Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense & Incident Responder (SOC Analyst)

Gormat

Job Description

Job Description

Quick Overview:

  • 100% work on site - no remote work
  • Secret clearance with the ability to acquire a TS
  • Locations near the Pentagon or Mayfield VA
  • Customer DEA
  • Intermediate SOC Analyst
  • 6 years with Bachelor

Position Summary

The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations.

The analyst will leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.

Key Responsibilities

  • Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents

  • Review SIEM, IDS/IPS, EDR, and related security tool alerts for anomalous activity, indicators of compromise (IOCs), and indicators of attack (IOAs).

  • Validate alerts, reduce false positives, and prioritize incidents based on severity and impact

  • Perform triage and analysis of security events to determine scope, severity, and urgency

  • Examine log data, network telemetry, and endpoint information to identify malicious activity

  • Correlate event details with internal and external threat intelligence

  • Execute incident response actions in accordance with established procedures

  • Contain affected systems, remove malicious artifacts, and assist with system recovery

  • Escalate complex or critical incidents to senior analysts or SOC leadership as needed

  • Document investigative findings, incident timelines, and remediation actions

  • Create and manage incident tickets and upload supporting evidence and artifacts

  • Contribute to after action reviews and post incident reporting

  • Communicate findings clearly and concisely to technical and nontechnical stakeholders

  • Maintain SOC processes, tools, and playbooks to support effective incident handling

  • Recommend improvements to SOPs, escalation procedures, and detection capabilities

  • Participate in training exercises and knowledge sharing activities

  • Support red, blue, or purple team exercises as directed

  • Stay informed on current and emerging cyber threats, threat actor TTPs, and industry trends

Required Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, Data Science, or related field from an ABET accredited or CAE designated institution preferred. Equivalent experience may be considered in accordance with SOW education substitution requirements

  • Minimum of 6 years of experience in Information Technology and/or Information Security

  • Experience with incident response, threat analysis, SIEM platforms, endpoint security tools, and log analysis

  • Strong analytical and investigative skills with the ability to derive accurate conclusions during incident investigations

  • Active Secret clearance or higher required

  • Must be eligible to obtain a Top Secret clearance if requested

  • Ability to successfully complete a DEA background investigation

  • Must possess at least one applicable DoD 8140 certification or obtain certification within 6 months of onboarding

Preferred Qualifications

  • Preferred DCWF Role 511 Cyber Defense Analyst certifications include:

  • CBROPS

  • CFR

  • CompTIA Cloud+, CySA+, PenTest+, or Security+ CE

  • FITSP O

  • SANS GCED, GCFA, GCIA, GDSA, GFACT, GICSP, GISF, or GSEC

  • Additional Information

This role primarily supports the Operations & Response Team, with potential support across Vulnerability Assessment and Penetration Testing and Engineering teams.The position will coordinate closely with cybersecurity, IT operations, engineering, software operations, and investigative technology teams to support enterprise security operations and incident response activities.

Job Posted by ApplicantPro
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense & Incident Responder (SOC Analyst) in Arlington, VA vacancy
  •  ...Solutions, LLC is seeking a skilled Security Operations Center Analyst (SOC) in Arlington, Virginia. This role requires a bachelor's...  ...environment. You will monitor security events, analyze network incidents, and utilize various security tools. Join a team committed to... 
    Cyber

    Chenega Agile Real Time Solutions, LLC

    Arlington, VA
    3 days ago
  •  ...cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in...  ...tools, triage alerts, and investigate cyber threats. Ideal candidates have six years...  ...in cybersecurity, preferably three in SOC or IR roles. Key responsibilities include... 
    Cyber

    Tyto Athene, LLC

    Washington DC
    4 days ago
  • SecuriGence, located in Arlington, VA, seeks a Security Operations Center Analyst (SOC) to monitor devices and applications, manage incidents, and support recovery efforts on government networks. You will analyze events, coordinate with stakeholders, and utilize SIEM and... 
    Cyber

    Chenega MIOS SBU

    Arlington, VA
    1 day ago
  • $53.9k - $120.1k

     ...ingenuity for clients across defense, national security, public...  ...Summary The Cybersecurity Incident Response Triage (IR) Analyst will work in the CIRT team...  ...Actively monitor and respond to cybersecurity incidents...  ...response lifecycles, common cyber‑attacks, insider‑threat indicators... 
    Cyber
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture Federal Services

