Jobs and Careers
MI

SOC Team Lead

MindPoint Group
United Statesfull_timeVerifiedPosted 25 Oct 2024

About the role

Here at MindPoint Group, we believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a SOC Team Lead. You will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In addition to being our initial point of contact for end users, you will serve as the escalation point for other analysts, helping guide them through more complex and high-priority incidents.\

As part of our team at MindPoint Group, you will delve further into the intricacies of enterprise network security, hone your incident response techniques, and develop a deep understanding of identifying and mitigating increasingly sophisticated threats. Join us at MindPoint Group and take the next step in your cybersecurity career.

Responsibilities:

  • Be a change agent and thought leader, optimizing security operations within the SOC in support of the department and external federal agencies, meeting all key performance indicators.
  • Take ownership of the SOC SOP and playbook life cycle, being responsible for creating and updating SOC SOPs and playbooks for monitoring and incident response.
  • Review and provide recommendations on department security policies such as the Incident Response Plan (IRP) as well as security policies affecting the department such as EO 14028 and OMB M-21-31.
  • Mentor shift leads and analysts on detection analysis, incident response techniques, and security best practices.
  • In a security incident, lead the department's incident response.
  • Lead ad hoc and formal briefings related to SOC status to Federal and MPG Leadership.
  • Track performance and provide recommendations on improving SOC metrics.
  • Oversee the SOC’s 24x7x365 operations to include shift schedules and minimum manning requirements.

Required:

  • 5-years of documented experience and/or education in IT or Cybersecurity
  • Applicable DOD 8570 Certification
  • Experience in some of the following tools and technologies:
    • SIEM experience required, with Splunk preferred.
    • EDR experience required, with CrowdStrike preferred

  • Thorough understanding of cybersecurity operations workflows
  • Excellent technical, analytical, and organizational skills
  • Experience with securing various environments, including cloud environments
  • Experience working with and across multiple teams
  • Understanding of MITRE ATT&CK and D3FEND
  • Understanding how EO14028 and OMB M-21-31 impact federal SOCs
  • Knowledge of advanced attacker tools, techniques, and procedures (TTP)
  • Current malware cam

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

MindPoint Group

View company profile →