Incident Response Professional

5 days ago


Arlington, Virginia, United States Leidos Full time

About the Role

We are seeking a Senior Incident Response Analyst to join our team on the highly visible DHS CISA SOC Program.

Job Summary

The Incident Responder will perform the following:

  • • Coordinate investigation and response efforts throughout the Incident Response lifecycle.
    • Correlate and analyze events and data to determine scope of Cyber Incidents.
    • Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts.
    • Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response.
    • Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks.
    • Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities.
    • Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports.
    • Create metrics and determine Key Performance Indicators to drive maturity of SOC operations.
    • Develop security content such as scripts, signatures, and alerts.

Required Skills and Qualifications

The ideal candidate will possess:

  • • In-depth knowledge of each phase of the Incident Response life cycle.
    • Expertise of Operating Systems (Windows/Linux) operations and artifacts.
    • Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc).
    • Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents.
    • Be familiar with Cyber Kill Chain and have utilized the ATT&CK Framework.
    • Have scripting experience with Python, PowerShell, and/or Bash.
    • Ability to independently prioritize and complete multiple tasks with little to no supervision.
    • Flexible and adaptable self-starter with strong relationship-building skills.
    • Strong problem-solving abilities with an analytic and qualitative eye for reasoning.
    • Strong verbal and written communication skills.
    •Ability to communicate with all levels of audiences (subordinates, peers & leadership).

Estimated Salary: $104,650.00 - $189,175.00

Leidos offers competitive salaries based on qualifications and experience, ensuring employees receive fair compensation for their skills and dedication.



  • Arlington, Virginia, United States TekRecruiter Full time

    About the Role">We are seeking an experienced Incident Response Manager to join our Cyber Defense Center team at TekRecruiter. In this role, you will oversee the day-to-day operations of our center, ensuring all service level objectives are consistently met.">The ideal candidate will have a strong background in cybersecurity, with a focus on incident...


  • Arlington, Virginia, United States Solutions3 Full time

    Incident Response SpecialistSolutions3 LLC is a leading provider of advanced technical assistance and cybersecurity services to the U.S. Government. We are currently seeking a skilled Incident Response Specialist to support our mission critical development and sustainment program for incident response to Government agencies and critical infrastructure owners...


  • Arlington, Virginia, United States Solutions3 LLC Full time

    Job Title: Cybersecurity Incident Response SpecialistSolutions3 LLC is a premier provider of cybersecurity services to government agencies and critical asset owners. We are seeking an experienced Cybersecurity Incident Response Specialist to join our team.About the Role:We are looking for a highly skilled professional with extensive experience in cyber...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Solutions3 LLC is a leading provider of incident response services to civilian government agencies and critical asset owners. We are currently seeking an experienced Cybersecurity Incident Response Manager to join our team.About the RoleThe Cybersecurity Incident Response Manager will be responsible for performing investigations to characterize the severity...


  • Arlington, Virginia, United States Castalia Systems Full time

    Cyber Action OfficerEstimated Salary:$80,000 - $120,000 per year.Location: Arlington, VA. Job OverviewCastalia Systems is a leading provider of mission-critical solutions to the Federal Government. We are seeking a highly skilled Cyber Action Officer to support our clients in their cybersecurity needs. Job DescriptionThe Cyber Action Officer will be...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title:Cybersecurity Incident Response AnalystDescription:Nightwing seeks a Cybersecurity Incident Response Analyst to support our U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks. The selected candidate will provide immediate investigation and resolution,...


  • Arlington, Virginia, United States PassionHR Full time

    **Job Title:** Cybersecurity Incident Response SpecialistWe are seeking a highly skilled cybersecurity incident response specialist to lead investigations, assess the severity of breaches, develop effective mitigation plans, and assist in restoring services.This role requires expertise in cyber incident management and cybersecurity operations, with a...


  • Arlington, Virginia, United States Leidos Full time

    At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success.We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to doing the right thing for our customers, our people, and our community.Our Mission, Vision, and...


  • Arlington, Virginia, United States Leidos Full time

    Leidos is a leading provider of innovative solutions for the US Government. Our Digital Modernization Sector brings together digital transformation and IT programs to better serve our customers through scale and repeatability.The Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) Program requires a Senior Incident...


  • Arlington, Virginia, United States Leidos Full time

    The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is responsible for monitoring, detecting, analyzing, mitigating, and responding to cyber threats and adversarial activity on the DHS Enterprise. The SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted...


  • Arlington, Virginia, United States Solutions3 Full time

    Solutions3 LLC Cybersecurity JobAt Solutions3 LLC, we are seeking a skilled Cybersecurity Analyst Lead to support our mission-critical incident response program. This program is designed to provide advanced technical assistance, proactive hunting, and rapid onsite incident response to government agencies and critical infrastructure owners who experience...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title:Cybersecurity Incident Management SpecialistAbout the Job:We are seeking a highly skilled Cybersecurity Incident Management Specialist to support our critical customer mission. The selected candidate will be responsible for performing incident triage, researching and compiling known resolution steps, and applying cybersecurity concepts to detect...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Cybersecurity Job Opportunity:We are seeking a Cybersecurity Incident Responder to join our team at Solutions³ LLC. As a key member of our team, you will provide front-line response for digital forensics/incident response (DFIR) and proactively hunt for malicious cyber activity.Responsibilities Include:Analyze identified malicious network activity to...


  • Arlington, Virginia, United States BCMC Full time

    We are seeking a highly skilled Cybersecurity Incident Management Specialist to join our team at Business Computers Management Consulting Group, LLC (BCMC). This role offers an exciting opportunity to work on critical customer missions, providing immediate investigation and resolution of cyber-attacks. As a key member of our team, you will perform...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job OverviewSolutions3 LLC is a leading provider of cybersecurity services, supporting prime contractors and U.S. Government customers to respond to cyber-attacks. We are seeking an experienced Cybersecurity Incident Manager III to join our team.About the RoleThe successful candidate will be responsible for investigating incidents to determine their...


  • Arlington, Virginia, United States Leidos Full time

    About the RoleLeidos is seeking a highly skilled Cybersecurity Threat Response Specialist to join our team on a US Government program responsible for monitoring, detecting, analyzing, mitigating, and responding to cyber threats and adversarial activity.Key ResponsibilitiesCoordinate investigation and response efforts throughout the incident response...


  • Arlington, Virginia, United States Amazon Full time

    Company OverviewAt Amazon, security is at the forefront of maintaining customer trust and delivering exceptional customer experiences.


  • Arlington, Virginia, United States Response Inc. Full time

    Unlock Your Potential as a Verizon Sales Account ProfessionalWe're Response Inc., a leader in delivering transformative training experiences that drive performance for our team members and revenue for our clients. Our top performers in the marketing industry have mastered the art of providing quality customer service, driving brand awareness, and creating...


  • Arlington, Virginia, United States Nightwing Full time

    Job DescriptionNightwing is seeking a Network Forensics Analyst to support a critical customer mission providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks. The successful candidate will have a strong background in network investigations, a minimum of 5 years of experience, and relevant...


  • Arlington, Virginia, United States Arlington Independent School District Full time

    Estimated Salary: $60,000 - $80,000 per year.About the JobThis position is responsible for ensuring the safety and security of students, staff, and visitors on campus. The ideal candidate will have excellent communication skills, a strong understanding of emergency response protocols, and the ability to work effectively in a fast-paced...