    Arlington, VA
    1 day ago
  • Chenega MIOS SBU, located in Arlington, VA, is seeking a Cyber Defense Incident Responder (Advanced) responsible for leading a team to provide Incident...  ...response, along with the ability to mentor junior analysts. The ideal candidate will have a strong background in cybersecurity... 
    Cyber

    Chenega MIOS SBU

    Arlington, VA
    2 days ago
  • $120k - $170k

     ...Job Description Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Swing- Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret Clearance... 
    Cyber
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Shift work
    Weekend work
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    10 days ago
  • Chenega Corporation is seeking a Cyber Defense Incident Responder (Advanced) in Arlington, VA. This role requires expertise in threat detection and...  ...environments. The ideal candidate will lead a team, guide analysts, and contribute to government cybersecurity operations.... 
    Cyber

    Chenega Corporation

    Arlington, VA
    1 day ago
  •  ...single focus has been delivering cyber solutions to effectively...  ...! TDI is seeking a Senior Incident Response Analyst to join our team in support...  ...monitor, detect, investigate, and respond to cybersecurity threats...  ...automation scripts to strengthen SOC monitoring capabilities... 
    Cyber

    TDI (Tetrad Digital Integrity)

    Arlington, VA
    1 day ago
  • A leading social media company is seeking a Lead Cyber Security Operations Center Analyst to oversee incident responses and investigations. This role involves leading a team of analysts, developing detection strategies, and ensuring the safety of user data on the platform... 
    Cyber

    Tik Tok

    Washington DC
    10 hours ago
  • $120.8k - $265.8k

    CACI International Inc in Suitland, MD is seeking a Senior Incident Responder to monitor and manage cybersecurity incidents. The ideal candidate...  ...will possess 10+ years of experience in Computer Network Defense (CND) and hold a TS/SCI clearance. Responsibilities include... 
    Cyber

    CACI International

    Suitland, MD
    10 hours ago
  •  ...recognized members of the Cyber Elite, building meaningful...  ...for We are seeking a Tier 2 Analyst (Secret Clearance) to support enterprise SOC operations by reviewing and responding to escalated tickets from Tier...  ...cybersecurity to improve incident detection, analyze threat intelligence... 
    Cyber

    ShorePoint Inc

    Washington DC
    10 hours ago
  • $124.2k - $186.2k

     ...hiring for a Security Operations Center (SOC) role in Washington, D.C. This...  ...protecting both customer and internal data, responding to cybersecurity incidents promptly. The ideal candidate will...  ...3 years of SOC experience, managing cyber threats and incidents. The role offers... 
    Cyber

    Rubrik

    Washington DC
    3 days ago
  • $131.3k - $237.35k

    Leidos is seeking a Senior Incident Response Analyst in Bethesda, Maryland to support the DHS CISA Program. The role involves coordinating incident investigations, analyzing cyber incidents, and developing response procedures. A bachelor's degree in Computer Science or... 
    Cyber

    Leidos

    Arlington, VA
    1 day ago
  •  ...Level Security Operations Center Analyst to support SBA in Washington,...  ...You will monitor, detect, and respond to cybersecurity threats...  ...refine SIEM rules, and assist in incident response, for a role requiring...  ...strong communication and solid SOC experience in a federal environment... 

    Koniag Services, Inc.

    Washington DC
    1 day ago
  •  ...Industries in Washington, D.C. is seeking a SOC Analyst II to join our Security Operations team...  ...focuses on monitoring, triaging, and responding to cybersecurity threats. The ideal...  ...The SOC Analyst II will handle security incidents, conduct investigations, and collaborate... 

