Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Cybersecurity Incident Response Specialist

$100k - $120k

BERING STRAITS PROFESSIONAL SERVICES LLC

Job Description

Job Description

About Bering Straits Professional Services

Paragon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon’s experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients’ projects in line with local, state and federal guidelines and regulations.

 

About this position: Sr. Cybersecurity Incident Response Specialist

Location – Washington, DC

The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position.

 

Wage/Salary Range: $100k - $120k

 

 

Applicants will be notified via phone or email within ten (10) business days of submittal.

 

Essential Duties & Responsibilities

  • Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization’s Network, Systems, Applications, and Web services.
  • Provide senior level cybersecurity incident response expertise in support of the client’s Incident Response processes and procedures.
  • Develop operational baselines such data flows and application interactions to enhance SOC’s ability to respond to incidents.
  • Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800-61 and Government guidance.
  • Follow current guidance from NIST 800-61, Federal Incident Notification Guidelines, CISA’s Incident Response and Vulnerability Playbook, and client guidance.
  • Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards.
  • Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity.
  • Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client’s incident response program.
  • Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents.
  • Implement cybersecurity mitigations leveraging client tools and systems.
  • Create and escalate cybersecurity-related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines.
  • Manage, coordinate, and respond to FOIA, audits, data calls, e-discovery and information requests.
  • Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis.
  • Review and handle phishing messages reported by client staff.

 

Required (Minimum Necessary) Qualifications

  • Education Requirements:
    • High School or GED-General Educational Development-GED Diploma
    • Bachelor’s degree in computer science or equivalent is preferred

 

  • Level of Experience Requirements: Minimum of five years hands-on experience
  • Proven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments.

Knowledge, Skills, Abilities, and Other Characteristics

  • Proficiency with SIEM, EDR/XDR platforms, and forensic tools.
  • Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies.
  • Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity.
  • Familiarity with malware analysis, reverse engineering basics, and memory analysis concepts
  • Experience developing and tuning detection rules, playbooks, and automated response workflows.
  • Working knowledge of incident response frameworks (e.g., NIST SP 800-61, SANS).
  • Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting.
  • Understanding of basic computer and networking technologies.
  • Windows and Linux/Unix operating systems
  • Networking technologies (routing, switching, VLANs, subnets, firewalls)
  • Common networking protocols – SSH, SMB, SMTP, FTP/SFTP, DNS, etc.
  • Common enterprise technologies – Active Directory, Group Policy, and the Microsoft Azure suite of cloud services.
  • Understanding of current system logging technology and retrieving information from a plethora of technology platforms.
  • Ability to work well in a team environment.
  • Self-starter with ability to work with little supervision.
  • Willingness to take on and adapt to new, open-ended tasks for which there is no current standard operating procedure.
  • Ability to research independently and self-teach.
  • Strong analytical and decision-making skills under pressure.
  • Excellent written and verbal communication, including incident documentation and executive briefings.
  • Ability to lead investigations, mentor junior analysts, and collaborate with cross-functional teams.
  • Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required.

Preferred

  • Interest in security/hacking culture. Ability to “think like an attacker”
  • General cybersecurity certifications (one or more of the following preferred):
  • CompTIA Security+
  • CompTIA Cybersecurity Analyst (CySA+)
  • Certified Ethical Hacker (CEH)
  • GIAC Certified Incident Handler (GCIH)
  • Any cloud security certification, especially:
  • CompTIA Cloud+
  • Certified Cloud Security Professional (CCSP)
  • Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK)
  • Any Microsoft 365/Azure cybersecurity certification, especially:
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)
  • Microsoft Certified: Azure Fundamentals (AZ-900)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender.
  • Knowledge of common enterprise technologies, policies, and concepts such as:
  • Microsoft Sentinel SIEM
  • Kusto Query Language (KQL)
  • Mobile device technologies (iOS, Android)
  • Scripting experience (PowerShell, Python, etc.)
  • Microsoft Power BI
  • Azure DevOps
  • Artificial Intelligence (AI) / Machine Learning (ML) expertise
  • In-depth knowledge of AI and ML concepts.
  • How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities.
  • Experience with specific AI services offered within Microsoft Azure.

 

Supervisory Responsibilities

  • This position will not have supervisory responsibilities.

DOT Covered/Safety-Sensitive Role Requirements

  • This position is not subject to federal requirements regarding Department of Transportation “safety-sensitive” functions.

Necessary Physical Requirements

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this role. Employees must always maintain a constant state of mental alertness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

  • Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about.

 

Work Environment

The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

Physical Setting: Washington DC

Schedule and Flexibility: Full Time in Office

 

Additional Qualifying Factors

As a condition of employment, you will be required to pass a pre-employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations.

 

Shareholder Preference

BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job.

 

Bering Straits Native Corporation is an equal opportunity employer.  All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law.

