Incident Responder
$107.9k - $195.05kLeidos
Incident ResponderLocation: Suitland, MDClearance: Active TS/SCI1st Shift Work Hours: 0730 – 1530Leidos is seeking an Incident Responder(1st Shift) to join a mission focused cybersecurity team supporting the Office of Naval Intelligence (ONI) at the Hopper Global Communications Center (HGCC) in Suitland, MD.In this role, you will serve as a digital first responder, helping defend the Navy's critical maritime intelligence networks against cyber threats. You will respond to and investigate cybersecurity incidents, contain affected systems, limit operational impact, and collect and analyze digital artifacts to support effective response and recovery. Working across the incident response lifecycle, you will collaborate with cybersecurity, intelligence, and investigative partners to help protect highly sensitive TS/SCI environments.Work Schedule: This is a 1st shift position with regular work hours of 0730 – 1530. Occasional floater shifts or coverage outside of these hours may be required based on program and staffing needs.Primary ResponsibilitiesPerform all phases of the incident response lifecycle, including detection, analysis, containment, eradication, and recovery.Receive and act on escalations from Tier 1 analysts, conduct spillage response and cleanup activities, and support incident response for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.Receive and respond to incident notifications from customers via telephone and email.Prepare and submit Electronic Spillage Assessment Forms (ESAFs) to the NNWC Electronic Spillage Center.Monitor Data Loss Prevention (DLP) outputs for classified code words and potential spillage indicators.Coordinate and communicate with internal and external stakeholders, including Special Security Officers (SSOs), Judge Advocate General (JAG), ONI ISSM, Hopper ISSM, CNI, NAVNETWARCOM, IC SCC, NCDOC, NCIS, and other IC and DoD SOC/DCO teams.Maintain detailed and accurate incident documentation and timelines throughout the response process.Participate in incident response meetings, briefings, and after action reviews.Support the execution and evaluation of annual security exercises.Required QualificationsBachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.Active TS/SCI security clearance.Extensive experience in the Computer Network Defense (CND) discipline.Significant professional experience monitoring, analyzing, and investigating alerts generated by cybersecurity tools.Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.Required CertificationsMust possess one of the following certifications or obtain one within 30 days of accepting an offer: Certified Ethical Hacker (CEH), CyberSec First Responder (CFR), CompTIA Cybersecurity Analyst (CySA+), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Incident Handler (GCIH), EC Council Certified Incident Handler (ECIH), or Cisco Cybersecurity Specialist (SCYBER).NITESONIDABAOPP1If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 15, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Suitland, MDType: Full time
$113k - $188.4k
...manage to secure success. Work You’ll Do As a Project Delivery PROJECT - Security Engineer III on the project, you will: The Incident Responder will execute the client Incident Response Management Program in accordance with client requirements and in alignment with the...SuggestedLocal area$148.5k - $223.9k
...future of Salesforce.The ExperienceSalesforce's Computer Security Incident Response Team (CSIRT) provides 24x7x365 security monitoring... ...and customer data from adversaries.As a Senior Incident Responder, you'll be a core member of the response team — investigating...SuggestedFull timeMonday to FridayNight shift$172.5k - $260.1k
...regulatory scrutiny.Lead investigations into advanced or high-impact incidents across Salesforce Core, Marketing Cloud, and Commerce Cloud —... ...written feedback on investigative rigor, and mentor junior responders on advanced analysis technique.Support CREST's AI-first...SuggestedFull time- ...-solving people-person, apply today! Location: Washington, DC Position Overview: We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security documentation and ensure compliance with government standards for various systems. The...SuggestedContract workFor contractorsWork at officeLocal area
- ..., plumbing, HVAC, mechanical, and building systems. Maintain detailed records of maintenance activities, incident reports, and equipment histories. Respond promptly to maintenance requests and emergency maintenance situations promptly and effectively. Ensure compliance...SuggestedFor contractors
- ...Job Description Job Description Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client. The Lead Incident Responder serves as the central point of accountability for day-to-day incident response operations...Contract workFlexible hours
$102.5k - $188.9k
...organizations need professionals who can identify, analyze, and respond to exploitation activity before it disrupts business operations... ...defense efforts by analyzing threat activity, investigating incidents, assessing vulnerabilities, and help strengthen security posture...Work at office$130k - $180k
...potential threats to computing infrastructure, reviewing and responding to Prioritized Intelligence Requirements (PIRs), and disseminating... ..., and shifts in threat actor behavior Coordinate with SOC, incident response, and threat hunting teams to ensure CTI products are...Full timeWork experience placementFlexible hoursShift work- ...and Business Transformation. Job Description Track and assist Executive Aircraft in flight with communications issues, respond to incident calls, and support trend analysis efforts. Utilize various Command and Control (C2) tools, and chat software (e.g. Mattermost...For contractorsWork at office
