Unknown Company
washington, dc • Posted 4 days ago
Onsite Full Time IT & Technology

K&A Technologies LLC is a small business specializing in cybersecurity and mission IT support for federal customers. With expertise in SOC operations, cyber defense, security monitoring, and incident response, we help government agencies strengthen their cyber defenses and improve operational performance. Our hands‑on federal experience and mission‑focused approach ensure high‑quality, reliable, and responsive support tailored to meet evolving cybersecurity needs. Committed to excellence, we strive to protect critical systems and drive process improvements in every engagement.

Position Overview

K&A Technologies LLC is seeking a SOC Manager to oversee security operations, team performance, incident escalation, reporting quality, and continuous improvement across a cybersecurity operations environment.

This role requires a strong SOC leadership background, practical technical knowledge, and the ability to guide analysts through security investigations while maintaining high standards for timeliness, accuracy, and communication.

Key Responsibilities

  • Manage day-to-day SOC operations, including workload tracking, alert review, escalations, handoffs, and operational reporting.
  • Lead analysts and shift personnel to ensure cybersecurity events are reviewed, documented, and escalated appropriately.
  • Monitor ticket queues, open actions, aging items, and operational risks to help ensure timely response.
  • Review incident reports, investigative summaries, root cause analysis, and leadership updates for accuracy, completeness, and clarity.
  • Support response to high-priority alerts, escalated investigations, and coordinated security activity.
  • Coordinate with technical teams and leadership to support incident handling, reporting, and follow-up actions.
  • Ensure staff follow established procedures, escalation paths, documentation standards, and incident handling processes.
  • Identify staffing gaps, recurring quality issues, training needs, process weaknesses, and improvement opportunities.
  • Provide status updates, metrics, briefings, and recommendations to leadership and stakeholders.
  • Support continuous improvement of SOC workflows, analyst readiness, reporting quality, and operational effectiveness.

Required Qualifications

  • 8+ years of cybersecurity experience, including SOC operations, cyber defense, incident response, or security monitoring.
  • 3+ years leading SOC teams, shift operations, incident response teams, or cyber operations personnel.
  • Experience managing security operations, including staffing, escalation, handoffs, workload tracking, and performance expectations.
  • Strong understanding of alert triage, incident escalation, containment coordination, root cause analysis, cyber reporting, and SOC procedures.
  • Experience with enterprise security and workflow tools such as SIEM, SOAR, ITSM, EDR, network security, identity, email security, and threat intelligence platforms.
  • Familiarity with NIST incident response guidance, MITRE ATT&CK, ITIL-based service management, and operational reporting.
  • Strong written and verbal communication skills, including the ability to brief technical and non-technical stakeholders.
  • Ability to manage competing priorities, make sound operational decisions, and lead teams during time-sensitive security events.

Required Certification

  • GCIA, GCIH, or other relevant cybersecurity certification.

#J-18808-Ljbffr
Back to Job Search