Demo

Security Operations Lead

New York Technology Partners
Chicago, IL Full Time
POSTED ON 4/9/2026
AVAILABLE BEFORE 9/6/2026

Responsibilities

SOC modernization

  • Work with the Director of Information Security to build and execute a SOC modernization roadmap
  • Standardize SOC workflows: intake, triage, investigation, escalation/handoff, closure
  • Improve case management quality: templates, evidence capture, consistent documentation, audit readiness
  • Establish operational rhythms: queue health checks, weekly ops review, monthly metrics and outcomes, tabletop exercises & reviews

AI SOC agents & workflow automation

  • Implement AI-assisted SOC capabilities that support analysts, including:
  • Alert clustering/deduplication and prioritization support
  • Automated enrichment (asset/user context, baselines, threat intel, cloud context)
  • Investigation copilots (timeline generation, query suggestions, correlation summaries)
  • Draft case notes and executive-ready incident summaries with links back to source evidence
  • Assist with defining guardrails for AI usage: human approval gates, scoped permissions, audit trails, redaction/data handling, and “no unsupported claims” standards
  • Evaluate vendors and/or internal approaches; run pilots, measure results, and lead production rollouts

Tooling & integration leadership

  • Coordinate integrations across SIEM, EDR, SOAR, cloud telemetry, ticketing, and collaboration/on-call tooling
  • Partner with Platform Engineering to improve telemetry pipelines (parsing, normalization, enrichment, retention)
  • Define operational acceptance criteria for changes (signal quality, latency, reliability, access controls)

Metrics & continuous improvement

  • Partner with the Director of Information Security to drive SOC operational KPIs (e.g., time-to-triage, case aging, escalation completeness, automation coverage)
  • Drive continuous improvement via regular reviews, quality sampling, and post-case learnings
  • Identify recurring pain points and implement targeted fixes (playbooks, automation, training, data improvements)

Enablement & collaboration

  • Train and mentor analysts on standard workflows and effective use of AI-assisted tooling
  • Improve cross-functional handoffs between SOC, Engineering, IT, and Platform teams
  • Provide concise operational updates to the Director of Information Security and leadership stakeholders

Required qualifications

  • 5 years in security operations / SOC engineering / incident response operations (or equivalent)
  • Strong understanding of SOC workflows, incident lifecycle, and escalation/handoff patterns
  • Experience with SIEM/EDR ecosystems and integrating security tooling via APIs/webhooks
  • Demonstrated ability to drive operational change: playbooks, metrics, quality, training, adoption
  • Strong written communication and stakeholder management

Preferred qualifications

  • Experience deploying AI-assisted SOC tooling (copilots/agents) with governance
  • SOAR/automation experience with approval-gated actions and safe defaults
  • Familiarity with WQL (Wazuh), SPL (Splunk) and/or KQL (Microsoft Sentinel) and light scripting (Python/Bash)
  • Cloud and identity familiarity (AWS/Azure/GCP, SSO/MFA/IAM)

What success looks like

  • SOC workflows are consistent and measurable across analysts/shifts
  • Alert noise is reduced, and investigations start with better context and faster handoffs
  • AI-assisted tooling improves analyst throughput and documentation quality with strong guardrails
  • Integrations and telemetry quality improvements materially reduce friction and case aging
  • Leadership has clear metrics that show SOC operational uplift over time

Salary : $150,000 - $180,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Operations Lead?

Sign up to receive alerts about other jobs on the Security Operations Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$220,784 - $286,649
Income Estimation: 
$270,069 - $359,305
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at New York Technology Partners

  • New York Technology Partners Cincinnati, OH
  • Role: Platform Engineer Location: Cincinnati, OH (5 Days Onsite) Must Have 3 years of experience in a platform engineering, production support, or systems ... more
  • 8 Days Ago

  • New York Technology Partners Chicago, IL
  • What You’ll Do We've recently formed a dedicated AI Research & Engineering team, and we're looking for a Principal AI Engineer to serve as its technical an... more
  • 8 Days Ago

  • New York Technology Partners San Ramon, CA
  • Job Title: Python Full Stack Developer Location: San Ramon, CA (Regular onsite) Contract: Long-Term Job Description Design, develop, and maintain scalable ... more
  • 9 Days Ago

  • New York Technology Partners York, NY
  • We are seeking a Senior Java Engineer with a strong background in backend development and test automation to help ensure the quality, reliability, and scal... more
  • 11 Days Ago


Not the job you're looking for? Here are some other Security Operations Lead jobs in the Chicago, IL area that may be a better fit.

  • Sunstates Security Chicago, IL
  • Overview Become part of one of the largest and fastest-growing privately held security companies in the U.S! Since 1998, Sunstates Security has built a nat... more
  • 2 Months Ago

  • Inter-Con Security Chicago, IL
  • Employment Opportunity At Inter-Con we take pride in providing customized security solutions for our clients. To us, that means the right officer in the ri... more
  • 20 Days Ago

AI Assistant is available now!

Feel free to start your new journey!