Current jobs related to Incident Response Specialist with OT/ICS/SCADA Expertise - Arlington, Virginia - Peraton


  • Arlington, Virginia, United States Peraton Full time

    Job Summary:We are seeking an experienced Cybersecurity Incident Response Specialist with OT/ICS/SCADA expertise to join our team in Arlington, VA.Responsibilities:Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within a variety of critical...


  • Arlington, Virginia, United States Agile Defense Full time

    Job Title: Incident Response SpecialistAt Agile Defense, we're committed to delivering innovative solutions that drive results. As an Incident Response Specialist, you'll play a critical role in helping us achieve this goal.Key Responsibilities:Conduct thorough investigations of cybersecurity incidents to identify root causes and develop effective mitigation...


  • Arlington, Virginia, United States BCMC, LLC Full time

    We are seeking a highly skilled Cybersecurity Incident Response Specialist to support our critical customer mission. The ideal candidate will have 5+ years of directly relevant experience in cyber incident management or cybersecurity operations.The Cybersecurity Incident Response Specialist will be responsible for correlating incident data to identify...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cybersecurity Incident Response SpecialistWe are seeking a highly skilled Cybersecurity Incident Response Specialist to support our customer in the detection, response, mitigation, and reporting of cyber threats affecting client networks. This position requires strong analytical and problem-solving skills, as well as the ability to work effectively in a...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cybersecurity Incident Response SpecialistWe are seeking a highly skilled Cybersecurity Incident Response Specialist to join our team at Nine Mind Solutions. As a key member of our cybersecurity team, you will be responsible for supporting our customers in the detection, response, mitigation, and reporting of cyber threats affecting their networks.Key...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job SummarySolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our cybersecurity team, you will be responsible for investigating and responding to cyber incidents, developing mitigation plans, and assisting with the restoration of services.Key ResponsibilitiesCorrelate incident data to identify...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job Title: Incident Manager IIIJob Summary:Solutions³ LLC is seeking a highly skilled Incident Manager III to join our team in supporting our prime contractor and their U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks. The ideal candidate will have a strong...


  • Arlington, Virginia, United States Farfield Systems, Inc Full time

    Farfield Systems, Inc. is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks.The ideal candidate will have 5+ years of directly relevant experience in cyber incident management or cybersecurity...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job SummaryFarfield Systems is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing incident response services to civilian Government agencies and critical asset owners. The ideal candidate will have a strong background in cybersecurity and incident management, with experience in investigating and resolving...


  • Arlington, Virginia, United States BCMC, LLC Full time

    We are seeking a highly skilled Cyber Incident Manager to support our critical customer mission. The ideal candidate will have 5+ years of directly relevant experience in cyber incident management or cybersecurity operations.Key Responsibilities:Correlate incident data to identify specific trends in reported incidentsRecommend defense in depth principles and...


  • Arlington, Virginia, United States Ampcus Full time

    Cybersecurity Vulnerability AnalystAmpcus is seeking a highly skilled Cybersecurity Vulnerability Analyst to join our team. As a Cybersecurity Vulnerability Analyst, you will play a critical role in analyzing and mitigating cybersecurity vulnerabilities to reduce the risk of cyber attacks.Responsibilities:Conduct thorough vulnerability assessments and risk...


  • Arlington, Virginia, United States Nightwing Full time

    About the Role:Nightwing is seeking a highly skilled Cybersecurity Incident Management Specialist to support our critical customer mission. As a Cybersecurity Incident Management Specialist, you will be responsible for managing reported incidents, providing a single point of service for incident customer organizations throughout the incident life cycle of a...


  • Arlington, Virginia, United States Peraton Full time

    Cybersecurity Incident Analyst - Notification SpecialistPeraton is seeking a highly skilled Cybersecurity Incident Analyst - Notification Specialist to join our Federal Strategic Cyber program. As a key member of our team, you will be responsible for monitoring and reviewing multiple data sources to identify cybersecurity incidents, threats, and...


  • Arlington, Virginia, United States Peraton Full time

    Cybersecurity Threat Analyst - Notification SpecialistPeraton is seeking a highly skilled Cybersecurity Threat Analyst - Notification Specialist to join our team. As a key member of our cybersecurity team, you will be responsible for monitoring and reviewing multiple data sources, including intelligence, media, and law enforcement reporting, to identify...


  • Arlington, Virginia, United States Peraton Full time

    Cyber Incident Analyst - Notification SpecialistThis role serves as the Notification Specialist monitoring and reviewing multiple data sources, including intelligence, media, and law enforcement reporting, to identify cybersecurity incidents, threats, and vulnerabilities on behalf of the Cybersecurity and Infrastructure Security Agency (CISA).Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryWe are seeking a highly skilled Deputy Cyber Incident Response Team Manager to join our team at Argo Cyber Systems. As a key member of our Cyber Defense Mission, you will play a critical role in ensuring exceptional service for our managed services customers and driving employee engagement for our CIRT staff members.Key ResponsibilitiesSupport the...


