Dragonfli Group logo

Lead SOC Analyst

Dragonfli Group

Remote
Contract
Senior
Manager
6+ yrs
Salary not listedPosted 48m ago

Real job — pulled straight from Dragonfli Group’s careers page · Verified August 22, 2026 · No reposts.

Job description

Dragonfli Group is hiring a Lead SOC Analyst — a contract, remote role. Apply directly on Dragonfli Group's careers page below.

Lead SOC Analyst

Location: Remote (US)

Experience Level: Senior

Description

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.


Dragonfli is hiring a Senior Lead SOC Analyst to anchor our overnight security operations team. In this role, you will drive advanced investigation, incident response, and proactive threat hunting across client tenants, perform quality control on Tier 1 and Tier 2 work, and mentor analysts on shift. You will own the most complex escalations, serve as the primary overnight point of contact for clients and leadership, and drive continuous improvement of runbooks and detection tuning. This position is well suited to candidates with 6+ years of SOC experience, including incident response leadership and mentoring.


This is a contract position involving a large commercial enterprise in the transportation/logistics (critical infrastructure) sector. Candidates with previous consulting or contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.


Responsibilities:

  • Lead advanced investigation and incident response for escalated events across client tenants
  • Conduct proactive threat hunting
  • Perform quality control review of Tier 1 and Tier 2 triage, investigation, and documentation
  • Mentor and provide real-time guidance to Tier 1 and Tier 2 analysts on shift
  • Own the most complex containment, response, and escalation decisions
  • Serve as the primary point of contact for clients and on-call leadership during overnight events
  • Drive continuous improvement of standard operating procedures, runbooks, and detection tuning
  • Support monthly reporting with accurate event and response data and trend analysis


Requirements

Must-Have:

  • United States citizenship
  • Ability to pass a drug screening and a full background investigation, including verification of references, employment history, education, and certifications
  • 6+ years of SOC or security operations experience, including incident response and mentoring or leadership
  • Demonstrated threat hunting and advanced investigation experience
  • Strong command of SIEM and EDR platforms and vulnerability management workflows
  • Understanding of the incident lifecycle: detection, triage, containment, and escalation
  • Ability to work overnight shifts reliably on a rotation that includes weekends
  • Excellent written communication and documentation discipline


Preferred / Nice-to-Have:

  • Expert-level experience with Microsoft Sentinel, Splunk, CrowdStrike or comparable EDR, and Tenable
  • GCIH, GSEC, GCFA, CySA+, or a similar advanced certification
  • Scripting or automation experience (Python or PowerShell)
  • Prior managed security services or multi-tenant SOC leadership experience
  • Exposure to critical-infrastructure environments
  • Residency in the Hampton Roads, Virginia area


Skill(s)

Technical Skills:

  • Advanced incident response
  • Threat hunting
  • SOC quality control
  • SIEM and EDR platform mastery
  • Detection engineering and tuning
  • Mentorship and training design


Soft Skills:

  • Leadership under pressure
  • Mentoring and coaching
  • Executive-level communication
  • Sound judgment on escalation decisions
  • Ownership of shift outcomes


Benefits

Medical – Multiple POS health plan options including an HSA-compatible plan

Dental – PPO coverage for preventive, basic, and major services

Vision – Annual exam, frames, lenses, and contact lens allowance

401(k) – Employer match up to 5% of eligible compensation

Long-Term Disability – 100% employer-paid coverage at 50% of pre-disability earnings

Life Insurance & AD&D – 100% employer-paid coverage valued at $10,000 each

PTO – 15–25 days annually based on tenure

Paid Federal Holidays – All 11 federal holidays observed

Travel

Get Security Analyst jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Westpac New Zealand logo

Senior Cyber Security Analyst

Auckland, NZ
✓ From careers page· 19m ago
Vusion Group logo

IT Security and Identity Engineer

Fernitz bei Graz, Steiermark
✓ From careers page· 26m ago
Nagomi Security logo

Security Researcher

Tel Aviv
✓ From careers page· 44m ago
Iberdrola logo

Lead Network Security Architect

$128k–$160kOrange, CT
✓ From careers page· 1h ago

Frequently asked questions

Is Lead SOC Analyst at Dragonfli Group a remote job?

Yes, Lead SOC Analyst at Dragonfli Group is a remote position. This role is open to remote candidates.

What skills are required for Lead SOC Analyst at Dragonfli Group?

The required skills for Lead SOC Analyst at Dragonfli Group include: SIEM, Splunk, Python, PowerShell.

What is the seniority level for Lead SOC Analyst at Dragonfli Group?

Lead SOC Analyst at Dragonfli Group is a Senior / Manager level position.

How do I apply for Lead SOC Analyst at Dragonfli Group?

You can view the full description and apply for Lead SOC Analyst at Dragonfli Group on EchoJobs: https://echojobs.io/job/dragonfli-group-lead-soc-analyst-x7o6s.