Incident Response Analyst, Senior
$86.8k - $198kBooz Allen Hamilton
Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7x365 Security Operations Center and Incident Response team, responsible for continuous monitoring, detection, investigation, and response to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms. The role performs hands‑on incident response activities such as alert and incident triage, log and artifact analysis, threat identification, containment support, and incident documentation while leveraging SIEM, EDR, IDS, IPS, SOAR, and forensic tools to validate and escalate security events. The analyst contributes to the development of incident response playbooks and standard operating procedures, conducts proactive threat hunting using behavioral analytics and threat intelligence, and supports continuous monitoring and assessment efforts to identify risks and strengthen detection capabilities. This position collaborates closely with federal stakeholders, communicates findings to technical and non‑technical audiences, and produces high‑quality reports and briefings, all while helping to advance the maturity and effectiveness of the organization’s security operations.Join us. The world can’t wait. You Have: 5+ years of experience in a Security Operations Center (SOC) performing incident response activities, including event triage, log and artifact analysis, threat identification, incident documentation, and coordination of response actionsExperience using Splunk for security monitoring, log analysis, event correlation, alert investigation, and incident responseExperience analyzing and responding to security events across enterprise networks, endpoints, applications, and security platforms, such as SIEM, EDR, IDS, IPS, firewalls, and vulnerability management toolsExperience developing or contributing to incident response playbooks, workflows, or standard operating proceduresExperience with continuous monitoring and security assessment practices, including log analysis, control evaluation, and risk identificationExperience with security tools and investigative techniques used by SOC and incident response teams, such as packet analysis, log correlation, malware triage, and forensic imagingAbility to communicate clearly with both technical and non-technical audiences, and produce high‑quality incident reports, briefings, and technical documentationAbility to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirementsBachelor's degreeNice If You Have: Experience with enterprise security technologies, including SIEM, EDR, IDS, IPS, SOAR platforms, vulnerability management tools, and digital forensics solutionsExperience with Microsoft Defender platformExperience conducting threat hunting activities, leveraging behavioral analytics, threat intelligence, and anomaly detection to identify emerging threatsKnowledge of cybersecurity principles, including network security, endpoint security, identity and access management, and secure configuration baselinesKnowledge of modern application and infrastructure security concepts, such as container security, API security, and workload protectionAbility to build strong client relationships, collaborate across various teams, and communicate complex technical concepts in a clear mannerCISSP, CySA+, GCIH, GSEC, or CISSP CertificationsVetting:Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,800.00 to $198,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity StatementAs part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.Candidate AI Usage PolicyAI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work ModelOur people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.SummaryLocation: Bethesda, MDType: Full time
$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services...SeniorFull timeFlexible hours$135k - $175k
...global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities... ...and response capabilities. Serve as a senior escalation point for complex and high-priority security...SeniorSelf employmentLocal areaWorldwideMonday to FridayAfternoon shiftEarly shift$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SeniorFlexible hours$132.48k - $336.96k
Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC) is responsible... ...response efforts to enterprise-wide incidents, including post-incident root-cause analysis... ...critical security incidents. As an IR Analyst, you will belong to a team of strong...SeniorTemporary workShift work$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years...Senior- Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements... ...enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SeniorWork at office
$120k - $135k
...been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will...SeniorPermanent employmentContract workRemote work2 days per week$90k - $120k
...firsthand. Potomac Haven is looking for a Senior Analyst with real, hands‑on experience in the... ...assault and harassment prevention and response field to support the National Science Foundation... ..., sexual harassment and stalking incidents and is responsible for overseeing...SeniorTemporary workWork at officeRemote work- Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will be based in the Washington, D.C area.Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber Intelligence...Contract workFor contractors
- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
$87.1k - $157.45k
Description Leidos is seeking an experienced Incident Response Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantialportionof the cybersecurity workforce supporting the Defense...Contract workWork at officeLocal areaImmediate startRemote work$94k - $127k
Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join our award-winning organization and work with some...$80k - $128k
Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber...Interim roleInternshipWork at officeLocal areaWorldwideAfternoon shift- Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Location: Alexandria, VA and Seaside, CA. Responsibilities...
- Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
- Saliense in Alexandria, VA is seeking a senior cybersecurity leader with 10+ years of experience in incident response, security operations, and penetration testing to guide a high-impact security program. You will lead a team, develop strategic security initiatives, and...Senior
- Base One Technologies is seeking a seasoned Cyber Threat Hunter to serve as the hunt and incident response SME in a high-security environment. You will apply in-depth knowledge of threat actor tools and TTPs, distill findings into executive summaries and deep technical...Senior
- Leidos is seeking a Security Operations Center (SOC) Lead in Alexandria, VA, to direct day-to-day SOC activities and manage 24x7 incident response operations for the DISA GSM-O program. The role requires a TS/SCI clearance, a strong background in cybersecurity, and hands-...Senior
- ...DISA GSM-O program in Alexandria, VA. The role directs day-to-day SOC activities, coordinates 24x7 incident handling, and ensures strict adherence to incident response processes. Qualified candidates will have TS/SCI clearance, 10+ years in cybersecurity, and 4+ years...Senior
- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...SeniorWork at officeRemote work
- EY is seeking a Senior for Forensics - Crisis and Investigations - Cyber Response to lead client engagements involving cyber incidents and data breaches. You will focus on post-incident activities, assess affected data, and coordinate remediation with cross-functional...Senior
- Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will... ..., identify operational risks and process gaps, support incident-response, and translate complex cyber information into actionable recommendations...
$155k - $200k
...for a long-term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position is based in our New Orleans office, we welcome applicants from across the United...SeniorFull timeWork at officeRemote workFlexible hours- ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an...SeniorContract workLocal area
- ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates disciplined war rooms, enforces cadence and runbooks, drives cross-team collaboration, and provides executive-ready communications...SeniorContract workWork experience placementWork at officeShift work
$142.9k - $266k
Cyber Incident Response Business Development Senior ManagerThe Opportunity:Join a team to contribute to Booz Allen's growth efforts for its Incident Response business, applying business development, strategic sales expertise and knowledge of Incident Response, including...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work- ...seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the DMDC CyberPRIMES program. You will perform advanced... ...escalated from Tier 1, correlate security data, and support incident triage and containment for DHRA and DMDC systems. The role requires...
- Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery across government networks. The role requires DoD IAT Level II certification and a DoD Secret Clearance with potential TS/SCI eligibility...
$104k - $166k
Responsibilities The Vulnerability Management Analyst will support the Federal Aviation Administration (FAA) under the BNATCS contract, providing specialized... ...to aviation and federal agencies. Support incident response teams by providing vulnerability insights...SeniorContract workLocal areaRemote workShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Analyst, Senior. Be the first to apply!
- merchandising analyst Bethesda, MD
- accessibility analyst Bethesda, MD
- hybrid analyst Bethesda, MD
- integration analyst Bethesda, MD
- medical coding analyst Bethesda, MD
- safety analyst Bethesda, MD
- mental health analyst Bethesda, MD
- medicare analyst Bethesda, MD
- petroleum analyst Bethesda, MD
- analyst market research Bethesda, MD

