Incident Detection/Response Manager (SOC Manager)
$140k - $160kECS Corporate Services
Everforth ECS is seeking an Incident Detection/Response Manager (SOC Manager) who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency. Please Note: This position is contingent upon contract award. Salary Range: $140,000 - $160,000 This flagship initiative unifies 24x7x365 Security Operations (SOC), proactive threat hunting, and advanced Security Engineering and Architecture into a cohesive defensive mission. As a key leader on this program, you will drive the protection of highly sensitive, national-level financial, and personally identifiable information (PII). You will be at the forefront of modernizing the agency's cyber posture, implementing advanced automation, and ensuring continuous operational resilience across a massive, highly complex federal IT enterprise.As the Incident Detection/Response Manager, you will serve as the operational commander of a high-performing, around-the-clock Security Operations Center supporting a major federal civilian agency. You will direct Tier I, II, and III incident response operations, ensuring rapid detection, containment, and recovery across a large-scale federal IT enterprise. Working closely with threat hunting teams, security engineers, agency stakeholders, and external service providers, you will lead the SOC's day-to-day operations while driving continuous improvement in detection capabilities, response procedures, and overall security posture. When incidents occur, you become the incident commander, orchestrating response from the moment a threat is detected through containment, eradication, and recovery. Position Responsibilities: Manage SOC daily activities, including building and maintaining shift schedules and ensuring all documentation, including SOPs, Playbooks, and CONOPS, are current. Manage Tier I, II, and III incident response operations across the federal enterprise, ensuring consistent, high-quality response at every level. Coordinate containment, eradication, and recovery activities during active security incidents, serving as the primary incident commander and coordinating between the SOC team, IT operations, and relevant stakeholders. Lead post-incident reviews and root cause analysis to identify lessons learned and drive continuous improvement in SOC processes and detection capabilities. Ensure compliance with NIST SP 800-61 and federal incident response standard operating procedures across all SOC operations. Manage SIEM event "notables" dashboards, ensuring timely triage, escalation, and resolution of security alerts. Maintain the SOC coverage schedule per shift to ensure 24x7x365 operational readiness. Maintain the call tree, including current contact information for all partner organizations and Cloud Service Providers (CSPs). Apply MITRE ATT&CK framework to map attacker tactics, techniques, and procedures (TTPs) during investigations and incident response activities. Encourage team collaboration by fostering a positive team culture, managing workloads effectively, and supporting professional development. Collaborate with threat hunting, CTI, engineering, and architecture teams to ensure SOC operations are informed by the latest threat intelligence and detection capabilities. Present incident findings, risk recommendations, and SOC performance metrics to both technical teams and senior government officials in a clear, actionable format. Support the development and continuous improvement of a comprehensive enterprise information security program grounded in the latest laws, regulations, and industry best practices. U.S. Citizenship required. 8+ years of IT experience, with 4+ years of dedicated incident response and SOC operations experience. Remote but in close proximity to the NCR. Active Public Trust 6c clearance, or the ability to obtain and maintain one. At least one of the following certifications: GCIH, GCFA, GREM, or equivalent. Hands-on experience with SIEM, SOAR, EDR, CDM, and malware analysis tools and platforms. Strong experience with operating systems and networking fundamentals, including log analysis, traffic analysis, and endpoint forensics. Experience with AWS native services and tools in a federal or enterprise cloud environment. Demonstrated experience managing a SOC overseeing complex, large-scale federal or enterprise IT systems. Strong command of incident response frameworks in general, including NIST SP 800-61, SANS PICERL, and MITRE ATT&CK. Practical malware analysis fundamentals, including static analysis, sandboxing, and Indicator of Compromise (IoC) extraction. Experience with SOAR platforms to automate repetitive elements of incident response and improve analyst efficiency. Proven ability to translate complex technical findings into clear, actionable language for both technical and executive audiences. Strong written and verbal communication skills, with a track record of producing high-quality federal security documentation. #J-18808-Ljbffr ECS Corporate Services
