Sr. Cybersecurity Incident Response Specialist
$100k - $120kBERING STRAITS PROFESSIONAL SERVICES LLC
Job Description
Job Description
About Bering Straits Professional Services
Paragon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon’s experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients’ projects in line with local, state and federal guidelines and regulations.
About this position: Sr. Cybersecurity Incident Response Specialist
Location – Washington, DC
The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position.
Wage/Salary Range: $100k - $120k
Applicants will be notified via phone or email within ten (10) business days of submittal.
Essential Duties & Responsibilities
- Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization’s Network, Systems, Applications, and Web services.
- Provide senior level cybersecurity incident response expertise in support of the client’s Incident Response processes and procedures.
- Develop operational baselines such data flows and application interactions to enhance SOC’s ability to respond to incidents.
- Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800-61 and Government guidance.
- Follow current guidance from NIST 800-61, Federal Incident Notification Guidelines, CISA’s Incident Response and Vulnerability Playbook, and client guidance.
- Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards.
- Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity.
- Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client’s incident response program.
- Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents.
- Implement cybersecurity mitigations leveraging client tools and systems.
- Create and escalate cybersecurity-related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines.
- Manage, coordinate, and respond to FOIA, audits, data calls, e-discovery and information requests.
- Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis.
- Review and handle phishing messages reported by client staff.
Required (Minimum Necessary) Qualifications
- Education Requirements:
- High School or GED-General Educational Development-GED Diploma
- Bachelor’s degree in computer science or equivalent is preferred
- Level of Experience Requirements: Minimum of five years hands-on experience
- Proven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments.
Knowledge, Skills, Abilities, and Other Characteristics
- Proficiency with SIEM, EDR/XDR platforms, and forensic tools.
- Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies.
- Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity.
- Familiarity with malware analysis, reverse engineering basics, and memory analysis concepts
- Experience developing and tuning detection rules, playbooks, and automated response workflows.
- Working knowledge of incident response frameworks (e.g., NIST SP 800-61, SANS).
- Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting.
- Understanding of basic computer and networking technologies.
- Windows and Linux/Unix operating systems
- Networking technologies (routing, switching, VLANs, subnets, firewalls)
- Common networking protocols – SSH, SMB, SMTP, FTP/SFTP, DNS, etc.
- Common enterprise technologies – Active Directory, Group Policy, and the Microsoft Azure suite of cloud services.
- Understanding of current system logging technology and retrieving information from a plethora of technology platforms.
- Ability to work well in a team environment.
- Self-starter with ability to work with little supervision.
- Willingness to take on and adapt to new, open-ended tasks for which there is no current standard operating procedure.
- Ability to research independently and self-teach.
- Strong analytical and decision-making skills under pressure.
- Excellent written and verbal communication, including incident documentation and executive briefings.
- Ability to lead investigations, mentor junior analysts, and collaborate with cross-functional teams.
- Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required.
Preferred
- Interest in security/hacking culture. Ability to “think like an attacker”
- General cybersecurity certifications (one or more of the following preferred):
- CompTIA Security+
- CompTIA Cybersecurity Analyst (CySA+)
- Certified Ethical Hacker (CEH)
- GIAC Certified Incident Handler (GCIH)
- Any cloud security certification, especially:
- CompTIA Cloud+
- Certified Cloud Security Professional (CCSP)
- Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK)
- Any Microsoft 365/Azure cybersecurity certification, especially:
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)
- Microsoft Certified: Azure Fundamentals (AZ-900)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender.
- Knowledge of common enterprise technologies, policies, and concepts such as:
- Microsoft Sentinel SIEM
- Kusto Query Language (KQL)
- Mobile device technologies (iOS, Android)
- Scripting experience (PowerShell, Python, etc.)
- Microsoft Power BI
- Azure DevOps
- Artificial Intelligence (AI) / Machine Learning (ML) expertise
- In-depth knowledge of AI and ML concepts.
- How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities.
- Experience with specific AI services offered within Microsoft Azure.
Supervisory Responsibilities
- This position will not have supervisory responsibilities.
DOT Covered/Safety-Sensitive Role Requirements
- This position is not subject to federal requirements regarding Department of Transportation “safety-sensitive” functions.
Necessary Physical Requirements
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this role. Employees must always maintain a constant state of mental alertness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
- Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about.
Work Environment
The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
Physical Setting: Washington DC
Schedule and Flexibility: Full Time in Office
Additional Qualifying Factors
As a condition of employment, you will be required to pass a pre-employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations.
Shareholder Preference
BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job.
Bering Straits Native Corporation is an equal opportunity employer. All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law.
