Demo

HHS - SOC Lead/Incident Response Manager

cFocus Software Incorporated
Rockville, MD Full Time
POSTED ON 1/28/2026 CLOSED ON 4/27/2026

What are the responsibilities and job description for the HHS - SOC Lead/Incident Response Manager position at cFocus Software Incorporated?

cFocus Software seeks a SOC Lead/Incident Response Manager to join our program supporting the Department of Health and Human Services (HHS) This position is remote. This position requires the ability a Public Trust clearance.
Qualifications:
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
  • Minimum 8 years of cybersecurity experience with at least 3 years in SOC or Incident Response leadership.
  • Demonstrated experience managing enterprise SOC operations and incident response programs.
  • Strong knowledge of NIST SP 800-61, NIST SP 800-53, NIST SP 800-37, FISMA, and federal cybersecurity policies.
  • Hands-on experience with SIEM, EDR, SOAR, threat intelligence platforms, and forensic tools.
  • Experience managing incidents involving PII/PHI and regulatory reporting requirements.
  • Ability to communicate complex technical issues to executive and non-technical audiences.
  • Experience operating in a federal or highly regulated environment.
  • Active CISSP, GCIA, GCIH, GCED, CISM, or CEH
Duties:
  • Lead and manage SOC and Incident Response operations in alignment with HRSA Incident Response Plans, SOC SOPs, playbooks, and workflows.
  • Ensure compliance with NIST SP 800-61, FISMA, OMB, DHS CISA, HHS, and HRSA incident response requirements.
  • Oversee incident triage, investigation, containment, remediation, and recovery activities within defined SLAs.
  • Serve as primary escalation point for Critical and High severity incidents, including ransomware and PII/PHI breaches.
  • Coordinate incident response activities with HRSA SOC, CSIRC, system owners, ISSOs, legal counsel, privacy officials, and leadership.
  • Develop, maintain, and continuously improve SOC SOPs, incident response playbooks, workflows, and response guidelines.
  • Manage incident communications, stakeholder notifications, and executive briefings during active incidents.
  • Ensure timely incident reporting, forensic documentation, and post-incident reports.
  • Lead threat hunting, IOC management, detection rule tuning, and SIEM correlation improvement activities.
  • Oversee digital forensic investigations and ensure proper chain-of-custody handling.
  • Monitor SOC tools and infrastructure health; coordinate upgrades, patches, and integrations.
  • Support federal cyber exercises, tabletop exercises, and incident response drills.
  • Ensure 24x7 on-call support coverage and adherence to response SLAs.
  • Provide metrics, dashboards, and reports on SOC performance, incident trends, and threat intelligence.
  • Identify opportunities for automation and efficiency improvements across SOC operations.

Salary.com Estimation for HHS - SOC Lead/Incident Response Manager in Rockville, MD
$224,671 to $278,686
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a HHS - SOC Lead/Incident Response Manager?

Sign up to receive alerts about other jobs on the HHS - SOC Lead/Incident Response Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
This job has expired.
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at cFocus Software Incorporated

  • cFocus Software Incorporated Rockville, MD
  • cFocus Software seeks a Program Manager to join our program supporting the Department of Health and Human Services (HHS) This position is remote. This posi... more
  • 4 Months Ago

  • cFocus Software Incorporated Rockville, MD
  • cFocus Software seeks a Security Control Assessor to join our program supporting the Department of Health and Human Services (HHS) This position is remote.... more
  • 4 Months Ago

  • cFocus Software Incorporated Rockville, MD
  • cFocus Software seeks a Application Security Engineer to join our program supporting the Department of Health and Human Services (HHS) This position is rem... more
  • 4 Months Ago

  • cFocus Software Incorporated Rockville, MD
  • cFocus Software seeks a Cloud Security Engineer/Architect to join our program supporting the Department of Health and Human Services (HHS) This position is... more
  • 4 Months Ago


Not the job you're looking for? Here are some other HHS - SOC Lead/Incident Response Manager jobs in the Rockville, MD area that may be a better fit.

AI Assistant is available now!

Feel free to start your new journey!