
Security Operations Manager
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United States.
• Deliver extensive cybersecurity support services to safeguard critical consular systems and data for a prominent Federal Agency.
• Act as the primary technical authority for all security operations and monitoring tasks under the call order.
• Supervise 24/7 operational coverage.
• Collaborate directly with ISSOs to provide technical security evidence, remediation actions, and operational data in support of RMF and A&A efforts.
• Ensure that security operations activities are consistent with ISSO-approved security baselines and Department policies.
• Implement and manage SIEM processes for Oracle systems covered under the contract.
• Configure SIEM to gather security events from Oracle systems.
• Create correlation rules for security events specific to Oracle.
• Monitor SIEM alerts and investigate security anomalies.
• Supply SIEM data and alerts to ISSOs for incident response coordination.
• Conduct OSINT monitoring for threats specific to Oracle.
• Track Oracle security advisories and vulnerability disclosures.
• Monitor threat intelligence related to Oracle database attacks.
• Provide weekly summaries of threat intelligence to ISSOs.
• Perform digital forensics and log analysis for systems under coverage.
• Analyze Oracle audit logs, AVDF reports, and PUM access logs.
• Investigate security anomalies and suspicious activities.
• Deliver forensic findings to ISSOs and incident response teams.
• Assist in ISSO-led incident response activities.
• Execute technical incident response actions as instructed by ISSO.
• Provide system logs, forensic data, and technical analysis.
• Implement incident containment and remediation strategies as directed by ISSO.
• Document incident response actions and submit them to ISSO for incident reporting.
• Conduct assessments of operational security posture.
• Perform technical security reviews of Oracle system configurations.
• Identify security weaknesses and configuration vulnerabilities.
• Present assessment findings to ISSO for POA&M development.
• Execute security improvements as directed by ISSO.
• Ensure long-term storage of security logs and audit data.
• Retain Oracle audit logs, AVDF data, and PUM access logs in accordance with DOS retention requirements.
• Guarantee log data availability for ISSO-led compliance audits and assessments.
• Provide historical log data to ISSO upon request for correlation and analysis.
• A minimum of SEVEN (7)+ years of overall work experience.
• Bachelor’s degree from an accredited institution.
• Must possess an active CISSP, GCIA, or equivalent certification.
• Must be able to OBTAIN and MAINTAIN a Federal or DoD "SECRET" security clearance; candidates must receive approved adjudication of clearance prior to onboarding with Guidehouse. Preference is given to candidates with an ACTIVE "SECRET" or higher-level clearance.
• US Citizenship is contractually mandated.
• Strong knowledge of SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation.
• Proven capability to develop and maintain detection use cases, playbooks, and investigative procedures.
• Experience in defining and reporting SOC metrics and KPIs to evaluate effectiveness and drive operational enhancements.
• Exceptional written and verbal communication skills with the ability to convey technical details to non-technical stakeholders and executive leadership.
• Demonstrated leadership abilities: coaching, performance management, scheduling for 24/7 operations, and managing escalations under pressure.
• Travel may be required up to 10%.
• A Master’s degree in computer science, IT, cybersecurity, or a related field is preferred.
• Experience working with the Department of State is preferred.
• Medical, Rx, Dental & Vision Insurance.
• Personal and Family Sick Time & Company Paid Holidays.
• Position may qualify for a discretionary variable incentive bonus.
• Parental Leave and Adoption Assistance.
• 401(k) Retirement Plan.
• Basic Life & Supplemental Life Insurance.
• Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts.
• Short-Term & Long-Term Disability Insurance.
• Student Loan PayDown.
• Tuition Reimbursement, Personal Development & Learning Opportunities.
• Skills Development & Certifications.
• Employee Referral Program.
• Corporate Sponsored Events & Community Outreach.
• Emergency Back-Up Childcare Program.
• Mobility Stipend.
• Flexible benefits package.
• Flexible work arrangements.
Live Nation Entertainment
Samsara
Accendra Health
Axians Somnitec AG
Get handpicked remote jobs straight to your inbox weekly.