Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Cybersecurity Incident Response Specialist

Bering Straits Native Corporation

About Bering Straits Professional ServicesParagon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon’s experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients’ projects in line with local, state and federal guidelines and regulations.About this position: Sr. Cybersecurity Incident Response SpecialistLocation – Washington, DCThe Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position.Wage/Salary Range: $100k - $120kApplicants will be notified via phone or email within ten (10) business days of submittal.Essential Duties & ResponsibilitiesMember of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization’s Network, Systems, Applications, and Web services.Provide senior level cybersecurity incident response expertise in support of the client’s Incident Response processes and procedures.Develop operational baselines such data flows and application interactions to enhance SOC’s ability to respond to incidents.Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800-61 and Government guidance.Follow current guidance from NIST 800-61, Federal Incident Notification Guidelines, CISA’s Incident Response and Vulnerability Playbook, and client guidance.Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards.Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity.Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client’s incident response program.Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents.Implement cybersecurity mitigations leveraging client tools and systems.Create and escalate cybersecurity-related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines.Manage, coordinate, and respond to FOIA, audits, data calls, e-discovery and information requests.Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis.Review and handle phishing messages reported by client staff.Required (Minimum Necessary) Qualifications Education Requirements:High School or GED-General Educational Development-GED DiplomaBachelor’s degree in computer science or equivalent is preferredLevel of Experience Requirements: Minimum of five years hands-on experienceProven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments.Knowledge, Skills, Abilities, and Other Characteristics Proficiency with SIEM, EDR/XDR platforms, and forensic tools.Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies.Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity.Familiarity with malware analysis, reverse engineering basics, and memory analysis conceptsExperience developing and tuning detection rules, playbooks, and automated response workflows.Working knowledge of incident response frameworks (e.g., NIST SP 800-61, SANS).Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting.Understanding of basic computer and networking technologies.Windows and Linux/Unix operating systemsNetworking technologies (routing, switching, VLANs, subnets, firewalls)Common networking protocols – SSH, SMB, SMTP, FTP/SFTP, DNS, etc.Common enterprise technologies – Active Directory, Group Policy, and the Microsoft Azure suite of cloud services.Understanding of current system logging technology and retrieving information from a plethora of technology platforms.Ability to work well in a team environment.Self-starter with ability to work with little supervision.Willingness to take on and adapt to new, open-ended tasks for which there is no current standard operating procedure.Ability to research independently and self-teach.Strong analytical and decision-making skills under pressure.Excellent written and verbal communication, including incident documentation and executive briefings.Ability to lead investigations, mentor junior analysts, and collaborate with cross-functional teams.Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required.Preferred Interest in security/hacking culture. Ability to “think like an attacker”General cybersecurity certifications (one or more of the following preferred):CompTIA Security+CompTIA Cybersecurity Analyst (CySA+)Certified Ethical Hacker (CEH)GIAC Certified Incident Handler (GCIH)Any cloud security certification, especially:CompTIA Cloud+Certified Cloud Security Professional (CCSP)Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK)Any Microsoft 365/Azure cybersecurity certification, especially:Microsoft Certified: Security Operations Analyst Associate (SC-200)Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)Microsoft Certified: Azure Fundamentals (AZ-900)Microsoft Certified: Azure Security Engineer Associate (AZ-500)Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender.Knowledge of common enterprise technologies, policies, and concepts such as:Microsoft Sentinel SIEMKusto Query Language (KQL)Mobile device technologies (iOS, Android)Scripting experience (PowerShell, Python, etc.)Microsoft Power BIAzure DevOpsArtificial Intelligence (AI) / Machine Learning (ML) expertiseIn-depth knowledge of AI and ML concepts.How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities.Experience with specific AI services offered within Microsoft Azure.Supervisory ResponsibilitiesThis position will not have supervisory responsibilities.DOT Covered/Safety-Sensitive Role Requirements This position is not subject to federal requirements regarding Department of Transportation “safety-sensitive” functions.Necessary Physical Requirements The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this role. Employees must always maintain a constant state of mental alertness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about.Work Environment The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.Physical Setting: Washington DCSchedule and Flexibility: Full Time in OfficeAdditional Qualifying FactorsAs a condition of employment, you will be required to pass a pre-employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations.Shareholder Preference BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job.Bering Straits Native Corporation is an equal opportunity employer. All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law. Job SummaryRequisition Number: SRCYB006026Job Category: IT/Software DevelopmentSchedule: Full-Time

