Incident Response Lead

6 hours ago


Washington, Washington, D.C., United States National Guard Employment Network Full time
Job Title: Incident Response Lead

Job Description:

We are seeking an experienced Incident Response Lead to join our team at National Guard Employment Network. As a key member of our Security Operations Center, you will be responsible for leading our weekend shift team in threat monitoring, detection, event analysis, and incident reporting.

Responsibilities:

  • Serve as the first point of escalation for triage of complicated alerts and investigation of incidents on your shift
  • Provide mentorship and guidance to help other analysts learn and grow
  • Manage watch schedules to ensure adequate on-site and remote watch floor coverage
  • Develop reports and deliverables as needed
  • Escalate night shift issues to SOC Manager, including but not limited to analyst performance or behavior issues, tool or system degradation or outages, and concerning alerts or incidents per the escalation plan
  • Provide support for complex computer network exploitation and defense techniques to include deterring, identifying, and investigating computer and network intrusions; providing incident response and remediation support
  • Perform comprehensive computer surveillance/monitoring, identifying vulnerabilities; develop secure network designs and protection strategies, and conduct audits of information security infrastructure
  • Provide technical support for forensics services to include evidence seizure, computer forensic analysis, and data recovery, in support of computer crime investigation
  • Research and maintain proficiency in open and closed-source computer exploitation tools, attack techniques, procedures, and trends
  • Perform research into emerging threat sources and develops threat profiles
  • Provide technical support for a comprehensive risk management program identifying mission-critical processes and systems; current and projected threats; and system vulnerabilities

Requirements:

  • CISSP or CEH certification; additional experience, formal training, certifications, and/or education may be substitutable at the client's discretion
  • Minimum of six (6) years of cybersecurity experience with at least three (3) years in a SOC watch floor analyst or IR role
  • Experience in some of the following SOC tools and technologies: IDS/IPS, EDR, SIEM, XPS, FireEye, RSA Netwitness, Sourcefire (Snort), Silo, etc
  • Strong analytical and organizational skills
  • Strong verbal and written communication skills
  • Experience with MS Word and other MS Office applications

Desired:

  • Bachelor's Degree or higher in Cybersecurity or related is preferred
  • Additional Cybersecurity training and/or certifications are preferred

Location:

This is a hybrid role with expectations of being on the client site a minimum 2 days on site.

Shift:

Tier 2 days, Saturday day shift (12 hours, on site), Sunday day shift (12 hours, on site), plus 2 other days during the week.

Clearance:

Applicable US Government Clearance required



  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:NoneClearance Level Must Be Able to Obtain:NoneSuitability:Public Trust/Other Required:Job Family:Cyber SecurityJob Qualifications:Skills:Cyber Defense, Cybersecurity, Cyber Threat IntelligenceCertifications:Experience:5 + years of related experienceUS Citizenship Required:YesJob...


  • Washington, Washington, D.C., United States Axxum Technologies Full time

    Job OverviewPosition: Lead Incident Response SpecialistKey Responsibilities:Deliver efficient first-line assistance utilizing a service desk ticketing platform, along with phone and email communications.Assist the service desk shift supervisor in daily operational tasks and collaborate with the government Program Manager regarding service desk operational...


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Job Title: Cyber Incident Response Analyst (Senior)cFocus Software Incorporated is seeking a highly skilled Cyber Incident Response Analyst (Senior) to join our team in Washington, DC.Job SummaryWe are looking for a seasoned cybersecurity professional to lead our incident response efforts and provide expert support to our clients. The ideal candidate will...


  • Washington, Washington, D.C., United States Alaka`ina Foundation Family of Companies Full time

    Job Overview The Alaka`ina Foundation Family of Companies is seeking a highly skilled Incident Response Handler to support our government customer in Washington, DC. This is a full-time, on-site position that requires excellent communication skills and the ability to handle sensitive information. Responsibilities * Respond to and manage cybersecurity...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Job Title: Cybersecurity Incident Response SpecialistCritical Solutions is seeking a highly skilled Cybersecurity Incident Response Specialist to join our team. As a key member of our security operations team, you will be responsible for responding to and investigating cybersecurity incidents, working closely with our technical teams to identify and mitigate...


