Security Operations Manager

atGuidehouseRemoteUS flagUnited StatesFull-timeSecurity OperationsSeniorLead$149k – $248k/year

Posted 6 days ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Deliver extensive cybersecurity support services to safeguard critical consular systems and data for a prominent Federal Agency.

• Act as the primary technical authority for all security operations and monitoring tasks under the call order.

• Supervise 24/7 operational coverage.

• Collaborate directly with ISSOs to provide technical security evidence, remediation actions, and operational data in support of RMF and A&A efforts.

• Ensure that security operations activities are consistent with ISSO-approved security baselines and Department policies.

• Implement and manage SIEM processes for Oracle systems covered under the contract.

• Configure SIEM to gather security events from Oracle systems.

• Create correlation rules for security events specific to Oracle.

• Monitor SIEM alerts and investigate security anomalies.

• Supply SIEM data and alerts to ISSOs for incident response coordination.

• Conduct OSINT monitoring for threats specific to Oracle.

• Track Oracle security advisories and vulnerability disclosures.

• Monitor threat intelligence related to Oracle database attacks.

• Provide weekly summaries of threat intelligence to ISSOs.

• Perform digital forensics and log analysis for systems under coverage.

• Analyze Oracle audit logs, AVDF reports, and PUM access logs.

• Investigate security anomalies and suspicious activities.

• Deliver forensic findings to ISSOs and incident response teams.

• Assist in ISSO-led incident response activities.

• Execute technical incident response actions as instructed by ISSO.

• Provide system logs, forensic data, and technical analysis.

• Implement incident containment and remediation strategies as directed by ISSO.

• Document incident response actions and submit them to ISSO for incident reporting.

• Conduct assessments of operational security posture.

• Perform technical security reviews of Oracle system configurations.

• Identify security weaknesses and configuration vulnerabilities.

• Present assessment findings to ISSO for POA&M development.

• Execute security improvements as directed by ISSO.

• Ensure long-term storage of security logs and audit data.

• Retain Oracle audit logs, AVDF data, and PUM access logs in accordance with DOS retention requirements.

• Guarantee log data availability for ISSO-led compliance audits and assessments.

• Provide historical log data to ISSO upon request for correlation and analysis.


⛳️ Requirements

• A minimum of SEVEN (7)+ years of overall work experience.

• Bachelor’s degree from an accredited institution.

• Must possess an active CISSP, GCIA, or equivalent certification.

• Must be able to OBTAIN and MAINTAIN a Federal or DoD "SECRET" security clearance; candidates must receive approved adjudication of clearance prior to onboarding with Guidehouse. Preference is given to candidates with an ACTIVE "SECRET" or higher-level clearance.

• US Citizenship is contractually mandated.

• Strong knowledge of SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation.

• Proven capability to develop and maintain detection use cases, playbooks, and investigative procedures.

• Experience in defining and reporting SOC metrics and KPIs to evaluate effectiveness and drive operational enhancements.

• Exceptional written and verbal communication skills with the ability to convey technical details to non-technical stakeholders and executive leadership.

• Demonstrated leadership abilities: coaching, performance management, scheduling for 24/7 operations, and managing escalations under pressure.

• Travel may be required up to 10%.

• A Master’s degree in computer science, IT, cybersecurity, or a related field is preferred.

• Experience working with the Department of State is preferred.


🏝️ Benefits

• Medical, Rx, Dental & Vision Insurance.

• Personal and Family Sick Time & Company Paid Holidays.

• Position may qualify for a discretionary variable incentive bonus.

• Parental Leave and Adoption Assistance.

• 401(k) Retirement Plan.

• Basic Life & Supplemental Life Insurance.

• Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts.

• Short-Term & Long-Term Disability Insurance.

• Student Loan PayDown.

• Tuition Reimbursement, Personal Development & Learning Opportunities.

• Skills Development & Certifications.

• Employee Referral Program.

• Corporate Sponsored Events & Community Outreach.

• Emergency Back-Up Childcare Program.

• Mobility Stipend.

• Flexible benefits package.

• Flexible work arrangements.

People also viewed

Live Nation Entertainment10 hours ago

Senior Director – Cyber Security Operations

US flagCalifornia, +2 more statesFull-timeSecurity Operations$188k – $235k/year
ApplyView job
Samsara10 hours ago

Senior Security Operations Engineer

US flagUnited States, +2 more locationsFull-timeSecurity Operations$135.5k – $227.7k/year
ApplyView job
Accendra Health15 hours ago

Security Incident Response Analyst

US flagNorth Carolina, +1 more stateFull-timeSecurity Operations$95k/year
ApplyView job
Axians Somnitec AG2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job
Axians2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job
Axians Somnitec AG2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers