Everforth ECS is seeking a Senior SOC Manager to work remotely.
We are seeking a Senior SOC Manager to continue the modernization of a SOC. The ideal candidate will provide technical and process guidance, establishing common/standard practices and processes, managing and assessing the day to day operation of the SOC, and driving continuous improvement.
Responsibilities Include:
• Lead and manage a 24x7x365 Security Operations Center providing technical oversight.
• Lead staff to proactively identify, prevent and respond to security incidents.
• Implementing and maintaining a comprehensive SOC program leveraging best practices and compliant with client standards and requirements.
• Continue modernization planning and road mapping
• Monitoring, managing, and responding to security events using client’s security information and event management (SEIM) system.
• Performing incident identification and assisting with security policy violations, conducting investigations, reporting/communicating infractions, eradicating/mitigating/remediating IoCs, and performing continuous monitoring.
• Ensure incident identification, assessment, quantification, reporting, communication, mitigation and monitoring.
• Evaluating Common Vulnerabilities and Exposures (CVE) for applicability as a potential internal/external attach vector, developing recommendation to eliminate vulnerability/weakness.
• Provide guidance on active Plans of Action and Milestones (POA&M).
• Monitoring system recovery processes to ensure security features and functions are properly restored and functioning correctly following an outage.
• Ensure compliance to Service Level Agreements (SLA), process adherence and process improvisation to achieve operational objectives and mitigate threats.
• Author and update/revise processes (SOP’s and runbooks) to strengthen the current operational activities; review policies and recommend changes to improve governance.
• Responsible for team management, personnel scheduling, overall use of resources and initiation of corrective action where required for SOC.
• Perform threat management, threat modeling, identify threat vectors and develop use cases for security monitoring.
• Develop reports, dashboards, and metrics for SOC operations and presentation to leadership and clients
• Coordinate with stakeholders to build and maintain positive working relationship.
Salary Range: $185,000 - $200,000
General Description of Benefits
Preferred Qualifications- 8+ years of experience in cybersecurity, security operations, incident response, threat detection, cyber defense, or related technical roles.
- 3+ years of experience leading SOC operations, incident response teams, cyber operations teams, or similar security functions.
- Strong understanding of SOC workflows, alert triage, escalation management, incident response, threat hunting, threat intelligence, detection engineering, and security monitoring.
- Experience overseeing or supporting security tools such as SIEM, SOAR, EDR, NDR, ticketing platforms, and case management systems.
- Demonstrated ability to lead technical teams, coordinate cross-functional response activities, manage priorities, and ensure timely delivery of operational outcomes.
Conducts training and tabletop exercises as necessary for SOC analysts to improve on SOC protocols, operator proficiency and readiness.
- Experience developing or enforcing SOPs, playbooks, runbooks, escalation guides, metrics, reports, and quality-control processes.
- Ability to analyze operational risk, validate incident information, communicate impacts, and brief technical and non-technical stakeholders.
- Excellent written and verbal communication skills, including experience producing operational reports, executive briefings, and incident updates.
Skills Required
- 8+ years of experience in cybersecurity, security operations, incident response, threat detection, cyber defense, or related technical roles.
- 3+ years of experience leading SOC operations, incident response teams, cyber operations teams, or similar security functions.
- Strong understanding of SOC workflows, alert triage, escalation management, incident response, threat hunting, threat intelligence, detection engineering, and security monitoring.
- Experience overseeing or supporting security tools such as SIEM, SOAR, EDR, NDR, ticketing platforms, and case management systems.
- Demonstrated ability to lead technical teams, coordinate cross-functional response activities, manage priorities, and ensure timely delivery of operational outcomes.
- Conducts training and tabletop exercises as necessary for SOC analysts to improve SOC protocols, operator proficiency and readiness.
- Experience developing or enforcing SOPs, playbooks, runbooks, escalation guides, metrics, reports, and quality-control processes.
- Ability to analyze operational risk, validate incident information, communicate impacts, and brief technical and non-technical stakeholders.
- Excellent written and verbal communication skills, including experience producing operational reports, executive briefings, and incident updates.
ECS Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about ECS and has not been reviewed or approved by ECS.
-
Healthcare Strength — ECS advertises multiple national-network medical plan options with HSA eligibility alongside dental and vision coverage. Coverage generally begins quickly and is paired with company-paid short- and long-term disability, adding stability to the health package.
-
Retirement Support — A 401(k) with Safe Harbor and immediate vesting on employer contributions is emphasized, with an employer match available. Access to an employee stock purchase plan via the parent company provides an additional savings avenue.
-
Parental & Family Support — Paid parental leave up to 30 days, adoption assistance, and other family-oriented leaves are highlighted. Feedback suggests these offerings add meaningful value beyond base pay for many roles.
ECS Insights
What We Do
ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries. ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies. Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.






