Cyber Incident Detection and Response Analyst

2 days ago


Herndon, United States ManTech Full time

Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.

We are seeking a highly skilled and motivated Cyber Incident Detection and Response Analyst to join our Network Operations Security Center (NOSC). You will report to the Lead Cyber Security Incident Response Analyst and be responsible for identifying, analyzing, and responding to cybersecurity threats and incidents to protect DHS infrastructure and data. This role requires expertise in threat detection, incident response, and cybersecurity best practices.

Responsibilities:

  • Provide 24/7 support for incident data flow and response, content, and remediation, and interfaces with other incident response centers in maintaining an understanding of threats, vulnerabilities, and exploits that could impact networks and assets.
  • Monitor network traffic and system logs for signs of cyber threats and suspicious activity.
  • Perform the role of Incident Coordinator for IT Security events requiring focused response, containment, investigation, and remediation.
  • Perform real-time proactive event investigation on various security enforcement systems, such as SIEM, Anti-virus, Internet content filtering/reporting, malcode prevention, Firewalls, IDS & IPS, Web security, antispam, etc.
  • Assist with forensic analysis on hosts supporting investigations.
  • Conduct malware analysis in out of-band environment (static and dynamic), including complex malware.
  • Analyze operational anomalies, network behavior and perform mitigation actions derived from cyber threat monitoring and anomaly analysis, and actively monitor the networks for cybersecurity threats and vulnerabilities.
  • Perform quality assurance on Incident Closures.
  • Assist with Knowledge Management - Standard Operating Procedures and procedural support data.
  • Develop and implement detection use cases and signatures to enhance threat identification capabilities.
  • Respond promptly to security incidents, conducting thorough investigations and mitigating threats.
  • Stay current with emerging threats and vulnerabilities, updating detection and response strategies accordingly.
  • Produce comprehensive incident reports, including root cause analysis and recommendations for future prevention.
  • Work closely with other cybersecurity teams, including threat intelligence, vulnerability management, and risk assessment.
  • Communicate findings and provide actionable recommendations to management and other relevant parties.
  • Participate in cybersecurity exercises and incident response training to maintain a high state of readiness.
  • Continuously assess and improve incident detection and response processes.
  • Provide training and guidance to junior analysts and other team members, support and report to the Cyber Security Incident Response Lead.

Basic Qualifications:

  • An 8570 compliant certification
  • One of the following relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH)
  • A bachelor’s degree in computer science, information technology, cybersecurity, or a related field of study (or equivalent experience).
  • A minimum of (7) seven years of experience in cybersecurity, with a focus on incident detection and response.
  • Proficiency with SIEM tools (e.g., Splunk, ArcSight).
  • Experience with intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and firewalls.
  • Strong understanding of network protocols, operating systems, and security architectures.
  • Familiarity with digital forensics tools and techniques.

Preferred Qualifications:

  • Experience working in a government or defense environment.
  • Familiarity with DHS policies and procedures.
  • Knowledge of broader cybersecurity frameworks (e.g., NIST, ISO 27001).

Clearance Requirements:

  • A Secret security clearance
  • Must be able to pass DHS Suitability
  • Must be able to obtain and maintain a TS/SCI clearance.

Physical Requirements:

  • Must be able to remain in a stationary position for extended periods of time.

  • Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.

  • The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.



  • Herndon, United States ManTech Full time

    Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.We are seeking a highly skilled and motivated SeniorCyber Incident Detection and...


  • Herndon, Virginia, United States ISI Enterprises Full time

    Cybersecurity Leadership OpportunityISI Enterprises is seeking a seasoned Cybersecurity Leader to oversee the design, development, and daily operations of our Security Operations Center (SOC). A critical focus of this role includes integrating Digital Forensics and Incident Response (DFIR) capabilities and developing user and attacker behavior detection...


  • Herndon, Virginia, United States Amazon Full time

    Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform, and we're seeking a skilled Cloud Security Specialist to join our team. With your expertise in threat detection and incident response, you'll help our customers build scalable security solutions that drive business outcomes.In this role, you'll have the...


  • Herndon, Virginia, United States ManTech Full time

    About the Job: ManTech International is seeking a skilled and motivated Cybersecurity Threat Hunter to join our team in the Washington DC area.Description:As a Cybersecurity Threat Hunter, you will play a crucial role in protecting national security while working on innovative projects that offer opportunities for advancement. You will be responsible for...


  • Herndon, United States ManTech Full time

    Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement. We are seeking a highly skilled and motivated Cyber Security Forensics Analyst to...


  • Herndon, Virginia, United States Amazon, Inc. Full time

    Job OverviewAmazon Web Services (AWS) is seeking a skilled Global Incident Response Specialist to join our team. As a key member of our Global Support team, you will be responsible for responding to security incidents and helping customers build threat detection and incident response capabilities using highly scalable computing architectures.About the...


