Cybersecurity Incident Response Specialist

5 days ago


Washington, Washington, D.C., United States Critical Solutions Full time
Position Overview

Cybersecurity Incident Response Specialist (Day shift, SUN - WED 10 hours) - (w/ active TS)


Location: Washington, DC

Employment Type: Full-time, Onsite

Security Clearance: Top Secret w/ SCI eligibility

Work Schedule: Sunday - Wednesday 5am - 3pm EST


ROLE SUMMARY Critical Solutions is in search of a Tier 2 Cybersecurity Incident Response Specialist to enhance our capabilities in threat surveillance, detection, event analysis, and incident documentation. The Security Operations Center operates continuously, and you will play a crucial role in overseeing enterprise networks and systems, identifying events, and reporting any threats targeting those systems, irrespective of their classification level or nature.

The client's sensor network processes millions of events daily, which are analyzed and categorized in line with the Cyber Security Incident Response Plan. The Incident Response Specialist will deliver a comprehensive suite of analytical services to support external threat surveillance, detection, event analysis, and incident documentation efforts, including presentation assessments, internal and external threat reporting, analysis of internet traffic, suspicious communications, managing access requests to specific public sites, and coordinating the characterization of events and responses.

KEY RESPONSIBILITIES:

  • Support complex computer network exploitation and defense strategies, including deterrence, identification, and investigation of computer and network intrusions; provide incident response and remediation assistance;
  • Conduct thorough computer surveillance and monitoring, identify vulnerabilities, develop secure network architectures and protection strategies, and perform audits of information security frameworks.
  • Offer technical support for ongoing monitoring, computer exploitation, reconnaissance, target mapping, and deception operations in support of computer intrusion defense initiatives.
  • Provide technical assistance for forensic services, including evidence collection, computer forensic analysis, and data recovery, in support of cybercrime investigations.
  • Research and maintain expertise in both open and closed source computer exploitation tools, attack methodologies, procedures, and trends.
  • Investigate emerging threat sources and develop corresponding threat profiles.
  • Support a comprehensive risk management program by identifying mission-critical processes and systems, current and anticipated threats, and system vulnerabilities.

ESSENTIAL QUALIFICATIONS:

  • Active Top Secret with SCI eligibility required*
  • Must be able to commute onsite and support day shift schedule, Sunday through Wednesday 5 AM - 3 PM EST
  • Minimum of four (4) years of general work experience and three (3) years of relevant experience in functional responsibility
  • Bachelor's Degree, or an equivalent combination of formal education and experience
  • Experience with the following tools and technologies:
    • BRO IDS
    • Splunk SIEM
    • RSA Netwitness
    • FireEye
    • Sourcefire (Snort)
    • CrowdStrike EDR
    • Fidelis XPS
  • Strong analytical and organizational capabilities
  • Excellent verbal and written communication skills
  • Proficiency with MS Word and other MS Office Applications

PREFERRED QUALIFICATIONS:

  • Experience in securing various environments is preferred
  • Experience working in a SOC and handling incident response is preferred
  • Preferred experience and education in eCPPT, OSCP, GCFW, GCIH, or other relevant IT security certifications, or advanced vendor certifications such as Splunk Certified Architect or SourceFire Certified Administrator; Security+, GSEC, or other relevant IT security product certifications such as Tenable Certified Nessus Auditor, or SnortCP; CISSP, CISM, or ISO 27001

WORK SCHEDULE:

  • Day shift (4 days/ 10 hours)
  • Sunday through Wednesday from 5 AM to 3 PM EST.

LOCATION:

  • This is a hybrid role with expectations of being on the client site most days, including weekends
  • Must be willing and able to commute to Washington, DC

ADDITIONAL INFORMATION:

CLEARANCE REQUIREMENT: Must possess an active DoD Top Secret Clearance. Selected candidates must undergo a background investigation and fingerprinting by the federal agency and successfully pass the preceding to qualify for the position. US CITIZENSHIP IS REQUIRED.


COMPENSATION AND BENEFITS:

Salary range $75,000 - $95,000. The salary range for this position represents the typical salary range for this job level and does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.

BENEFIT SNAPSHOT: 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO/Holidays), Higher Education/Training Reimbursement, and more.



  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:NoneClearance Level Must Be Able to Obtain:NoneSuitability:Public Trust/Other Required:Job Family:Cyber SecurityJob Qualifications:Skills:Cyber Defense, Cybersecurity, Cyber Threat IntelligenceCertifications:Experience:5 + years of related experienceUS Citizenship Required:YesJob...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the coordination of response initiatives for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on assessing,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Job OverviewThis is a remote opportunity.Position Summary:As a vital member of TalentRemedy's Information Security Incident Response team, the Senior Cybersecurity Incident Response Analyst will oversee the management of response activities for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the management of response efforts for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating, triaging,...


