1,230,736open jobs
70,270companies
213,973added this week
Browse all
Salary
≈ $90k – $191k per year (Estimated)
Location
Hybrid (Conshohocken, Frisco, United States)
Seniority
Staff · 3+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 5, 2026. First seen by Alion on Sep 3, 2026. Legends Global scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Headquartered in New York, New York, Legends is a global sports, media, and entertainment services company specializing in premium live experiences and venue management. The organization provides a fully integrated solution spanning feasibility planning, venue design and project development, premium seating and sponsorship sales, hospitality, merchandise, and technology integration.

POSITION: Security Operations Lead

LOCATION: Hybrid (This person can be based out of our Dallas/Frisco, TX or Conshohocken, PA Corporate Headquarters)

DEPARTMENT: Technology

REPORTS TO: VP, Cyber Security

LEGENDS GLOBAL

Legends Global is the premier partner to the world’s greatest live events, venues, and brands. We deliver a fully integrated suite of premium services through a white-label model that keeps our partners front and center - from feasibility and project development to sales, partnerships, hospitality, merchandise, venue management, and world-class content and booking.

With a global network of more than 450 venues, hosting 20,000 events and welcoming 165 million guests annually, Legends Global brings unmatched scale, expertise, and connectivity to help our partners grow. The Legends Global Way guides how we operate: Align, Scale, Connect, Team, Win - shared success, repeatable systems, connected solutions, unstoppable teams, and wins that are earned every day.

SecurityOperationsLead

The Security Operations Lead is responsible for detection, triage, and response operations across our enterprise. This role blends hands-on incident handling with detection engineering, playbook development, and response automation efforts. This role delivers on alerts and case management, drives resilient detection strategies, and leads hunt efforts that proactively surface threats before they become incidents.

Joining a team of SOC Analysts, the Security Operations Lead sets the standard on how to identify, triage, and resolve cybersecurity incidents, and demonstrates this to the SOC team. This role is a great opportunity for a seasoned analyst to lead by example on how a global Security Operations Center should run.

KeyResponsibilities

  • Independently lead complex or high-impact security incidents and identify opportunities to improve SOC processes, tools, and response capabilities.
  • Provide technical guidance and mentorship to SOC Analysts, sharing best practices and establishing standards for documentation, communication, and delivery. Build and operationalize SOC playbooks and escalation workflows.
  • Lead alert triage, enrichment, prioritization, and false-positive suppression.
  • Author detection requirements and write and tune SIEM rules.
  • Develop threat-hunting hypotheses and lead hunt efforts using advanced telemetry and threat intelligence.
  • Design detection strategies across the kill chain and help advance the enterprise detection strategy.
  • Execute complex incidents end-to-end, including containment, eradication, documentation, and communication.
  • Conduct post-incident reviews and drive remediation and control improvements.
  • Promote industry collaboration and embed resilient detection engineering practices.
  • Advocate for and implement automation-first incident response.
  • Provide technical guidance and mentorship to SOC Analysts, sharing best practices and setting standards for documentation, communication, and delivery.

EducationandExperience

  • Proven experience in a SOC or equivalent detection and response function, with a focus on high-fidelity detections, repeatable playbooks, and measurable outcomes.
  • Three to five years of experience in Security Operations, Detection and Response, or Incident Handling; SOC experience is required.
  • Hands-on experience with SIEM platforms, such as Google Security Operations, Microsoft Sentinel, or IBM QRadar; EDR platforms, such as CrowdStrike, Microsoft Defender, or SentinelOne; and SOAR platforms.
  • Proficiency in authoring detections, tuning rules, developing enrichment pipelines, and improving alert routing.
  • Demonstrated experience building and executing incident-response playbooks and containment and eradication plans.
  • Experience conducting post-incident reviews and root-cause analyses and delivering corrective action plans to engineering teams.
  • Scripting skills in Python, PowerShell, or Bash for automation, enrichment, and data analysis.
  • Excellent written communication skills, including case documentation and executive-ready incident summaries
  • Proficient in authoring detections, rule tuning, enrichment pipelines, and alert routing.
  • Demonstrated capability in building and executing IR playbooks and containment/eradication plans.
  • Experience conducting post-incident reviews and RCAs, and delivering corrective action plans to engineering teams.
  • Scripting skills (Python/PowerShell/Bash) for automation, enrichment, and data wrangling.
  • Excellent written communication for case documentation and executive-ready incident summaries.

DesiredSkillsandAbilities

  • Demonstrates the ability to influence technical direction and cross-functional outcomes through expertise and sound judgment, without formal people-management responsibility.
  • Transforms noisy telemetry into actionable signals.
  • Is detail-oriented and disciplined in organizing information, developing repeatable playbooks, maintaining clear documentation, and closing feedback loops.
  • Is prepared to mentor other analysts and set standards for SOC communication and delivery.
  • Influences technical direction and cross-functional outcomes through expertise and sound judgment.
  • Is comfortable presenting complex technical information to the CISO and other executive leaders.