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Sr. Cybersecurity Incident Response Specialist in Washington DC vacancy
  •  ...Technologies in Arlington, Virginia, is seeking a cybersecurity professional with expertise in cyber incident management. The ideal candidate will have over 5 years...  ...experience and be knowledgeable in incident response methodologies. The position requires familiarity with... 
    Suggested

    Raytheon Technologies

    Arlington, VA
    4 days ago
  •  ...experienced security professional in Washington, DC to lead incident response, triage threats, and coordinate containment and recovery....  ...-functional teams while supporting compliance with federal cybersecurity standards and best practices. #J-18808-Ljbffr Omniscius Consulting
    Suggested

    Omniscius Consulting

    Washington DC
    15 hours ago
  • $130k - $152.5k

     ...Senior Associate/Cybersecurity & Incident Response (Forensic Services Practice) Boston, MA, United States; Chicago, IL, United States; Dallas, Texas, United States; Houston, Texas, United States; Washington, DC, United States CRA is a leading global consulting firm... 
    Senior
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    3 days ago
  • A cybersecurity and intelligence firm is seeking a Cyber Eviction Analyst to support critical incident response missions. The role requires extensive expertise in threat actor tools, incident mitigation, and collaborative problem-solving. Ideal candidates will possess at... 
    Suggested

    Nightwing Group

    Arlington, VA
    4 days ago
  • NTT DATA North America is seeking a Cyber Defense & Incident Responder in Arlington, Virginia to monitor, analyze, and respond to cybersecurity incidents. You will triage, investigate, contain, and assist in recovery, using SIEM, EDR, and threat intelligence to determine... 
    Suggested

    NTT DATA North America

    Arlington, VA
    15 hours ago
  • Bering Straits Native Corporation (BSNC) is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. The role sits on the SOC team, delivering 24/7 monitoring, incident response, and threat mitigation across enterprise networks and cloud environments... 
    Senior

    Bering Straits Native Corporation (BSNC)

    Washington DC
    2 days ago
  • $100k - $120k

    Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity... 
    Senior

    Bering Straits Native Corporation

    Washington DC
    2 days ago
  • Saliense in Alexandria, VA is seeking a senior cybersecurity leader with 10+ years of experience in incident response, security operations, and penetration testing to guide a high-impact security program. You will lead a team, develop strategic security initiatives, and... 
    Senior

    Saliense

    Alexandria, VA
    3 days ago
  •  ...Architect to support U.S. Government mission by providing incident response related to cyber-attacks. This position demands extensive experience...  ...in systems engineering, along with capabilities in cybersecurity and technical analytics. Ideal candidates will hold a relevant... 
    Senior

    bcmcllc

    Arlington, VA
    2 days ago
  • Gunnison Consulting Group in the United States is seeking a senior cybersecurity incident response leader to coordinate and drive enterprise IR activities. Responsibilities span incident triage, containment, eradication, and post-incident remediation across on-premises,... 
    Senior

    Gunnison Consulting Group

    Alexandria, VA
    15 hours ago
  •  ...Senior Associate for the Forensic Services practice to lead incident response, recovery engagements, and client communications from...  ...quality across deliverables. The role requires 5-7+ years in cybersecurity incident response or forensics, including large ransomware... 
    Senior

    Charles River Associates

    Washington DC
    2 days ago
  • A leading cybersecurity firm is seeking a Network Forensics Analyst to support critical incident response missions. Candidates must have 8+ years of experience in network investigations, preferably with an active TS/SCI clearance. The role involves coordinating teams, analyzing... 
    Senior

    Nightwing

    Arlington, VA
    4 days ago
  • A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding... 
    Senior

    Nightwing

    Arlington, VA
    15 hours ago
  • Wilson Elser is seeking a Senior Cyber Incident Response Attorney for a fully remote role. This position allows nationwide applicants and...  ...if located elsewhere. The attorney will defend complex cybersecurity matters, oversee breach response, and coordinate with clients... 
    Senior
    Remote job
    Work at office

    Wilson Elser - Attorneys

    Washington DC
    4 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8... 
    Senior

    ARGO Cyber Systems

    Arlington, VA
    3 days ago
  • A leading cybersecurity firm is seeking a Cloud Forensics Analyst to support onsite incident response to cyber-attacks. The role involves acquiring and analyzing computer artifacts, conducting forensic investigations, and developing mitigation strategies. Candidates should... 
    Senior

