1

Security Operations Center Manager Jobs in Virginia

Space Operations Center Manager Belong. Connect. Grow. with KBR ... KBR's National Security Solutions team provides high-end engineering and advanced technology ...

next page

Showing results 1-20

Security Operations Center Manager information

See Virginia salary details

$34.7K

$77.9K

$139.3K

How much do security operations center manager jobs pay per year?

As of Sep 6, 2026, the average yearly pay for security operations center manager in Virginia is $77,906.00, according to ZipRecruiter salary data. Most workers in this role earn between $51,600.00 and $99,600.00 per year, depending on experience, location, and employer.

What is a Security Operations Center Manager?

A Security Operations Center (SOC) Manager is a professional responsible for overseeing the daily operations of a security operations center, where security analysts monitor, detect, and respond to cybersecurity threats. The SOC Manager leads and manages the team, develops security policies and procedures, and ensures the organization’s digital assets are protected from cyber attacks. They also coordinate incident response efforts, manage security tools and technologies, and report on security posture to leadership. Their role is critical in maintaining the overall security and resilience of an organization’s IT infrastructure.

What are the key skills and qualifications needed to thrive as a Security Operations Center Manager?

To thrive as a Security Operations Center (SOC) Manager, you need strong knowledge of cybersecurity principles, incident response, and risk management, typically backed by a degree in information security or computer science and several years of security experience. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications such as CISSP or CISM is highly valued. Leadership, critical thinking, and effective communication are crucial soft skills for managing teams and coordinating responses to threats. These competencies ensure the SOC operates efficiently, mitigates security risks, and maintains organizational resilience against cyber threats.

What are some common challenges faced by Security Operations Center Managers, and how can they be addressed?

Security Operations Center (SOC) Managers often face challenges such as managing high alert volumes, ensuring effective communication between teams, and staying updated with evolving cyber threats. Addressing these challenges involves implementing efficient incident triage processes, fostering a collaborative team environment, and investing in continuous training and automation tools. Regularly reviewing and updating response protocols also helps maintain operational effectiveness and team morale.

What is the difference between Security Operations Center Manager vs Security Analyst?

AspectSecurity Operations Center ManagerSecurity Analyst
CertificationsCISSP, CISM, GIAC certifications often preferredCompTIA Security+, GIAC Security Essentials (GSEC)
Work EnvironmentLeads SOC team, manages security operationsMonitors security alerts, analyzes threats
Employer & Industry UsageCommon in large enterprises, government agenciesFound across various industries, including finance, healthcare

The Security Operations Center Manager oversees the entire security team and operations, focusing on strategy and management. In contrast, the Security Analyst primarily monitors security systems and responds to threats. Both roles require relevant certifications and are integral to cybersecurity teams, but they differ in scope and responsibilities.

What are the most commonly searched types of Security Operations Center jobs in Virginia?

The most popular types of Security Operations Center jobs in Virginia are:

What job categories do people searching Security Operations Center Manager jobs in Virginia look for?

The top searched job categories for Security Operations Center Manager jobs in Virginia are:

What cities in Virginia are hiring for Security Operations Center Manager jobs?

Cities in Virginia with the most Security Operations Center Manager job openings:

Infographic showing various Security Operations Center Manager job openings in Virginia as of August 2026, with employment types broken down into 88% Full Time, 5% Part Time, 2% Temporary, 3% Contract, and 2% Nights. Highlights an 94% In-person, and 6% Remote job distribution, with an average salary of $77,906 per year, or $37.5 per hour.

Security Operations Center Manager (CBP)

Agile Defense

Ashburn, VA • On-site

$120 - $150/hr

Other

Medical, Life, Retirement, PTO

Posted 15 days ago


Job description

About Agile Defense

At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.

Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.

Title: Security Operations Center Manager

Clearance: Active CBP Background Investigation (CBP BI) and EOD strongly preferred. We can begin processing for candidates who do not hold one.

