Lead Director Security Operations Center (SOC)

CVS Health

Confirmed live today High trust

Quick summary

Work type
On-site
Location
New York, NY
Salary
$144,200–$288,400 / yr
Posted
3 days ago
Freshness
Confirmed live today
Closes
Sep 30, 2026

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $201k
This role $216k
$127k most similar roles pay here $306k

This role pays more than 65% of similar roles. Most pay $165,650–$235,500 — the shaded band above. At the midpoint, this role pays about $216k versus about $201k for comparable roles.

Based on 240 similar postings.

Employer

About CVS Health

CVS Health is a leading American healthcare company operating retail pharmacies, pharmacy benefit management services, and a health insurance segment through Aetna, one of the nation''s largest health insurers. Industry: Healthcare & Pharmacy

CVS Health currently has 86 open roles on FindRole.

Listed pay typically runs $118,450–$284,280 across 85 roles with salary data.

Most-posted roles

View all roles at CVS Health

At a glance

TL;DR · Lead Director Security Operations Center (SOC)

The Lead Director - Security Operations Center (SOC) leads the cybersecurity operations function for a rapidly evolving healthcare business. This role is responsible for building and maturing security operations capabilities, including threat monitoring, detection, investigation, response, and threat hunting activities to protect critical business operations and sensitive data in a highly regulated environment. The leader manages a high-performing team while establishing operational processes, service levels, and metrics. Key responsibilities include coordinating incident responses, improving detection engineering, and implementing security automation and AI-enabled capabilities. The role requires expertise in SIEM, EDR/XDR, SOAR, Microsoft Sentinel, CrowdStrike Falcon, Wirespeed, and Microsoft Security technologies like Defender XDR and Entra ID. Candidates must navigate cloud, identity, and network environments across Azure, GCP, and AWS while ensuring cyber resilience against emerging threats such as ransomware.

What you'll do

  • Lead the strategy, execution, and continuous improvement of all Security Operations Center functions including threat monitoring and hunting.
  • Serve as the primary escalation point for significant cyber incidents and coordinate response efforts across technical and business stakeholders.
  • Drive improvements in detection engineering, investigation processes, and automated workflows to reduce risk and improve response times.
  • Develop security standards and controls aligned with regulatory requirements and industry best practices for cyber resilience.
  • Manage security operations across cloud, endpoint, identity, and network environments while optimizing the use of security technologies.
  • Build and mentor a high-performing team of security professionals through coaching and career development opportunities.
  • Establish metrics and reporting to demonstrate operational performance, risk reduction, and effectiveness to senior leadership.

What we're looking for

  • 10+ years of progressive cybersecurity experience within medium-large scale environments.
  • 5+ years leading Security Operations Center (SOC), Incident Response, Cyber Defense, or Threat Detection teams.
  • 5+ years of experience operating and optimizing enterprise security platforms including SIEM, EDR/XDR, SOAR, and automation technologies.
  • 3+ years of experience building, managing, and maturing security operations capabilities like threat hunting and digital forensics.
  • Experience supporting cloud-native and hybrid security operations across Microsoft Azure, Google Cloud Platform (GCP), and Amazon Web Services (AWS) (preferred).
  • Hands-on experience with Microsoft Security technologies or Google Security Command Center (preferred).
  • Experience implementing security automation, orchestration, AI-enabled security operations, or operational workflow optimization (preferred).
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related field, or equivalent experience.

More like this

Similar roles

Director, IT Security Operations

University of Miami

Miami, FL 92 days ago
Cybersecurity Incident Response SIEM MDR Vulnerability Management end-point protection Threat Intelligence COBIT NIST 800 CISSP CISM Security Certified Ethical Hacker Cloud Security
7+ yrs exp

Lead, Network Security Operations

Prudential Financial

Newark, NJ 5 days ago $123,700$204,100
Security Operations Check Point Cisco ASA Zscaler Web Application Firewalls (WAF) Proxy Technologies Routing Protocols Client/Server Architecture Network Traffic Flow Change Management Risk Assessment CISSP CCNP Security

Principal Global Security Operations Center

Okta Inc

Washington, DC 8 days ago $138,000$189,200
Artificial Intelligence Automation Video Analytics Access Control Systems ISO 27001 SOC 2 SLA Incident Management Mass Notification Platforms Data Logging Workflow Automation
8+ yrs exp

Director, Cybersecurity

LogicGate

Chicago, IL +1 10 days ago $190,000$240,000
SOC 2 ISO 27001 FedRAMP ISO 42001 CNAPP EDR SASE Zscaler CrowdStrike GitLab Wiz LLM AI Incident Response Vulnerability Management Security Architecture GRC SaaS
7+ yrs exp

Director Security Cloud Solution Architect

Microsoft

Redmond, WA 18 days ago $130,900$251,900
Microsoft Sentinel Microsoft Defender for Cloud Defender for Endpoint Defender for Office Defender for Identity Entra ID Purview Data Security SIEM XDR Cloud Security Data Loss Prevention (DLP) Information Rights Management (IRM) Azure Cybersecurity Security Architecture
10+ yrs exp Hybrid

Security Role Strategy Lead

Microsoft

Redmond, WA 44 days ago $106,400$203,600
AI Machine Learning Data Analytics Cybersecurity Risk Management Predictive Modeling Enterprise Software Technical Sales Governance Frameworks Automation
4+ yrs exp Hybrid