Security Operations Manager Job at M&s Consulting, Huntsville, AL

UlVXcWhVZ2oreTFOSmtMMFRwbFZVdWVaUEE9PQ==
  • M&s Consulting
  • Huntsville, AL

Job Description

M&S Consulting was conceived in 2002 with the vision of creating highly effective teams of elite consultants to deliver strategic process and technology solutions to enterprise organizations across the US. Our commitment to delivery in complex environments and long-term customer success has merged process and technology into innovative solutions, established deep pockets of expertise, and enabled innovative transformation for evolving businesses.

We have intentionally cultivated steady growth focused on being approachable and helpful to our dearly valued clients and closely cared-for employees. M&S people simply “care hard”, and this reflects in our work products, our interactions, and our culture.

M&S Consulting is seeking a detail-oriented and proactive  Security Operations Manager to join our team. The Cybersecurity Analyst SME will serve as the Security Operations Manager of a 24/7/365 Enterprise Security Operations Center (ESOC) Watch Floor. This is an exciting opportunity to be at the forefront of cybersecurity operations and protect against cyberthreats. The analyst will join our team in Huntsville, AL providing holistic enterprise defensive strategies for enterprise cyber security capabilities implemented within the cyber infrastructure. Actively detecting, monitoring, preventing, and analyzing real-time cybersecurity information, events, and threats.

*This position requires: Active Top-Secret Clearance with eligibility for SCI and you must be on site. This is not a remote position.

Primary Responsibilities:

  • The Security Operations Manager will plan, direct and manage day to day activities of contractor security operations staff
  • Suggest and implement controls for key information security gaps within the customer security infrastructure
  • Ensure timeliness and quality of reporting produced by the security operations staff to stakeholders
  • Instill and reinforce industry best practices in the domains of incident response, cybersecurity analysis, case and knowledge management, and ESOC operations
  • Act as subject matter expert in several security technologies (depth) with ability to lead across enterprise security domains (breadth)
  • Expertly collaborate across multiple disciplines and levels of the organization
  • Multitask with expert organizational skills in a fast-paced environment
  • Demonstrate an open mind, creative thinking, willingness to take calculated risks, and a strong ability to make informed decisions
  • Create job descriptions for new positions and manage annual performance plans
  • Continually mature ESOC operations and capabilities, developing intra-team relationships, and building trust and rapport with external stakeholders
  • Ensure that the ESOC’s standard operation procedures are followed to maintain a high level of security across the organization
  • Keep up-to-date with the latest cybersecurity trends, vulnerabilities, and mitigation techniques to strengthen the organization’s overall security posture.
  • Guide and mentor junior staff

Required Skills:

  • Active Top-Secret Clearance with eligibility for SCI
  • US Citizenship
  • 10+ years of experience as a Cybersecurity professional and in a Security Operations Center environment
  • Experience with Splunk Enterprise Cybersecurity
  • Familiarity with all related aspects of cybersecurity operations and security architecture
  • In-depth knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies.

Preferred Skills:

  • One of the following certifications:
    • GIAC Continuous Monitoring Certification (GMON)
    • GIAC Certified Incident Handler (GCIH)
    • GIAC Certified Forensic Analyst (GCFA)
    • GIAC Certified Intrusion Analyst (GCIA)
    • GIAC Network Forensic Analyst (GNFA)
    • GIAC Cloud Threat Detection (GCTD)
    • GIAC Cloud Forensics Responder (GCFR)
  • CISSP Certification
  • Experience with Microsoft Sentinel
  • 6+ years of supervising and/or managing teams
  • 8+ years of intrusion detection and/or incident handling experience
  • Ability to analyze new attacks and provide guidance to watch floor analysts on detection and response
  • Knowledgeable of the various Intel Frameworks (e.g. Cyber Kill Chain, Diamond Model, MITRE ATT&CK, etc) and able to utilize it in their analysis workflow
  • Experience with Cloud (e.g. o365, Azure, AWS, etc) security monitoring and familiar with cloud threat landscape
  • Experience with FBI, DHS, IC, and DoD Networks.
  • Experience with configuring and operating cybersecurity and networking devices (i.e. routers, firewalls, IDPS)
  • Experience with mitigation development against malicious cyber activity

*M&S Consulting proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a protected veteran, or any other characteristic protected by law.

Job Tags

Full time, For contractors,

Similar Jobs

Eagle Express

Class A CDL OTR DRIVER NEEDED .43-.45cpm NEW EQUIPMENT Job at Eagle Express

Class A CDL OTR DRIVER NEEDED .43-.45cpm NEW EQUIPMENTWE ARE EAGLE EXPRESS INC WE ARE A LOCAL TRUCKING COMPANY BASED OUT OF WESTMINSTER, CO. WE NEED A NEW DRIVER TO FILL ONE OF OUR BRAND NEW 2019 FREIGHTLINER CASCADIAS. WE RUN BETWEEN 2500-4000 MILES PER WEEK. WE ARE... 

Chipton‑Ross Inc

215434 - Pipe Welder Job at Chipton‑Ross Inc

 ...SKILLS/EXPERIENCE): Minimum of five years commercial/naval experience Required Skills: 1.Multi-pass. All position fillet and butt welds using the SMAW (Shielded metal arc) process 2. Ability to fuse inserts and weld carbon steel, stainless steel and copper nickel pipe... 

Redner's Warehouse Market

Regional Loss Prevention Agent Job at Redner's Warehouse Market

 ...years of age ~ Physical ability to stand for extended periods, and to see or hear activity in the store, and perform all functions as set forth above. ~ Must have a full understanding of Civil and Criminal Laws set forth by the police and/or District Justice.... 

TechINT Solutions Group, LLC

Robotics Engineer Job at TechINT Solutions Group, LLC

 ...identify key variables indicative of illicit use or planned illicit use technologies. TechINT is currently seeking a Robotics/Software Engineer to join our Aberdeen Proving Grounds, MD team. Job# TI1527 Job Description We are looking for a Robotics Software Engineer... 

Maxwell Bond

Cyber Security Specialist Job at Maxwell Bond

 ...Maxwell BondExperienced Senior Consultant | Specialising in Cyber Security | UK & US Market | Connecting Top Talent with Leading Organisations...  ...SpecialistSeattle, WA | Hybrid (3 days on-site, 2 remote)Up to $150,000 DOE + BenefitsWere working with a growing, tech...