What are the responsibilities and job description for the Cyber Security Operations Center Director position at SOS International LLC?
SOSi is seeking a Cyber Security Operations Center (CSOC) to join our team in Pearl Harbor, Hawaii. The customer based out of Honolulu, Hawaii creates, manages, and supports IT solutions for USINDOPACOM, its mission and its 5,000 customers throughout the Pacific theater. Our team solves challenging technical problems that enable USINDOPACOM to realize critical and time sensitive C2 strategies.
Essential Job Duties
The CSOC Director is key role in the teams responsible for overseeing and ensuring the protection of USINDOPACOM's IT infrastructure, systems, and data against cyber threats. This role involves leading a team of security, network and systems analysts or administrators, implementing advanced security technologies, developing proactive threat detection and response strategies, and performing real time monitoring and detection. The CSOC Director collaborates with executive leadership, IT, and business units to align cyber security operations with business objectives.
Strategic Leadership & Management:
- Lead and manage the CSOC team, including hiring, training, and mentoring personnel.
- Develop, execute, continuously improve a strategic roadmap for CSOC operations to align with organizational goals and regulatory requirements.
- Establish policies, procedures, and playbooks to enhance security monitoring, incident detection, and response.
- Maintain a culture of continuous improvement through regular training, exercises, and technological advancements.
Security Operations & Incident Response:
- Oversee real-time security monitoring, incident response, and threat hunting activities.
- Ensure rapid detection, analysis, containment, and eradication of cybersecurity threats.
- Lead post-incident reviews, root cause analysis, and lessons learned documentation.
- Contribute to the development and maintenance of the incident response plan and coordinate responses to security incidents, including internal and external stakeholders.
Threat Hunting & Risk Management:
- Refine CSOC operations with the intent to stay ahead of emerging cyber threats, vulnerabilities, and attack techniques.
- Implement proactive threat intelligence and security analytics to improve defense capabilities.
- Work with risk management and compliance teams to ensure adherence to industry standards (e.g., NIST, ISO 27001).
- Conduct threat modeling and tabletop exercises to test the effectiveness of security controls.
Technology & Infrastructure Oversight:
- Manage and optimize CSOC tools, including SIEM, IDS/IPS, and firewalls.
- Manage a team of IT professionals and technicians.
- Ensure seamless integration of security technologies with IT infrastructure.
- Oversee security, system and network logging, monitoring, and alerting processes to minimize false positives and optimize response times.
- Design and implement strategic plans to ensure the IT infrastructure supports USINDOPACOM's mission requirements.
- Evaluate and recommend new security technologies to enhance detection and response capabilities.
Compliance & Reporting:
- Provide regular reporting on security incidents, CSOC performance metrics, and overall risk posture to executive leadership.
- Coordinate with auditors and assessors during security audits and compliance assessments.
Minimum Requirements
- Active Top Secret DoD security clearance with SCI eligibility and US Passport
- Bachelor's degree in Computer Science, Information Security, or a related field
- DoD 8570 IAM-III compliant (CASP, CISSP, CISM)
- 10 years of experience in cybersecurity
- Experience with monitoring network operations to ensure networks are operational and running at peak performance levels
- Strong knowledge of operating systems and system performance metrics
- Strong knowledge of security frameworks and incident response methodologies
- Experience with SIEM, firewalls, IDS/IPS, and other security technologies.
- Hands-on experience managing and responding to security incidents,
- Proven ability to develop and execute security operations strategies.
- Excellent leadership, communication, and crisis management skills.
Preferred Qualifications
- Master’s degree in Computer Science, Information Security, or a related field
- Prior leadership experience in a NOC, SOC or CSOC
Work Environment
- Working conditions are normal for an office environment.
- Fast paced, deadline-oriented environment.
- May require periods of non-traditional working hours including consecutive nights or weekends.
Working at SOSi
All interested individuals will receive consideration and will not be discriminated against for any reason.