Security Operations Center (Soc) Lead
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Overview
Job Description
- Manage SOC operations ensuring 24/7 security monitoring.
- Oversee 3-8 SOC analysts across multiple shifts.
- Lead investigation and response for 30-100 security incidents monthly.
- Coordinate major incident response requiring multiple teams.
- Manage SIEM platform (Splunk, ELK, or other) for assigned network.
- Develop and tune 50-200 SIEM detection rules.
- Create 30-80 security use cases for threat detection.
- Review and triage 1,000-5,000 daily security alerts.
- Lead proactive threat hunting activities.
- Daily Alerts: 10,000-50,000 reviewed across team.
- Incidents Managed: 30-100 monthly.
- Team Management: 3-8 SOC analysts.
- SIEM Rules: 50-200 maintained and tuned.
- Use Cases: 30-80 security detection use cases.
- Major Incidents: 3-10 annually requiring complex coordination.
- Monthly Reports: SOC operations and incident metrics.
- Clearance: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS) based on network assignment.
- Education: Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, or related field.
- Experience: 12+ years cybersecurity operations; 5+ years SOC leadership
- Certifications: IAM-II Level required (CAP, CASP+ CE, CISM, CISSP or Associate, GSLC, CCISO, or HCISPP).
- Technical Knowledge: Expert knowledge of SIEM platforms, incident response, threat hunting, attack frameworks (MITRE ATT&CK), security tools (EDR, NIDS/NIPS, forensics)
- This position is contingent upon contract award.
- Start date will be determined upon contract award.
- We will maintain contact with selected candidates throughout the award process.
- U.S. Citizen required.
- Clearance varies by network: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS).
- On-premises work required at Suffolk Building, Falls Church, VA.
- No remote work options available.
- Standard business hours with operational flexibility.
- 4 Weeks Paid Time Off.
- All Federal Holiday’s Paid Vacation.
- Four Percent Matching 401K.
- Full health/vision/dental benefits for the employee and family paid 100% by ZTI Solutions, LLC.
ZTI Solutions, LLC was founded in 1997 in Virginia and is classified as a small business. The company is owned and operated by its founder, Rudy Zadnik, who emphasizes moral and business excellence over increasing company profits. This results in a more customer-oriented attitude towards mission accomplishment, as opposed to growing profits or sales.Our approach to consulting and engineering centers around using only highly skilled personnel who are seasoned industry veterans. All employees hold high-level industry and vendor certifications. We offer a comprehensive set of consulting and staff augmentation services, primarily focused on networking and security consulting in the classified space.
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.