 

Vacancy posted 22 days ago
Similar jobs that could be interesting for youBased on the Sr. Cybersecurity Incident Response Specialist in Washington DC vacancy
  •  ...support its clients’ projects in line with local, state and federal guidelines and regulations.About this position: Sr. Cybersecurity Incident Response SpecialistLocation - Washington, DCThe Essential Duties and Responsibilities are intended to present a descriptive list... 
    Senior
    Full time
    Contract work
    Local area

    Bering Straits Native Corporation

    Washington DC
    1 day ago
  • $130k - $152.5k

     ...Senior Associate/Cybersecurity & Incident Response (Forensic Services Practice) Boston, MA, United States; Chicago, IL, United States; Dallas, Texas, United States; Houston, Texas, United States; Washington, DC, United States CRA is a leading global consulting firm... 
    Senior
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    2 days ago
  • Booz Allen Hamilton is seeking an experienced information security risk specialist to join a 24x7 SOC and Incident Response team. You will monitor, detect, investigate, and respond to cybersecurity threats across enterprise networks, endpoints, and applications, leveraging... 
    Senior

    Booz Allen Hamilton

    Bethesda, MD
    1 day ago
  • $260k - $365k

     ...Job Description Job Description Cybersecurity & Incident Response Managing Associate Attorney Direct Counsel is seeking a Cybersecurity & Incident Response Managing Associate with 3–5 years of experience to join a leading global law firm and its nationally recognized... 
    Suggested
    Flexible hours

    Direct Counsel

    Washington DC
    25 days ago
  •  ...pivotal role in safeguarding the cybersecurity posture of a DHS-affiliated program. This position is responsible for designing, developing,...  ...protection strategies.The specialist ensures that all...  ...investigations in response to cyber incidents, while shaping the evolution... 
    Senior
    Full time
    Contract work
    Local area
    Monday to Friday

    ValidaTek

    Washington DC
    2 days ago
  • MANTECH seeks a Cyber Incident Response Analyst to join our cybersecurity team in McLean, Virginia. You will monitor, analyze, and respond to security incidents across 24x7 operations, with a fixed 4-day schedule and shift options. Training on day shift for 6 months is... 
    Senior
    Day shift

    ManTech International Corporation

    Mc Lean, VA
    5 days ago
  •  ...Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret clearance, a minimum... 
    Senior
    Work at office

    CORTEK Inc

    Washington DC
    1 hour ago
  • $120k - $135k

     ...Description Job Description Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission,...  ...business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical... 
    Senior
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity LLC

    Arlington, VA
    13 days ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems... 
    Senior
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    4 days ago
  • $72.57k - $95.54k

     ...Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311 We are seeking a Junior Cybersecurity Specialist to support incident response, vulnerability management, and threat monitoring for a federal agency's IT security program. Position... 
    Permanent employment
    Full time
    Temporary work
    Work at office
    Local area

    Oxley Enterprises Inc

    Alexandria, VA
    1 day ago
  •  ...Job Description: We are seeking a Cybersecurity Specialist with expertise in Zero Trust...  ...compliance tools (e.g., OPA, Conftest) Responsibilities Design and implement Zero Trust...  ...platforms (e.g., Splunk, Datadog) Support incident detection, response, and remediation... 
    Full time
    For contractors
    Remote work

    Network Designs, Inc.

    Washington DC
    1 day ago
  • Base One Technologies is seeking a seasoned Cyber Threat Hunter to serve as the hunt and incident response SME in a high-security environment. You will apply in-depth knowledge of threat actor tools and TTPs, distill findings into executive summaries and deep technical... 
    Senior

    Base One Technologies

    Arlington, VA
    5 days ago
  •  ...Experience : Minimum of 5+ years of experience in cybersecurity, with a focus on network security and incident response Position   Description PingWind is...  ...Technical Implementation Guide) Compliance Specialist who is responsible for leading efforts to ensure... 
    Full time
    Temporary work

    Pingwind

    Adelphi, MD
    1 day ago
  • $157k - $210k

     ...decision-making, with a strong emphasis on building trusted relationships across the organization. As Senior Counsel, Cybersecurity & Incident Response, you will serve as a key legal partner to Security and other cross-functional teams on cybersecurity preparedness,... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Washington DC
    27 days ago
  • $114.1k - $171.2k

     ...influencers on these policy issues, including trade associations and coalitions. While the role will have policy and advocacy responsibility for certain product lines, the individual will also represent Honda enterprise wide (across all product lines) and therefore must... 
    Senior
    Full time
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Relocation package
    Shift work

    American Honda Motor Co., Inc.

