Everforth ECS is seeking a Cybersecurity Operations Manager to work in our Washington, DC office / remote. The role is contingent upon additional funding.
We are seeking an experienced and driven Cybersecurity Operations Manager to lead two high-impact security teams: Endpoint Management and Threat Intelligence. This is a senior-level position within a mature, full-spectrum security operations organization that spans endpoint security, event monitoring, threat intelligence, and advanced incident response.
In this role, you will carry equal responsibility across both teams. That means leading a group that keeps the enterprise's endpoint environment — servers, workstations, and mobile devices — hardened, well-managed, and continuously improving, while simultaneously guiding analysts who track adversary behavior, process indicators of compromise, and deliver intelligence that shapes the organization's defensive strategy before threats have a chance to land.
This is a role for someone who leads from the front. You will work directly with executive leadership to define acceptable risk thresholds, translate complex technical findings into clear organizational guidance, and ensure both teams are operating with purpose, measurable goals, and a proactive mindset.
Salary Range: $155,000 - $165,000
General Description of Benefits
Endpoint Management
- Expert-level knowledge of enterprise endpoint security across servers, workstations, and mobile devices
- Experience with Mobile Device Management (MDM) and enterprise mobility security
- Proficiency in vulnerability management, patch management, and associated frameworks such as CVSS and CWE
- Working knowledge of Microsoft Active Directory and Group Policy Objects (GPOs)
- Ability to develop, document, and execute repeatable operational metrics for endpoint security
Threat Intelligence
- Strong understanding of threat intelligence operations, platforms, and analytical frameworks
- Hands-on experience with cyber adversary research, indicator of compromise (IOC) processing, and TTP analysis
- Familiarity with adversary emulation, penetration testing, purple teaming, and enterprise risk analysis
- Experience supporting or leading cybersecurity exercise planning
- Ability to produce and deliver actionable intelligence briefings to both technical teams and executive stakeholders
Leadership & Program Management
- Proven experience managing security operations teams in a fast-paced, high-priority environment
- Ability to develop and execute detailed, multi-month resourced project plans with proactive risk tracking and clear stakeholder communication
- Comfortable working across organizational boundaries, including networking, systems administration, and technology support partners
- Able to manage competing priorities, including ad-hoc requests from senior leadership, without losing sight of team objectives
- Experience working directly with executive management to identify, evaluate, and communicate enterprise risk
