SOC Incident Response Lead
Listed on 2025-12-27
-
IT/Tech
IT Project Manager, IT Support, Cybersecurity, Systems Administrator
The SOC Incident Response Lead, serving as SOC Lead, is responsible for managing and coordinating the resolution of IT incidents and requests to ensure swift return to normal operations and minimize business impact. This role oversees the incident management process, ensures alignment with CASTLE-NET IT and Task Order goals, works closely with IT teams, stakeholders, and vendors to resolve incidents, communicates updates, and implements continuous improvement processes to enhance organizational resilience.
Key Responsibilities- Manage and coordinate the resolution of IT incidents and service requests from initial detection through closure
- Oversee incident escalation process ensuring alignment with SLAs and organizational priorities
- Coordinate incident response activities across IT teams, security teams, and external vendors
- Communicate incident status, impact assessments, and resolution timelines to stakeholders and leadership
- Lead root cause analysis activities to identify underlying causes of incidents
- Document all incidents in the incident management system with detailed information and resolution details
- Monitor incident response metrics including MTTR (Mean Time To Resolution) and SLA compliance
- Coordinate with cybersecurity team on security-related incidents and threat investigation
- Implement corrective actions to prevent incident recurrence
- Conduct post-incident reviews and develop lessons learned documentation
- Provide recommendations for ITSM system and process enhancements
- Mentor incident response team members and develop incident response procedures
- Bachelor’s degree in IT, Computer Science, Business Administration, or related field (or equivalent work experience)
- Minimum 8 years of experience in incident management, incident response, or related IT role
- Strong understanding of ITIL principles and incident management best practices
- Proficiency with incident management tools and ITSM platforms
- Excellent problem-solving, analytical, communication, and interpersonal skills
- Demonstrated ability to manage multiple incidents effectively and make sound technical decisions
- Experience with change management and process improvement initiatives
- ITIL Foundation or ITIL Practitioner certification
- ITIL Specialist:
Create, Deliver and Support or equivalent advanced ITIL certification - Familiarity with CASTLE-NET IT environment and federal IT operations
- Experience with Security Operations Center (SOC) operations and incident response coordination
- Knowledge of cyber security incident response procedures and threat intelligence
- Background in federal IT contracting and compliance requirements
- Experience with Service Now or similar incident management platforms
- Incident Management & Response Coordination
- ITIL Framework & Best Practices
- Problem-Solving & Root Cause Analysis
- Stakeholder Communication & Management
- Incident Tracking & SLA Monitoring
- Cybersecurity Incident Response
- Service Desk Management
- Process Improvement & Optimization
- Team Leadership & Mentoring
- Change Management & CMDB
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM’s overall compensation and benefits package for employees.
EEORequirements
It is the policy of ASM that an individual’s race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical RequirementsThe physical requirements…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).