Team Lead, CSOC
Global Relay View all jobs
- Vancouver, BC
- $110,000-150,000 per year
- Permanent
- Full-time
- Lead daily CSOC operations, mentoring analysts through security investigations, incident response, and complex escalations.
- Coordinate shift handovers and ensure documentation and continuity across global CSOC operations.
- Operate, monitor, and optimize security tools including SIEM, EDR, IDS/IPS, threat intel, and vulnerability management platforms.
- Develop playbooks and escalation procedures to improve CSOC efficiency and maturity.
- Support the Cyber Security Manager with KPI dashboards, threat metrics, and incident reporting.
- Assist with security audits, policy enforcement, firewall changes, and security awareness initiatives.
- Lead team development activities including hiring, training, performance appraisals, and regular team meetings.
- 2-5 years of hands-on security operations experience, including familiarity with firewalls, SIEM, EDR, IDS/IPS, antivirus, and network hardening.
- 1-2 years managing technical teams.
- Experience with real-time incident handling, root cause analysis, and escalation.
- Familiarity with MITRE ATT&CK, ISO 27001, SOC 2, and FedRAMP frameworks.
- Security certification required (CISSP preferred).
- Strong written and verbal communication skills; experience with ITIL-based ticketing systems.
- Knowledge of scripting or automation tools (e.g. Python) is an asset.
- Availability for after-hours escalations and flexibility across UK, US, and Canada time zones.