Cyber Program Manager

Springfield, VA

Job Description:

XOR Security is currently seeking a highly technical, hands-on Cyber Program Manager with advanced skillsets in cyber security, to lead an Agency-level Focused Operations (FO) team at DHS. The FO program is part of a purple team that provides comprehensive Computer Network Defense and Response support through monitoring and analysis of potential threat activity targeting the enterprise.  The Program Manager will lead a technical team of Cyber Hunt SMEs, Threat Emulation SMEs, Security Engineers, Insider Threat SMEs, Cyber Intelligence SMEs, Forensic Analysts, and DevOps SMEs.  To support this vital mission, XOR staff are on the forefront of providing Advanced CND Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets from hostile adversaries.  To ensure the integrity, security and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, analysis and incident response. Strong written and verbal communications skills are a must. The ideal candidate will have a technical background in advanced cyber operations and one or more of the functional areas mentioned above.

Corporate duties such as solution/proposal development, corporate culture development, mentoring employees, supporting recruiting efforts, will also be required.  Program has on-site requirements in Springfield, VA one or more day a week for all staff.

  • Manage a Technical Cyber Program to provide cyber defense capabilities to a federal entity provide comprehensive Computer Network Defense support through security event monitoring, advanced analytics and response, vulnerability assessment, and cyber intelligence activities in support of the Focused Operation (FO) mission. 
  • Conduct quality assurance reviews of all program activities through reviewing of metrics and case analysis
  • Serve as a technical Cyber SME, onsite task lead, and primary point of contact for customer. 
  • Manage 24x7 on-call requirements for staff as needed.
  • Lead efforts Planning, organization, scheduling and progress reporting of various projects.
  • Construct and optimize operational workflows for various functional teams across multiple shifts.
  • Develop, collect, analyze security operational metrics to optimize program performance and minimize organizational risk.
  • Research, evaluate, recommend, and design new security technologies and supporting infrastructure.
  • Develop technical cyber security solutions in response to customer requests or in support of proposal solution development.
  • Provide technical writing support in support of corporate response to RFPs/RFQs from various customers.
  • Support documentation of all business and workflow processes in this area.
  • Provides technical consultation in cyber security capability development.
  • Maintains current knowledge of relevant cyber security and related technologies as assigned.
  • Acts as a subject-matter expert to multiple tasks and/or programs.

Required Qualifications:

  • Bachelor’s Degree in Information Technology, Cyber Security, Computer Science, Computer Engineering, or Electrical Engineering.
  • Experience in mentoring and analysts at all levels.
  • At least 5 years of experience in a cyber network defense environment performing analysis and engineer functions and 2 years of experience as a team lead or operations management.
  • Demonstrated capabilities to analyze highly complex cybersecurity issues, recommend plans of action for Contractor and Government staff, and manage Contractor teams supporting resolution of these issues.
  • Strong analytical and technical skills in computer network defense operations, triage, investigation, and incident response efforts
  • Previous hands-on experience with a Security Information and Event Monitoring (SIEM) platforms and log management systems that perform log collection, analysis, correlation, and alerting.
  • Prior experience and ability to with analyzing information technology security events to discern events that qualify as a legitimate security incident as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
  • Existing Subject Matter Expertise of Advanced Persistent Threat or Emerging Threats.
  • Strong proficiency in report writing and briefing senior management.
  • Excellent organizational and attention to details in tracking activities within various Security Operation workflows.
  • A working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory is also required, and a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.).
  • Experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment.
  • Ability to work on-call during critical incidents or to support coverage requirements (including weekends and holidays when required).
  • Strong documentation and written communication skills with technical report writing experience.
  • Active PMI Project Management Professional (PMP) Certification.
  • Active Top Secret Clearance, with SCI eligibility.

Closing Statement:

XOR Security offers a very competitive benefits package including paid health insurance coverage from first day of employment, 401k with a vested company match, vacation and supplemental insurance benefits.

XOR Security is an Equal Opportunity Employer (EOE). M/F/D/V.

Citizenship Clearance Requirement
Applicants selected may be subject to a government security investigation - Applicants must meet eligibility requirements – US CITIZENSHIP REQUIRED.

 

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Active Directory Analytics Clearance Computer Science Cyber defense DevOps DNS Incident response Linux Monitoring SIEM SMTP SQL Top Secret Top Secret Clearance Windows

Perks/benefits: 401(k) matching Health care Team events

Region: North America
Country: United States
Job stats:  5  0  0
Category: Leadership Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.