Security Operations Manager

🔥 18 hours ago

🇺🇸 United States – Remote

💵 $149k - $248k / year

⏰ Full Time

🟠 Senior

🔴 Lead

🛡️ Security Operations

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Guidehouse

Guidehouse

10,000+ employees

Founded 2018

🏥 Healthcare

🎖️ Defense

📦 Logistics

💰 Grant on 2023-02

Healthcare • Defense • Logistics

Guidehouse is a global consultancy offering advisory, digital, and managed services across commercial and public sectors. It is purpose-built to support industries such as national security, financial services, healthcare, energy, and infrastructure. Guidehouse collaborates with leaders to navigate complexity and drives transformational changes that impact the future. Their expertise spans data analytics, digital technologies, risk management, and more, with a strong emphasis on sustainability and innovation.

📋 Description

• Provide comprehensive cybersecurity support services to protect critical consular systems and data for a large Federal Agency. • Serve as the primary technical lead for all security operations and monitoring activities under the call order. • Oversee 24/7 operational coverage. • Coordinate directly with ISSOs to deliver technical security evidence, remediation actions, and operational data supporting RMF and A&A activities. • Ensure security operations activities align with ISSO-approved security baselines and Department policies. • Implement and operate SIEM processes for covered Oracle systems. • Configure SIEM to collect security events from Oracle systems. • Develop correlation rules for Oracle-specific security events. • Monitor SIEM alerts and investigate security anomalies. • Provide SIEM data and alerts to ISSOs for incident response coordination. • Conduct OSINT monitoring for Oracle-specific threats. • Monitor Oracle security advisories and vulnerability disclosures. • Track threat intelligence related to Oracle database attacks. • Provide weekly threat intelligence summaries to ISSOs. • Perform digital forensics and log analysis for covered systems. • Analyze Oracle audit logs, AVDF reports, and PUM access logs. • Investigate security anomalies and suspicious activities. • Provide forensic findings to ISSOs and incident response teams. • Support ISSO-led incident response activities. • Execute technical incident response actions as directed by ISSO. • Provide system logs, forensic data, and technical analysis. • Implement incident containment and remediation measures per ISSO direction. • Document incident response actions and provide them to ISSO for incident reports. • Perform operational security posture assessments. • Conduct technical security reviews of Oracle system configurations. • Identify security weaknesses and configuration vulnerabilities. • Provide assessment findings to ISSO for POA&M development. • Implement ISSO-directed security improvements. • Maintain long-term storage of security logs and audit data. • Retain Oracle audit logs, AVDF data, and PUM access logs per DOS retention requirements. • Ensure log data availability for ISSO-led compliance audits and assessments. • Provide historical log data to ISSO upon request for correlation and analysis.

🎯 Requirements

• Minimum of SEVEN (7)+ years of overall work experience. • Bachelors degree from an accredited university. • Must have active CISSP, GCIA or equivalent certification • Must be able to OBTAIN and MAINTAIN a Federal or DoD "SECRET" security clearance; candidates must obtain approved adjudication of clearance prior to onboarding with Guidehouse. Candidates with an ACTIVE "SECRET" or higher-level clearance are preferred. • US Citizenship is contractually required. • Strong familiarity with SIEM platforms, endpoint detection and response (EDR) tools, and SOAR workflow automation. • Demonstrated ability to develop and maintain detection use cases, playbooks, and investigative procedures. • Experience defining and reporting SOC metrics and KPIs to measure effectiveness and drive operational improvements. • Excellent written and verbal communication skills with the ability to communicate technical details to non-technical stakeholders and executive leadership. • Proven leadership skills: coaching, performance management, scheduling for 24/7 operations, and handling escalations under pressure. • Travel required up to 10%. • Master’s in computer science, IT, cybersecurity or related field preferred. • Experience working with the Department of State preferred.

🏖️ Benefits

• Medical, Rx, Dental & Vision Insurance • Personal and Family Sick Time & Company Paid Holidays • Position may be eligible for a discretionary variable incentive bonus • Parental Leave and Adoption Assistance • 401(k) Retirement Plan • Basic Life & Supplemental Life • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts • Short-Term & Long-Term Disability • Student Loan PayDown • Tuition Reimbursement, Personal Development & Learning Opportunities • Skills Development & Certifications • Employee Referral Program • Corporate Sponsored Events & Community Outreach • Emergency Back-Up Childcare Program • Mobility Stipend • Flexible benefits package • Flexible work arrangements

Apply Now

Similar Jobs

🕒 Yesterday

Vida Health

501 - 1000

🏥 Healthcare

🍽️ Food & Beverage

💼 Consulting

Senior engineering leader overseeing operations, security, reliability, and integrations for Vida’s virtual obesity-care platform. Owning engineering execution and information security for healthcare customers and members.

🕒 Yesterday

AssemblyAI

51 - 200

💼 Consulting

📣 Marketing

📦 Logistics

Security Operations Engineer managing compliance, vulnerability response, and incident operations for AssemblyAI’s Voice AI API. Building automation across the company’s security and GRC program.

🇺🇸 United States – Remote

💵 $180k - $220k / year

💰 $30M Series B on 2022-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

🕒 Yesterday

Calendly

501 - 1000

☁️ SaaS

⚡ Productivity

🏢 Enterprise

Senior security leader scaling product security and security operations for Calendly, a platform helping millions schedule meetings. Leading teams, incident response, detection engineering, and risk programs.

🕒 Yesterday

Tines

51 - 200

💼 Consulting

📦 Logistics

☁️ SaaS

Senior Security Operations Engineer protecting Tines’ AI-powered workflow platform through cloud security, threat detection, and automation. Driving security projects, vulnerability remediation, and incident response across U.S. environments.

🕒 2 days ago

Stripe

1001 - 5000

💳 Fintech

🛍️ eCommerce

🤝 B2B

Stripe Security Incident Response Manager investigating fraud and abuse across its financial infrastructure platform. Leading incident response, mitigation, automation, and cross-functional security improvements.