    Nightwing

    Arlington, VA
    2 days ago
  • Euro Staffs in Washington, DC is seeking a seasoned cybersecurity professional for a full-time, on-site role focused on continuous monitoring, incident response coordination, and audit support for government clients. The position reports to the Lead ISSO and requires CISSP... 
    Senior
    Full time

    Euro Staffs

    Washington DC
    4 days ago
  • Tetrad Digital Integrity LLC is seeking a Senior Incident Response Analyst to join our Security Operations Center. This hybrid position will involve monitoring, detecting, and responding to cybersecurity threats affecting a large-scale environment, especially within mission... 
    Senior

    Tetrad Digital Integrity LLC

    Arlington, VA
    1 day ago
  • Gunnison Consulting Group is seeking a senior cybersecurity leader to coordinate enterprise incident response activities within the CSIRT. Hybrid work arrangement with 2-3 on-site days per week in Alexandria, VA, with the first month on-site. You will oversee IR operations... 
    Senior
    2 days per week
    3 days per week

    Gunnison

    Alexandria, VA
    2 days ago
  • True Zero Technologies in Washington, DC is seeking a seasoned cybersecurity professional to lead incident response efforts as part of our commitment to quality outcomes. You will manage reports, conduct forensic investigations, and support compliance. The ideal candidate... 
    Senior

    Truezerotech

    Washington DC
    1 day ago
  •  ...Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission, complexity, and trust...  ...the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government... 
    Senior
    Permanent employment

    Tetrad Digital Integrity

    Arlington, VA
    5 days ago
  •  ...Amazon Corporate Security’s BAC seeks an Incident Response Coordination Specialist to manage physical security incidents worldwide, draft communications, and coordinate with response stakeholders in a 24/7 GSOC environment. The role requires strong written reporting and... 
    Worldwide
    Shift work
    Afternoon shift

    Amazon

    Arlington, VA
    2 days ago
  • $80k - $128k

     ...currently searching for a Junior Cyber Incident Analyst - Notification Specialist - for our Federal Strategic Cyber...  ...reporting, to identify cybersecurity incidents, threats, and vulnerabilities...  ...free of backlogs.Support incident response engagements and partner with other... 
    Contract work
    Shift work

    Peraton Corporation

    Arlington, VA
    1 day ago
  •  ...We are seeking a skilled Incident Response Specialist to join our Cybersecurity Operations team. In this role, you will be responsible for detecting, investigating, responding to, and recovering from cybersecurity incidents affecting enterprise systems and networks. The... 

    Mybridge

    Arlington, VA
    1 day ago
  • $23.41 - $41 per hour

     ..., serving as a single point of intake for corporate physical security issues worldwide. The BAC is looking for talented incident response specialists to support our rapidly growing GSOC program. A successful candidate will have a strong track record of managing physical... 
    Hourly pay
    Worldwide
    Flexible hours
    Shift work
    Afternoon shift

    Amazon

    Arlington, VA
    2 days ago
  •  .... Senior Information Assurance Specialist plays a pivotal role in safeguarding the cybersecurity posture of a DHS-affiliated program. This position is responsible for designing, developing, and implementing...  ...in response to cyber incidents, while shaping the evolution of... 
    Senior
    Full time
    Contract work
    Local area
    Monday to Friday

    ValidaTek

    Washington DC
    4 days ago
  • BCMC is seeking a Cyber Incident Response Expert to support the DHS Hunt and Incident Response Team (HIRT). The role involves advanced host and network analysis, incident containment, and rapid on-site response for government agencies and critical infrastructure owners.... 
    Senior

    bcmcllc

    Arlington, VA
    4 days ago
  •  ...cyber threats across program networks. The role includes SIEM monitoring, incident handling, log analysis, and coordination with stakeholders to contain and recover from incidents. Responsibilities include monitoring devices, performing incident management, conducting... 

    Njvc LLC

    Arlington, VA
    1 day ago
  • Everforth ECS seeks a Senior Cyber Incident Analyst to join our Arlington team, coordinating incident response and threat intelligence for government partners. You will design playbooks, guide mitigation strategies, and deliver clear reports to executives and stakeholders... 
    Senior
    Local area

    ECS

    Arlington, VA
    4 days ago
  • A leading cyber security firm in Arlington, VA, is seeking a Cyber Eviction Analyst to support incident response for government agencies experiencing cyber attacks. The ideal candidate will have a degree in a related field or extensive experience. Responsibilities include... 
    Senior

    ARSIEM

    Arlington, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Cybersecurity Incident Response Specialist. Be the first to apply!