$130k - $152.5k
...CRA clients in preparation of, and in response to, data security matters, which may include... ...breach detection, threat analysis, incident response and malware analysis; Performing... ...security controls in accordance with cybersecurity frameworks that are included in one or...SeniorWork at officeLocal areaWork from home3 days per week$100k - $126.5k
...Consulting Associate/Cybersecurity & Incident Response CRA's Forensic Services practice supports companies' commitment to integrity by assisting them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct, and non-compliance....SuggestedWork at officeWork from home3 days per week- ...Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission, complexity, and trust... ...the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government...Senior
- We are seeking a skilled Incident Response Specialist to join our Cybersecurity Operations team. In this role, you will be responsible for detecting, investigating, responding to, and recovering from cybersecurity incidents affecting enterprise systems and networks. The...Suggested
$120k - $135k
...the Senate community. The Cybersecurity Department protects the systems... ...: The Cybersecurity Senior Specialist supports technical analysis... ...Diploma (or GED). Key Responsibilities Mobile Device Forensics (iOS... ...emphasis on mobile‑related incidents and artifacts. Perform supporting...SeniorPermanent employmentFor contractorsWork experience placementRemote workRelocation packageNight shift2 days per week3 days per week- ...Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret clearance, a minimum...SeniorWork at office
- ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor’...Senior
- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...SeniorWork at officeRemote work
- ...Experience : Minimum of 5+ years of experience in cybersecurity, with a focus on network security and incident response Position Description PingWind is... ...Technical Implementation Guide) Compliance Specialist who is responsible for leading efforts to ensure...Full timeTemporary work
$207k - $301k
...practical experience. 8 years of experience managing enterprise incident response operations and threat containment. 3 years of experience... ...qualifications Possession of industry-recognized cybersecurity certifications such as CISSP, CISM, or GIAC (e.g., GCFA, GCFE...Local area- ...Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming... ...analysis, and multi-stakeholder coordination during high-stakes cybersecurity events. Impact: Direct support to national-level cyber...SeniorContract workLocal area
- ...Consolidating/Reporting Specialist Location Alexandria, Va... ...Certifications Holds relevant cybersecurity and analytics certifications... .../Reporting Specialist responsible for consolidating, analyzing... ...with cybersecurity analysts, incident response personnel, and system...
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services...SeniorFlexible hours$160k - $190k
The Position Washington, D.C. - Flexible hybrid working arrangement. Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and international data breach and privacy laws Drafting legal notices of a data breach...Full timeFlexible hours- ...Energy. As an Information Technology Specialist (INFOSEC), you will be providing enterprise... ...in information technology, cybersecurity, data governance, and emerging technology... ...security frameworks. Oversee complex incident response protocols, vulnerability management programs...Work at office
- ...As a Information Technology Specialist (INFOSEC), you will be... ...in information technology, cybersecurity, data governance, and emerging... ...of innovative technologies. Responsibilities As a full performance GS-15... ...frameworks. Oversee complex incident response protocols,...Work at officeRemote work
- ...strong defensive cyber background and "hands-on" experience in incident response. The incumbent will perform multiple and varying... ...in NIST Special Publication 800-181 National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce for the roles of Defensive...Permanent employmentTemporary workSecond jobWork at officeTrial periodWeekend work
$160k - $190k
...valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Washington, D.C. Office.... ...The Position Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and...Full timeWork at officeFlexible hours- Job Overview A law firm seeks a Cyber Incident Response Associate Attorney in Washington, DC. This role involves managing cybersecurity incidents and advising clients on data privacy laws. The position offers a flexible, hybrid working arrangement. Duties Manage incident...Flexible hours
$160k - $190k
...nation’s largest law firms. This position offers a flexible, hybrid working arrangement. The Position Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and international data breach and privacy laws Drafting...Full timeFlexible hours$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SeniorLocal areaImmediate startRemote workFlexible hours$70.35k - $205.8k
...our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare... ...for, respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response services to our...SeniorWork experience placementLive inWork at officeLocal area$100k - $150k
...Sigma Defense is seeking a Senior Cybersecurity Specialist to provide advanced technical and analytical cybersecurity support across the full spectrum of a US Navy Above Water Sensors and Lasers programs. This role supports full acquisition lifecycle activities, including...SeniorFull timeContract work- ...Senior Cybersecurity Operations Engineer Connexus Hub is seeking a Senior Cybersecurity Operations Engineer to support a federal... ...role leads security operations, continuous monitoring, and incident response across Azure cloud and on-prem infrastructure. Key Responsibilities...Senior
$135k - $145k
...with a Washington, DC base company to locate a Senior Cybersecurity Engineer for a full time role. The Senior... ...operational needs with long‑term security strategy. Responsibilities: Security Operations & Incident Response Monitor, analyze, and respond to security...SeniorFull time- ...Senior Payments Specialist Sparks Group has teamed with a well-established financial institution is seeking an experienced Senior... ...opportunity as a new step in your career, apply now! Key Responsibilities Manage daily payment operations including ACH, Bill...SeniorDaily paid
- ...Senior Safety Specialist page is loaded## Senior Safety Specialistlocations: Alexandria... ...continuously improve safety outcomes.**Key Responsibilities:** **Lead Safety Culture*** Champion a... ...requirements clearly to field teams **Incident Management & Risk Reduction*** Lead...SeniorFor contractorsWork experience placementStart working todayWork at office
- ...Senior Cybersecurity Analyst (Artificial Intelligence) We are seeking up to two Cybersecurity Analysts with experience implementing... ...defense including intrusion detection, prevention and incident response activities. The ideal candidate will have deep expertise with...SeniorLocal area
$55 - $80 per hour
...Job Title: Senior Information Systems Specialist Location: Washington, DC 20551 (On-site... ...enterprise technology platforms. Key Responsibilities End-User Support & Help Desk: Resolve... ...support for assigned tasks, including incident tracking and resolution. Email & Desktop...SeniorContract workCasual workRemote work$70.35k - $205.8k
...our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare... ...for, respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response services to our...SeniorWork experience placementLive inWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Cybersecurity Incident Response Specialist. Be the first to apply!
- amazon specialist Washington DC
- specialist Washington DC
- entry level safety specialist Washington DC
- disclosure specialist Washington DC
- erp specialist Washington DC
- infection control specialist Washington DC
- cash reconciliation specialist Washington DC
- writing specialist Washington DC
- process specialist Washington DC
- independent living specialist Washington DC


