Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS
$104k - $166kPeraton Corporation
ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington, VATravel: Approximately 40%Peraton is seeking an experienced Incident Response Analyst with strong OT/ICS/SCADA expertise to support its Federal Strategic Cyber program. This role involves responding to cyber incidents across critical infrastructure sectors and working closely with technical teams, forensic analysts, and mission partners to safeguard national‑level systems.In This Role, You Will: Respond to cybersecurity incidents across ICS, OT, and IT environments and provide recommendations to prevent recurrence within critical infrastructure sectors.Apply functional knowledge to resolve incidents, conduct proactive threat hunts, and contribute to solutions for problems of moderate scope and complexity.Support highly technical operations and forensic analysis while advising client decision‑makers.Provide sector‑specific expertise for one or more critical infrastructure areas, including Water, Power, Critical Manufacturing, and Transportation.Follow established procedures for incident response and escalation.Help define and refine response procedures for industrial control system environments.Apply traditional incident response and threat‑hunting tradecraft to ICS/critical‑infrastructure environments while accounting for operational constraints.Collaborate with host, network, and cloud forensic analysts to meet mission requirements for incident response and threat‑hunting engagements.Maintain accurate documentation of incident response activities and findings.Prepare and deliver incident reports to management and stakeholders.Work effectively in a team environment and contribute to mission success.Stay current on cybersecurity trends to enhance hunt and response operations.Demonstrate strong attention to detail, critical thinking, and customer‑service orientation.Self‑teach and test new tools, methodologies, and techniques as needed.Meet on‑site requirements of at least one day per week (up to three days depending on mission needs).Travel up to 40%.QualificationsRequired Qualifications:Bachelor’s degree and 5 years of relevant experience; Master’s degree and 3 years. An additional 4 years of relevant experience will be considered in lieu of a degree.Must have 1–2 years of relevant Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / ICS environments.Experience conducting security site assessments, including analysis of network security architecture, baseline ports/protocols/services, and asset characterization.Experience using SIEM tools for pattern identification, anomaly detection, and trend analysis.Experience analyzing ICS network protocols such as ModBus, ENIP/CIP, BACnet, DNP3, etc.Experience with common open‑source and commercial tools used in event analysis, incident response, forensics, malware analysis, or security operations.Experience with host‑based and network‑based collection and detection tools (OSS/COTS).U.S. citizenship required. Active Top Secret security clearance.Ability to obtain a TS/SCI for continued employment.Ability to obtain and maintain a favorably adjudicated DHS background investigation.Desired Qualifications:Certifications such as GISCP, GCFA, GNFA, GRID, or OT sensor certifications.2+ years of Threat Hunting or DFIR experience.Experience on DoD Cyber Protection Teams.Experience performing digital forensics on laptops/desktops, PLCs, HMIs, Historians, and SCADA systems.Experience with SIEM platforms (e.g., Splunk) including threat hunting, analytic development, dashboards, and reporting.Familiarity with critical‑infrastructure frameworks (NIST, IEC 62443).Ability to automate repeatable tasks.Scripting experience in Python, Bash, PowerShell, and/or JavaScript.Peraton OverviewPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Job SummaryRequisition ID: 2026-163351Position Category: Intel and Threat AnalysisClearance: Top Secret/SCI
$100k - $125k
...solutions provider is seeking an Incident Response Expert III in Arlington, VA.... ...analytical skills and an active TS/SCI clearance. Candidates... ...of experience in the field, with expertise in network security... ...national security missions. #J-18808-Ljbffr Argo Cyber SystemsCyber$86k - $138k
ICS Threat Hunt Analyst / Active Top Secret Job Locations... ...Secret/SCI Responsibilities Peraton is currently... ...System Cyber Threat Intelligence... ...technology (OT) and... ...exposed ICS/SCADA assets, assess... ...forward-deployed incident response and... ...Familiarity with ICS/SCADA systems...CyberContract workCurrently hiringShift work- ...Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C.... ...operational risks and process gaps, support incident-response, and translate complex cyber... ..., VA and the candidate must hold TS/SCI with CI Poly. #J-18808-Ljbffr Ops Tech...Cyber
