Guidehouse
Cyber Consulting
DeputySecurityOperationsCenterManager
Neural analysis suggests this role is
optimal for Manager candidates.
“Deputy Security Operations Center Manager at Guidehouse. Skills: SOC operations, Incident response, Security tooling, Leadership. Lead SOC day-to-day operations. Ensure consistent monitoring”
What You'll Achieve.
Improve detection coverage; Reduce false positives; Accelerate investigation times; Measure SOC effectiveness; Drive operational improvements
Industry & Context.
Root cause analysis; Troubleshooting
Up to 10% travel, Ability to Obtain Public Trust
What They're Looking For.
Must Have
7 years SOC operations, Leading SOC operations teams, Hands-on incident response, Hands-on investigations, Familiarity with SIEM platforms, Familiarity with EDR tools, Familiarity with SOAR automation, Develop detection use cases, Maintain detection use cases, Develop investigative procedures, Maintain investigative procedures, Define SOC metrics, Report SOC metrics, Define SOC KPIs, Report SOC KPIs, Proven leadership skills, Coaching, Performance management, Scheduling for 24/7 operations, Handle escalations under pressure, Bachelor's degree or equivalent experience
Nice to Have
CISSP certification, CISM certification, GIAC certification, Splunk experience, Elastic experience, QRadar experience, Cloud-native security tools experience, AWS security tools experience, Azure security tools experience, GCP security tools experience, Healthcare industry background, Regulated industries background, HIPAA compliance knowledge, Python scripting skills, PowerShell scripting skills, Threat hunting experience, MITRE ATT&CK framework application, Proactive detection engineering
What You'll Do.
Lead SOC day-to-day operations
Ensure consistent monitoring
Ensure reliable detection
Ensure reliable response
Supervise SOC analysts
Manage shift staffing
Manage escalation procedures
Coordinate incident response
Drive root cause analysis
Conduct post-incident reviews
Operate core SOC tooling
Tune core SOC tooling
Define SOC performance metrics
Collect SOC performance metrics
Report SOC performance metrics
Present operational status
Present operational trends
Partner with threat intelligence
Partner with vulnerability management
Partner with engineering teams
Operationalize threat indicators
Manage vendor relationships
Manage third-party services
Ensure SLA deliverables
How You'll Work.
Team & Collaboration
Internal teams; External stakeholders; Threat intelligence teams; Vulnerability management teams; Engineering teams
Communication Scope
Technical details; Executive leadership
Full Job Description
**_Job Family_ :** Cyber Consulting ** _Travel Required_ :** Up to 10% **_Clearance Required_ :** Ability to Obtain Public Trust ** _What You Will Do:_** * Lead day-to-day operations of the Security Operations Center (SOC), ensuring consistent, reliable monitoring, detection, and response to security incidents across the environment. * Supervise, mentor, and develop SOC analysts and shift leads; manage staffing, scheduling, and escalation procedures for a 24/7 operational model. * Coordinate incident response activities with internal teams and external partners; drive root cause analysis, post-incident reviews, and continuous improvement of playbooks and runbooks. * Operate and tune core SOC tooling (SIEM, EDR, SOAR) to improve detection coverage, reduce false positives, and accelerate investigation times. * Define, collect, and report on SOC performance metrics and KPIs; present operational status and trends to leadership and key stakeholders. * Partner with threat intelligence, vulnerability management, and engineering teams to operationalize threat indicators and harden systems based on observed threats and vulnerabilities. * Manage vendor relationships and third-party security monitoring services, ensuring SLAs and deliverables meet organizational requirements. **_What You Will Need:_** * Minimum of SEVEN (7) years of SOC operations experience; to include specific experience leading SOC operations or security monitoring teams, including hands-on incident response and investigations. * Strong familiarity with SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation. * Demonstrated ability to develop and maintain detection use cases, playbooks, and investigative procedures. * Experience defining and reporting SOC metrics and KPIs to measure effectiveness and drive operational improvements. * Excellent written and verbal communication skills with the ability to communicate technical details to non-technical stakeholders and executiv
Applying for this Deputy Security Operations Center Manager role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Guidehouse?
Real rants from real employees. Read before you apply.