DMDC SOC Manager
Listed on 2026-08-10
-
IT/Tech
Cybersecurity, Security Management & Operations
Description Position Overview Security Operations Center (SOC) Manager
Leidos is seeking an experienced cybersecurity operations leader to serve as the Security Operations Center (SOC) Manager supporting the Defense Manpower Data Center (DMDC) and the Defense Human Resources Activity (DHRA) within the Office of the Under Secretary of Defense for Personnel & Readiness (OUSD P&R).
This Key Personnel position provides operational leadership for enterprise cyber defense supporting one of the Department of Defense's most critical information environments. DMDC maintains the Department's largest centralized repository of personnel, manpower, identity, readiness, pay, casualty, personnel security, entitlement, and financial information. The SOC Manager will lead the team responsible for protecting these mission-essential systems through continuous monitoring, cyber threat detection, incident response, and operational excellence.
The selected candidate will provide leadership for Security Operations Center activities supporting a complex enterprise environment that includes approximately 15,000 network and endpoint devices, over 600 Government applications, approximately 100 Risk Management Framework (RMF) authorization boundaries, hybrid cloud environments, globally distributed infrastructure, and multiple cybersecurity service providers supporting worldwide operations.
This role extends beyond daily SOC management. The SOC Manager serves as the operational leader responsible for establishing priorities, maturing cyber defense capabilities, improving operational processes, mentoring cybersecurity professionals, and ensuring Government leadership maintains timely awareness of significant cybersecurity events. Success in this position requires exceptional technical leadership, sound operational judgment, and the ability to lead high-performing teams in a mission-critical environment.
MissionEnvironment
- Approximately 15,000 network and endpoint devices.
- More than 600 Government-owned applications supporting DoD missions.
- Approximately 100 Risk Management Framework (RMF) authorization boundaries.
- Hybrid cloud environments including Oracle Cloud Infrastructure (OCI), Amazon Web Services (AWS), Software-as-a-Service (SaaS), and DISA-hosted capabilities.
- Worldwide enterprise infrastructure supporting personnel, identity, readiness, and mission support operations.
- Multiple Cybersecurity Service Providers (CSSPs) operating across the enterprise.
- Government and contractor-operated environments requiring close coordination between cybersecurity, IT operations, and mission stakeholders..
- Provide overall leadership and operational management of the Security Operations Center (SOC).
- Lead, mentor, and develop a high-performing team of cybersecurity professionals responsible for continuous monitoring, cyber threat detection, incident analysis, and incident response.
- Direct enterprise cyber incident response activities, ensuring rapid detection, analysis, containment, eradication, recovery, and reporting of cybersecurity events.
- Serve as the primary operational interface with Government leadership for SOC activities, ensuring timely communication regarding operational status, emerging threats, and significant cybersecurity incidents.
- Develop, implement, and continuously improve SOC standard operating procedures, incident response playbooks, analyst workflows, and training programs.
- Establish operational priorities and performance metrics that improve SOC effectiveness, operational maturity, and analyst readiness.
- Coordinate cyber defense activities across Government organizations, contractor teams, and external Cybersecurity Service Providers (CSSPs).
- Oversee continuous monitoring of enterprise networks, endpoints, cloud environments, applications, and cybersecurity tools to identify and mitigate evolving threats.
- Provide operational recommendations that reduce enterprise cyber risk and improve defensive capabilities.
- Ensure SOC operations comply with applicable DoD cybersecurity policies, DoD 8140 requirements, Risk Management Framework (RMF) guidance, and industry best practices.
- Support cybersecurity assessments, operational planning activities, and continuous process improvement initiatives.
- Foster a culture of accountability, collaboration, innovation, and operational excellence within the SOC.
This position is designated as Key Personnel under the contract. The selected candidate will serve as the operational lead for Security Operations Center (SOC) activities and is expected to be available at contract start. Because of the critical nature of this role, any future personnel substitutions are subject to Government approval in accordance with contractual requirements.
Work Location: This position supports a hybrid work environment; however, Key Personnel are expected to report to a government site. The selected candidate will be based at either the Mark Center in Alexandria, VA
, or the DoD Center-Monterey Bay (DODC-MB) in…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).