Current jobs related to Cybersecurity Incident Responder with Industrial Control Systems Experience - Arlington, Virginia - Peraton


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cybersecurity Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for managing and responding to cybersecurity incidents, ensuring the security and integrity of our systems and data.Key Responsibilities:Correlating incident data to identify...


  • Arlington, Virginia, United States Farfield Systems, Inc Full time

    Job Title: Cybersecurity Incident ManagerFarfield Systems, Inc. is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in responding to cyber incidents and proactively hunting for...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job OverviewFarfield Systems is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in assisting federal staff with a broad set of support functions.Key Responsibilities:Research and...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cybersecurity Incident Manager to support our customer mission. The successful candidate will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.This is a critical role that requires a strong understanding of...


  • Arlington, Virginia, United States Farfield Systems, Inc Full time

    Cybersecurity Incident ManagerFarfield Systems, Inc. is seeking a highly skilled Cybersecurity Incident Manager to join our team. As a key member of our Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), you will play a critical role in assisting our Federal staff with a broad set of support functions.Key...


  • Arlington, Virginia, United States BCMC, LLC Full time

    Cyber Incident Manager Job DescriptionBCMC, LLC is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for managing and responding to cybersecurity incidents, ensuring the protection of our customer's assets and data.Responsibilities:Correlate incident data to identify...


  • Arlington, Virginia, United States Peraton Full time

    Job Summary:We are seeking an experienced Cybersecurity Incident Response Specialist with OT/ICS/SCADA expertise to join our team in Arlington, VA.Responsibilities:Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within a variety of critical...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job DescriptionSolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager III to join our team. As a key member of our cybersecurity team, you will be responsible for investigating and responding to cyber incidents, developing mitigation plans, and assisting with the restoration of services.Must be a US CitizenMust have an active TS/SCI...


  • Arlington, Virginia, United States Peraton Full time

    Cybersecurity Incident Analyst - Notification SpecialistPeraton is seeking a highly skilled Cybersecurity Incident Analyst - Notification Specialist to join our Federal Strategic Cyber program. As a key member of our team, you will be responsible for monitoring and reviewing multiple data sources to identify cybersecurity incidents, threats, and...


  • Arlington, Virginia, United States BCMC, LLC Full time

    Cyber Incident Manager Job DescriptionBCMC, LLC is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing incident response services to civilian Government agencies and critical asset owners. As a Cyber Incident Manager, you will be responsible for investigating and resolving cyber-attacks, developing mitigation...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cybersecurity Incident Response SpecialistWe are seeking a highly skilled Cybersecurity Incident Response Specialist to join our team at Nine Mind Solutions. As a key member of our cybersecurity team, you will be responsible for supporting our customers in the detection, response, mitigation, and reporting of cyber threats affecting their networks.Key...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cybersecurity Incident Response SpecialistWe are seeking a highly skilled Cybersecurity Incident Response Specialist to support our customer in the detection, response, mitigation, and reporting of cyber threats affecting client networks. This position requires strong analytical and problem-solving skills, as well as the ability to work effectively in a...


  • Arlington, Virginia, United States Nightwing Full time

    About the Role:Nightwing is seeking a highly skilled Cybersecurity Incident Management Specialist to support our critical customer mission. As a Cybersecurity Incident Management Specialist, you will be responsible for managing reported incidents, providing a single point of service for incident customer organizations throughout the incident life cycle of a...


  • Arlington, Virginia, United States BCMC, LLC Full time

    We are seeking a highly skilled Cybersecurity Incident Response Specialist to support our critical customer mission. The ideal candidate will have 5+ years of directly relevant experience in cyber incident management or cybersecurity operations.The Cybersecurity Incident Response Specialist will be responsible for correlating incident data to identify...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job SummarySolutions³ LLC is seeking a highly skilled Cybersecurity Incident Manager III to join our team. As a key member of our incident response team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlating incident data to identify...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Incident ManagerArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. As a key member of our team, you will be responsible for investigating and resolving cyber-attacks, developing mitigation plans, and assisting with the restoration of services.Key Responsibilities:Correlate incident...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job SummaryFarfield Systems is seeking a highly skilled Cyber Incident Manager to support our U.S. Government customer in providing incident response services to civilian Government agencies and critical asset owners. The ideal candidate will have a strong background in cybersecurity and incident management, with experience in investigating and resolving...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. The successful candidate will be responsible for correlating incident data, recommending defense in depth principles, and performing computer network defense incident triage.Key Responsibilities:Correlating incident data to identify...