  • Arlington, Virginia, United States Capital Power Full time

    About Capital PowerCapital Power is a growth-oriented North American energy transition company headquartered in Edmonton, Alberta. We deliver reliable, affordable, and decarbonized electricity solutions that communities can depend on.Job SummaryWe are seeking a Senior Industrial Network Engineer to join our team in Phoenix. The successful candidate will...


  • Arlington, Virginia, United States Sibylline Americas Full time

    Job Title: Embedded Emergency Relief Coordinator SpecialistWe are seeking a highly skilled and motivated Emergency Relief Coordinator Specialist to join our embedded team supporting our clients GSOC. The ideal candidate will possess excellent communication and problem-solving skills, with the ability to work in a fast-paced environment.Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cybersecurity Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for managing and responding to cybersecurity incidents, ensuring the security and integrity of our systems and data.Key Responsibilities:Correlating incident data to identify...


  • Arlington, Virginia, United States Amazon Full time

    About the RoleAmazon is seeking a highly skilled Security Engineer to join our innovative Information Security team. In this role, you will work within the Amazon Security Incident Response Team (SIRT) to respond to security events, conduct analysis of threats, and provide security services to safeguard highly sensitive data.You will work hands-on with...

Incident Response Specialist with OT/ICS/SCADA Expertise

2 months ago


Arlington, Virginia, United States Peraton Full time
Job Summary

We are seeking an experienced Incident Response Analyst with OT/ICS/SCADA expertise to join our team at Peraton. As a key member of our Federal Strategic Cyber program, you will play a critical role in responding to cybersecurity incidents for ICS/OT/IT environments and providing recommendations to affected entities to prevent the reoccurrence of these incidents within various critical infrastructure sectors.

Responsibilities
  • Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within various critical infrastructure sectors.
  • Apply specific functional knowledge to resolve cybersecurity incidents and perform proactive threat hunts, developing or contributing to solutions to moderate scope and complexity problems.
  • Be involved with highly technical operations and forensic analysis, serving as consultants and continuously advising client decision makers.
  • Provide industry experience and expertise for one or multiple critical infrastructure sectors/sub-sectors, including but not limited to Water, Power, Critical Manufacturing, and Transportation.
  • Follow pre-defined procedures to respond to and escalate incidents.
  • Provide expertise to define procedures for response to customer cyber security incident in the industrial control system environment.
  • Apply traditional incident response and threat hunting tradecraft to industrial control system/critical infrastructure environments, with a deep understanding of the nuance and constraints of industrial environments.
  • Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
  • Maintain accurate records of incident response activities and findings.
  • Prepare and deliver incident reports to management and stakeholders.
  • Be comfortable working in a team environment and collaborating to meet mission goals.
  • Keep current with latest security trends and news to continually improve hunt and incident response operations.
  • Be a self-starter with strong attention to detail and critical thinking ability.
  • Have a strong customer-service orientation with excellent written and oral communication skills.
  • The ability to self-teach and self-test new tools and methodologies, and to problem-solve independently.
  • There is an onsite requirement for minimum one day (1) week, with up to 3 days depending on situational requirements.
  • Estimated 40% travel.
Qualifications
  • Bachelor's degree and 8 years of relevant experience, or Master's degree and 6 years of experience, or PhD and 3 years of experience, or 12 years of experience in lieu of degree.
  • 2 years of Threat Hunting or Digital Forensics & Incident Response (DFIR) experience preferred.
  • 1-2 years of Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / Industrial Control System (ICS) environments.
  • Experience with security site assessments, including but not limited to the analysis of network security architecture, baseline ports, protocols, and services, and characterization of network assets.
  • Scripting in Python, Bash, PowerShell, and/or JavaScript.
  • Experience using a SIEM tool for pattern identification, anomaly detection, and trend analysis.
  • Experience analyzing a variety of industrial control systems network protocols, including but not limited to: ModBus, ENIP/CIP, BACnet, DNP3, etc.
  • Experience with common open source and commercial tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations.
  • Experience with collection and detection tools, including OSS/COTS host-based and network-based tools.
  • U.S. citizenship and an Active Top Secret Security Clearance required.
  • Must be able to obtain a TS/SCI for continued employment.
Benefits

At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily. We're fully committed to the growth of our employees. From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit https://www.peraton.com/ to learn how we're keeping people around the world safe and secure.

Target Salary Range

$112,000 - $179,000. This represents the typical salary range for this position based on experience and other factors.