$131.3k - $237.35k
...scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department... ...program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise...Full timeFlexible hours$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7x365 Security Operations Center and Incident... ...investigation, and incident responseExperience analyzing and responding to security events across enterprise networks, endpoints, applications...Full timeContract workPart timeWork at officeLocal areaRemote work$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems...Full timeContract workPart timeWork at officeLocal areaRemote work$117.4k - $177.6k
...organizational, and creative problem-solving skills to contribute to our incident management program.This role is primarily focused on... ...stakeholders rely on the information they need to make decisions and respond to change, and we provide it. We are a technology and business...Full timeWeekend work$101.53k - $132.69k
...Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security...Permanent employmentFull timeContract workTemporary workWork at officeLocal area$87.1k - $157.45k
...experience in the Certified Network Defender (CND) discipline and knowledge of IT systems and networks to analyze security events, manage incident tickets, support intelligence gathering and analysis, and communicate findings to key stakeholders.Primary ResponsibilitiesPerform...Full timeWork at officeShift work$155k - $200k
...and empowered, then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position is based in our... ...and data privacy incidentsTaking lead responsibility in responding to clients and carriers, and overseeing breach response work by...Full timeWork at officeRemote workFlexible hours- Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will be based in the Washington, D.C area.Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber Intelligence...Contract workFor contractors
- ...resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer... ..., VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories...Remote workFlexible hoursNight shift
$25 per hour
...Job Description Job Description Workplace Safety Responder — Part-Time Part-Time · $25.00 / hour · $200.00 daily minimum · Frequent Travel required - Must have a valid drivers license mhdhealth.com Help American workers go home safe. OSHA-required compliance...Hourly payPart timeLive inWork at officeLocal areaSleeping nightsMonday to FridayNight shiftWeekend workDay shiftAfternoon shiftWeekday work$175k - $235k
...activities — overseeing cyber defense operations, serving as primary incident commander, and coordinating directly with government federal... ...Cyber Defense Analyst (PR-CDA-001) and Cyber Defense Incident Responder (PR-CIR-001) work roles, and you ensure your team meets all...Full timeContract workFor contractorsWork experience placementFlexible hours$107.9k - $195.05k
...correlation searches, RBAs, dashboards, and data models.Onboard new data sources and ensure quality, parsing, and normalization.Support incident response, threat hunting, detection engineering, and content governance.Produce operational reports, posture summaries, dashboards...Full time$107.9k - $195.05k
...hardware/firmware security assessments and compliance reporting.Maintain system health, integrations, patching, documentation, and incident support workflows.Provide continuous monitoring and hardware security analytics.Required QualificationsBA/BS in CS, IT, IA or...Full time$114.7k - $166.45k
Job DescriptionWashington Gas is seeking a Sr. Advisor, Incident & Emergency Management to serve as a subject matter expert responsible... ...and business leadership to ensure WGL is prepared to effectively respond to and recover from significant events.What You’ll DoLead the...Work experience placementLocal area- Incident Response Engineer-JourneymanIntermittent Telework: Arlington, VATS/SCI RequiredPay Range: $125K - $142KJob Description: The Incident Response Engineer Journeyman is a mid‑level cybersecurity professional responsible for detecting, investigating, and remediating...Remote work
- ...MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst...Full timeShift workNight shiftDay shiftAfternoon shift
- ...Console (HMC) for IBM AIX for centralized maintenance of server environment. • Provide hands-on infrastructure support for priority incidents as directed by US/Canada Incident Commander. • Collaborate with network, application, and other technical teams as well as...Full timePart timeFor contractorsRemote workFlexible hoursShift work
- ...lives and property on Army installations by enforcing military laws and regulations. You'll also control traffic, prevent crime, and respond to all emergencies. You'll conduct force protection, anti-terrorism, area security, and police intelligence operations. You'll also...Full timePart timeImmediate startRelocation package
$140k - $150k
Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a senior-level Incident Response Lead to join our advanced security operations team which is a...Work at officeRemote work- ...guidelines and regulations.About this position: Sr. Cybersecurity Incident Response SpecialistLocation - Washington, DCThe Essential... ...flows and application interactions to enhance SOC’s ability to respond to incidents.Prepare and manage playbooks and relevant scenarios...Full timeContract workLocal area
$50k - $60k
...critical customers operations. Assist with enterprise monitoring, incident response, system operations, and production support activities... ...activities for Sev-1 through Sev-5 incidents. Investigate and respond to infrastructure and application alerts. Support incident...Full timeFlexible hoursShift workNight shiftAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Responder. Be the first to apply!



