Guidehouse

Cyber Consulting

DeputySecurityOperationsCenterManager

$149–248k Hanover, Maryland, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Manager candidates.

The Brief

“Deputy Security Operations Center Manager at Guidehouse. Skills: SOC operations, Incident response, Security tooling, Leadership. Lead SOC day-to-day operations. Ensure consistent monitoring”

What You'll Achieve.

Improve detection coverage; Reduce false positives; Accelerate investigation times; Measure SOC effectiveness; Drive operational improvements

Industry & Context.

Cyber Consulting
Problems you'll solve

Root cause analysis; Troubleshooting

Eligibility Requirements

Up to 10% travel, Ability to Obtain Public Trust

What They're Looking For.

Must Have

7 years SOC operations, Leading SOC operations teams, Hands-on incident response, Hands-on investigations, Familiarity with SIEM platforms, Familiarity with EDR tools, Familiarity with SOAR automation, Develop detection use cases, Maintain detection use cases, Develop investigative procedures, Maintain investigative procedures, Define SOC metrics, Report SOC metrics, Define SOC KPIs, Report SOC KPIs, Proven leadership skills, Coaching, Performance management, Scheduling for 24/7 operations, Handle escalations under pressure, Bachelor's degree or equivalent experience

Nice to Have

CISSP certification, CISM certification, GIAC certification, Splunk experience, Elastic experience, QRadar experience, Cloud-native security tools experience, AWS security tools experience, Azure security tools experience, GCP security tools experience, Healthcare industry background, Regulated industries background, HIPAA compliance knowledge, Python scripting skills, PowerShell scripting skills, Threat hunting experience, MITRE ATT&CK framework application, Proactive detection engineering

What You'll Do.

Lead SOC day-to-day operations

Ensure consistent monitoring

Ensure reliable detection

Ensure reliable response

Supervise SOC analysts

Manage shift staffing

Manage escalation procedures

Coordinate incident response

Drive root cause analysis

Conduct post-incident reviews

Operate core SOC tooling

Tune core SOC tooling

Define SOC performance metrics

Collect SOC performance metrics

Report SOC performance metrics

Present operational status

Present operational trends

Partner with threat intelligence

Partner with vulnerability management

Partner with engineering teams

Operationalize threat indicators

Manage vendor relationships

Manage third-party services

Ensure SLA deliverables

How You'll Work.

Team & Collaboration

Internal teams; External stakeholders; Threat intelligence teams; Vulnerability management teams; Engineering teams

Communication Scope

Technical details; Executive leadership

Full Job Description

**_Job Family_ :** Cyber Consulting ** _Travel Required_ :** Up to 10% **_Clearance Required_ :** Ability to Obtain Public Trust ** _What You Will Do:_** * Lead day-to-day operations of the Security Operations Center (SOC), ensuring consistent, reliable monitoring, detection, and response to security incidents across the environment. * Supervise, mentor, and develop SOC analysts and shift leads; manage staffing, scheduling, and escalation procedures for a 24/7 operational model. * Coordinate incident response activities with internal teams and external partners; drive root cause analysis, post-incident reviews, and continuous improvement of playbooks and runbooks. * Operate and tune core SOC tooling (SIEM, EDR, SOAR) to improve detection coverage, reduce false positives, and accelerate investigation times. * Define, collect, and report on SOC performance metrics and KPIs; present operational status and trends to leadership and key stakeholders. * Partner with threat intelligence, vulnerability management, and engineering teams to operationalize threat indicators and harden systems based on observed threats and vulnerabilities. * Manage vendor relationships and third-party security monitoring services, ensuring SLAs and deliverables meet organizational requirements. **_What You Will Need:_** * Minimum of SEVEN (7) years of SOC operations experience; to include specific experience leading SOC operations or security monitoring teams, including hands-on incident response and investigations. * Strong familiarity with SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation. * Demonstrated ability to develop and maintain detection use cases, playbooks, and investigative procedures. * Experience defining and reporting SOC metrics and KPIs to measure effectiveness and drive operational improvements. * Excellent written and verbal communication skills with the ability to communicate technical details to non-technical stakeholders and executiv

Free ATS check

Applying for this Deputy Security Operations Center Manager role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Guidehouse?

Real rants from real employees. Read before you apply.

Read Company Rants →