Full-Time

Security Operations Center Lead

Florida Gulf Coast University

Florida Gulf Coast University

Public university in Fort Myers, FL

No salary listed

Company Does Not Provide H1B Sponsorship

Florida, USA

In Person

Bachelor's

Category
IT & Security (1)
Required Skills
Microsoft Azure
Incident Response
LDAP
Workday HRIS
Vulnerability Analysis
HIPAA

Get referred to Florida Gulf Coast University

See people who can refer or advise you

Requirements
  • Nine years of directly related full-time experience, or a Bachelor's degree from an accredited institution in Cybersecurity, Computer Science, Informatics, Information Systems, or a related field and five years of full-time experience directly related to the job functions.
  • Experience with Security Operations Center operations, security monitoring, incident response, or related cybersecurity functions, including cybersecurity investigations, alert triage, or security event analysis.
  • Experience with enterprise security information and event management, endpoint detection and response, or similar platforms.
  • Experience using Microsoft security tools, including Microsoft Entra ID, Microsoft Sentinel, Active Directory, Microsoft Defender, Microsoft 365 security features, or comparable enterprise security tools.
  • Any appropriate combination of relevant education, experience, and certifications may be considered.
  • Knowledge of security strategies, including operating system hardening, vulnerability management, change management, application testing and patching, security tools, and software products.
  • Knowledge of network and system security access, management, and testing.
  • Knowledge of applicable security policies, best practices, and principles.
  • Knowledge of standard computer logging processes and the types of events logged.
  • Skill in identifying complex problems, reviewing related information, evaluating options, and implementing solutions.
  • Advanced verbal and written communication skills and the ability to present effectively to small and large groups.
  • Ability to plan, organize, coordinate, and perform work when numerous and competing demands are involved.
  • Ability to work independently and follow through on assignments.
  • Ability to translate security concepts to all areas of the business.
  • Ability to interpret log data and investigate potential issues.
  • Ability to prepare network and system diagrams and advise on secure implementations of systems and services.
  • Ability to distinguish security breaches from innocent technical bugs.
  • Ability to participate in after-hours incident response or emergency escalation activities as needed.
Responsibilities
  • Lead day-to-day Security Operations Center activities, including security monitoring, alert triage, investigation, escalation, incident response coordination, operational reporting, and analyst shift oversight.
  • Participate in after-hours incident response, emergency escalation, and on-call support as needed.
  • Recruit, hire, train, mentor, and supervise undergraduate and graduate student analysts, including providing coaching, performance feedback, and career development support.
  • Develop and maintain a structured student analyst training program covering alert triage, security information and event management operations, threat detection, MITRE ATT&CK methodologies, digital forensics fundamentals, investigation procedures, and incident response workflows.
  • Develop or support cybersecurity exercises, tabletop scenarios, and incident response drills.
  • Establish analyst progression standards, operational guardrails, and escalation thresholds.
  • Perform security monitoring, investigation, and incident response activities during reduced student staffing or elevated operational demand.
  • Review, validate, and direct security investigations, ensuring events are analyzed, documented, escalated, and communicated according to policies, procedures, and response playbooks.
  • Serve as the operational lead during significant cybersecurity incidents and coordinate response activities with Information Technology Services, university leadership, legal counsel, human resources, communications personnel, and external partners.
  • Maintain and improve detection, monitoring, and response capabilities across security information and event management, endpoint detection and response, cloud security platforms, and related cybersecurity tools.
  • Develop, maintain, and update Security Operations Center playbooks, standard operating procedures, workflows, and documentation.
  • Manage relationships with managed security service providers, incident response vendors, and other external security partners.
  • Support security operations and incident response involving regulated or sensitive institutional data subject to FERPA, GLBA, PCI DSS, HIPAA where applicable, and university policies.
  • Escalate actionable cybersecurity risks, incidents, and operational concerns to the Chief Information Security Officer and designated stakeholders.
  • Maintain security operations documentation and report on security metrics, incident trends, operational performance, and student program outcomes.
  • Conduct or support audits, compliance activities, and security reviews.
  • Conduct post-incident reviews and security process evaluations, document corrective actions, and recommend improvements to detection logic, response procedures, communication workflows, and operational controls.
  • Communicate technical security findings, risks, and operational impacts in clear, non-technical language for university leadership and business stakeholders.
  • Contribute to information security initiatives including cloud security, identity and access management, security awareness, and emerging technology governance.
  • Perform other job-related duties as assigned.
Desired Qualifications
  • Five years of full-time experience in cybersecurity operations, incident response, or threat detection.
  • Two years of experience managing, coaching, or mentoring technical staff or junior analysts.
  • Familiarity with the NIST Cybersecurity Framework, NIST 800-53, FERPA, and HIPAA.
  • Experience working in higher education.
  • Familiarity with higher education technologies, including Banner, Workday, Canvas, Blackboard, and research computing infrastructure.
  • Experience designing security training or formal curricula.
  • Experience with Microsoft Sentinel, Microsoft Defender XDR, Microsoft Entra ID, Microsoft Purview, or related Microsoft security technologies.
  • Experience with security orchestration, automation, and response platforms.
  • CISSP, CISM, Security+, GCIH, GCIA, CISA, or similar certifications.
Florida Gulf Coast University

Florida Gulf Coast University

View

Florida Gulf Coast University is a public university in Fort Myers, Florida. It provides undergraduate and graduate education through colleges spanning the arts, sciences, business, engineering, education, and health professions.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to Florida Gulf Coast University

See people who can refer or advise you