Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Analyst, Mid

$62k - $141k

Booz Allen Hamilton

Incident Response Analyst, MidThe Opportunity:Serve as a key member of a 24x7x365 Security Operations Center(SOC) and incident response team, responsible for continuous monitoring, detection, investigation, and response to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms. Perform hands‑on incident response activities such as alert and incident triage, log and artifact analysis, threat identification, containment support, and incident documentation while leveraging SIEM, EDR, IDS/IPS, SOAR, and forensic tools to validate and escalate security events. Contribute to the development of incident response playbooks and standard operating procedures, conduct proactive threat hunting using behavioral analytics and threat intelligence, and support continuous monitoring and assessment efforts to identify risks and strengthen detection capabilities. Collaborate closely with federal stakeholders, communicate findings to technical and non‑technical audiences, and produce high‑quality reports and briefings, all while helping to advance the maturity and effectiveness of the organization’s security operations. Respond to and resolve cybersecurity incidents, participate in cyber incident response investigations requiring forensic, malware, and log analysis, and analyze forensic images and triage datasets to identify indicators of compromise, lateral movement, and unauthorized access or exfiltration of data. Apply specific functional knowledge, and working or general industry knowledge. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Work independently with some guidance, and review or guide activities of more junior employees.You Have:2+ years of experience in a SOC performing incident response activities, including event triage, log and artifact analysis, threat identification, incident documentation, and coordination of response actionsExperience using Splunk for security monitoring, log analysis, event correlation, investigation, and incident responseExperience analyzing and responding to security events across enterprise networks, endpoints, applications, and security platforms such as SIEM, EDR, IDS/IPS, firewalls, and vulnerability management toolsExperience developing or contributing to incident response playbooks, workflows, or standard operating proceduresExperience with continuous monitoring and security assessment practices, including log analysis, control evaluation, and risk identificationExperience with security tools and investigative techniques used by SOC and incident response teams such as packet analysis, log correlation, malware triage, and forensic imagingAbility to communicate clearly with both technical and non-technical audiences, and produce high-quality incident reports, briefings, and technical documentationAbility to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirementsBachelor's degreeNice If You Have:Experience with enterprise security technologies, including SOAR platforms, and digital forensics solutionsExperience conducting threat hunting activities, leveraging behavioral analytics, threat intelligence, and anomaly detection to identify emerging threatsKnowledge of cybersecurity principles, including network security, endpoint security, identity and access management, and secure configuration baselinesKnowledge of modern application and infrastructure security concepts such as container security, API security, and workload protectionAbility to build strong client relationships, collaborate across various teams, and communicate complex technical concepts in a clear mannerCySA+, GCIH, GSEC, or CISSP CertificationsVetting:Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity StatementAs part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.Candidate AI Usage PolicyAI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work ModelOur people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.SummaryLocation: Bethesda, MDType: Full time

Vacancy posted 7 hours ago
Similar jobs that could be interesting for youBased on the Incident Response Analyst, Mid in Bethesda, MD vacancy
  •  ...Job Description Job Description Job Title: Mid-Level Cybersecurity Incident Response Analyst Location: Bethesda, Maryland Type: Direct Hire Compensation: 120k Work Model: Hybrid Hours: 40.0 Security Clearance: Public Trust Responsibilities Monitor... 
    Suggested
    Local area

    System One

    Bethesda, MD
    19 days ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    1 day ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Suggested
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    7 hours ago
  • Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will be based in the Washington, D.C area.Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber Intelligence... 
    Suggested
    Contract work
    For contractors

    Amentum Services

    Washington DC
    3 days ago
  • Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will...  ..., identify operational risks and process gaps, support incident-response, and translate complex cyber information into actionable recommendations... 
    Suggested

    OPS TECH ALLIANCE LLC

    Mc Lean, VA
    2 days ago
  • $135k - $175k

     ...team and play a key role in protecting the firm's global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities, and helping strengthen the processes, technologies... 
    Self employment
    Local area
    Worldwide
    Monday to Friday
    Afternoon shift
    Early shift

    Hogan Lovells

    Washington DC
    3 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  • $132.48k - $336.96k

    Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC) is responsible...  ...response efforts to enterprise-wide incidents, including post-incident root-cause analysis...  ...critical security incidents. As an IR Analyst, you will belong to a team of strong... 
    Temporary work
    Shift work

    TikTok USDS Joint Venture

    Washington DC
    1 day ago
  •  ...necessary to maintain CFSAN IT systems. The Contractor shall be responsible for maintaining the “lights on” availability, reliability,...  ..., and to the federal financial regulatory agencies. BUSINESS ANALYST (Mid-Level) - KEY PERSONNEL QUALIFICATIONS: Analyzes information requirements... 
    Full time
    Contract work
    Temporary work
    For contractors
    Work at office
    Flexible hours

    Prosidian Consultng

    Silver Spring, MD
    1 day ago
  • $94k - $127k

    Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join our award-winning organization and work with some... 

