ICF is seeking an experienced Security Operations Center (SOC) Manager to support a Defense Human Resources Activity (DHRA) cybersecurity program. In this role, you will oversee 24/7 SOC operations, lead a team of analysts performing detection, triage, and escalation, and ensure effective coordination of incident response activities. The SOC Manager develops playbooks, implements monitoring and reporting procedures, and provides regular situational awareness updates to Government stakeholders to strengthen the agency’s cyber defense posture. What You’ll Do Manage day-to-day SOC operations, ensuring continuous monitoring of DHRA networks and systems for security events and anomalies. Lead SOC analysts performing event detection, triage, escalation, and coordination with incident response teams. Develop, implement, and maintain SOC standard operating procedures (SOPs), playbooks, and escalation protocols. Ensure timely and accurate analysis of alerts from SIEM, endpoint, and network monitoring tools. Coordinate with cybersecurity, IT operations, and RMF teams to ensure an integrated defense posture and rapid response to incidents. Oversee SOC training programs, ensuring analyst proficiency in threat detection, correlation, and response processes. Conduct root-cause and trend analysis on incidents to identify systemic vulnerabilities and areas for improvement. Prepare daily, weekly, and monthly operational reports and briefings for Government stakeholders. Advise leadership on emerging threats, attack trends, and SOC performance metrics. Drive continuous improvement of monitoring coverage, use cases, and automation within SOC tools and workflows.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Manager
Number of Employees
11-50 employees