Incident Manager

4 months ago


Arlington, United States Solutions³ LLC Full time
Job DescriptionJob DescriptionIncident Manager - II - IMG02
 PIPELINE Position; Base Contract Rates apply

Solutions3 Technologies is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution.  Contract personnel perform investigations to characterize of the severity of breaches, develop mitigation plans, and assist with the restoration of services.  Solutions3 Intelligence & Space (RIS) is seeking a Cyber Threat Analyst to support this critical customer mission. 
 
Responsibilities:
- Researching and compiling known resolution steps or workarounds to enable mitigation of potential Computer Network Defense incidents within the enterprise
- Applying knowledge of the tactics, techniques, and procedures of various criminal, insider, hacktivist, and nation state threat actors to identify and validate threats
- Applying cybersecurity concepts to the detection and defense of intrusions into small, and large-scale IT networks, and conduct cursory analysis of log data
- Conducting cursory analysis of log data
- Monitoring external data sources (e.g., Computer Network Defense vendor sites, Computer Emergency Response Teams [CERTs], SANS, Security Focus) to maintain currency of Computer Network Defense threat condition and determine which security issues may have an impact on the enterprise
- Identifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident
- Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
- Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution
- Working with other components within the organization to obtain and coordinate information pertaining to ongoing incidents.
- Providing support during assigned shifts

Required Skills:
- U.S. Citizenship
- Must have an active TS/SCI clearance
- Must be able to obtain DHS Suitability
- 2+ years of directly relevant experience in cyber incident management or cybersecurity operations
- Knowledge of incident response and handling methodologies
- Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incident
- Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
- Skill in recognizing and categorizing types of vulnerabilities and associated attacks
- Knowledge of basic system administration and operating system hardening techniques
- Knowledge of Computer Network Defense policies, procedures, and regulations
- Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
- Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)
- Must be able to work collaboratively across physical locations

Desired Skills:
- Knowledge of basic system administration and operating system hardening techniques
- Knowledge of Computer Network Defense policies, procedures, and regulations
- Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
- Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)

Required Education:
BS Incident Management, Operations Management, Cybersecurity or related degree.  HS Diploma with 4-6 years of incident management or cyber security experience.

Powered by JazzHR

mTCC9TxsNw



  • Arlington, United States Node.Digital Full time

    Job DescriptionJob DescriptionIncident Manager/Cyber Incident ManagerLocation: Arlington, VAMust have an active Top Secret Security ClearanceNode is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Description**Job Summary**Argo Cyber Systems is seeking a highly skilled Cybersecurity Incident Manager to support our critical customer mission. As a Cybersecurity Incident Manager, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job SummarySolutions³ LLC is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key ResponsibilitiesCorrelate incident data to identify trends...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job DescriptionJob Summary:Solutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager to support our U.S. Government customer in providing incident response services to civilian Government agencies and critical asset owners. The ideal candidate will have a strong background in cybersecurity and incident management, with experience in...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Description**Job Summary**Argo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key Responsibilities:Correlate...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, we continue to shape the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled Cyber...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks.Responsibilities:Correlating incident data to identify specific trends in reported...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job SummaryFarfield Systems is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in assisting federal staff with a broad set of support functions.Key Responsibilities:Research and...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job SummarySolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager to support our prime contractor and their U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks.Key ResponsibilitiesCorrelate incident data to identify specific trends in...


  • Arlington, Virginia, United States ValidaTek Full time

    Job SummaryValidaTek is seeking a skilled Incident Management SME to support our DISA customer. The ideal candidate will have experience in managing the lifecycle of problems, analyzing trend data, and identifying operational gaps. The successful candidate will be responsible for providing problem diagnosis and resolution, ensuring that problem details are...


  • Arlington, Virginia, United States Cayuse Holdings Full time

    OverviewAbout the Company:Cayuse Technologies, established in 2006, serves as a domestic alternative to offshore technology service providers, delivering IT solutions and specialized knowledge to our clients. With a focus on federal markets and missions, Cayuse is recognized as an SBA tribal 8(a) certified entity. Our extensive experience and outstanding...

  • Incident Manager

    4 months ago


    Arlington, United States Farfield Systems Full time

    Job DescriptionJob DescriptionFarfield will assist the Federal staff within the Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), and National Cybersecurity and Assessment and Technical Services (NCATS) branches, with a broad set of support functions.The Hunt and Incident Response Team is DHS’s front line...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Cyber Incident Management AnalystWe are seeking a highly skilled Cyber Incident Management Analyst to join our team at Nightwing. As a Cyber Incident Management Analyst, you will play a critical role in managing reported incidents, providing a single point of service for incident customer organizations throughout the incident life cycle of a high-priority...


  • Arlington, United States ValidaTek Full time

    Company Overview At ValidaTek, we modernize and optimize IT services to solve some of the most critical challenges facing federal civilian and defense agencies. From customers to partners to top-talent employees, ValidaTek puts people first, empowering them to exceed expectations and transform government organizations. Our success starts and ends with our...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, Nightwing is committed to shaping the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, Nightwing is committed to shaping the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly...