Demo

Onsite SOC/Incident Response Lead

Tetrahed
Fort Worth, TX Other
POSTED ON 12/10/2025 CLOSED ON 1/8/2026

What are the responsibilities and job description for the Onsite SOC/Incident Response Lead position at Tetrahed?

Job Details

Responsibilities:

  • Lead and supervise daily SOC operations, ensuring timely and effective threat detection and response.
  • Act as the primary onsite responder for cybersecurity incidents and alerts.
  • Investigate, analyze, and contain security incidents using Microsoft Sentinel, Defender (MDE), and Purview DLP.
  • Collaborate with remote SOC teams (L2/L3) to manage and escalate incidents.
  • Review and tune alert rules and configurations to reduce false positives and improve detection accuracy.
  • Conduct root cause analysis and post-incident reporting.
  • Develop and maintain incident response plans and playbooks.
  • Track and report on SOC KPIs, incident trends, and operational metrics.
  • Provide security awareness training and guidance to internal stakeholders.
  • Stay current with emerging threats, vulnerabilities, and regulatory requirements.
  • Coordinate with IT, legal, and business teams during incident response and remediation efforts.
  • Drive continuous improvement of SOC processes, tools, and maturity.

Qualifications:

  • 5–10 years of experience in a professional SOC environment.
  • Strong hands-on expertise in Microsoft security tools:
  • Microsoft Sentinel (SIEM)
  • Microsoft Defender for Endpoint (MDE)
  • Microsoft Purview DLP
  • Proven experience in incident response and investigation using Microsoft tools.
  • Experience managing and mentoring SOC analysts across global time zones.
  • In-depth knowledge of cyber defense technologies: SIEM, SOAR, UEBA, TIP, ASM, EDR, NDR.
  • Bachelor’s degree in Cybersecurity, Information Technology, or related field.
  • Strong analytical, documentation, and communication skills.
  • Must be able to work onsite at client locations in Fort Worth and Westlake, TX.

Certifications:

  • Microsoft Certified: Security Operations Analyst Associate
  • Microsoft Cybersecurity Architect (SC-100)
  • GIAC Certified Incident Handler (GCIH) or equivalent
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Principal Cybersecurity Engineer, Incident Response
GM Financial -
Arlington, TX
Senior Principal Cybersecurity Engineer, Incident Response
GM Financial -
Arlington, TX
Cyber Defense & Resilience Manager - Incident Response
Deloitte -
Fort Worth, TX

Hourly Wage Estimation for Onsite SOC/Incident Response Lead in Fort Worth, TX
$60.00 to $74.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Onsite SOC/Incident Response Lead?

Sign up to receive alerts about other jobs on the Onsite SOC/Incident Response Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$142,618 - $183,267
Income Estimation: 
$115,647 - $153,495
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other Onsite SOC/Incident Response Lead jobs in the Fort Worth, TX area that may be a better fit.

  • GM Financial Fort Worth, TX
  • Job Description Opportunity to work a hybrid model: 4 days onsite and 1 day remote Why GMF Cybersecurity? Our Cybersecurity team is tasked with the securit... more
  • 6 Days Ago

  • GM Financial Arlington, TX
  • Job Description Opportunity to work a hybrid model: 4 days onsite and 1 day remote Why GMF Cybersecurity? Our Cybersecurity team is tasked with the securit... more
  • 7 Days Ago

AI Assistant is available now!

Feel free to start your new journey!