Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None
Suitability:
Public Trust/Other Required:
Job Family:
Information Security
Job Qualifications:
Skills:
Incident Response, Information Technology Security, Security Operations
Certifications:
Experience:
5 + years of related experience
US Citizenship Required:
No
Job Description:
GDIT has an opportunity for a dynamic and collaborative Intrusion Detection Team Shift Lead to join our team. The Intrusion Detection Team Shift Lead will be a member of our team supporting the Administrative Office of the U.S. Courts (AOUSC), Information Technology Security Office (ITSO). As a team member, the Intrusion Detection Team Shift Lead will work collaboratively with federal and contractor staff to ensure the SOC effectively meets or exceeds the security operations requirements of each shift in a timely and comprehensive manner.
The Intrusion Detection Team Shift Lead must be able to handle events, e.g., identifying user security issues, extensive troubleshooting, and coordinating resolution or restore using a variety of applications and testing tools throughout each shift. The events may include hardware/software failures, as well as, security breaches, threats, or network connectivity issues. The Intrusion Detection Team Shift Lead must ensure that each member of the shift acts in a professional and courteous manner while answering inbound security-related calls and provide the AOUSC with the best possible customer service that includes creating tickets, filling out necessary checklist paperwork, generating trouble tickets for all work and informational requests, handle security-related user complaints, and escalate to the next tier according to established procedures.
HOW A SOC SHIFT LEAD WILL MAKE AN IMPACT
- Shift Management:
- Supervise and manage the SOC team during assigned shifts.
- Ensure proper analyst coverage is maintained, including holidays.
- Ensure seamless transition and handover between shifts.
- Monitor and maintain SOC workflows and processes to ensure efficiency and effectiveness.
- Incident Detection and Response:
- Oversee the detection, analysis, and response to security incidents.
- Coordinate with other SOC teams and stakeholders to manage and mitigate threats.
- Ensure timely and accurate documentation and reporting of security incidents.
- Operational Oversight:
- Monitor security alerts and events from various sources, including SIEM, IDS/IPS, firewalls, and endpoint protection systems.
- Ensure SOC tools and technologies are functioning optimally.
- Implement and enforce SOC policies, procedures, and playbooks.
- Team Leadership and Development:
- Provide guidance and support to SOC analysts during shifts.
- Conduct regular performance reviews and provide feedback to team members.
- Identify training needs and facilitate skill development for the SOC team.
- Continuous Improvement:
- Identify areas for improvement in SOC operations and recommend enhancements.
- Stay current with emerging threats, trends, and technologies to improve SOC capabilities.
- Participate in post-incident reviews and lessons-learned sessions.
- Collaboration and Communication:
- Act as the primary point of contact for security-related issues during shifts.
- Communicate effectively with other shift leads, SOC managers, and stakeholders.
- Liaise with external partners and service providers as necessary.
WHAT YOU’LL NEED TO SUCCEED
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field. Equivalent experience will be considered.
- Minimum of 3 years of experience in a SOC environment, with at least one year in a supervisory or lead role.
- Proven experience in managing security incidents and incident response processes.
- Strong knowledge of cybersecurity principles, threat landscapes, and attack vectors.
- Proficiency with security technologies such as SIEM, IDS/IPS, firewalls, and endpoint protection systems.
- Familiarity with regulatory requirements and industry standards (e.g., NIST, ISO, GDPR).
- Relevant certifications include CISSP, CISM, GCIA, GCIH, or equivalent.
- Excellent leadership, communication, and interpersonal skills.
- Strong analytical and problem-solving abilities.
- Ability to work under pressure and manage multiple priorities
GDIT IS YOUR PLACE:
- Full-flex work week to own your priorities at work and at home
- 401K with company match
- Comprehensive health and wellness packages
- Internal mobility team dedicated to helping you own your career
- Professional growth opportunities including paid education and certifications Cutting-edge technology you can learn from
- Rest and recharge with paid vacation and holidays
The likely salary range for this position is $100,175 - $135,531. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
10-25%
Telecommuting Options:
Hybrid
Work Location:
USA DC Washington
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.We connect people with the most impactful client missions, creating an unparalleled work experience that allows them to see their impact every day. We create opportunities for our people to lead and learn simultaneously. From securing our nation’s most sensitive systems, to enabling digital transformation and cloud adoption, our people are the ones who make change real.GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.