- ...threat analysis, and response to cyber incident reports. Experience with industrial Control Systems (ICS), Operational technology (OT), Supervisory... ...Acquisition (SCADA) systems, and the... ...citizenship required. An Active Top Secret... ...cloud forensic analysts to meet the...CyberCurrently hiring
$111k - $122k
...of our company. With offices all... ...Computer Security Incident Response AnalystThis is... ...Incident Response Analyst for our... ...and investigate cyber security events... ...signs of malicious activity in a Security Information... ...local travel to customer sites... ...requires a USA TS/SCI with...TravelCyberFull timeWork experience placementLocal area- ...Description Job Description Incident Response Expert III (Cyber Eviction Analysts) Location: Washington... ...US only Clearance: Active TS/SCI (DHS EOD Suitability... ...technical precision with operational agility-... ...expertise - Must be able to travel domestically on short...TravelCyberLocal areaImmediate start
- ...and Investigations - Cyber Response to lead client engagements involving cyber incidents and data breaches. You... ...focus on post-incident activities, assess affected data,... ...coordinate remediation with cross-functional teams... ...communication, and travel readiness. EY offers a...TravelCyber
- ...Amentum is seeking SOC / Incident Response Analyst to support our U.S.... ...a wide range of Cyber Intelligence (CI) services... ...malicious cyber activities against U.S. energy sector... ...teams.Experience with SIEM platforms, EDR tools... ...Required: Active TS/SCI or DOE Q#javelinThis...CyberContract workFor contractors
$96.57k - $130.65k
...Description: DATA ANALYST YOUR IMPACT... ...services. KEY RESPONSIBILITIES Collect,... ...and tech refresh activities Prepare accurate... ...CLEARANCE: Active TS/SCI clearance a... ...Familiarity with Service Central... ...illness and business travel and accident... ...in AI, cloud, cyber and software...TravelCyberTemporary workImmediate startWorldwideFlexible hours$131.3k - $237.35k
...has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.... ...analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC... ...scope of Incidents Expertise with Cyber Kill Chain and have utilized...CyberFlexible hours$132.48k - $336.96k
Responsibilities About the Team The TikTok USDS JV... ...enterprise-wide incidents, including post-incident... ...-the-sun model with our global SOC... ...incidents. As an IR Analyst, you will belong... ...and/or malicious activity occurring within... ...the Hunt team, Cyber Threat Intelligence...CyberTemporary workShift work- ...motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean,... ...cyber security ~2+ years’ experience with incident response ~ Knowledge of cybersecurity... ...Clearance Requirements: ~ Current/active TS/SCI w/Polygraph is required...CyberShift workNight shiftDay shiftAfternoon shift
- ARGO Cyber Systems is looking for an Incident Response Expert III to join our team in the Washington DC Metro Area. This... ...proactive hunting for malicious activity. The ideal candidate will have over... ...of relevant experience, an active TS/SCI clearance, and a strong...Cyber
- ...Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to... ...the Office of WMD Response and Planning. This position... ...capabilities against CBRN incidents. Applicants must have an active Top-Secret clearance, a minimum... ...role requires up to 25% travel and supports the U.S....TravelWork at office
- ...The Incident Response Coordinator supports the end‑to‑end response... ...point for incident response activities, ensuring alignment with established incident... ...incidents; engage infra/app/cyber/vendor dependencies. Communications... ...to 50 pounds" or "some travel" required.) Reasonable...TravelCyberContract workWork experience placementWork at officeShift work
$130k - $152.5k
.../Cybersecurity & Incident Response (Forensic Services... ...relationships with local, state and... ...the adequacy of cyber security controls... ...network forensic analyst or malware analyst... ...firm development activities. We offer a comprehensive... ...business travelers. Work Location...TravelCyberWork at officeLocal areaWork from home3 days per week- ...FOIA) Redaction Analyst NAOVI (... ...the areas of Cyber Security, Information... ...government with the following... ...: Primary responsibilities:... ...appropriate IC policies and... ...document collection activities across internal... ...possess an Active TS/SCI with CI... ...Holidays ~ Travel Reimbursement...TravelCyberTemporary work
