SOC Cyber Security Manager

General Dynamics Information TechnologyFalls Church, VA
$153,000 - $207,000Onsite

About The Position

At GDIT, we secure and support some of the most challenging government, defense, and intelligence missions. Your work will help make today safer and tomorrow smarter in a culture that values autonomy, collaboration, and high performance. GDIT has an opening for a SOC Cyber Security Manager supporting the Army National Guard (ARNG) on an IT Service Management contract that operates within the ITIL framework. This program delivers and protects ARNG’s global IT services across networking, compute, storage, infrastructure, cybersecurity, applications, hosting, and program management. This role leads the team that defends those services. As the SOC Cyber Security Manager, you’ll combine hands-on technical leadership with people management—overseeing SOC operations, mentoring analysts, and ensuring alignment with ARNG and DoW cybersecurity standards and mission requirements.

Requirements

  • Typically 7+ years in cybersecurity, information assurance, or related fields.
  • 2+ years leading or managing a cyber or SOC team (formal or informal leadership).
  • Strong analytical, problem-solving, and decision-making skills.
  • Proven experience with enterprise security tools (SIEM, IDS/IPS, firewalls, endpoint protection, vulnerability scanners).
  • Demonstrated ability to manage and mentor staff, conduct reviews, and support career development; willingness to complete all required GDIT people manager training.
  • Organized, reliable, able to manage multiple priorities in a fast-paced SOC.
  • Strong customer-service orientation; comfortable with senior military and government stakeholders.
  • Clear verbal and written communication in meetings, briefings, and incident reports.
  • Self-motivated, quick learner, committed to staying current with threats, best practices, and certifications.
  • Able to work under pressure, adapt to changing priorities, and drive continuous improvement.
  • Must hold a baseline certification meeting DoW 8570.01-M IAT Level II (e.g., CompTIA Security+ CE) prior to start.
  • Must obtain a computing environment / CSSP-related certification (e.g., CEH, CCNA-Security, CND) within six months of hire, based on role designation.
  • Active Secret clearance required at time of interview; must be maintained.
  • US Citizenship Required: Yes

Nice To Haves

  • Bachelor’s in cybersecurity, information assurance, computer science, or related field; or equivalent combination of education, certifications/training, and experience.
  • Preferred familiarity with DoW 2875, ACTCS, RMF, and eMASS.
  • Higher-level certifications (e.g., CISSP, CASP+, CISM) are highly desired.

Responsibilities

  • Manage day-to-day SOC operations: monitoring, incident triage, response, and escalation.
  • Lead, coach, and develop SOC analysts, including feedback, performance management, and career development in line with GDIT people manager requirements and training.
  • Maintain SOC procedures, playbooks, and SOPs for consistent, high-quality event response.
  • Set priorities, assign work, and ensure coverage across shifts.
  • Serve as the primary SOC point of contact for ARNG stakeholders and GDIT teams.
  • Oversee and, as needed, perform forensic analysis to identify intrusion indicators and threat actors.
  • Use data from tools such as IDS, firewalls, SIEM, network logs, and endpoint security to analyze events and lead mitigation.
  • Interpret and report events and anomalies per network defense directives, ensuring timely response and reporting.
  • Direct evaluation, testing, recommendation, and maintenance of cybersecurity tools, policies, procedures, and access management.
  • Ensure SOC plans, controls, and procedures align with DoW, Army, NIST, and ARNG cybersecurity standards.
  • Identify risks and exposures, determine root causes, and drive corrective and preventive actions.
  • Refine techniques for risk assessments, compliance audits, and incident investigations.
  • Oversee data correlation and SIEM content design to enable effective threat detection and mapping to users, systems, and threat actors.
  • Coordinate cybersecurity inspections, tests, and reviews with all stakeholders.
  • Oversee ARNG support for eMASS structure and workflow.
  • Coordinate cybersecurity papers and plans with partners such as CYBERCOM, ARCYBER, Air National Guard Cyber, NSA, FBI, DOJ, and DHS.
  • Support enforcement of DoW Cyberspace Workforce Framework and certification programs across the SOC team.
  • Assist ARNG with streamlined processes for eMASS access requests in support of RMF.
  • Lead security architecture and vulnerability reviews with system owners and admins, including scans, configuration reviews, and documentation analysis.
  • Oversee dissemination of approved policy and process documentation for system authorization (DoW, Army, NIST guidance).
  • Collaborate with engineering and operations to recommend hardening and architectural improvements based on SOC findings.
  • Performs other duties as assigned in support of the mission.

Benefits

  • Comprehensive benefits and wellness programs
  • 401(k) with company match
  • Competitive pay
  • Paid time off
  • Variety of medical plan options, some with Health Savings Accounts
  • Dental plan options
  • Vision plan
  • Ability to contribute both pre and post-tax dollars to 401(k) up to the IRS annual limits
  • Full flex work weeks where possible
  • Variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service