MNC InsiderMNC Insider

Advanced Cyber Defense Practice Lead

Booz Allen Hamilton

Advanced Cyber Defense Practice Lead

full-timePosted: Aug 3, 2026Updated: Sep 2, 2026South Holland, The Hague

Job Description

Advanced Cyber Defense Practice LeadThe Opportunity: Guide modern SOC, Cyber Fusion Center, and detection and response transformation initiatives for large multinational enterprises across select international regions. Shape and deliver Booz Allen’s advanced cyber defense capabilities, working closely with CISOs, cyber defense leaders, and security operations teams. Design next‑generation operating models, modernize SOC and Fusion Center capabilities, and strengthen detection engineering and use‑case lifecycle management. Drive adoption of AI‑enabled and agentic SOC concepts in practical, mission‑focused ways. Lead the building or transforming of SOC, CSIRT, or cyber defense functions in complex enterprise environments. Lead client delivery, solution design, proposal shaping, and high‑impact technical engagement. Manage and grow a multidisciplinary team while supporting business development, thought leadership, and overall operational excellence.You Have: 12+ years of experience leading modern SOC, Cyber Fusion Center, CSIRT, cyber defense, or detection and response programs in large, complex enterprise environments5+ years of experience designing and implementing SOC or Cyber Fusion Center operating models, including governance, workflows, escalation paths, coverage models, and performance metricsExperience in detection engineering and use‑case lifecycle management, including triage, tuning, enrichment, prioritization, and measurement across enterprise telemetryExperience with advanced cyber defense tools and enablers such as security telemetry pipelines, AI‑enabled SOC workflows, automation, machine learning, and behavioral or anomaly analyticsExperience advising senior stakeholders, including CISOs and cyber defense leaders, on strategy, maturity, gaps, target‑state design, and actionable improvement roadmapsExperience with SIEM, SOAR, XDR, EDR, NDR, IAM, cloud security platforms, and enterprise security technologiesExperience developing proposals, technical solution narratives, roadmaps, business cases, and client‑ready presentationsExperience coaching and leading multidisciplinary technical teams, and operating effectively in a high‑growth, entrepreneurial environmentAbility to lead client delivery, including solution architecture, technical execution, engagement leadership, and quality oversightBachelor's degreeNice If You Have: Experience translating enterprise cyber defense into client delivery, including executive facilitation, structured problem solving, stakeholder alignment, and polished written and verbal communication, and applying MITRE ATT&CK, cyber kill chain concepts, threat intelligence, threat hunting, purple teaming, adversary emulation, deception, exposure management, or related threat-informed methodologies to improve detection and responseExperience with cyber defense maturity assessments, operating model transformation, Cyber Fusion Center design, CSIRT development, security operations modernization, or managed detection and response transformationExperience with cloud security operations, SaaS security, identity-centric detection and response, OT/ICS cyber defense, or large-scale hybrid enterprise security environmentsExperience across both production security data pipelines and AI/ML-enabled detection or prioritization, including where advanced analytics are useful and where rules, signatures, automation, or human judgment remain necessaryExperience creating thought leadership, presenting at industry events, leading technical workshops, or supporting market-facing cyber defense campaigns that build credibility with CISO and cyber defense communitiesAbility to travel up to 25% of the time based on client and business needs, and adapt global methodologies to regional market needs, regulatory expectations, language requirements, and client operating environmentsAbility to engage senior stakeholders while maintaining credibility with technical SOC and cyber defense teamsPossession of strong executive communication skillsMaster’s degree CISSP, CISM, GIAC, GCIH, GCIA, GMON, GCTI, SANS, CREST, OSCP, Splunk, Cloud Security, or similar CertificationsIdentity StatementAs part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Candidate AI Usage PolicyAI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Locations

  • South Holland, The Hague
  • Cambridgeshire

Skills Required

  • detection engineeringintermediate
  • advanced cyber defense toolsintermediate
  • SIEMintermediate
  • cyber defense maturity assessmentsintermediate
  • cloud security operationsintermediate

Required Qualifications

  • 12+ years of experience leading modern SOC, Cyber Fusion Center, CSIRT, cyber defense, or detection and response programs in large, complex enterprise environments (experience, 12 years)
  • 5+ years of experience designing and implementing SOC or Cyber Fusion Center operating models, including governance, workflows, escalation paths, coverage models, and performance metrics (experience, 5 years)
  • Experience in detection engineering and use‑case lifecycle management, including triage, tuning, enrichment, prioritization, and measurement across enterprise telemetry (experience)
  • Experience with advanced cyber defense tools and enablers such as security telemetry pipelines, AI‑enabled SOC workflows, automation, machine learning, and behavioral or anomaly analytics (experience)
  • Experience advising senior stakeholders, including CISOs and cyber defense leaders, on strategy, maturity, gaps, target‑state design, and actionable improvement roadmaps (experience)
  • Experience with SIEM, SOAR, XDR, EDR, NDR, IAM, cloud security platforms, and enterprise security technologies (experience)
  • Experience developing proposals, technical solution narratives, roadmaps, business cases, and client‑ready presentations (experience)
  • Experience coaching and leading multidisciplinary technical teams, and operating effectively in a high‑growth, entrepreneurial environment (experience)
  • Ability to lead client delivery, including solution architecture, technical execution, engagement leadership, and quality oversight (experience)
  • Bachelor's degree (degree)
  • Experience translating enterprise cyber defense into client delivery, including executive facilitation, structured problem solving, stakeholder alignment, and polished written and verbal communication, and applying MITRE ATT&CK, cyber kill chain concepts, threat intelligence, threat hunting, purple teaming, adversary emulation, deception, exposure management, or related threat-informed methodologies to improve detection and response (experience)
  • Experience with cyber defense maturity assessments, operating model transformation, Cyber Fusion Center design, CSIRT development, security operations modernization, or managed detection and response transformation (experience)
  • Experience with cloud security operations, SaaS security, identity-centric detection and response, OT/ICS cyber defense, or large-scale hybrid enterprise security environments (experience)
  • Experience across both production security data pipelines and AI/ML-enabled detection or prioritization, including where advanced analytics are useful and where rules, signatures, automation, or human judgment remain necessary (experience)
  • Experience creating thought leadership, presenting at industry events, leading technical workshops, or supporting market-facing cyber defense campaigns that build credibility with CISO and cyber defense communities (experience)
  • Ability to travel up to 25% of the time based on client and business needs, and adapt global methodologies to regional market needs, regulatory expectations, language requirements, and client operating environments (experience)
  • Ability to engage senior stakeholders while maintaining credibility with technical SOC and cyber defense teams (experience)
  • Possession of strong executive communication skills (experience)
  • Master’s degree (degree)
  • CISSP, CISM, GIAC, GCIH, GCIA, GMON, GCTI, SANS, CREST, OSCP, Splunk, Cloud Security, or similar Certifications (certification)

Target Your Resume for "Advanced Cyber Defense Practice Lead" , Booz Allen Hamilton

Get personalized recommendations to optimize your resume specifically for Advanced Cyber Defense Practice Lead. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Advanced Cyber Defense Practice Lead" , Booz Allen Hamilton

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

GeneralGeneral

Answer 10 quick questions to check your fit for Advanced Cyber Defense Practice Lead @ Booz Allen Hamilton.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.