Guidehouse

Cyber Consulting

DeputySecurityOperationsCenterManager

$149–248k Hanover, Maryland, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Manager candidates.

The Brief

“Deputy Security Operations Center Manager at Guidehouse. Skills: Security Operations Center, Incident Response, Security Tooling. Lead SOC day-to-day operations. Ensure consistent monitoring”

What You'll Achieve.

Improve detection coverage; Reduce false positives; Accelerate investigation times

Industry & Context.

Cyber Consulting
Problems you'll solve

Root cause analysis

Eligibility Requirements

Up to 10% travel, Ability to Obtain Public Trust

What They're Looking For.

Must Have

7 years SOC operations, Hands-on incident response, Hands-on investigations, Develop detection use cases, Maintain playbooks, Maintain investigative procedures, Define SOC metrics, Report SOC KPIs, Coach staff, Manage staff performance, Schedule 24/7 operations, Handle escalations under pressure, Bachelor's degree or equivalent experience

Nice to Have

CISSP certification, CISM certification, GIAC certification, Splunk experience, Elastic experience, QRadar experience, Cloud-native security tools experience, AWS experience, Azure experience, GCP experience, Healthcare industry background, Regulated industries background, HIPAA compliance knowledge, Python scripting, PowerShell scripting, Threat hunting experience, MITRE ATT&CK framework application, Proactive detection engineering

What You'll Do.

Lead SOC day-to-day operations

Ensure consistent monitoring

Ensure reliable detection

Ensure reliable response

Supervise SOC analysts

Schedule SOC staffing

Manage escalation procedures

Coordinate incident response

Drive root cause analysis

Conduct post-incident reviews

Improve detection coverage

Reduce false positives

Accelerate investigation times

Define SOC performance metrics

Collect SOC performance metrics

Report SOC performance metrics

Present operational status

Present operational trends

Partner with threat intelligence

Partner with vulnerability management

Partner with engineering teams

Operationalize threat indicators

Manage vendor relationships

Manage third-party services

How You'll Work.

Team & Collaboration

Internal teams; External stakeholders; Leadership; Key stakeholders; Threat intelligence teams; Vulnerability management teams; Engineering teams

Communication Scope

Verbal communication; Written communication; Technical communication

Full Job Description

**_Job Family_ :** Cyber Consulting ** _Travel Required_ :** Up to 10% **_Clearance Required_ :** Ability to Obtain Public Trust ** _What You Will Do:_** * Lead day-to-day operations of the Security Operations Center (SOC), ensuring consistent, reliable monitoring, detection, and response to security incidents across the environment. * Supervise, mentor, and develop SOC analysts and shift leads; manage staffing, scheduling, and escalation procedures for a 24/7 operational model. * Coordinate incident response activities with internal teams and external partners; drive root cause analysis, post-incident reviews, and continuous improvement of playbooks and runbooks. * Operate and tune core SOC tooling (SIEM, EDR, SOAR) to improve detection coverage, reduce false positives, and accelerate investigation times. * Define, collect, and report on SOC performance metrics and KPIs; present operational status and trends to leadership and key stakeholders. * Partner with threat intelligence, vulnerability management, and engineering teams to operationalize threat indicators and harden systems based on observed threats and vulnerabilities. * Manage vendor relationships and third-party security monitoring services, ensuring SLAs and deliverables meet organizational requirements. **_What You Will Need:_** * Minimum of SEVEN (7) years of SOC operations experience; to include specific experience leading SOC operations or security monitoring teams, including hands-on incident response and investigations. * Strong familiarity with SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation. * Demonstrated ability to develop and maintain detection use cases, playbooks, and investigative procedures. * Experience defining and reporting SOC metrics and KPIs to measure effectiveness and drive operational improvements. * Excellent written and verbal communication skills with the ability to communicate technical details to non-technical stakeholders and executiv

Free ATS check

Applying for this Deputy Security Operations Center Manager role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Guidehouse?

Real rants from real employees. Read before you apply.

Read Company Rants →