Cyber Defense & Incident Responder (SOC Analyst)
Gormat
Job Description
Job Description
Quick Overview:
- 100% work on site - no remote work
- Secret clearance with the ability to acquire a TS
- Locations near the Pentagon or Mayfield VA
- Customer DEA
- Intermediate SOC Analyst
- 6 years with Bachelor
Position Summary
The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations.
The analyst will leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.
Key Responsibilities
Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents
Review SIEM, IDS/IPS, EDR, and related security tool alerts for anomalous activity, indicators of compromise (IOCs), and indicators of attack (IOAs).
Validate alerts, reduce false positives, and prioritize incidents based on severity and impact
Perform triage and analysis of security events to determine scope, severity, and urgency
Examine log data, network telemetry, and endpoint information to identify malicious activity
Correlate event details with internal and external threat intelligence
Execute incident response actions in accordance with established procedures
Contain affected systems, remove malicious artifacts, and assist with system recovery
Escalate complex or critical incidents to senior analysts or SOC leadership as needed
Document investigative findings, incident timelines, and remediation actions
Create and manage incident tickets and upload supporting evidence and artifacts
Contribute to after action reviews and post incident reporting
Communicate findings clearly and concisely to technical and nontechnical stakeholders
Maintain SOC processes, tools, and playbooks to support effective incident handling
Recommend improvements to SOPs, escalation procedures, and detection capabilities
Participate in training exercises and knowledge sharing activities
Support red, blue, or purple team exercises as directed
Stay informed on current and emerging cyber threats, threat actor TTPs, and industry trends
Required Qualifications
Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, Data Science, or related field from an ABET accredited or CAE designated institution preferred. Equivalent experience may be considered in accordance with SOW education substitution requirements
Minimum of 6 years of experience in Information Technology and/or Information Security
Experience with incident response, threat analysis, SIEM platforms, endpoint security tools, and log analysis
Strong analytical and investigative skills with the ability to derive accurate conclusions during incident investigations
Active Secret clearance or higher required
Must be eligible to obtain a Top Secret clearance if requested
Ability to successfully complete a DEA background investigation
Must possess at least one applicable DoD 8140 certification or obtain certification within 6 months of onboarding
Preferred Qualifications
Preferred DCWF Role 511 Cyber Defense Analyst certifications include:
CBROPS
CFR
CompTIA Cloud+, CySA+, PenTest+, or Security+ CE
FITSP O
SANS GCED, GCFA, GCIA, GDSA, GFACT, GICSP, GISF, or GSEC
Additional Information
This role primarily supports the Operations & Response Team, with potential support across Vulnerability Assessment and Penetration Testing and Engineering teams.The position will coordinate closely with cybersecurity, IT operations, engineering, software operations, and investigative technology teams to support enterprise security operations and incident response activities.
Job Posted by ApplicantPro- ...Solutions, LLC is seeking a skilled Security Operations Center Analyst (SOC) in Arlington, Virginia. This role requires a bachelor's... ...environment. You will monitor security events, analyze network incidents, and utilize various security tools. Join a team committed to...Cyber
- ...cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in... ...tools, triage alerts, and investigate cyber threats. Ideal candidates have six years... ...in cybersecurity, preferably three in SOC or IR roles. Key responsibilities include...Cyber
- SecuriGence, located in Arlington, VA, seeks a Security Operations Center Analyst (SOC) to monitor devices and applications, manage incidents, and support recovery efforts on government networks. You will analyze events, coordinate with stakeholders, and utilize SIEM and...Cyber
$53.9k - $120.1k
...ingenuity for clients across defense, national security, public... ...Summary The Cybersecurity Incident Response Triage (IR) Analyst will work in the CIRT team... ...Actively monitor and respond to cybersecurity incidents... ...response lifecycles, common cyber‑attacks, insider‑threat indicators...CyberWork experience placementLive inWork at officeLocal area- Chenega MIOS SBU, located in Arlington, VA, is seeking a Cyber Defense Incident Responder (Advanced) responsible for leading a team to provide Incident... ...response, along with the ability to mentor junior analysts. The ideal candidate will have a strong background in cybersecurity...Cyber
$120k - $170k
...Job Description Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Swing- Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret Clearance...CyberFull timeContract workTemporary workWork at officeLocal areaShift workWeekend workAfternoon shift- Chenega Corporation is seeking a Cyber Defense Incident Responder (Advanced) in Arlington, VA. This role requires expertise in threat detection and... ...environments. The ideal candidate will lead a team, guide analysts, and contribute to government cybersecurity operations....Cyber
- ...single focus has been delivering cyber solutions to effectively... ...! TDI is seeking a Senior Incident Response Analyst to join our team in support... ...monitor, detect, investigate, and respond to cybersecurity threats... ...automation scripts to strengthen SOC monitoring capabilities...Cyber
- A leading social media company is seeking a Lead Cyber Security Operations Center Analyst to oversee incident responses and investigations. This role involves leading a team of analysts, developing detection strategies, and ensuring the safety of user data on the platform...Cyber
$120.8k - $265.8k
CACI International Inc in Suitland, MD is seeking a Senior Incident Responder to monitor and manage cybersecurity incidents. The ideal candidate... ...will possess 10+ years of experience in Computer Network Defense (CND) and hold a TS/SCI clearance. Responsibilities include...Cyber- ...recognized members of the Cyber Elite, building meaningful... ...for We are seeking a Tier 2 Analyst (Secret Clearance) to support enterprise SOC operations by reviewing and responding to escalated tickets from Tier... ...cybersecurity to improve incident detection, analyze threat intelligence...Cyber
$124.2k - $186.2k
...hiring for a Security Operations Center (SOC) role in Washington, D.C. This... ...protecting both customer and internal data, responding to cybersecurity incidents promptly. The ideal candidate will... ...3 years of SOC experience, managing cyber threats and incidents. The role offers...Cyber$131.3k - $237.35k
Leidos is seeking a Senior Incident Response Analyst in Bethesda, Maryland to support the DHS CISA Program. The role involves coordinating incident investigations, analyzing cyber incidents, and developing response procedures. A bachelor's degree in Computer Science or...Cyber- ...Level Security Operations Center Analyst to support SBA in Washington,... ...You will monitor, detect, and respond to cybersecurity threats... ...refine SIEM rules, and assist in incident response, for a role requiring... ...strong communication and solid SOC experience in a federal environment...