  • Arlington, Virginia, United States Nightwing Full time

    Cybersecurity Incident Management RoleNightwing is seeking a highly skilled Cybersecurity Incident Management Analyst to support our critical customer mission. As a key member of our team, you will be responsible for managing reported incidents, correlating incident data, and recommending defense in depth principles and practices.Responsibilities:Managing...


  • Arlington, Virginia, United States Pantheon Data Full time

    Job SummaryPantheon Data is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our security team, you will be responsible for ensuring the security and integrity of our information systems and applications.Key ResponsibilitiesImplement security measures and best practices to protect our systems and applicationsCreate,...

Cybersecurity Incident Responder with Industrial Control Systems Experience

2 months ago


Arlington, Virginia, United States Peraton Full time
Job Summary

We are seeking an experienced Incident Response Specialist with OT/ICS/SCADA expertise to join our team at Peraton. As a key member of our Federal Strategic Cyber program, you will be responsible for responding to cybersecurity incidents in ICS/OT/IT environments and providing recommendations to affected entities to prevent the reoccurrence of these incidents.

Key Responsibilities
  • Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents.
  • Apply specific functional knowledge to resolve cybersecurity incidents and perform proactive threat hunts.
  • Be involved with highly technical operations and forensic analysis and serve as consultants, continuously advising client decision makers.
  • Provide industry experience and expertise for one or multiple critical infrastructure sectors/sub-sectors, including but not limited to Water, Power, Critical Manufacturing, and Transportation.
  • Follow pre-defined procedures to respond to and escalate incidents.
  • Provide expertise to define procedures for response to customer cyber security incident in the industrial control system environment.
  • Apply traditional incident response and threat hunting tradecraft to industrial control system/critical infrastructure environments-with a deep understanding of the nuance and constraints of industrial environments.
  • Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
  • Maintain accurate records of incident response activities and findings.
  • Prepare and deliver incident reports to management and stakeholders.
  • Need to be comfortable working in a team environment and collaborating to meet mission goals.
  • Keep current with latest security trends and news to continually improve hunt and incident response operations.
  • Be a Self-starter with strong attention to detail and critical thinking ability.
  • Have a strong customer-service orientation with excellent written and oral communication skills.
  • The ability to self-teach and self-test new tools and methodologies, and to problem-solve independently.
  • There is an onsite requirement for minimum one day (1) week, with up to 3 days depending on situational requirements.
  • Estimated 40% travel.
Qualifications
  • Bachelors degree and 8 years of relevant experience. Masters Degree and 6 years experience. PhD and 3 years experience. 12 years will be considered in lieu of degree.
  • 2 years of Threat Hunting or Digital Forensics & Incident Response (DFIR) experience preferred.
  • 1-2 years of Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / Industrial Control System (ICS) environments.
  • Experience with security site assessments and scoping-including but not limited to the analysis of network security architecture, baseline ports, protocols, and services, and characterize network assets.
  • Scripting in Python, Bash, PowerShell, and/or JavaScript.
  • Experience using a SIEM tool for pattern identification, anomaly detection, and trend analysis.
  • Experience analyzing a variety of industrial control systems network protocols, including but not limited to: ModBus, ENIP/CIP, BACnet, DNP3, etc..
  • Experience with the common open source and commercial tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations.
  • Experience with collection and detection tools, including OSS/COTS host-based and network-based tools.
  • U.S. citizenship and an Active Top Secret Security Clearance required.
  • Must be able to obtain a TS/SCI for continued employment.
Desired Qualifications
  • Certifications: GISCP and either GFCA or GNFA.
  • Experience on DoD Cyber Protection Teams, a plus.
  • Experience performing digital forensics and analysis on a variety of vendor/OEM equipment-including but not limited to laptop/desktops, PLC's, HMI's, Historians, and related SCADA systems.
  • Experience with SIEM (Splunk) -threat hunting, analytic development, dashboards, and reporting.
  • Familiarity with regulatory standards and frameworks relevant to critical infrastructure (e.g., NIST, IEC).
  • Ability to automate simple/repeatable but critical tasks.
Benefits

At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily. We're fully committed to the growth of our employees. From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit to learn how we're keeping people around the world safe and secure.

Target Salary Range

$112,000 - $179,000. This represents the typical salary range for this position based on experience and other factors.