COMPENSATION

Competitive salary, commensurate with experience, and a generous benefits package that includes medical, dental, vision, life and disability insurance, paid vacation, and 401k plan.

WORKING CONDITIONS

Location: Hybrid (This person can be based out of our Dallas/Frisco, TX or Conshohocken, PA Corporate Headquarters)

NOTE:

The essential responsibilities of this position are described under the headings above. They may be subject to change at any time due to reasonable accommodation or other reasons. Also, this document in no way states or implies that these are the only duties to be performed by the employee occupying this position.

Legends Global is an Equal Opportunity/Affirmative Action employer, and encourages Women, Minorities, Individuals with Disabilities, and protected Veterans to apply. VEVRAA Federal Contractor.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,230,736 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Conshohocken
$183k – $215k per year • Remote (United States)
Python
JavaScript
Java
Ruby
C#
Node JS
AI/ML
AI Agents
DevOps
CI/CD
Docker
Kubernetes
Cybersecurity
OWASP Top 10
SOC 2
SIEM
Apply
$100k – $164k per year • Remote (United States) • 6+ years exp • High School Diploma
DevOps
Azure
AWS
Linux
Windows
Cybersecurity
Volatility
FTK
EnCase
X-Ways Forensics
Apply
$191k – $253k per year • Equity • In office • Secret • Washington
Python
Go
Rust
YARA
AI/ML
Computer Vision
Red Teaming
Cybersecurity
Snort
YARA
Robotics
Sensor Fusion
Apply
$191k – $253k per year • Equity • In office • Secret • Seattle
Python
Go
Rust
YARA
AI/ML
Computer Vision
Red Teaming
Cybersecurity
Snort
YARA
Robotics
Sensor Fusion
Apply
$191k – $253k per year • Equity • In office • Secret • Costa Mesa
Python
Go
Rust
YARA
AI/ML
Computer Vision
Red Teaming
Cybersecurity
Snort
YARA
Robotics
Sensor Fusion
Apply
SaaS Technical Lead 3 days ago
≈ $57k – $117k per year (Estimated) • In office • 8+ years exp
Python
PowerShell
DevOps
Splunk
Dynatrace
AWS
Platform Engineering
Amazon EC2
SLI/SLO/SLA
IAM
Management
ITIL
Apply
≈ $47k – $80k per year (Estimated) • In office • Internship • Bloomington
Python
AI/ML
TensorFlow
PyTorch
Machine Learning
Apply
≈ $69k – $156k per year (Estimated) • In office • TS/SCI • 10+ years exp • Bachelor's Degree • Quantico
PowerShell
DevOps
Windows
VPN
Cybersecurity
Nessus
Active Directory
Management
ServiceNow
ITSM
Apply
≈ $88k – $190k per year (Estimated) • In office • TS/SCI • 10+ years exp • Bachelor's Degree • Quantico
PowerShell
DevOps
Windows
Cybersecurity
Nessus
Active Directory
Management
ServiceNow
ITSM
Apply
≈ $122k – $242k per year (Estimated) • Hybrid • TS/SCI • 10+ years exp • Bachelor's Degree • Quantico
PowerShell
DevOps
Windows Server
AIOps
SLI/SLO/SLA
Windows
Cybersecurity
Nessus
Active Directory
Robotics
Digital Twin
Analytics
Power BI
Management
ServiceNow
ITIL
ITSM
Apply
IT Coordinator 3 days ago
≈ $34k – $70k per year (Estimated) • In office • Full-Time • Associate's Degree • Fishers
DevOps
Windows
Wi-Fi
Management
Microsoft Office
Apply
≈ $30k – $72k per year (Estimated) • In office • Part-Time • High School Diploma • Abilene
Apply
≈ $66k – $132k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • United States
Apply
≈ $53k – $105k per year (Estimated) • In office • Full-Time • 5+ years exp • Glendale
DevOps
Windows
Management
Outlook
Microsoft Office
Apply
Accounting Manager 3 days ago
≈ $45k – $94k per year (Estimated) • In office • Full-Time • 3+ years exp • Shreveport
Assembly
Apply
Director, Red Team 2 days ago
≈ $107k – $237k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Plano • Conshohocken
AI/ML
Red Teaming
Cybersecurity
MITRE ATT&CK
Apply
≈ $40k – $95k per year (Estimated) • In office • High School Diploma • Conshohocken
Apply
CDL Driver 11 hours ago
≈ $40k – $95k per year (Estimated) • In office • High School Diploma • Conshohocken
Apply
≈ $141k – $265k per year (Estimated) • Hybrid • Conshohocken
SQL
Apply
$119k – $148k per year • Hybrid • Full-Time • Bachelor's Degree • New York • Arlington • Conshohocken
Management
Microsoft Project
Microsoft Teams
Apply
See all jobs
This is one of many
1,230,736 more open roles from verified company boards, updated every day.