Lead SOC/NOC Engineer – Shift Work
Job Description:
- Serve as the senior point of escalation for complex security and infrastructure issues across Azure and Microsoft 365 environments
- Provide technical leadership, mentorship, and guidance to SOC and NOC engineers
- Own the design, configuration, and maintenance of SIEM, monitoring, and alerting capabilities
- Build and refine security and infrastructure dashboards, alerts, and monitoring tools
- Lead incident response for high-severity security events and major infrastructure outages
- Develop and maintain runbooks, playbooks, procedures, and reporting templates
- Drive automation and innovation to improve operational efficiency
- Lead audit, compliance, accreditation, and authority-to-operate (ATO) support activities
- Partner with client stakeholders, vendors, and third parties to improve security posture and operational maturity
- Establish and enforce patching, backup and restore, disaster recovery, and change management processes
- Provide written documentation for operational procedures
- Lead shift coverage planning and participate in an on-call rotation for continuous 24x7 operational SLAs
Requirements:
- 7+ years of experience in security operations, network and infrastructure operations, and/or systems engineering
- Experience operating Microsoft Azure and Microsoft 365 platforms
- Experience leading or mentoring engineers within a SOC, NOC, or converged operations center
- Hands-on experience with SIEM configuration and maintenance and SOC/NOC engineering and administration tools
- Experience managing Azure subscriptions and resources across compute, storage, networking, and identity
- Ability to lead incident response and resolve malware, phishing, and active vulnerability threats
- Strong engineering analysis, troubleshooting, and communication skills, including client-facing consulting ability
- Willingness to serve as senior escalation, participate in on-call rotation, and perform off-hours maintenance
- CompTIA Security+ certification
- U.S. citizenship and ability to pass client background checks
- Willingness to work off-hours shifts covering 24x7x365 SLAs, including 4p–12a Monday–Friday and/or 12-hour weekend and holiday shifts, plus two day shifts per week
- Willingness to be on call and swap shifts for teammate absences
- Preferred: SC-200, AZ-500, AZ-104, or CySA+ certifications
- Preferred: advanced forensics skills
- Preferred: familiarity with Microsoft Sentinel and Microsoft Defender
- Preferred: Azure Monitor, Azure Automation, Azure Backup, Azure Security Center, and Azure Update Manager
- Preferred: ARM, Terraform, PowerShell, and KQL
- Preferred: security audits, accreditation, and ATO processes
- Preferred: MSP or 24/7 enterprise operations experience
Benefits:
- Employee Ownership
- Continuous Learning: Access to resources, training, and mentorship
- Inclusive Culture
- Mission-Driven Work
- Competitive Salaries
- Qualified Overtime
- Paid Time Off (PTO)
- Flexible Holiday Leave (88 hours per year)
- Parental Leave
- Immediate Healthcare: Medical, Dental, Vision, and Life Insurance
- Employee Stock Ownership Plan (ESOP)
- 401(k) Retirement Plan (5% match on base compensation, immediate 100% vesting)
- Tuition Reimbursement & Learning Allowance
- Referral Bonus Program (up to $5k)