- ...Zachary Piper Solutions seeks a SOC Lead to support a DOE/NNSA program in Manassas, VA on-site. The role directs the SOC team, leads incident response, and improves detection capabilities to protect sensitive assets. Requirements include active TS clearance or DOE...Suggested
$155k - $180k
...vital interests. Title : Incident Response Team Lead Clearance :... ...Cybersecurity Operations Center (SOC) services. The IR team... ...be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection...SuggestedWork experience placementRelocation package- ...operational disciplines that support our managed cybersecurity services for... ...oversee security monitoring, threat detection, investigation, incident response, and continuous improvement across... ...environments. The Director will mentor SOC analysts and detection engineers,...Suggested
$142.9k - $266k
Cyber Incident Response Business Development Senior ManagerThe Opportunity:Join a team to contribute to Booz Allen's growth efforts for its... ...relationships, and growing revenueExperience developing and managing strategic relationships across cyber insurance carriers,...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...critical customer in Reston, VA. As the Incident Response Lead/Advisor, you will advise/mentor/... ...security logs and network traffic to detect anomalies ~ Executing IR playbooks and... ...~ Advising on security policies, risk management, and compliance These roles often require...SuggestedFull timeContract workTemporary workLocal areaImmediate startShift work
$153k - $297k
...Director, Cyber Operations - Cyber Response and Digital Forensics to join... ...:Serve as the lead incident handler and direct end-to-end... ...YARA rules, and EDR and SIEM detection content to improve operational... ...sound judgment, effectively manage stress and work safely and respectfully...H1bLocal areaImmediate start$160.96k - $227.36k
...seeking a highly experienced SOC Lead to play a pivotal role... ...bringing your deep expertise in incident response, threat hunting, and... ...this role, you will not only manage complex security incidents but... ...incident evaluation.Oversee the detection, analysis, and mitigation of...Full timeTemporary workWork at officeRemote workFlexible hours$180k - $250k
...operational disciplines that support our managed cybersecurity services. This leader... ...security monitoring, threat detection, investigation, incident response, and continuous improvement across... ...oversight. The Director will lead SOC analysts and detection engineers and...Remote work$94k - $112k
...Title: Incident Manager III SALARY RANGE: $94,000-$112,000 Onsite... ...engagement kits for cyber incident response and threat hunting... ...experience in threat intelligence, SOC operations, or cyber... ...processes, automation, and threat detection capabilities Author...Contract workLocal area$105.4k - $207.8k
...powerful solutions and managed services that simplify... ...team, you will be responsible for… Act as main interface... ...Hunting teams and SOC analystsAct as escalation... ...signatures for future detection of similar samplesProvide... ...feedback/guidance on incident tickets on trends,...Local areaVisa sponsorshipShift workRotating shift- ...Leidos LLC is seeking a Senior Incident Response Analyst to support the DHS CISA Security Operations Center (SOC) program. The role focuses on coordinating investigations, analyzing events, and developing incident response playbooks across Windows and Linux environments...
- ...customer to provide support for onsite incident response to civilian Government agencies and critical... ...are seeking a Cyber Shift Incident Manager to support this critical customer... ...Apply cybersecurity concepts to the detection and defense of intrusions into small, and...Contract workImmediate startShift work
- Booz Allen Hamilton seeks a Cloud Cyber Incident Response Manager to lead the cloud DFIR leadership team, directing strategic incident response across cloud environments and ensuring investigations are conducted in alignment with client, regulatory, and business requirements...