    CHAOS Industries

    Washington DC
    5 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The...  ...(DHS), Security Operations Center (SOC) Support Services is a US Government...  ..., analyzing, mitigating, and responding to cyber threats and adversarial activity on... 
    Cyber
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  •  ...technically advanced full-spectrum cyber, data operations, systems...  ...space operations, cyber defense and resiliency, vulnerability...  ...Government customer to provide onsite incident response to civilian...  ...), escalating to specialized analysts Required Skills U.S. Citizenship... 
    Cyber
    Contract work
    Immediate start
    Shift work
    Night shift
    Weekend work

    Nightwing

    Arlington, VA
    2 days ago
  • Cyber Defense Incident Responder (Advanced) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business...  ...work while guiding and directing senior and mid‑level analysts. This role involves advanced threat detection, threat intelligence... 
    Cyber
    Weekend work

    Chenega Corporation

    Arlington, VA
    2 days ago
  • $175k - $180k

    Job Title Lead Cyber Defense Incident Responder Clearance TS/SCI (active, required) Location Arlington, VA On-site Salary Range $175,000 to $180...  ...technical work while guiding and directing senior and mid-level analysts. This role involves advanced threat detection, threat... 
    Cyber
    Weekend work

    S2i2, Inc

    Arlington, VA
    1 day ago
  •  ...SOC Analyst At Accenture Federal Services, nothing matters more...  ...ingenuity for clients across defense, national security, public safety...  ...monitoring and security incident triage through the review of...  ...incidents to Tier 2 or incident responders. Job Qualifications:... 

    Accenture Federal Services

    Washington DC
    4 days ago
  • Zachary Piper Solutions seeks a SOC Lead to oversee 24/7 security operations for a DOE/NNSA-focused program. You will mentor a team of cybersecurity professionals, drive incident response, and enhance enterprise security operations in a mission-critical setting. Ideal... 
    Cyber

    Zachary Piper Solutions

    Washington DC
    3 days ago
  • Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-...  ...experience in cybersecurity operations, SOC analysis, or incident response. Direct...  ...connectivity and camera‑enabled participation. #J-18808-Ljbffr Cyber Synergy Inc
    Cyber
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Inc

    Washington DC
    4 days ago
  • $175k - $180k

    S2i2, Inc in Arlington, VA is seeking a Lead Cyber Defense Incident Responder. This role involves advanced threat detection, leading a team of analysts, and developing detection rules for government clients. The ideal candidate will have a Bachelor's degree in a related... 
    Cyber

    S2i2, Inc

    Arlington, VA
    3 days ago
  • ManTech is seeking a Cyber Security Engineer in McLean, VA to join our Cyber Incident Response Team. You will detect and respond to cybersecurity incidents, leveraging SIEM and other detection technologies to safeguard enterprise assets. The role requires 2+ years in cybersecurity... 
    Cyber

    ManTech

    Mc Lean, VA
    10 hours ago
  • Zachary Piper Solutions is looking for a skilled SOC Analyst to join their team in McLean, VA. This role involves high-impact responsibilities related to cyber threat detection and incident response. The ideal candidate will possess an active TS/SCI Full Scope Polygraph... 
    Cyber

    Zachary Piper Solutions

    Mc Lean, VA
    3 days ago
  •  ...Industries is redefining modern defense with a multi‑product...  ...We are seeking a SOC AnalystII to join our growing...  ...against evolving cyber threats. This role will...  ...Security Monitoring & Incident Response Monitor and triage...  ...incidents to senior analysts or engineering teams as... 
    Cyber

    CHAOS Industries

    Washington DC
    1 day ago
  • S2i2, Inc in Arlington, VA is hiring a Lead Cyber Defense Incident Responder to guide a team in advanced threat detection and response. This role requires TS/SCI clearance and a bachelor's degree in Computer Science or a related field. The ideal candidate will manage complex... 
    Cyber

    S2i2, Inc

    Arlington, VA
    1 day ago
  • Lumen is seeking a Cybersecurity Incident Response Team Engineer to protect global connectivity systems. This remote position allows you to work from anywhere in the U.S., responding to cybersecurity threats and mitigating risks while collaborating closely with teams to... 
    Cyber
    Remote job

    Lumen Inc

    Washington DC
    3 days ago
  • Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts...  ...tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the initial point... 
    Cyber
    Part time
    Shift work
    Night shift
    Weekend work
    Day shift
    2 days per week

    Tyto Athene, LLC

    Washington DC
    4 days ago
  • A government IT solutions contractor is seeking a Security Operations Center (SOC) Manager to provide strategic leadership for a 24/7 SOC. You'll oversee incident response operations, direct security teams, and ensure compliance with federal standards. The ideal candidate... 
    Cyber
    For contractors

    DirectViz Solutions, LLC

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense & Incident Responder (SOC Analyst). Be the first to apply!