Jobs · Engineering · California

SOC Delivery Management Engineer | Secret Clearance Required

Deloitte · Los Angeles, CA · 2 wk ago
HybridEngineering$113k–$188k/yrFull-time

Our Deloitte AI & Engineering team transforms technology platforms, drives innovation, and helps make a significant impact on our clients' success. You'll work alongside talented professionals reimagining and reengineering operations and processes that are critical to businesses. Your contributions can help clients improve financial performance, accelerate new digital ventures, and fuel growth through innovation.

Responsibilities

  • Support client leaders in establishing SOC operations and coordinating CONUS and OCONUS Cyber Defenders to provide a secure environment that facilitates incident response and escalating for threat hunting activities
  • Lead analysis of network traffic and system logs to identify malicious activity, exploited vulnerabilities, and adversary methods, and help improve SOC processes and response effectiveness
  • Lead on-shift SOC operations across IT and OT monitoring environments, ensuring timely triage, investigation, escalation, and response to security events
  • Supervise analysts, assign work, review investigations, provide coaching, and maintain shift readiness and accountability
  • Oversee the effective use of SIEM, detection, and OT monitoring tools; drive correlation-rule refinement and alert tuning to reduce false positives and improve detection fidelity
  • Ensure team is conducting comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences
  • Lead shift turnover briefings, threat updates, and incident status reporting for stakeholders and adjacent teams
  • Develop, maintain, and improve shift playbooks, escalation procedures, OT response workflows, and analyst knowledge artifacts
  • Track and report operational metrics such as alert volume, false positive rate, MTTD, MTTR, escalation quality, and analyst workload

Skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

About the team

Deloitte's Government & Public Services (GPS) practice - our people, ideas, technology and outcomes - is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Hybrid Cloud Infrastructure offering provides specialized engineering capabilities to design, implement, manage, and operate hybrid cloud environments, modernize networks and AI infrastructure from the core to the edge, and incubate new infrastructure and device services to help clients stay ahead with the latest technology advances.

Qualifications

  • Bachelor's degree in Engineering, Computer Science, Information Systems, Business Administration, or Project Management
  • Active Secret Security Clearance
  • 5+ years of experience in security operations, incident response, or cyber defense, including experience leading analysts or shift operations
  • 3+ years experience in SOC operations, cyber threat analysis, and incident response, with a strong track record or understanding of OCONUS or international project delivery
  • 3+ years experience in SOC monitoring, incident escalation, and cyber investigation across enterprise environments
  • Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system/application vulnerabilities, and compliance with Department of War (DoW) policies and procedures
  • Strong project management, communication, and stakeholder engagement skills
  • Familiarity with DoW cyber operations, clearance environments, and OCONUS delivery if contractually relevant
  • Ability to travel 20%, on average, based on the work you do and the clients and industries/sectors you serve
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future

Preferred Qualifications

  • Preexisting leadership as a contractor or government personnel and familiar with DoW cyber operations
  • Knowledge of Operational Technology (OT) or Industrial Control Systems (ICS)
  • Strong analytical and troubleshooting skills
  • Experience in converged IT/OT SOC operations
  • Familiarity with MITRE ATT&CK and ATT&CK for ICS
  • Familiarity with NIST SP 800-82 and OT security practices
  • Prior military or federal cyber operations leadership, if relevant to the client environment
  • Understands how to utilize knowledge of the latest threats and attack vectors to develop correlation rules for continuous monitoring on various security appliances
  • Assessment of logs to determine if relevant data is present to accelerate against data models to work with existing use cases
  • Certifications such as CISSP, GCIH, GCIA, GRID, CEH, or vendor SIEM certifications
  • Examples of other certifications include: PMP (Project Management Professional) or equivalent, CERT Certified Computer Security Incident Handler, GISF (GIAC Information Security Fundamentals), National Lab based certs. Additional certifications at an equivalent may also be considered.

Pay

A reasonable estimate of the current compensation range for this role in California is $113,000 to $188,400. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Similar jobs