  • Herndon, Virginia, United States Cyber Armor Solutions Full time

    Cyber Armor Solutions is a leading provider of cybersecurity solutions. We are seeking an experienced Intelligence Analyst to join our team.The estimated salary for this position is $120,000 - $180,000 per year.Job DescriptionWe are looking for a highly skilled Intelligence Analyst to support our mission. The successful candidate will have experience in...


  • Herndon, United States Amazon.com, Inc. Full time

    Do you want to work on planetary scale incident response solutions in the cloud? Are you skilled at performing Incident Response activities and helping customers build threat detection and incident response capabilities using highly scalable computin Security, Customer, Associate, Global, Service, Operations, Retail


  • Herndon, United States Parsons Corporation Full time

    Description : Parsons is looking for an amazingly talented Senior Cyber Intelligence Analyst to join our team! This position offers the opportunity for an energetic and motivated candidate to join a dynamic and growing team that solves our customer’s unique mission needs. What You'll Be Doing: Serve as a Cyber Operations support technician...


  • Herndon, Virginia, United States Amazon, Inc. Full time

    Job DescriptionWe are seeking a skilled Cloud Security Incident Response Specialist to join our team at Amazon, Inc. The ideal candidate will have experience in performing incident response activities and helping customers build threat detection and incident response capabilities using highly scalable computing solutions.About the RoleThis is an exciting...


  • Herndon, United States Altus Consulting Corp Full time

    Altus Consulting is seeking a skilled Cyber Security Engineer to analyze, design, and implement security solutions across various client environments. You will collaborate with analysts, stakeholders, and internal teams to ensure comprehensive cyber defense and deliver high-quality solutions that meet client needs and exceed security...


  • Herndon, United States ManTech Full time

    Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement. Currently, ManTech is seeking a motivated, career and customer-oriented Mid-level...


  • Herndon, Virginia, United States Altus Consulting Corp Full time

    Job DescriptionAltus Consulting Corp is seeking a skilled Cyber Security Engineer to analyze, design, and implement security solutions across various client environments.Key Responsibilities:Analyze security requirements and translate them into technical specifications.Design, implement, and test security solutions using industry-standard methodologies and...


  • Herndon, Virginia, United States Amazon Full time

    Amazon Web Services (AWS) is a leading cloud platform that empowers businesses to innovate and grow. As a Cloud Security Incident Responder, you will be part of the AWS Global Service Security team, responsible for establishing scalable security solutions for customers worldwide.The estimated salary for this role is $120,000 - $180,000 per year, depending on...


  • Herndon, Virginia, United States BAE Systems USA Full time

    About the RoleWe are seeking a highly skilled Cyber Security Systems Specialist to join our team at BAE Systems USA. As a key member of our team, you will play a critical role in ensuring the security and integrity of our systems.Job OverviewThe Cyber Security Systems Specialist will be responsible for designing and implementing secure systems, identifying...


  • Herndon, Virginia, United States General Dynamics Information Technology Full time

    Job OverviewWe are seeking a seasoned Cyber Security Director to join our team at General Dynamics Information Technology (GDIT). As a key member of our organization, you will be responsible for leading our cybersecurity services team and ensuring alignment with organizational goals and client needs.About the RoleIn this critical position, you will oversee...


  • Herndon, Virginia, United States Twinn Intelligence Group Full time

    The Cyber Security Project Engineer 3 role at Twinn Intelligence Group involves overseeing the security architecture of advanced cloud-based systems to protect sensitive information, applications, databases, and network security. This position requires expertise in investigating malware incidents, analyzing security events, and documenting virus alerts.Key...


  • Herndon, Virginia, United States Tenica Global Solutions Full time

    {"Cyber Security Project Engineer: Job DescriptionJob Summary: We are seeking a skilled Cyber Security Project Engineer to join our team at Tenica Global Solutions.Responsibilities: Provide IT security engineering, integration services, and solutions;Develop and integrate information security tools;Implement malicious code detection and intrusion detection...


  • Herndon, United States Tenica Global Solutions Full time

    Cyber Security Project Engineer TS/SCI FSPDepartment: Government Customer- Herndon Location: Herndon, VA Cyber Security Project EngineerACTIVE TS/SCI CLEARANCE with FS poly REQUIRED TO BE CONSIDERED FOR THIS POSITION The Cyber Security InfoSec Engineer provides IT security engineering, integration services and solutions. This includes malicious code...


  • Herndon, Virginia, United States Bridge Core Full time

    About Bridge CoreAt Bridge Core, we are committed to delivering high-quality technology solutions that meet our clients' needs. We believe in the importance of innovation and collaboration, and we strive to create an inclusive environment for all team members.Job OverviewWe are seeking a highly skilled Cyber Security SME to join our team. This is a...