DMDC SOC Manager

Leidos, Inc.
Alexandria, VA, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Intrusion Detection and Prevention Network Monitoring Security Information and Event Management Software Vulnerability Management HybridCloud Cyber Warfare

Job description

Experteer Overview In this SOC Manager role you lead enterprise cyber defense for a critical DoD information environment. You will steer a large SOC supporting DMDC/DHRA with hybrid cloud and globally distributed infrastructure, driving continuous monitoring, threat detection, and incident response. You’ll mature defense capabilities, develop processes and training, and keep government leadership informed on incidents. This position blends technical leadership with people management to deliver operational excellence in a mission-critical setting. Compensation / Benefits * Provide overall leadership and operational management of the SOC * Lead and develop a high-performing cybersecurity team for monitoring, detection, and incident response * Direct enterprise cyber incident response activities, including containment and reporting * Serve as primary operational interface with Government leadership for SOC status and threats * Develop and improve SOC SOPs, incident response playbooks, and analyst workflows * Set operational priorities and performance metrics to improve SOC maturity and analyst readiness * Coordinate cyber defense activities with Government, contractors, and CSSPs * Oversee continuous monitoring of networks, endpoints, cloud, and applications to mitigate threats * Provide operational recommendations to reduce cyber risk and enhance defenses * Ensure SOC operations align with DoD policies, DoD 8140, RMF, and best practices * Support cybersecurity assessments, planning, and continuous process improvement initiatives * Foster accountability, collaboration, and excellence within the SOC Tasks * Bachelor degree with 10 years of progressive cybersecurity operations experience (or equivalent per equivalency guidelines) * Experience leading an enterprise SOC or equivalent cyber operations function * Experience leading cyber incident response in large, complex environments * Experience managing and developing technical cybersecurity teams * Experience developing SOC procedures, incident playbooks, workflows, and metrics * Strong understanding of SIEM, EDR, network monitoring, vulnerability management, and incident management * Ability to communicate risk and status to senior Government leadership * Active DoD Secret clearance and ability to maintain it * Ability to satisfy DoD 8140 certification requirements * Experience aligned with DCWF Work Role 511 - Cyber Defense Analyst (Advanced) * Willingness to work onsite at Mark Center (Alexandria, VA) or DoD Center-Monterey Bay (Seaside, CA) * Preferred qualifications include prior DoD DMDC/DHRA experience and hybrid cloud proficiency Key requirements *

Requirements

and analyst workflows * Set operational priorities and performance metrics to improve SOC maturity and analyst readiness * Coordinate cyber defense activities with Government, contractors, and CSSPs * Oversee continuous monitoring of networks, endpoints, cloud, and applications to mitigate threats * Provide operational recommendations to reduce cyber risk and enhance defenses * Ensure SOC operations align with DoD policies, DoD 8140, RMF, and best practices * Support cybersecurity assessments, planning, and continuous process improvement initiatives * Foster accountability, collaboration, and excellence within the SOC Tasks * Bachelor degree with 10 years of progressive cybersecurity operations experience (or equivalent per equivalency guidelines) * Experience leading an enterprise SOC or equivalent cyber operations function * Experience leading cyber incident response in large, complex environments * Experience managing and developing technical cybersecurity teams * Experience aaaaaaaa of SOC procedures, incident playbooks, workflows, and metrics * Strong understanding of SIEM, EDR, network monitoring, vulnerability management, and incident management * Ability to communicate risk and status to senior Government leadership * Active DoD Secret clearance and ability to maintain it * Ability to satisfy DoD 8140 certification requirements * Experience aligned with DCWF Work Role 511 - Cyber Defense Analyst (Advanced) * Willingness to work onsite at Mark Center (Alexandria, VA) or DoD Center-Monterey Bay (Seaside, CA) * Preferred qualifications include prior DoD DMDC/DHRA experience and hybrid cloud proficiency Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:06 min

Generating distinct application modules and granular protocol event listeners

Ishan Tiwari · WWC 2021

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · WWC 2025

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:27 min

Exposing ports and monitoring agent network traffic

Manuel de la Peña Manuel de la Peña · WWC Europe 2026

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 · WWC 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all