  • Washington, Washington, D.C., United States ANSER Full time

    About the RoleAt ANSER, we are seeking a highly skilled Cybersecurity and Emergency Response Specialist to join our team. As a key member of our organization, you will play a critical role in enhancing national and homeland security by strengthening public institutions.Key Responsibilities:Formulate and refine policies, frameworks, and plans for responding...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cybersecurity Specialist to support a government consulting firm in a 100% on-site opportunity. The Cybersecurity Specialist is responsible for ensuring the security and compliance of the customer's critical systems.Key Responsibilities:Establish and maintain Configuration Management of documentationID,...


  • Washington, Washington, D.C., United States Peace Corps Full time

    The IT Cybersecurity Specialist serves as the Senior Incident Response Analyst within the Security Operations Center (SOC). The SOC Incident Response Team (SIRT) performs Incident Response investigations to develop a comprehensive diagnosis of cyber incident breaches. Response investigations to develop a comprehensive diagnosis of cyber incident breaches....


  • Washington, Washington, D.C., United States Envisioneering Full time

    Job DescriptionEnvisioneering, Inc. is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our cybersecurity team, you will be responsible for ensuring the security and integrity of our systems and data.Key Responsibilities:Oversee the development and maintenance of cybersecurity solutions to protect our systems and...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the Role:We are seeking a highly skilled Cybersecurity Operations Specialist to join our team at Booz Allen Hamilton. As a key member of our cybersecurity team, you will be responsible for responding to and resolving complex cybersecurity incidents, as well as proactively preventing the reoccurrence of these incidents.Key Responsibilities:Respond to...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the Role:We are seeking a highly skilled Cybersecurity Operations Specialist to join our team at Booz Allen Hamilton. As a key member of our security operations team, you will be responsible for responding to and resolving complex cybersecurity incidents, as well as proactively preventing their reoccurrence.Key Responsibilities:Respond to and resolve...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is looking for a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative. This position requires a commitment to working onsite in a designated location. The Cybersecurity Analytics Specialist will focus on crafting and executing sophisticated cybersecurity strategies utilizing Cribl and Splunk to safeguard...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative supporting critical intelligence operations. This role requires a commitment to working onsite on a full-time basis in designated locations. The Cybersecurity Analytics Specialist will focus on crafting and deploying sophisticated...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is looking for a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, supporting critical defense operations. This role requires a commitment to working onsite full-time in designated locations. The Cybersecurity Analytics Specialist will focus on crafting and deploying sophisticated cybersecurity...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, providing support to a significant intelligence agency. This role necessitates a full-time onsite presence, requiring commitment to work in a collaborative environment.Key Responsibilities of the Cybersecurity Analytics...


  • Washington, Washington, D.C., United States Axxum Technologies Full time

    Job OverviewPosition: Lead Incident Response SpecialistKey Responsibilities:Deliver efficient first-line assistance utilizing a service desk ticketing platform, along with phone and email communications.Assist the service desk shift supervisor in daily operational tasks and collaborate with the government Program Manager regarding service desk operational...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, providing support to the Defense Intelligence Agency. This role necessitates a full-time onsite presence in designated locations. The Cybersecurity Analytics Specialist will focus on the design and execution of sophisticated...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, supporting critical intelligence operations. This role requires a commitment to working onsite five days a week in designated locations. The Cybersecurity Analytics Specialist will play a pivotal role in crafting and executing...


  • Washington, Washington, D.C., United States Meta Full time

    Every day, people come to Meta's family of apps to connect with friends and family, discover what's going on in the world, interact with businesses, find potential customers, and build community. Meta's Global Operations team exists to help them. Within Global Response Operations, our Business Incident Response team is responsible for managing end-to-end...


  • Washington, Washington, D.C., United States U.S. Secret Service Full time

    The selectee will serve as a Supervisory IT Cybersecurity Specialist (STS/OPS) in the Office of the Chief Information Officer, Network Operations Support Center (NOSC)Typical work assignments include:Managing major incident reports and problems in NOSC operations, ensuring an effective and coordinated set of process improvements are developed and maintained...


  • Washington, Washington, D.C., United States OneZero Solutions Full time

    Job OverviewAt OneZero Solutions, we prioritize our employees and recognize their essential contributions to our clients and the missions we undertake. Our culture encourages innovative thinking and nurtures teams that are both technically skilled and proficient across a wide array of cyber mission domains. We offer a highly competitive benefits package for...