Cybersecurity Incident Response Lead

1 week ago


Washington, Washington, D.C., United States General Dynamics Information Technology Full time

Type of Requisition:
Regular

Clearance Level Must Currently Possess:
None

Clearance Level Must Be Able to Obtain:
None

Suitability:

Public Trust/Other Required:

Job Family:
Cyber Security

Job Qualifications:

Skills:
Cyber Defense, Cybersecurity, Cyber Threat Intelligence

Certifications:

Experience:
5 + years of related experience

US Citizenship Required:
Yes

Job Description:
GDIT is seeking a skilled and proactive Cybersecurity Incident Response Lead to enhance our operational capabilities. This role involves supporting the Information Technology Security Office (ITSO) and ensuring that our Security Operations Center (SOC) effectively addresses security operations requirements with precision and thoroughness.

As a key contributor, the Cybersecurity Incident Response Lead will collaborate with both federal and contractor personnel to ensure timely and effective responses to cyber threats targeting the enterprise.


The Lead will provide expert technical assistance to forensic and incident response teams during initial engagements with cyber threats, playing a pivotal role in investigations of potential and actual cyber incidents.

The Cybersecurity Incident Response Lead will guide the team in analyzing findings and improving the overall security posture of the organization. Additionally, this role includes mentoring junior analysts, fostering their technical and professional development.

The ideal candidate will possess extensive knowledge of cybersecurity threats, incident response methodologies, and forensic analysis techniques. This position is vital for leading incident responses, coordinating efforts across various teams, and enhancing our security framework.

KEY RESPONSIBILITIES:

Incident Response Leadership:
- Direct the incident response team in detecting, analyzing, and addressing security incidents.
- Develop and refine incident response protocols and documentation.
- Facilitate effective communication and coordination during incident management.

Threat Detection and Analysis:
- Monitor and evaluate security alerts from diverse sources, including SIEM, IDS/IPS, and endpoint protection tools.
- Conduct thorough forensic investigations to ascertain the root causes and implications of security incidents.
- Perform malware analysis and reverse engineering to comprehend attack methodologies.

Incident Management:
- Oversee incident response initiatives across various teams and stakeholders.
- Document and report on incidents, detailing mitigation and resolution steps.
- Conduct post-incident evaluations and lessons-learned sessions to refine response strategies.

Security Enhancements:
- Identify weaknesses in current security measures and propose enhancements.
- Stay informed about emerging threat intelligence and integrate it into incident response practices.
- Create and deliver training sessions to bolster the skills of the incident response team.

Collaboration and Communication:
- Collaborate closely with other SOC members, IT, and business units to ensure comprehensive incident response.
- Provide clear updates to executive management regarding incident status and ramifications.
- Build and maintain relationships with external partners and law enforcement as necessary.

QUALIFICATIONS:
- Bachelor's degree in Cybersecurity, Information Technology, or a related discipline; advanced degree preferred.
- At least 5 years of experience in cybersecurity, with a minimum of 2 years in a leadership role focused on incident response.
- Proven track record in managing complex security incidents and conducting forensic investigations.
- Strong understanding of cybersecurity principles, threat landscapes, and attack vectors.
- Proficiency with security technologies such as SIEM, IDS/IPS, EDR, and forensic tools.
- Experience in scripting and automation to enhance incident response workflows.
- Familiarity with regulatory requirements and industry standards.
- Relevant certifications such as CISSP, CISM, GCFA, GCIH, or equivalent are preferred.
- Exceptional leadership, communication, and interpersonal skills.
- Strong analytical and problem-solving capabilities.
- Ability to perform under pressure and manage multiple priorities effectively.

GDIT OFFERS:
- 401K with company match
- Comprehensive health and wellness packages
- Internal mobility team dedicated to career development
- Opportunities for professional growth, including paid education and certifications
- Access to cutting-edge technology
- Paid vacation and holidays for rest and rejuvenation

The anticipated salary range for this position is $134,597 - $204,360, subject to adjustment based on experience, geographic location, and contractual requirements.

Scheduled Weekly Hours:
40

Travel Required:
10-25%

Telecommuting Options:
Onsite

Work Location:
USA DC Washington

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, dental and vision plans, and a 401(k) plan with company matching. We promote work/life balance through flexible work weeks and various paid time off plans, including vacation, sick leave, and holidays. Additional offerings include short and long-term disability benefits, life insurance, and other protections to secure our employees' income.

GDIT is a global technology and professional services company delivering consulting, technology, and mission services to major U.S. government agencies, defense, and intelligence communities. Our 30,000 experts leverage technology to create immediate value and deliver innovative solutions. We operate in 30 countries, providing leading capabilities in digital modernization, AI/ML, Cloud, Cybersecurity, and application development. Together with our clients, we aim to create a safer, smarter world by harnessing deep expertise and advanced technology.

  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the management of response efforts for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating, triaging,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Job OverviewThis is a remote opportunity.Position Summary:As a vital member of TalentRemedy's Information Security Incident Response team, the Senior Cybersecurity Incident Response Analyst will oversee the management of response activities for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on evaluating,...


  • Washington, Washington, D.C., United States TalentRemedy Full time

    Position OverviewThis is a remote opportunity.Role Summary:As a key member of the Information Security Incident Response team at TalentRemedy, the Senior Cybersecurity Incident Response Analyst will oversee the coordination of response initiatives for cybersecurity incidents throughout the organization. The ideal candidate will concentrate on assessing,...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    Position OverviewCybersecurity Incident Response Specialist (Day shift, SUN - WED 10 hours) - (w/ active TS)Location: Washington, DCEmployment Type: Full-time, OnsiteSecurity Clearance: Top Secret w/ SCI eligibilityWork Schedule: Sunday - Wednesday 5am - 3pm ESTROLE SUMMARY Critical Solutions is in search of a Tier 2 Cybersecurity Incident Response...


