Cyber Security Operations Center Deputy Team Lead

1 day ago


Ashburn, Virginia, United States Leidos Full time
Job Title: Cyber Security Operations Center Deputy Team Lead

The Leidos Digital Modernization Team is seeking a highly skilled Cyber Security Operations Center Deputy Team Lead to join our team.

The U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a U.S. Government program responsible for preventing, identifying, containing, and eradicating cyber threats to CBP networks through monitoring, intrusion detection, and protective security services to CBP information systems, including local area networks/wide area networks (LAN/WAN), commercial Internet connections, public-facing websites, wireless, mobile/cellular, cloud, security devices, servers, and workstations.

The CBP SOC is responsible for the overall security of CBP Enterprise-wide information systems, collecting, investigating, and reporting any suspected and confirmed security violations.

As a leader of this highly visible cyber Security Operations Center (SOC) for U.S. Customs and Border Protection (CBP), you will be responsible for managing day-to-day operations of the team, coordinating efforts of the team, leading by example, and performing in-depth technical analysis of network and endpoint logs & activity, cyber incident analysis, escalating findings as deemed appropriate, and containment, remediation, and root cause analysis in support of the protection of the customers' systems, networks, and assets.

Primary Responsibilities:

  • Responsible for managing the team of Cyber Threat Hunt Analysts, threat hunts, the scheduling of hunts, and proposing new enclaves, systems, and assets to conduct hunts on.
  • Partner with other task leads in support of customer initiatives and cyber incidents.
  • Create dashboards for key metrics and processes and deliver technical presentations to various levels of customer leadership.
  • Interface with senior DHS & CBP leaders and directors to help maintain and sustain critical systems supporting the CBP Security Operations Center.
  • Utilize state-of-the-art technologies such as host forensics tools (FTK/Encase), Endpoint Detection & Response tools, log analysis (Splunk), and network forensics (full packet capture solution) to perform hunt and investigative activity to examine endpoint and network-based data.
  • Conduct in-depth analysis on hosts and networks, forensic analysis, log analysis, and triage in support of incident response.
  • Recognize attacker and APT activity, tactics, and procedures as indicators of compromise (IOCs) that can be used to improve monitoring, analysis, and incident response processes.
  • Develop and build security content, scripts, tools, or methods to enhance the incident investigation processes.
  • Lead incident response activities and mentor junior SOC staff.
  • Work with key stakeholders to implement remediation plans in response to incidents.
  • Effectively investigate and identify root cause findings then communicate findings to stakeholders, including technical staff, and leadership.

Basic Qualifications:

  • Bachelor's degree in a science or engineering field, IT, or Cybersecurity-related field.
  • 8-12 years of experience in the areas of incident detection and response, remediation, malware analysis, or computer forensics.
  • Ability to prioritize and complete multiple tasks with little to no supervision.
  • Additional experience may be considered in lieu of a degree.

Preferred Qualifications:

  • Experience in Federal Government, DOD, or Law Enforcement in CND, CIRT, or SOC role.
  • Knowledge of the Cyber Kill Chain and the MITRE ATT&CK framework.
  • Knowledge of Structured Analytic Techniques.

Required certifications:

  • CompTIA Cyber Security Analyst (CySA+).
  • CompTIA Linux Network Professional (CLNP).
  • CompTIA Pentest+.