- ...Incident Management AnalystFull-timeQualifications- Must have an active TS/SCI clearance- 5+ years of directly relevant experience in cyber incident management or cybersecurity... ...Knowledge of incident response and handling... ...close familiarity with NIST 800-62 (latest...Cyber
- ...cybersecurity firm in Virginia is seeking a Cyber Eviction Lead to enhance incident response capabilities. The ideal candidate... ...investigations, collaborating with internal teams, and developing... ...role requires U.S. Citizenship, active TS/SCI clearance, and a minimum of 8...Cyber
- ...Description Overview The Cyber Incident Response Analyst role is pivotal in... ...This position aligns with Cayuse’s core values of Innovation... ...stakeholders. Maintain active oversight of shared mailboxes... ...related experience. Some travel may be required to Continuity...TravelCyberTemporary workWork at officeLocal areaFlexible hoursShift work
- ...a U.S. Government customer to provide onsite incident response for civilian agencies and critical asset owners during cyber-attacks. The Cyber Incident Manager will investigate... ...initial detection through final resolution. Active TS/SCI clearance and U.S. #J-18808-Ljbffr...Cyber
$104k - $166k
Senior Incident Response Analyst Job Locations: US Requisition ID: 2026-169782 Position Category: Cyber Security Clearance: No Clearance Required Responsibilities... ...manager in coordination with the client's Information... ...response leadership. Active GCIH or GCIA certification...CyberContract workShift work- Leidos is seeking a Cyber Security Analyst to defend DoD networks from sophisticated... ...handling monitoring, detection, incident response, and vulnerability management across... ...reports. The role requires TS/SCI and baseline certifications, with hands-on SIEM experience. #J-1...Cyber
$120k - $135k
...focus has been delivering cyber solutions to effectively manage... ...TDI is seeking a Senior Incident Response Analyst to join our team in support... ...coordinate cyber incident response activities across the full Incident... ...forensics. Expertise with Windows and Linux operating...CyberPermanent employmentContract workRemote work2 days per week- ...in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery across government networks... ...Level II certification and a DoD Secret Clearance with potential TS/SCI eligibility. You'll work with a suite of security...Cyber
- ...technical authority responsible for advising on... ...authorization activities, and enterprise... ...alignment with Department of Defense... ...Community (IC) security... ...and compliant cyber operations.... .... • Support incident response planning... ...programs. • Active TS/SCI with Polygraph...CyberFull time
$101.53k - $132.69k
..., VT, WA, WY Future Need - Actively Interviewing Location: Executive... ...seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee... ...This role combines hands‑on cyber and incident lifecycle management... ...Excellent experience with Security Information and Event...CyberPermanent employmentContract workTemporary workWork at officeLocal area$112k - $179k
...Responsibilities Peraton is now Hiring: TASO... ...Strategic Cyber Programs.Location... ..., and incident response within... ...and testing activities.Provide subject... ...international travel for Cyber Security... ...compliance with security... ...PPDA, Agile IC, SNOW App Dev... ...obtain a final TS/SCI clearance...TravelCyberContract workImmediate startShift work- ...are seeking a Senior OT Cybersecurity... ...Industrial Control Systems (ICS), and SCADA environments. The... ...and collaborate with cybersecurity, network... ...from emerging cyber threats. Roles and Responsibilities Design, deploy,... ...vulnerability remediation, and incident response processes...CyberContract workRemote work
- Mobile Threat Analyst Staffing Pros, a division... ...telework allowed. Responsibilities: Conduct forensic... ...vectors, emerging cyber threats, and... ...software. Collaborate with other forensic analysts... ...digital evidence. Travel to domestic and... ...to compromised activity. Demonstrated critical...TravelCyberFull timeFor contractorsRemote workWorldwideOverseas
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS. Be the first to apply!
- remote cyber security analyst Arlington, VA
- information security consultant Arlington, VA
- cyber security analyst Arlington, VA
- cyber threat intelligence analyst Arlington, VA
- cyber sales Arlington, VA
- cyber forensics Arlington, VA
- cyber Arlington, VA
- overseas travel Arlington, VA
- event travel Arlington, VA
- summer travel nanny Arlington, VA