Citizenship: U.S. Citizenship required

Location: Ashburn, VA

Salary Range: [Pending]

Signing Bonus: $10,000 for candidates with an active CBP BI. Payable after 90 days; standard terms apply.

Travel: As needed

The Role

U.S. Customs and Border Protection runs continuous operations across more than 300 land, air, and sea ports of entry, plus Border Patrol stations and the Air and Marine Operations Center. Every system that keeps that mission running, biometric checks against watchlists, apprehension processing, surveillance feeds, is also a target. An intrusion that goes undetected does not just risk data. It risks the same operational capability an outage would take down, except an adversary chose the timing.

You run the security operations center that watches for that. You own its people, process, and performance: how alerts get triaged, how work gets prioritized when everything looks urgent at once, and how the center performs as a whole rather than as a collection of individual analysts. You will work closely with the leads who run insider threat monitoring, threat hunting, incident response, digital forensics, and vulnerability assessment, and you are accountable for how well those functions work together, not just how well each one works alone.

One thing is worth knowing before you apply. A SOC that catches everything but cannot tell leadership what happened in terms they can act on has not actually done its job. Managing up and out is as much a part of this role as managing the floor.

What Success Looks Like

Objective 1: Run a SOC that catches what matters and does not drown in what does not

  • Alert volume gets triaged fast enough that a real incident does not sit in a queue behind noise.
  • Analysts know what to escalated and what to close, and the standard for that decision is written down rather than tribal knowledge.
  • Recurring false positives get tuned out at the source instead of re-triaged every shift.

Objective 2: Make the SOC's specialist functions work as one operation

  • Insider threat, threat hunt, incident response, forensics, and vulnerability assessment hand work to each other cleanly, without a finding stalling because nobody owned the next step.
  • You can tell which function is under strain before it becomes the SOC's bottleneck.
  • Coverage holds across shifts and gaps in staffing, rather than depending on who happens to be on duty.

Objective 3: Give leadership an accurate picture of the SOC's performance and the program's exposure

  • Reporting to leadership tells them what changed and what it means, not just a count of tickets closed.
  • Risk that needs a decision above your level reaches that decision maker while there is still time to act on it.
  • An incident's real severity and impact get communicated accurately the first time, not revised upward after the fact.

Objective 4: Build a SOC that gets better at its job over time

  • Lessons from real incidents change how the SOC operates, not just what gets written in an after-action report.
  • Analysts get better at their craft under you, not just busier.
  • Standards and playbooks exist for the SOC's recurring work, and they get followed because they hold up under real conditions.
What You Bring

Preferred Experience

  • You have run a security operations center or an equivalent detection and response function, not only worked inside one as an analyst.
  • You have managed a team through a real incident and can describe what you would do differently.
  • You have reported security posture and incidents to non-technical leadership and can describe what changed in how you communicate because of it.
  • You have worked inside a federal or highly regulated security program and know what that adds to the job beyond the technical work.
  • You hold an active CBP BI, a fitness determination at another DHS component, or an active DoD clearance. Any of these shortens your start date.
  • You are comfortable across the disciplines your team covers, insider threat, threat hunting, incident response, forensics, and vulnerability assessment, even where you are not the deepest technical expert in each.
  • Certifications such as CISSP, GCIH, or CISM are useful, but they are not a substitute for having run the function.
A note on timing

We are staffing this program now. If you already hold an active CBP BI and EOD, your start date is short and a $10,000 signing bonus comes with the role, payable after 90 days under standard terms. We would like to talk this week.

If you do not, we can begin processing a CBP BI for you. That takes months rather than weeks, so applying now means joining a pipeline rather than starting immediately. We would rather tell you that up front than have you find out after you apply.

Employee Benefits

Agile's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Learning and Development opportunities as well as other optional benefit elections.

Our Core Values
  • Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
  • Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
  • Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
  • Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
  • Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
  • Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

#J-18808-Ljbffr