring, detecting, investigating, and recovering from incidents across campus.

You will serve as incident commander for significant events, coordinate across departments, and drive improvements to response maturity, tooling, and

Qualifications

  • Must meet and maintain eligibility to work with sensitive data per university policy.
  • Bachelor's degree plus 6+ years in infosecurity/IT; or 8+ years with an associate degree.
  • 3+ years in Security Operations and Incident Response.
  • 1+ year leading or supervising a cybersecurity team.
  • Experience in enterprise incident response, reporting, and remediation.
  • Experience with SIEM/EDR/TOAR and logging at scale.
  • Knowledge of cloud security and common security frameworks (NIST, MITRE, CIS).

Responsibilities

  • Lead the University's Security Operations and Incident Response programs.
  • Direct day-to-day operations, prioritization, coaching, and performance management.
  • Act as incident commander for significant cybersecurity incidents with cross‑department coordination.
  • Participate in advanced investigations, threat hunting, forensics, containment, and recovery.
  • Develop, maintain, and improve incident response plans, playbooks, and standards.
  • Manage detection engineering, alert tuning, automation, and operational metrics.
  • Coordinate security operations with infrastructure, cloud, identity, and research teams.
  • Engage with incident response vendors, MSSPs, law enforcement, and external groups.
  • Prepare dashboards, executive reporting, and KPIs for security operations.
  • Lead tabletop exercises and security readiness activities.
  • Contribute to security architecture reviews and staff development.
  • Oversee staffing, training, and succession planning for SOC personnel.
  • Manage projects related to monitoring, automation, and maturity.
  • Stay current on threats and industry best practices.
  • Support after-hours incident response as needed.
  • Other related duties as assigned.

Skills

Leadership
Incident Leadership
Technical Expertise
Strategic Thinking
Communication
Project Management
Physical Demands

Education

Bachelor's degree in Information Security or IT
Master's degree (preferred)

Tools

Microsoft Sentinel
Splunk Enterprise Security
Microsoft Defender
CrowdStrike
Palo Alto Cortex
Splunk SOAR

Job description

University of Connecticut seeks an experienced Incident Response Manager & Security Operations Team Lead to guide the Security Operations and Incident Response functions within the Information Security Office. You will lead a team of cybersecurity professionals in monitoring, detecting, investigating, and recovering from incidents across campus.

You will serve as incident commander for significant events, coordinate across departments, and drive improvements to response maturity, tooling, and

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Manager and Security Operations Team Lead
Incident Response Manager and Security Operations Team Lead

University of Connecticut • Storrs (CT)

On-site
USD 95,000 - 124,000
Defined contribution with employer 401
Excellent healthcare options
35 hour work week
+2
SOC Lead & Incident Response Mentor
SOC Lead & Incident Response Mentor

Florida Gulf Coast University • Fort Myers (FL)

On-site
USD 80,000 - 100,000
Remote SOC Lead & Incident Commander
Remote SOC Lead & Incident Commander

CTS - IT & Cybersecurity Services • New York (NY)

On-site
USD 110,000 - 115,000
Health Insurance
401(k) with company match
Paid Time Off
+5
Senior Information Security Assessment Lead
Senior Information Security Assessment Lead

University of Connecticut • Storrs (CT)

On-site
USD 95,000 - 124,000
Healthcare options
Tuition waiver
35 hour work week
+2
Senior Incident Response Lead — Cyber Defense SOC
Senior Incident Response Lead — Cyber Defense SOC

Via Logic LLC • Ashburn (VA)

On-site
USD 108,000 - 195,000
Senior InfoSec Engineer: Incident Response & SOC Lead
Senior InfoSec Engineer: Incident Response & SOC Lead

University of Central Florida • Orlando (FL)

On-site
USD 105,000 - 120,000
Education assistance
Paid time off
Retirement savings options
+1
Senior Cybersecurity Incident Response Lead
Senior Cybersecurity Incident Response Lead

Wucf Tv • Orlando (FL), Northern (KY)

Hybrid
USD 105,000 - 120,000
Medical, Dental, Vision
Life Insurance
Paid time off
+2
Remote SOC Supervisor - Lead Incident Response
Remote SOC Supervisor - Lead Incident Response

CTS • United States

On-site
USD 110,000 - 115,000
Health Insurance
401(k) with company match
Paid Time Off
+1
Senior SOC Lead: Incident Response & Threat Detection
Senior SOC Lead: Incident Response & Threat Detection

5195 EKC Advanced Electronics USA, LLC • Delaware

On-site
USD 120,000 - 180,000
Senior Incident Response Lead | SOC & Cyber Defense
Senior Incident Response Lead | SOC & Cyber Defense

Via Logic LLC • Washington

On-site
USD 108,000 - 195,000