Senior SOC Manager: Oracle Security & IR Lead (Secret)
US101 Guidehouse Inc.
Washington (District of Columbia)
On-site
USD 149,000 - 248,000
Full time
4 days ago
Be an early applicant
Application generator
An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Get past ATS filters
Benefits offered by this job
Medical, Dental, Vision
Holidays
Bonus potential
Parental Leave
401(k)
Life Insurance
HSA/FSA & Dependent Care
Learning & Certifications
Mobility Stipend
Job summary
Guidehouse is seeking a seasoned SOC Manager to lead security operations for a Federal Agency, ensuring continuous 24/7 monitoring of critical Oracle-based systems, and coordinating with ISSOs to meet RMF and A&A requirements. The role requires active top-tier certifications, seven-plus years in security, and US citizenship. You will develop detection use cases, run incident response, and report SOC metrics to improve performance; travel up to 10% is expected.
Qualifications
Minimum of seven years in security operations.
Active CISSP, GCIA, or equivalent certification.
U.S. citizenship and ability to obtain SECRET clearance.
Responsibilities
Oversee 24/7 security operations and monitoring.
Lead RMF and A&A activities with ISSOs.
Configure and operate SIEM processes for Oracle systems.
Develop detection use cases, playbooks, and investigative procedures.
Coordinate incident response actions with ISSOs and incident response teams.
Skills
SOC management
SIEM expertise
EDR tools
SOAR automation
Leadership
KPIs & metrics
Technical communication
Incident response coordination
Education
Bachelor's degree
Tools
CISSP/GCIA certification
Job description
Guidehouse is seeking a seasoned SOC Manager to lead security operations for a Federal Agency, ensuring continuous 24/7 monitoring of critical Oracle-based systems, and coordinating with ISSOs to meet RMF and A&A requirements. The role requires active top-tier certifications, seven-plus years in security, and US citizenship. You will develop detection use cases, run incident response, and report SOC metrics to improve performance; travel up to 10% is expected.