Security Operations Center (SOC) Manager/Team Lead

Ariento

Franklin (TN)

On-site

USD 100,000 - 130,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A leading cybersecurity firm in Tennessee is seeking a Security Operations Center (SOC) Manager/Team Lead. This role involves overseeing SOC operations, leading a team of analysts, and ensuring adherence to compliance frameworks like NIST 800-171. The ideal candidate has a Bachelor's Degree and 3–5 years of leadership experience, as well as a strong understanding of incident response and SIEM technologies. This full-time position offers a competitive salary and opportunities for professional growth.

Qualifications

  • 3–5+ years of leadership experience, ideally in security operations.
  • Strong understanding of cybersecurity frameworks like NIST 800-171.
  • Hands-on experience with incident response and log aggregation.

Responsibilities

  • Oversee daily SOC operations and incident response.
  • Lead and mentor SOC analysts.
  • Manage SOC workflows and performance metrics.

Skills

Leadership experience
SIEM/EDR technologies
Incident response
Vulnerability management

Education

Bachelor's Degree

Tools

Sumo Logic
Microsoft 365

Job description

Security Operations Center (SOC) Manager/Team Lead

Salary Range: $100,000–$130,000 (Manager level)

Position Overview

The SOC Team Lead or Manager leads the Security Operations Center team responsible for 24/7 on call monitoring, detection, analysis, and response to cybersecurity threats. This role ensures operational excellence, team development, and alignment with compliance frameworks such as NIST 800-171 and CMMC.

Key Responsibilities
Leadership & Operations
  • Oversee daily SOC operations, including shift coverage, alert ticketing system, vulnerability scanning, and incident response.
  • Lead, mentor, and develop SOC analysts; provide coaching, feedback, and escalation support.
  • Manage SOC workflows, performance metrics, and service delivery KPIs.
  • Serve as the escalation point for critical incidents and coordinate cross‑functional response.
  • Manage vulnerability program to identify and remediate vulnerabilities across the technology stack.
Technical & Incident Response
  • Guide analysts through investigation, containment, and remediation activities.
  • Ensure consistent use of SIEM, EDR, SOAR, and threat intelligence tools (e.g., Sumo Logic, Defender, Microsoft 365).
  • Refine detection rules, playbooks, and response procedures.
  • Conduct threat intelligence and vulnerability management.
Compliance & Audit Readiness
  • Execute and maintain security and compliance monitoring and audit functions.
  • Support internal and client audits aligned with NIST 800-171, CMMC, and other standards.
  • Own audit and control functions, ensuring separation of duties and documentation integrity.
  • Support Client audits by providing artifacts and being interviewed.
  • Maintain audit documentation suite and work with Clients to customize to their needs.
Stakeholder Engagement
  • Communicate incident details and SOC updates to internal and external stakeholders.
  • Support onboarding of new SOC clients, including tuning and baselining.
  • Collaborate with support and development teams to support broader security initiatives.
Program & Process Improvement
  • Identify opportunities to improve SOC effectiveness, automation, and efficiency.
  • Contribute to service maturity, including documentation, KPIs, and operational standards.
  • Conduct disaster recovery and incident response drills.
Required Qualifications
  • Bachelor's Degree
  • 3–5+ years of leadership experience, including people management.
  • Strong understanding of SIEM/EDR technologies, detection logic, and investigative methodologies.
  • Experience with regulated environments (e.g., DoD, DFARS/CMMC, NIST 800-171).
  • Hands‑on experience with log aggregation, malware analysis, incident response and DevOps environments.
Preferred Skills & Certifications
  • Experience with Sumo Logic and Microsoft 365.
  • Certifications: Security+, CySA+, GCIH, GCIA, CISSP, CCA, CCP
  • Familiarity with MDR/SOC service environments and client onboarding.
Seniority Level

Mid‑Senior level

Employment Type

Full‑time

Job Function

Other, Information Technology, and Management

Industries

Computer and Network Security

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center Manager
Security Operations Center Manager

Fidelity National Financial • Jacksonville (FL)

On-site
USD 140,000 - 180,000
SOC Manager
SOC Manager

HW3 • Jacksonville (FL)

On-site
USD 120,000 - 180,000
Security Operations Center Analyst
Security Operations Center Analyst

Diligente Technologies • San Jose (CA)

On-site
USD 80,000 - 100,000
Security System Administrator, Lead
Security System Administrator, Lead

CL 1e6d8f31 073f 48cd b324 b581c00084bf • Washington

Hybrid
USD 100,000 - 130,000
Security Operations Center - SOC Analyst I #595
Security Operations Center - SOC Analyst I #595

Connecticut OnLine Computer Center COCC in • Rocky Hill (CT)

Hybrid
USD 67,000 - 101,000
Hybrid schedules
Tuition reimbursement
Career coaching
+1
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
SOC Manager with BS Degree
SOC Manager with BS Degree

Acumenz Consulting • United States

Remote
USD 120,000 - 150,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
SOC Manager
SOC Manager

Fulcrum Technology Solutions • United States

On-site
USD 100,000 - 130,000
SOC Manager
SOC Manager

K&A Technologies LLC • Washington

On-site
USD 120,000 - 150,000