  • Washington, Washington, D.C., United States Axxum Technologies Full time

    Job OverviewPosition: Lead Incident Response SpecialistKey Responsibilities:Deliver efficient first-line assistance utilizing a service desk ticketing platform, along with phone and email communications.Assist the service desk shift supervisor in daily operational tasks and collaborate with the government Program Manager regarding service desk operational...


  • Washington, Washington, D.C., United States ANSER Full time

    About the RoleAt ANSER, we are seeking a highly skilled Cybersecurity and Emergency Response Specialist to join our team. As a key member of our organization, you will play a critical role in enhancing national and homeland security by strengthening public institutions.Key Responsibilities:Formulate and refine policies, frameworks, and plans for responding...


  • Washington, Washington, D.C., United States OCT Consulting, LLC Full time

    Job OverviewPosition: Senior Cyber Program ManagerOCT Consulting, LLC is a certified SBA 8(a) small business that specializes in management and technology consulting services for Federal Government clients. Our expertise spans various domains including Strategy, Process Enhancement, Change Management, Program and Project Oversight, Procurement, and...


  • Washington, Washington, D.C., United States OCT Consulting, LLC Full time

    Job OverviewSenior Cybersecurity Program ManagerOCT Consulting is a recognized small business management and technology consulting firm, specializing in delivering support to Federal Government clients. Our expertise spans various domains including Strategy, Process Enhancement, Change Management, Program and Project Management, Procurement, and Information...


  • Washington, Washington, D.C., United States OCT Consulting, LLC Full time

    Job OverviewSenior Cybersecurity Program ManagerOCT Consulting is a recognized small business management and technology consulting firm, certified by the SBA and 8(a) program, dedicated to providing exceptional support to Federal Government clients. Our expertise spans various domains including Strategy, Process Optimization, Change Management, Program and...


  • Washington, Washington, D.C., United States Abacus Technology Corporation Full time

    Position OverviewAbacus Technology Corporation is in search of a Senior Cybersecurity Analyst responsible for strategizing and executing protective measures for IT systems within the Department of Energy's Office of Environment, Health, Safety, and Security (EHSS). This role is a full-time commitment.Key ResponsibilitiesContribute to the development of the...


  • Washington, Washington, D.C., United States OneZero Solutions Full time

    Job OverviewAt OneZero Solutions, we prioritize our employees and recognize their essential contributions to our clients and the missions we undertake. Our culture encourages innovative thinking and nurtures teams that are both technically skilled and proficient across a wide array of cyber mission domains. We offer a highly competitive benefits package for...


  • Washington, Washington, D.C., United States OneZero Solutions Full time

    Job OverviewAt OneZero Solutions, we prioritize our employees and recognize their essential contributions to our clients and the missions we undertake. Our company culture encourages innovative thinking and nurtures teams that are technically skilled and proficient across various cyber mission domains. Our full-time employees enjoy a highly competitive...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the Role:We are seeking a highly skilled Cybersecurity Operations Specialist to join our team at Booz Allen Hamilton. As a key member of our security operations team, you will be responsible for responding to and resolving complex cybersecurity incidents, as well as proactively preventing their reoccurrence.Key Responsibilities:Respond to and resolve...


  • Washington, Washington, D.C., United States ShorePoint Full time

    Job OverviewPosition Title: SOC Analyst (Night Shift) - Top Secret ClearanceCompany Overview:ShorePoint is a rapidly expanding, award-winning firm specializing in cybersecurity services, dedicated to serving high-profile clients in both the private and public sectors. Our mission is to provide unparalleled security solutions to safeguard sensitive...


  • Washington, Washington, D.C., United States Peace Corps Full time

    The IT Cybersecurity Specialist serves as the Senior Incident Response Analyst within the Security Operations Center (SOC). The SOC Incident Response Team (SIRT) performs Incident Response investigations to develop a comprehensive diagnosis of cyber incident breaches. Response investigations to develop a comprehensive diagnosis of cyber incident breaches....


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cybersecurity Specialist to support a government consulting firm in a 100% on-site opportunity. The Cybersecurity Specialist is responsible for ensuring the security and compliance of the customer's critical systems.Key Responsibilities:Establish and maintain Configuration Management of documentationID,...


  • Washington, Washington, D.C., United States Meta Full time

    Every day, people come to Meta's family of apps to connect with friends and family, discover what's going on in the world, interact with businesses, find potential customers, and build community. Meta's Global Operations team exists to help them. Within Global Response Operations, our Business Incident Response team is responsible for managing end-to-end...


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Position OverviewcFocus Software Incorporated is seeking a Senior Cybersecurity Threat Analyst to enhance our initiatives in safeguarding information technology systems. This role is pivotal in supporting our cybersecurity operations and requires candidates to possess US Citizenship and the capability to secure a Public Trust clearance.Essential...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewAs a key member of our cybersecurity team, the Senior Security Threat Analyst will play a crucial role in safeguarding our systems and data. This position involves a variety of responsibilities aimed at enhancing our security posture and responding to potential threats.Key ResponsibilitiesConduct thorough assessments of vulnerabilities,...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewAs a key member of our cybersecurity team, you will play a vital role in safeguarding our systems and data from potential threats. Your expertise will contribute to the enhancement of our security posture and the protection of sensitive information.Key ResponsibilitiesYour primary duties will include:Conducting thorough assessments of...