  • Washington, Washington, D.C., United States OneZero Solutions Full time

    Job OverviewAt OneZero Solutions, we prioritize our employees and recognize their essential contributions to our clients and the missions we undertake. Our culture encourages innovative thinking and nurtures teams that are both technically skilled and proficient across a wide array of cyber mission domains. We offer a highly competitive benefits package for...


  • Washington, Washington, D.C., United States OneZero Solutions Full time

    Job OverviewAt OneZero Solutions, we prioritize our employees and recognize their essential contributions to our clients and the missions we undertake. Our company culture encourages innovative thinking and nurtures teams that are technically skilled and proficient across various cyber mission domains. Our full-time employees enjoy a highly competitive...


  • Washington, Washington, D.C., United States Palo Alto Networks Full time

    Job Title: Managing Director, Digital Forensics and Incident ResponseAt Palo Alto Networks, we're seeking a seasoned cybersecurity expert to lead our Digital Forensics and Incident Response team. As a Managing Director, you'll be responsible for driving our incident response practice, providing strategic guidance, and technical oversight to our clients...


  • Washington, Washington, D.C., United States SiriusXM Full time

    About the RoleSiriusXM is seeking a highly skilled Senior Security Incident Response Engineer to join our team. As a key member of our InfoSec department, you will be responsible for receiving and triaging all cyber security incident alerts and escalations, coordinating the actions of First Responders representing the engineering and operations teams of the...


  • Washington, Washington, D.C., United States SiriusXM Full time

    About the RoleSiriusXM is seeking a highly skilled Cybersecurity Incident Response Engineer to join our team. As a key member of our InfoSec department, you will be responsible for receiving and triaging cyber security incident alerts and escalations, coordinating internal incident response efforts, and documenting and reporting on all cyber security...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Cyber Incident Response Analyst Job DescriptionCritical Solutions is seeking a highly skilled Cyber Incident Response Analyst to join our team. As a key member of our Security Operations Center, you will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on any and all threats directed against those systems.You...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Job SummaryCritical Solutions is seeking a highly skilled Cyber Incident Response Analyst to join our team. As a key member of our Security Operations Center, you will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on any and all threats directed against those systems.Key ResponsibilitiesMonitor enterprise...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Position OverviewCybersecurity Incident Response Specialist (Day shift, SUN - WED 10 hours) - (w/ active TS)Location: Washington, DCEmployment Type: Full-time, OnsiteSecurity Clearance: Top Secret w/ SCI eligibilityWork Schedule: Sunday - Wednesday 5am - 3pm ESTROLE SUMMARY Critical Solutions is in search of a Tier 2 Cybersecurity Incident Response...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Job DescriptionJob Summary:Critical Solutions is seeking a highly skilled Cyber Security Analyst to join our team in Washington, DC. As a Cyber Security Analyst, you will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on any and all threats that are directed against those systems.Key Responsibilities:Monitor...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the coordination of response initiatives for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on assessing,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Job OverviewThis is a remote opportunity.Position Summary:As a vital member of TalentRemedy's Information Security Incident Response team, the Senior Cybersecurity Incident Response Analyst will oversee the management of response activities for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the management of response efforts for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating, triaging,...


  • Washington, Washington, D.C., United States Sirius XM Radio Inc Full time

    About the Role:We are seeking a highly skilled Cybersecurity Incident Response Specialist to join our team at SiriusXM. As a key member of our security team, you will play a critical role in shaping our cyber security incident response efforts.Your primary responsibility will be to receive and respond to cyber security alerts and security incident reports in...


  • Washington, Washington, D.C., United States Virginia Department of Transportation Full time

    Job Title: Incident Management CoordinatorVirginia Department of Transportation (VDOT) is seeking an Incident Management Coordinator to plan, execute, and continually review incident and emergency management operations.Key Responsibilities:Lead and direct Area and District Incident Management CommitteesCoordinate with emergency service and incident...


  • Washington, Washington, D.C., United States International SOS Government Medical Services Full time

    Job OpportunityInternational SOS Government Medical Services is seeking a highly skilled Neurologist to join our research team. As a key member of our team, you will be responsible for conducting research on anomalous health incidents and traumatic brain injuries.Key ResponsibilitiesConduct research on anomalous health incidents and traumatic brain...