Overview
Skills
Job Details
Job Title: SOC Project Manager (Hands-On / Shift-Based Role)
Location: Washington, DC
Job Type: Full-Time
Clearance Requirement: Active TS/SCI
We are looking for a dynamic, hands-on Security Operations Center (SOC) Project Manager to lead 24/7 security operations with both strategic oversight and real-time incident engagement. This role requires someone who thrives in high-pressure environments, is comfortable working shifts alongside SOC analysts, and brings deep technical expertise in incident response, cybersecurity operations, and cloud infrastructure. The ideal candidate will play a critical dual role: ensuring robust day-to-day SOC execution while also leading seamless transitions, knowledge transfer, and operational enhancements.
Key Responsibilities:
- Lead and manage daily SOC operations while actively participating in shift-based monitoring and incident handling.
- Oversee real-time security alert triage, escalation, analysis, containment, eradication, and recovery.
- Support and guide fly-away incident response and Continuity of Operations (COOP) activities.
- Supervise forensic artifact collection and malware analysis.
- Coordinate real-time incident reporting, tracking, and resolution in alignment with approved playbooks and TTPs.
- Maintain updated IR roles, responsibilities, contact rosters, and escalation matrices.
- Develop and maintain incident report templates and distribution workflows.
- Deliver guidance and oversight for advanced forensic and malware analysis procedures.
- Develop and execute a detailed SOC Incoming Transition Plan to ensure seamless service continuity.
- Identify and manage risks to the transition effort and prepare mitigation and contingency plans.
- Assist with architecture and engineering discovery efforts by incoming providers.
- Deliver legacy and current SOC documentation, including logs, processed events, reports, performance metrics, correlation rules, and analyst notes.
- Develop strategic frameworks and guidance for cybersecurity control implementation and operations hardening.
- Provide leadership in adopting best practices to improve application O&M security posture.
- Maintain and update knowledge management repositories, roadmaps, and architecture documentation.
Required Skills & Experience:
- 9+ years of cybersecurity experience with at least 5+ years in a hands-on SOC leadership or project manager role.
- Proven hands-on experience in SOC tools, real-time monitoring, and incident response.
- Experience working in rotating shifts and high-pressure environments.
- Strong knowledge of Microsoft Azure Cloud services, AWS TS (Top Secret) cloud environments.
- In-depth knowledge of cyber defense strategies, frameworks (e.g., NIST, MITRE ATT&CK), and incident response playbooks.
- Strong understanding of malware behavior, forensic techniques, and threat hunting methodologies.
- Familiarity with COOP plans, federal security compliance requirements, and cyber maturity models.
- Strong written and verbal communication skills with experience producing executive-level reports and briefings.
- Preferred Certifications: CISSP, PMP, GCIH, GCIA