Cybersecurity Incident Management Specialist

8 hours ago


Arlington, Virginia, United States Nightwing Full time
Cybersecurity Incident Management Role

Nightwing is seeking a highly skilled Cybersecurity Incident Management Analyst to support our critical customer mission. As a key member of our team, you will be responsible for managing reported incidents, correlating incident data, and recommending defense in depth principles and practices.

Responsibilities:

  • Managing reported incidents by providing a single point of service for incident customer organizations throughout the incident life cycle of a high priority incident
  • Correlating incident data to identify specific trends in reported incidents
  • Recommending defense in depth principles and practices (i.e. Defense in Multiple Places, layered defenses, security robustness, etc.)
  • Performing Computer Network Defense incident triage to include determining scope, urgency, and potential impact
  • Identifying the specific vulnerability and make recommendations that enable expeditious remediation
  • Assisting Federal leads with incident management functions when deployed at an onsite engagement
  • Assists in coordinating with private sector partners, law enforcement, and internal entities to conduct daily operations
  • Conducting peer reviews and providing quality assurance reviews for junior personnel
  • Mentoring of junior incident managers and provide guidance to others on incident management prioritization, triage and report writing in support of onsite engagements.
  • Providing team leadership during assigned shifts (2:00 PM - 10:30 PM ET or 10:00 PM - 6:30 AM ET and 12 hour weekend shifts)
  • Leads a technical team of up to 6 highly skilled cyber threat analysts

Requirements:

  • U.S. Citizenship
  • Must have an active TS/SCI clearance
  • Must be able to obtain DHS Suitability
  • 8+ years of directly relevant experience in cyber incident management or cybersecurity operations
  • Knowledge of incident response and handling methodologies
  • Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incident
  • Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
  • Demonstrated experience with recognizing and categorizing types of vulnerabilities and associated attacks
  • Knowledge of basic system administration and operating system hardening techniques
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)
  • Must be able to work collaboratively across physical locations

Desired Skills:

  • Experience leading and mentoring technical teams
  • Knowledge of basic system administration and operating system hardening techniques
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)

Education:

BS Operations Management, Cybersecurity or related degree. Two years of related work experience may be substituted for each year of degree level education.

Desired Certifications:

GCIH, GCFA GISP, GCED, CCFP or CISSP

A competitive salary range for this role is $105,000 - $221,000 USD. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.

Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.

This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.

RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.

RTX is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms



  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cybersecurity Incident Manager to support our customer mission. The successful candidate will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.This is a critical role that requires a strong understanding of...


  • Arlington, Virginia, United States Peraton Full time

    Cybersecurity Incident Analyst - Notification SpecialistPeraton is seeking a highly skilled Cybersecurity Incident Analyst - Notification Specialist to join our Federal Strategic Cyber program. As a key member of our team, you will be responsible for monitoring and reviewing multiple data sources to identify cybersecurity incidents, threats, and...


  • Arlington, Virginia, United States Farfield Systems, Inc Full time

    Job Title: Cybersecurity Incident ManagerFarfield Systems, Inc. is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in responding to cyber incidents and proactively hunting for...


  • Arlington, Virginia, United States BCMC, LLC Full time

    Cyber Incident Manager Job DescriptionBCMC, LLC is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for managing and responding to cybersecurity incidents, ensuring the protection of our customer's assets and data.Responsibilities:Correlate incident data to identify...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job SummaryFarfield Systems is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in assisting federal staff with a broad set of support functions.Key Responsibilities:Research and...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cybersecurity Incident Response SpecialistWe are seeking a highly skilled Cybersecurity Incident Response Specialist to join our team at Nine Mind Solutions. As a key member of our cybersecurity team, you will be responsible for supporting our customers in the detection, response, mitigation, and reporting of cyber threats affecting their networks.Key...


  • Arlington, Virginia, United States Farfield Systems, Inc Full time

    Cybersecurity Incident ManagerFarfield Systems, Inc. is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in assisting our Federal staff with a broad set of support functions.Key...


  • Arlington, Virginia, United States BCMC, LLC Full time

    Cyber Incident Manager Job DescriptionBCMC, LLC is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing incident response services to civilian Government agencies and critical asset owners. As a Cyber Incident Manager, you will be responsible for investigating and resolving cyber-attacks, developing mitigation...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, we continue to shape the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled Cyber...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job DescriptionWe are seeking a highly skilled Cyber Incident Management Analyst to support our critical customer mission. As a key member of our team, you will be responsible for managing reported incidents, correlating incident data, and recommending defense in depth principles and practices.Responsibilities:Manage reported incidents by providing a single...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job DescriptionSolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager III to join our team. As a key member of our cybersecurity team, you will be responsible for investigating and responding to cyber incidents, developing mitigation plans, and assisting with the restoration of services.Must be a US CitizenMust have an active TS/SCI...


  • Arlington, Virginia, United States Akhiok-Kaguyak Inc Full time

    Job Title: Cybersecurity SpecialistAkhiok-Kaguyak Inc is seeking a highly skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will be responsible for ensuring the security and integrity of our systems and networks.Key Responsibilities:Conduct vulnerability assessments and risk management activitiesDevelop and implement IT...


  • Arlington, Virginia, United States Peraton Full time

    Cybersecurity Threat Analyst - Notification SpecialistPeraton is seeking a highly skilled Cybersecurity Threat Analyst - Notification Specialist to join our team. As a key member of our cybersecurity team, you will be responsible for monitoring and reviewing multiple data sources, including intelligence, media, and law enforcement reporting, to identify...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job SummarySolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our cybersecurity team, you will be responsible for investigating and responding to cyber incidents, developing mitigation plans, and assisting with the restoration of services.Key ResponsibilitiesCorrelate incident data to identify...


  • Arlington, Virginia, United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a skilled Cybersecurity Specialist to support a long-term Air Force program. As a Cybersecurity Specialist, you will play a critical role in ensuring the security and compliance of the customer's critical systems.Key Responsibilities:Conduct periodic reviews of Information Systems to ensure ongoing compliance with the...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, providing immediate support to civilian Government agencies and critical asset owners.Key...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...