user avatar

Regional Operations Center (ROC) Lead

3 Reasons Consulting, LLC

Posted today

Job Requirements

Pearl City, HI
Secret Polygraph not specified
Senior Level Career (10+ yrs experience)
$175,000 - $195,000

Job Description

Regional Operations Center (ROC) Lead
Location:
Pearl City, HI
Clearance
Secret, with ability to obtain Top Secret/Sensitive Compartmented Information (TS/SCI)
Position Overview
As the ROC Lead, you provide operational leadership and administrative oversight for cybersecurity defense activities within your assigned region. You direct the prioritization, coordination, and quality control of incident identification, isolation, investigation, while informing stakeholders and implementing lessons learned to protect data across diverse sources and locations.
You serve as the primary Training Lead for ROC personnel, ensuring team proficiency through structured training programs, curriculum development, and leadership of tabletop exercises. Your core focus is managing the end-to-end incident response campaign lifecycle—task assignment, documentation, reporting accuracy, inter-agency coordination, and continuous process improvement—while mentoring analysts and maintaining operational readiness across 24/7 operations.
Key Responsibilities
Lead and guide administrative functions during incident response campaigns, ensuring all tasks are assigned, completed, vetted, documented, and closed in accordance with established processes and timelines.
Coordinate with reporting agencies, subscriber sites, and higher headquarters to ensure timely, accurate, and complete incident reporting and information sharing.
Oversee quality assurance reviews of validated security incidents, confirming severity and impact determinations align with Chairman of the Joint Chiefs of Staff Manual (CJCSM) 6510.01B and applicable directives.
Manage ticket review processes and indicator/analysis quality control to maintain reporting standards and operational consistency.
Ensure disciplined turnover of tasks, findings, and situational awareness through structured verbal turnovers and written shift roll-up documentation.
Compile, maintain, and continuously improve internal Standard Operating Procedure (SOP) documentation; enforce compliance with CJCSM 6510.01B and other governing directives.
Provide structured mentorship and performance feedback to ROC analysts to improve triage efficiency, decision-making, and professional development.
Plan, execute, and evaluate training programs, including curriculum development and facilitation of tabletop exercises that enhance team readiness and response capabilities.
Participate in and support program reviews, product evaluations, process improvement initiatives, and onsite certification evaluations as required.
Coordinate resource allocation, surge support, and cross-shift prioritization to sustain 24/7/365 operations across the three ROCs.
Maintain sufficient working knowledge of security concepts, protocols, processes, architectures, and tools to effectively oversee analyst work products and provide informed guidance (deep technical execution remains with analysts).
Minimum Qualifications
U.S. Citizenship required.
Bachelor’s degree in Cybersecurity, Computer, Electrical, or Electronics Engineering, or Mathematics with a concentration in computer science or equivalent with 5 years of relevant cybersecurity / Security Operations Center (SOC) experience OR at least 8 years of experience in a SOC or similar environment.
Minimum of 4 years of experience leading or managing incident response cases.
Position may require up to 10% travel.
Support 24/7/365 operations across three Regional Operations Centers (ROC).
Work overtime as required to support incident response actions (surge operations).
Preferred Qualifications
Strong working knowledge of CJCSM 6510.01B and DoD cyber incident handling processes.
Proven experience in project or campaign management within an operations center or incident response environment (planning, tracking, documentation, and closure of complex efforts).
Experience developing or maintaining SOPs, training curricula, or quality assurance processes.
Demonstrated ability to lead tabletop exercises, training programs, or professional development activities.
Experience mentoring or supervising junior analysts/operators in a high-tempo environment.
Familiarity with common SOC tools and workflows sufficient to perform effective quality oversight (deep hands-on expertise in IDS/IPS signature development, digital forensics, or advanced log correlation is not required).
Highly Desired
Exceptional verbal and written communication skills, including the ability to brief leadership, draft clear reports, and coordinate across organizations.
Proven project management or operational leadership skills (ability to plan, prioritize, track, and close complex multi-shift efforts).
Strong logical thinking, analytical ability, and independent problem-solving under time pressure.
Experience operating in a 24/7 watch-floor or operations center environment with emphasis on process discipline and documentation.
Required Certification(s) per PWS
Must meet Department of Defense (DoD) 8570 Information Assurance Technical (IAT) Level II and Computer Network Defense Service Provider (CNDSP) Analyst certification requirements.
Must also hold a relevant DoD 8570 Operation System / Computing Environment (OS/CE) certification: FEDVTE Linux OS; FEDVTE Windows OS; Server+
Salary Range: $175,000 - $195,000

Benefits at 3 Reasons Consulting
At 3 Reasons Consulting, we are committed to supporting the well-being of our team with a comprehensive benefits package that includes both company-paid and shared-cost options. Our benefits are designed to enhance your health, financial security, and work-life balance to help you thrive personally and professionally as a valued member of our team.

Company-Paid Benefits
Short/Long Term Disability
Basic Life Insurance
Direct Payroll Deposit
Leave Accrual
Holidays
401(k) Match

Employee / Company Shared Benefits
Additional (Voluntary) Life Insurance
401(k)
Medical Coverage
Dental Coverage
Vision Care Plan
Flexible Spending Account Plan
3 Reasons Consulting is an Equal Opportunity Employer. We are committed to providing a workplace free from discrimination or harassment and hold all 3 Reasons employees accountable to protect this mission. We do not discriminate on the basis of race, color, gender, religion, national origin, sexual orientation, age, marital status, veteran status, military status, disability status, or any other characteristic protected by federal, state, or local law. All applicants will receive consideration for employment without regard to protected bases.
group id: 91091531

Similar Jobs


Job Category
IT - Security
Clearance Level
Secret