ICF logo

Security Operations Center (SOC) Manager (Clearance Required) - Future Opportunity

ICFSan Jose, California

$130,687 - $222,169 / year

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Director
Remote
On-site
Compensation
$130,687-$222,169/year
Benefits
Career Development

Job Description

ICF is seeking an experienced Security Operations Center (SOC) Manager to support a Defense Human Resources Activity (DHRA) cybersecurity program. In this role, you will oversee 24/7 SOC operations, lead a team of analysts performing detection, triage, and escalation, and ensure effective coordination of incident response activities. The SOC Manager develops playbooks, implements monitoring and reporting procedures, and provides regular situational awareness updates to Government stakeholders to strengthen the agency’s cyber defense posture.

This is for a potential future opportunity. This position will be based onsite in Seaside, CA.

What You’ll Do

  • Manage day-to-day SOC operations, ensuring continuous monitoring of DHRA networks and systems for security events and anomalies.

  • Lead SOC analysts performing event detection, triage, escalation, and coordination with incident response teams.

  • Develop, implement, and maintain SOC standard operating procedures (SOPs), playbooks, and escalation protocols.

  • Ensure timely and accurate analysis of alerts from SIEM, endpoint, and network monitoring tools.

  • Coordinate with cybersecurity, IT operations, and RMF teams to ensure an integrated defense posture and rapid response to incidents.

  • Oversee SOC training programs, ensuring analyst proficiency in threat detection, correlation, and response processes.

  • Conduct root-cause and trend analysis on incidents to identify systemic vulnerabilities and areas for improvement.

  • Prepare daily, weekly, and monthly operational reports and briefings for Government stakeholders.

  • Advise leadership on emerging threats, attack trends, and SOC performance metrics.

  • Drive continuous improvement of monitoring coverage, use cases, and automation within SOC tools and workflows.

Required Qualifications

  • Bachelor’s degree is required

  • 10 years of experience in cybersecurity operations, analysis, and/or incident response, including at least 3 years in a supervisory or team lead capacity.

  • Active DOD security clearance.

  • US Citizenship required by federal contract.

  • One of the following certifications:

    • CBROPS

    • CFR

    • CySA+

    • GCFA

    • GCIA 

    • GICSP

    • Elastic/Splunk certifications

Desired Qualifications

  • Master’s degree in cybersecurity, information systems, or a related technical field.

  • Demonstrated expertise managing SOC or NOC operations in a DoD or Federal environment.

  • Experience with SIEM, IDS/IPS, endpoint detection, and incident response tools.

  • Proven ability to coordinate cross-functional teams during incident response and recovery.

  • Experience managing a 24/7 SOC supporting DoD, IC, or federal missions.

  • Familiarity with tools such as Splunk, ArcSight, Elastic, Tenable, and SOAR platforms.

  • Knowledge of MITRE ATT&CK, DoD Cyber Threat Framework, and NIST 800-61 (Computer Security Incident Handling Guide).

  • Experience implementing SOC metrics, KPIs, and automation strategies.

  • Strong leadership, communication, and presentation skills, with the ability to brief senior Government officials.

#icfns

Working at ICF

ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read our EEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please email Candidateaccommodation@icf.com and we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentto provide needed reasonable accommodations. 

Read more about workplace discrimination rightsor our benefit offerings which are included in the Transparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process. 

However, we understand that some candidates may require accommodation that involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance at candidateaccommodation@icf.com. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed.

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$130,687.00 - $222,169.00California Client Office (CA88)

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Security Operations Center (SOC) Manager (Clearance Required) - Future Opportunity Jobs at ICF

What is the work location for this position at ICF?
This job at ICF is located in San Jose, California, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at ICF?
Candidates can expect a pay range of $130,687 and $222,169 per year.
What employment applies to this position at ICF?
ICF lists this role as a Full-time position.
What experience level is required for this role at ICF?
ICF is looking for a candidate with "Director" experience level.
What benefits are offered by ICF for this role?
ICF offers Career Development for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at ICF?
You can apply for this role at ICF either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.