Cyber Security Incident Responder

4 weeks ago


Washington, United States Bespoke Corps LLC Full time

**Position**:
Cybersecurity Service Provider/Incident Response (CSSP/IR) Analyst

**Position Identifier**:
ARLI-CSSP/IR-001

**Position Description**:
**Demonstrated Experience (Minimum 3 years)**:

- Knowledge of Advanced Persistent Threats (APT), network attack patterns, detection techniques, trends, threat actors and techniques for defending a network against these attacks
- Providing detailed triage of CSSP/IR incidents including implementing intrusion detection and prevention signatures
- Conducting active hunting for network intrusions involving manual packet capture analysis, DNS log review, open source and closed source intel analysis
- Creating detailed reports on attack trends and recommended mitigations that are suitable for both senior leaders and technical audiences
- Extensive experience creating detailed reports pertaining to various cybersecurity related concerns or events
- Gathering, analyzing and implementing defenses against Indicators of Compromise (IoCs) gathered from open forums, closed forums, mailing lists and directed research
- Firm and thorough understanding of CSSP/IR tools (i.e., FireEye, Splunk, BlueCoat, HBSS, Bro) as well as a demonstrated ability to identify new and emerging threats
- Ability to collaborate well within a team construct

**Other Skills/Qualifications**:

- Current TS security clearance with current SCI access, or have been granted SCI access within the past 24 months
- DoD 8570 IAT-II or above professional certification (i.e., Security+, CEH, GCIH)
- Knowledge and experience categorizing CSSP/IR incidents with CJCSM 6510 Incident Response Categories
- Experience with creating custom Yara, Snort and HBSS rules as well as scripting languages Python is a plus

**Academic Qualifications**:

- BS in computer science, engineering, mathematics, business or related field of study from an accredited institution. Demonstrated work experience equivalent to the academic qualifications will be considered

**Work Demands and Environment**:

- The work environment and physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to talk or hear.

**Travel**:

- Occasional local travel expected; less than 5%.

**Job Location**:

- Arlington, VA (The Pentagon)

**Work Schedule**:

- Monday - Friday, 7:00am-3:00pm

2

Pay: $100,000.00 - $135,000.00 per year

**Benefits**:

- 401(k)
- Dental insurance
- Health insurance
- Life insurance
- Paid time off
- Professional development assistance
- Referral program
- Retirement plan
- Vision insurance

Experience level:

- 3 years

Schedule:

- 8 hour shift
- Day shift
- Monday to Friday

**Experience**:

- Cybersecurity: 3 years (required)
- Information security: 3 years (required)
- Linux: 1 year (required)

License/Certification:

- IAT Level II (required)

Security clearance:

- Top Secret (required)

Ability to Relocate:

- Washington, DC 20301: Relocate before starting work (required)

Work Location: In person



  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, United States OMW Consulting Full time

    Cyber Incident Response Analyst Washington, DC - On site TS Clearance - SCI eligible $140k-$150k I am partnered with a leading Cyber security consultancy who is looking to hire a Cyber Incident Response Analyst to be based on site in DC for a federal customer. To be considered for this position you will need to have the following skills and experience:...


  • Washington, United States IC-CAP, LLC Full time

    Security Incident Analyst Level 3: Job Description: You'll have the opportunity to build strong lines of cyber defense using cutting-edge technologies. Your work in cyber security at GDIT will have an impact on securing our clients' missions and ensuring we anticipate the threats of tomorrow. The Security Incident Analyst (SIA) is responsible for the...


  • Washington, United States Recruiters Workforce Full time

    About the Opportunity: On behalf of our client, we are currently seeking an experienced Cyber Incident Analyst with advanced knowledge in applying analytics in support of our client's enterprise network cyber defense capabilities As a Cyber Incident Detector you will have the opportunity to build strong lines of cyber defense using cutting-edge technologies....


  • Washington, United States Experis Full time

    Responsibilities are to investigate, analyze, and respond to cyber incidents within the network environment or enclave. Core Tasks: Collect intrusion artifacts (e.g., source code, malware, trojans) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise.Coordinate and provide expert technical support to...


  • Washington, United States IC-CAP, LLC Full time

    This is a future position that may come open but is not open at the present moment. We are willing to prescreen personnel for these positions if you are interested. This position has an alternate location in Colorado Springs, CO. Cyber Security Analyst: Level 5: Investigates, analyzes, and responds to cyber incidents within a network environment or enclave....


  • Washington, United States DAN Solutions Full time

    Job DescriptionJob DescriptionREQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government...


  • Washington, United States Latitude, Inc. Full time

    Job DescriptionJob DescriptionWe are seeking a highly motivated and experienced Cyber Security Systems Engineer to join our dynamic team. The Cyber Security Systems Engineer will be responsible for designing, implementing, and maintaining security systems and protocols to protect our organization's infrastructure and assets from cyber threats. The ideal...


  • Washington, United States DAn Solutions, Inc Full time

    REQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government agencies to record and report...


  • Washington, United States ShorePoint Inc Full time

    Job Description Job Description Salary: Who we are: ShorePoint is a fast-growing, industry recognized, and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard”...


  • Washington, United States Base One Technologies Full time

    Our DC Metro based client is looking for Senior Incident Response Analyst . If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities• In-depth knowledge of each phase of the Incident Response life cycle• Expertise of Operating Systems (Windows/Linux) operations and artifacts• Understanding of...


  • Washington, United States ShorePoint Full time

    Job DescriptionJob DescriptionSalary: Who we are: ShorePoint is a fast-growing, industry recognized, and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard”...


  • Washington, United States ShorePoint Full time

    Job DescriptionJob DescriptionSalary: Who we are: ShorePoint is a fast-growing, industry recognized, and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard”...


  • Washington, United States Cytech Services Full time

    Job DescriptionJob DescriptionInformation System Security Analyst - Principal II - SCA06Cyber Technology Services, Inc. is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address...


  • Washington, United States DAn Solutions Inc Full time

    REQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITE Job Description The Security Incident Analyst (SIA) is responsible for the mitigation of security incidents on DIA information systems. The SIA investigates incidents involving information technology (IT) assets and DIA personnel to the DIA Computer Network Defense...


  • Washington, United States DAN Solutions Full time

    Job DescriptionJob DescriptionREQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEJob DescriptionThe Security Incident Analyst (SIA) is responsible for the mitigation of security incidents on DIA information systems. The SIA investigates incidents involving information technology (IT) assets and DIA personnel to the DIA...


  • Washington, United States DAN Solutions Full time

    Job DescriptionJob DescriptionREQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEJob DescriptionThe Security Incident Analyst (SIA) is responsible for the mitigation of security incidents on DIA information systems. The SIA investigates incidents involving information technology (IT) assets and DIA personnel to the DIA...


  • Washington, United States DAn Solutions Inc Full time

    REQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEJob Description The Security Incident Analyst (SIA) is responsible for the mitigation of security incidents on DIA information systems. The SIA investigates incidents involving information technology (IT) assets and DIA personnel to the DIA Computer Network Defense Center...


  • Washington, United States Enlightened Full time

    Job Description Job Description Senior Cyber Security Analyst Are you passionate about Cyber Security and looking to contribute to meaningful projects that impact our Nation and communities? If so, we are ready to Enlightened you! This is an excellent opportunity to use critical thinking to bring together information from multiple sources to determine if a...