  • Ashburn, Virginia, United States Leidos Full time

    Job Title:Cybersecurity Operations Center Deputy Team LeadJob Summary:Leidos is seeking an experienced Cybersecurity Operations Center Deputy Team Lead to join our team. As a leader of this highly visible cyber Security Operations Center (SOC) for U.S. Customs and Border Protection (CBP), you will be responsible for managing day-to-day operations of the...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Incident Response Deputy Team LeadLeidos is seeking an experienced Incident Response Deputy Team Lead to join our team in the Cyber Security Operations Center (SOC) for U.S. Customs and Border Protection (CBP). As a leader of this highly visible SOC, you will be responsible for managing day-to-day operations, coordinating efforts, and performing...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Incident Response Deputy Team LeadDescription:The Leidos Digital Modernization Team is seeking a highly skilled Incident Response Deputy Team Lead to join our team. As a key member of our Cyber Security Operations Center, you will be responsible for managing day-to-day operations, coordinating team efforts, and performing in-depth technical...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Incident Response Deputy Team LeadLeidos is seeking an experienced Incident Response Deputy Team Lead professional to join our team.Job Summary:The Leidos Digital Modernization Team is seeking a highly skilled Incident Response Deputy Team Lead to manage day-to-day operations of the team, coordinate efforts, and lead by example. The successful...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Incident Response Deputy Team LeadLeidos is seeking an experienced Incident Response Deputy Team Lead professional to join our team. As a leader of this highly visible cyber Security Operations Center (SOC) for U.S. Customs and Border Protection (CBP), you will be responsible for managing day to day operations of the team, coordinating efforts of...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.Job Summary:The Cyber Security Operations Center Analyst...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.The Department of Homeland Security (DHS), Customs and...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.The Department of Homeland Security (DHS), Customs and...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.The Department of Homeland Security (DHS), Customs and...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.The Department of Homeland Security (DHS), Customs and...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.Job Summary:The CBP SOC is responsible for the overall...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security Operations Center AnalystLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.About the RoleThe Department of Homeland Security (DHS),...


  • Ashburn, Virginia, United States Leidos Full time

    Job SummaryLeidos is seeking an experienced Cyber Security Operations Center Analyst to support this highly visible cyber security operations center (SOC) for Customs Border Protection (CBP), cyber analysis, application development, and a 24x7x365 support staff.The Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations...


  • Ashburn, Virginia, United States Leidos Full time

    Job SummaryLeidos is seeking a highly skilled Cyber Tier 1 Shift Lead to support our Network Operations Security Center (NOSC) in a dynamic and fast-paced environment. As a key member of our team, you will be responsible for supervising and managing a small team of Cyber Network Defense Analysts (CNDAs) in support of our government customer.Key...


  • Ashburn, Virginia, United States Leidos Full time

    Job SummaryLeidos is seeking a highly skilled Cyber Tier 1 Shift Lead to support our Network Operations Security Center (NOSC) in a dynamic and challenging environment. As a key member of our team, you will be responsible for supervising and managing a small team of Cyber Network Defense Analysts (CNDAs) in support of our government customer.Key...


  • Ashburn, Virginia, United States Agile Defense Full time

    Job Title: Cyber Security Systems Operations SpecialistAt Agile Defense, we understand the importance of proactive security measures in today's digital landscape. As a Cyber Security Systems Operations Specialist, you will play a critical role in ensuring the integrity and security of our systems and networks.Key Responsibilities:Conduct security event...


  • Ashburn, Virginia, United States Leidos Full time

    Job SummaryLeidos is seeking a highly skilled Cyber Security Analyst - Day Back to support Customs and Border Protection (CBP) security operations center (SOC). The successful candidate will be responsible for conducting log analysis and triage in support of incident response, recognizing attacker and APT activity, and developing security content to enhance...


  • Ashburn, Virginia, United States 00100 LEIDOS, INC. Full time

    Job SummaryLeidos is seeking an experienced Cyber Analyst to join our team covering both forensics and malware analysis on a highly-visible cyber security single-award IDIQ vehicle that provides network operations security center (NOSC) support, including monitoring and analysis, cyber threat intelligence, email analysis, forensics, incident response, and...


  • Ashburn, Virginia, United States LEAD Technical Full time

    Job Title: Data Center Operations SpecialistLocation: Ashburn, VirginiaOverview:LEAD Technical is seeking a skilled Data Center Operations Specialist to join our team in Ashburn, Virginia. The ideal candidate will have strong technical skills, experience in troubleshooting and repairing data center equipment, and a commitment to delivering exceptional...


  • Ashburn, Virginia, United States Leidos Full time

    Cyber Threat Hunt Analyst Job DescriptionAbout the Role:Leidos is seeking a highly skilled Cyber Threat Hunt Analyst to join our team. As a Cyber Threat Hunt Analyst, you will be responsible for identifying and mitigating advanced cyber threats to our organization's IT assets.Key Responsibilities:Conduct in-depth technical analysis of host-based,...