    Washington DC
    13 days ago
  •  ...join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program...  ..., and multi-stakeholder coordination during high-stakes cybersecurity events. Impact: Direct support to national-level cyber... 
    Senior
    Contract work
    Local area

    Zantech

    Arlington, VA
    2 days ago
  •  ...a Senior Associate to join our Federal Advisory practice. Responsibilities: Analyze complex enterprise environments from an information...  ...architecture, cloud security, DevSecOps, risk assessment, incident response, Risk Management Framework (RMF), penetration testing... 
    Senior
    Full time
    Local area

    KPMG

    Washington DC
    a month ago
  • Cayuse is seeking an Emergency Support Function Specialist #14, (ESF) Junior to plan, coordinate and execute disaster response activities and to stabilize supply chains and...  ...Secret/SCI clearance, a strong background in incident management, and the ability to work in a fast... 

    UNAVAILABLE

    Arlington, VA
    3 days ago
  •  ...Technology, Office of Cyber Security Testing, Monitoring & Response (DT/CTMR) & monitors & conducts incident response for the Agency’s classified/unclassified...  ...full incident lifecycle, evaluates and improves cybersecurity capabilities and processes, leads CIRT projects,... 
    For contractors
    Work at office

    US Department of State Headquarters

    Washington DC
    3 days ago
  •  ...The Information Technology Specialist (Security) serves as a Cyber...  ...Intelligence Analyst, a technical cybersecurity subject matter expert and...  .... The incumbent will be responsible for providing threat intelligence...  ...triage, investigation, and incident response. Conducting threat... 
    Permanent employment
    Full time
    Temporary work
    Part time
    Second job
    Work at office
    Trial period

    U.S. Courts

    Washington DC
    2 days ago
  • $111.5k - $207.5k

     ...national security. Job Title: Senior Specialist, Full Stack Engineer Job Code: 4000...  ...life cycle. The individual will be responsible for designing, implementing, and deploying...  ..., industry’s best practices, and cybersecurity protocols. Contribute to improving... 
    Senior
    Local area
    Flexible hours

    L3Harris

    Washington DC
    2 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Senior
    Flexible hours

    Leidos Inc

    Arlington, VA
    6 days ago
  • $90k - $110k

     ....Oversee access control, badging, visitor management, CCTV, alarms, and related technologies.Coordinate emergency response operations and serve as incident commander until relieved.Support executive protection activities, board meetings, and high-profile events.Conduct... 
    Senior
    Full time
    Contract work
    Temporary work
    Work at office
    Immediate start
    Flexible hours

    American Chemical Society

    Washington DC
    2 days ago
  • $169.01k - $370.53k

     ...KPMG is currently seeking a Specialist Director, Cloud Security to...  ...Services practice. Responsibilities: Provide strategic leadership...  ...; Partner with cloud, cybersecurity, architecture, and business...  ...managed services, including incident, problem, and service request... 
    Full time
    H1b
    Local area

    KPMG

    Washington DC
    12 days ago
  • $100k - $120k

     ...Acquisition Program Management Offices (CG-SEA) in Washington DC, in the areas of Information Assurance (IA) and cybersecurity. The candidate will be responsible for analyzing USCG cutter computer/PLC based control systems as well as networks for hull, machinery, and... 
    Full time
    Work experience placement
    Work at office

    Tmmg

    Washington DC
    1 day ago
  •  ...security operations. Based in McLean, VA, you will manage complex incidents, mentor junior analysts, and drive strategic SOC initiatives...  ...You will lead threat hunting, forensic analysis, and incident response across GCP/Kubernetes, leveraging SIEM tools like Chronicle... 
    Senior

    ID.me Inc

    Mc Lean, VA
    3 days ago
  • $180k - $225k

     ...infrastructure partners.   The ideal candidate is a proven cybersecurity leader with a track record of delivering high-impact cyber...  ...cyber operations, including threat detection and analysis, incident response, threat hunt, vulnerability management, and more.   As a strategic... 
    Senior
    Contract work
    Local area

    ECS Federal

    Arlington, VA
    a month ago
  • $132.48k - $336.96k

    Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC) is responsible...  ...response efforts to enterprise-wide incidents, including post-incident root-cause...  ...foundation is a comprehensive data privacy and cybersecurity program we operate under defined... 
    Senior
    Temporary work
    Shift work

    TikTok USDS Joint Venture

    Washington DC
    4 days ago
  • $90k - $115k

    Cyber Intel Specialist - Senior Associate Job Summary: Lafayette...  ...consulting support for federal cybersecurity programs. The Cyber Intel...  ...consulting skills. Job Responsibilities: Provide expertise related...  ...Perform analysis on active cyber incidents, events and vulnerabilities... 
    Senior
    Contract work
    Work at office
    Flexible hours
    3 days per week

    Lafayette Group Inc.

    Arlington, VA
    6 days ago
  • Lafayette Group Inc. seeks a Cyber Intel Specialist - Senior Associate to provide advanced consulting on federal cybersecurity programs. You will translate complex cyber threat intel into actionable guidance for diverse audiences and support strategic planning with executives... 
    Senior
    3 days per week

    Lafayette Group Inc.

    Arlington, VA
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Cybersecurity Incident Response Specialist. Be the first to apply!