$100k - $115k
...Technical Success Manager Darktrace is a global... ...that Adaptive AI could detect and respond to novel,... ...are energized by that responsibility. We work across teams... ...with security engineers, SOC analysts, system administrators... ...threat detection, or incident response use cases is...Work at officeLocal area3 days per week- ...customer to provide support for onsite incident response to civilian Government agencies and critical... ...We are seeking a Cyber Shift Incident Manager to support this critical customer... ...Applying cybersecurity concepts to the detection and defense of intrusions into small, and...Contract workLocal areaImmediate startFlexible hoursShift work
$99k - $225k
Cyber Environment Detections Vellox Product Manager, SeniorThe Opportunity:The Product team is defining a... ...autonomous detection creation, triage, and response actions that help users resolve... ...adversary activity Experience with incident response, including alert triage, investigation...Full timeContract workPart timeWork at officeLocal areaRemote work- ...next step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite role based out of Arlington, VA....Contract workLocal area
$125k - $145k
...individuals protect their assets and manage risks.We’re also committed to... ...of excellence. The team is responsible for shielding the company’s... ...effectively support detection and response outcomes. This role... ...closely with peer leaders across Incident Response, Global Cyber-risk...Full timeWork at officeImmediate start- ...Triangle Cyber is seeking a Cybersecurity Incident Manager (Day Shift/Onsite) to provide onsite... ...Apply cybersecurity concepts to the detection and defense of intrusions into small and... ...Shift). Must have knowledge of incident response and handling methodologies Must have...Monday to FridayDay shift
$135.88k - $226.46k
...We are currently seeking a Program Manager (NOC/SOC) - TOP SECRET Clearance to join our team... ...Provide executive oversight of major incidents, service-performance issues, transition... ...positively impacting society through responsible innovation. We are one of the world's...Temporary workFor contractorsFor subcontractorWork at officeRemote workFlexible hoursShift workNight shift$177.3k - $216.6k
...operations, science, program management, mission IT and... ...Operations Center.Primary Responsibilities:Mission Monitoring & Real-Time... ...operational status.Ensure timely detection of mission impacts, anomalies... ...to mission-impacting events.Incident & Crisis ManagementServe as...Full timeContract workTemporary workFor contractorsLocal areaImmediate startRelocation packageShift work- ...We are seeking a Senior Manager, Network Operations to lead a global team responsible for network reliability... ...lead through major incidents and run point for the Change... .... Coordinate with SOC, NOC, engineering, security... ...operations for anomaly detection, event correlation,...Full timeLocal areaNight shift
- GDIT is seeking a Sr. Scrum Master to lead a 24/7 incident response and production stability team supporting AOUSC CMSO applications. You will coach on SAFe/Scrum and coordinate with product owners and stakeholders to balance incident handling with enhancements. The role...Night shift
- ...a Security Engineer to help build and mature a security organization in Arlington, VA. You will lead and perform incident response, vulnerability management, and security engineering across endpoints, identities, cloud services, and on‑premise systems. You will own runbooks...Full time
- ...Incident Manager III - TS/SCI Arlington, VA Join an outstanding team that offers exciting... ...Description: Incident Manager III Responsibilities: Correlating incident data to... ...cybersecurity concepts to the detection and defense of intrusions into small,...Temporary workFlexible hoursShift work
- ...ManagerWe are seeking a Deputy Program Manager to support the Department of Homeland... ...Experience leading Security Operations Center (SOC) and/or Network Operations Center (NOC... ...cybersecurity, network operations, incident management/response, vulnerability management, or related...Full timeContract workTemporary workLocal areaMonday to FridayNight shiftDay shift
$165k - $185k
...position provides senior-level support in managing cybersecurity, network, and cloud... ...readiness, and workforce requirementsSupport incident response processes and technical... ...knowledge of security operations center (SOC) and network operations center (NOC) proceduresExperience...Work at officeLocal areaNight shift$95k - $145k
...Incident Support Manager CWS seeks an Incident Support Manager to direct incident management operations for the U.S. Customs and Border Protection... ...directs incident management operations, ensuring timely response and resolution of network disruptions affecting CBP mission...Contract workLocal areaNight shift$3,500 per month
...is looking for a Cyber Case Manager . This position will... ...clients in Arlington, VA. Responsibilities Researching and compiling... ...potential Computer Network Defense incidents within the enterprise... ...cybersecurity concepts to the detection and defense of intrusions into...Shift work$155k - $185k
...Security Operations Center Manager Clearance : Active Top Secret... ...monitoring, threat hunting, incident response, digital forensics, and... ...knowing before you apply. A SOC that catches everything but... ...operations center or an equivalent detection and response function, not...Temporary workImmediate startRelocation packageShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Detection/Response Manager (SOC Manager). Be the first to apply!



