Apply for this Job
OVERVIEW: We are seeking a seasoned SOC Manager to lead a large-scale, 24/7 Security Operations Center (SOC) in support of a large U.S. Government agency. The SOC includes two major functional units-an operational team (monitoring, detection, and incident response) and a threat analysis team (hunting, malware analysis, intelligence integration). You must possess a SECRET security clearance. This leadership role is ideal for someone who has operated at scale - running SOCs in complex hybrid (on-prem/cloud) environments-and who understands the tactical, strategic, and organizational levers of effective cyber defense. The ideal candidate is a builder, mentor, and communicator who thrives in high-tempo mission spaces and can manage teams across shifts and specializations. GENERAL DUTIES: Manage the full operational lifecycle of a 24/7 SOC supporting a critical federal mission Lead subordinate managers and analysts across SOC Operations and Threat Hunt/Analysis teams Drive strategy, staffing, workflow optimization, and process improvement within the SOC Oversee incident response activities in alignment with all five functions of the NIST Cybersecurity Framework Maintain readiness for hybrid environments (on-premises and cloud infrastructure) Coordinate escalations, shift transitions, and analytic coverage across rotating teams Communicate with senior government leadership, external mission partners, and internal stakeholders Implement and track performance metrics aligned to mission impact and SOC maturity Identify risks, gaps, and opportunities for automation, upskilling, and tooling improvements Ensure compliance with Treasury security policies and federal standards REQUIRED QUALIFICATIONS: Bachelor's degree (or 3 additional years of experience in lieu of degree)
10+ years of SOC management experience, including 5+ years managing hybrid (on-prem/cloud) SOCs 10+ years of experience in incident response across enterprise-scale environments (50,000+ endpoints) Deep familiarity with NIST Cybersecurity Framework and federal incident response protocols Demonstrated success influencing practices and communicating with senior stakeholders Experience leading large, distributed teams in a mission-critical setting DESIRED QUALIFICATIONS: Experience supporting Department of Treasury or other federal financial agencies Familiarity with SIEM, SOAR, EDR, and threat intel platforms Active certification such as CISSP, CISM, or GIAC CLEARANCE: Secret minimum
Date Posted: 22 May 2025
Apply for this Job