    Xcelerate-Solutions-5

    Alexandria, VA
    1 day ago
  • $87.1k - $157.45k

    Description Leidos is seeking an experienced Incident Response Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantialportionof the cybersecurity workforce supporting the Defense... 
    Contract work
    Work at office
    Local area
    Immediate start
    Remote work

    Leidos Inc

    Alexandria, VA
    3 days ago
  • cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • $80k - $128k

    Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber... 
    Interim role
    Internship
    Work at office
    Local area
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    5 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years... 

    Argo Cyber Systems

    Arlington, VA
    4 days ago
  • Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Location: Alexandria, VA and Seaside, CA. Responsibilities... 

    Xcelerate-Solutions-5

    Alexandria, VA
    1 day ago
  • Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency...  ...and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret... 
    Work at office

    Cortek, Inc.

    Washington DC
    4 days ago
  • Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    1 day ago
  • $86k - $138k

     ...seeking an experienced Case Management - Mid-level Process Assurance Analyst for its' Federal Strategic Cyber...  ...finalizing the record of reported incidents.Draft organizational documentation...  ...makers.Ensure timely and effective response to internal and external mission... 
    Full time
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    7 hours ago
  • Position Title: Research Analyst I (Mid-Level) Location: Remote (Must be a U.S. Citizen) Job Type: Contract/Consultancy...  ...Protection Reauthorization Act (TVPRA). Key Responsibilities Conduct desk research to identify incidents of state‑sponsored use of child labour,... 
    Contract work
    Remote work
    Flexible hours

    The Mitchell Group

    Washington DC
    2 days ago
  • $62k - $141k

    Job Number: R0248299 Cyber Threat Intelligence Analyst, Mid The Opportunity As a cyber threat intelligence (CTI) analyst, you know...  ...You Have 2+ years of experience in CTI, SOC support, or incident response, including intelligence analysis or threat research Experience... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Phase2 Technology

    Bethesda, MD
    5 days ago
  • $80.2k - $111.3k

     ...the investigation of complex computer and information security incidents to determine extent of compromise to national security...  ...security incident, damage and threat assessment programs. Responsible for the formal Security Test and Evaluation (ST&E) required by... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    4 days ago
  • $104k - $166k

    ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington, VATravel: Approximately 40%Peraton is seeking an experienced Incident Response Analyst with... 
    Contract work
    Currently hiring
    Shift work
    1 day per week

    Peraton Corporation

    Arlington, VA
    1 day ago
  • Incident Response Engineer-JourneymanIntermittent Telework: Arlington, VATS/SCI RequiredPay Range: $125K - $142KJob Description: The Incident Response Engineer Journeyman is a mid‑level cybersecurity professional responsible for detecting, investigating, and remediating... 
    Remote work

    Dunhill Professional Search

    Arlington, VA
    7 hours ago
  •  ...Consulting at DescriptionProSidian seeks a Mid-Level InfoSec Mobile Device Security Analyst Consultant focusing on Cyber-Security/...  ...for analyzing and mitigating mobile incidents.-Assist in the development of a mobile incident response process.-Understand threats to mobile... 
    Full time
    For contractors
    Work experience placement
    Internship
    Work at office
    Monday to Friday
    Shift work

    Prosidian Consultng

    Washington DC
    1 day ago
  • $120k - $135k

     ...been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will... 
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity LLC

    Arlington, VA
    5 days ago
  • $140k - $160k

    Job DescriptionEverforth ECS is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). This position is contingent...  ...intelligence that strengthens threat detection, incident response, and overall security posture.The ideal candidate... 

    ECS Federal

    Arlington, VA
    3 days ago
  • $116k - $170k

    Amentum is seeking Mid level Cyber Intelligence Analysts to support our U.S. Department of Energy contract...  ...Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber...  ...threat intelligence and supporting incident response investigations.Experience... 
    Full time
    Contract work

    Amentum Services

    Washington DC
    3 days ago
  • $159.3k - $202.4k

     ...Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats such as malware and intrusion... 
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago
  • $136k - $184k

     ...requires that the candidate selected be a US Person.Key job responsibilities- You will query big data repositories to identify threat activities...  ...risk to Amazon customers and data.- You will work alongside incident response teams and provide direct support to ongoing... 
    Internship
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    4 days ago
  •  ...seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the DMDC CyberPRIMES program. You will perform advanced...  ...escalated from Tier 1, correlate security data, and support incident triage and containment for DHRA and DMDC systems. The role requires... 

    Leidos

    Alexandria, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Analyst, Mid. Be the first to apply!