- ...Industries in Washington, D.C. is seeking a SOC Analyst II to join our Security Operations team... ...focuses on monitoring, triaging, and responding to cybersecurity threats. The ideal... ...The SOC Analyst II will handle security incidents, conduct investigations, and collaborate...
$131.3k - $237.35k
...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The... ...(DHS), Security Operations Center (SOC) Support Services is a US Government... ..., analyzing, mitigating, and responding to cyber threats and adversarial activity on...CyberFlexible hours- ...technically advanced full-spectrum cyber, data operations, systems... ...space operations, cyber defense and resiliency, vulnerability... ...Government customer to provide onsite incident response to civilian... ...), escalating to specialized analysts Required Skills U.S. Citizenship...CyberContract workImmediate startShift workNight shiftWeekend work
- Cyber Defense Incident Responder (Advanced) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business... ...work while guiding and directing senior and mid‑level analysts. This role involves advanced threat detection, threat intelligence...CyberWeekend work
$175k - $180k
Job Title Lead Cyber Defense Incident Responder Clearance TS/SCI (active, required) Location Arlington, VA On-site Salary Range $175,000 to $180... ...technical work while guiding and directing senior and mid-level analysts. This role involves advanced threat detection, threat...CyberWeekend work- ...SOC Analyst At Accenture Federal Services, nothing matters more... ...ingenuity for clients across defense, national security, public safety... ...monitoring and security incident triage through the review of... ...incidents to Tier 2 or incident responders. Job Qualifications:...
- Zachary Piper Solutions seeks a SOC Lead to oversee 24/7 security operations for a DOE/NNSA-focused program. You will mentor a team of cybersecurity professionals, drive incident response, and enhance enterprise security operations in a mission-critical setting. Ideal...Cyber
- Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-... ...experience in cybersecurity operations, SOC analysis, or incident response. Direct... ...connectivity and camera‑enabled participation. #J-18808-Ljbffr Cyber Synergy IncCyberFull timeContract workRemote workMonday to Friday
$175k - $180k
S2i2, Inc in Arlington, VA is seeking a Lead Cyber Defense Incident Responder. This role involves advanced threat detection, leading a team of analysts, and developing detection rules for government clients. The ideal candidate will have a Bachelor's degree in a related...Cyber- ManTech is seeking a Cyber Security Engineer in McLean, VA to join our Cyber Incident Response Team. You will detect and respond to cybersecurity incidents, leveraging SIEM and other detection technologies to safeguard enterprise assets. The role requires 2+ years in cybersecurity...Cyber
- Zachary Piper Solutions is looking for a skilled SOC Analyst to join their team in McLean, VA. This role involves high-impact responsibilities related to cyber threat detection and incident response. The ideal candidate will possess an active TS/SCI Full Scope Polygraph...Cyber
- ...Industries is redefining modern defense with a multi‑product... ...We are seeking a SOC AnalystII to join our growing... ...against evolving cyber threats. This role will... ...Security Monitoring & Incident Response Monitor and triage... ...incidents to senior analysts or engineering teams as...Cyber
- S2i2, Inc in Arlington, VA is hiring a Lead Cyber Defense Incident Responder to guide a team in advanced threat detection and response. This role requires TS/SCI clearance and a bachelor's degree in Computer Science or a related field. The ideal candidate will manage complex...Cyber
- Lumen is seeking a Cybersecurity Incident Response Team Engineer to protect global connectivity systems. This remote position allows you to work from anywhere in the U.S., responding to cybersecurity threats and mitigating risks while collaborating closely with teams to...CyberRemote job
- Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts... ...tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the initial point...CyberPart timeShift workNight shiftWeekend workDay shift2 days per week
- A government IT solutions contractor is seeking a Security Operations Center (SOC) Manager to provide strategic leadership for a 24/7 SOC. You'll oversee incident response operations, direct security teams, and ensure compliance with federal standards. The ideal candidate...CyberFor contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense & Incident Responder (SOC Analyst). Be the first to apply!
- law enforcement response team analyst Arlington, VA
- etl analyst Arlington, VA
- command center analyst Arlington, VA
- senior analyst Arlington, VA
- behavioral analyst Arlington, VA
- corporate actions analyst Arlington, VA
- health analyst Arlington, VA
- incentive compensation analyst Arlington, VA
- agriculture analyst Arlington, VA
- senior internal controls analyst Arlington, VA

