Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS

$104k - $166k

Peraton Corporation

ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington, VATravel: Approximately 40%Peraton is seeking an experienced Incident Response Analyst with strong OT/ICS/SCADA expertise to support its Federal Strategic Cyber program. This role involves responding to cyber incidents across critical infrastructure sectors and working closely with technical teams, forensic analysts, and mission partners to safeguard national‑level systems.In This Role, You Will: Respond to cybersecurity incidents across ICS, OT, and IT environments and provide recommendations to prevent recurrence within critical infrastructure sectors.Apply functional knowledge to resolve incidents, conduct proactive threat hunts, and contribute to solutions for problems of moderate scope and complexity.Support highly technical operations and forensic analysis while advising client decision‑makers.Provide sector‑specific expertise for one or more critical infrastructure areas, including Water, Power, Critical Manufacturing, and Transportation.Follow established procedures for incident response and escalation.Help define and refine response procedures for industrial control system environments.Apply traditional incident response and threat‑hunting tradecraft to ICS/critical‑infrastructure environments while accounting for operational constraints.Collaborate with host, network, and cloud forensic analysts to meet mission requirements for incident response and threat‑hunting engagements.Maintain accurate documentation of incident response activities and findings.Prepare and deliver incident reports to management and stakeholders.Work effectively in a team environment and contribute to mission success.Stay current on cybersecurity trends to enhance hunt and response operations.Demonstrate strong attention to detail, critical thinking, and customer‑service orientation.Self‑teach and test new tools, methodologies, and techniques as needed.Meet on‑site requirements of at least one day per week (up to three days depending on mission needs).Travel up to 40%.QualificationsRequired Qualifications:Bachelor’s degree and 5 years of relevant experience; Master’s degree and 3 years. An additional 4 years of relevant experience will be considered in lieu of a degree.Must have 1–2 years of relevant Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / ICS environments.Experience conducting security site assessments, including analysis of network security architecture, baseline ports/protocols/services, and asset characterization.Experience using SIEM tools for pattern identification, anomaly detection, and trend analysis.Experience analyzing ICS network protocols such as ModBus, ENIP/CIP, BACnet, DNP3, etc.Experience with common open‑source and commercial tools used in event analysis, incident response, forensics, malware analysis, or security operations.Experience with host‑based and network‑based collection and detection tools (OSS/COTS).U.S. citizenship required. Active Top Secret security clearance.Ability to obtain a TS/SCI for continued employment.Ability to obtain and maintain a favorably adjudicated DHS background investigation.Desired Qualifications:Certifications such as GISCP, GCFA, GNFA, GRID, or OT sensor certifications.2+ years of Threat Hunting or DFIR experience.Experience on DoD Cyber Protection Teams.Experience performing digital forensics on laptops/desktops, PLCs, HMIs, Historians, and SCADA systems.Experience with SIEM platforms (e.g., Splunk) including threat hunting, analytic development, dashboards, and reporting.Familiarity with critical‑infrastructure frameworks (NIST, IEC 62443).Ability to automate repeatable tasks.Scripting experience in Python, Bash, PowerShell, and/or JavaScript.Peraton OverviewPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Job SummaryRequisition ID: 2026-163351Position Category: Intel and Threat AnalysisClearance: Top Secret/SCI

Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS in Arlington, VA vacancy
  • $100k - $125k

     ...solutions provider is seeking an Incident Response Expert III in Arlington, VA....  ...analytical skills and an active TS/SCI clearance. Candidates...  ...of experience in the field, with expertise in network security...  ...national security missions. #J-18808-Ljbffr Argo Cyber Systems
    Cyber

    ARGO Cyber Systems

    Arlington, VA
    6 days ago
  • $86k - $138k

    ICS Threat Hunt Analyst / Active Top Secret Job Locations...  ...Secret/SCI Responsibilities Peraton is currently...  ...System Cyber Threat Intelligence...  ...technology (OT) and...  ...exposed ICS/SCADA assets, assess...  ...forward-deployed incident response and...  ...Familiarity with ICS/SCADA systems... 
    Cyber
    Contract work
    Currently hiring
    Shift work

    Peraton

    Arlington, VA
    6 days ago
  •  ...Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C....  ...operational risks and process gaps, support incident-response, and translate complex cyber...  ..., VA and the candidate must hold TS/SCI with CI Poly. #J-18808-Ljbffr Ops Tech... 
    Cyber

    Ops Tech Alliance, LLC.

    Mc Lean, VA
    4 days ago
  •  ...threat analysis, and response to cyber incident reports. Experience with industrial Control Systems (ICS), Operational technology (OT), Supervisory...  ...Acquisition (SCADA) systems, and the...  ...citizenship required. An Active Top Secret...  ...cloud forensic analysts to meet the... 
    Cyber
    Currently hiring

    Peraton

    Arlington, VA
    3 days ago
  • $111k - $122k

     ...of our company. With offices all...  ...Computer Security Incident Response AnalystThis is...  ...Incident Response Analyst for our...  ...and investigate cyber security events...  ...signs of malicious activity in a Security Information...  ...local travel to customer sites...  ...requires a USA TS/SCI with... 
    Travel
    Cyber
    Full time
    Work experience placement
    Local area

    Salesforce

    Herndon, VA
    a month ago
  •  ...Description Job Description Incident Response Expert III (Cyber Eviction Analysts) Location: Washington...  ...US only Clearance: Active TS/SCI (DHS EOD Suitability...  ...technical precision with operational agility-...  ...expertise - Must be able to travel domestically on short... 
    Travel
    Cyber
    Local area
    Immediate start

    Argo Cyber Systems

    Washington DC
    5 days ago
  •  ...and Investigations - Cyber Response to lead client engagements involving cyber incidents and data breaches. You...  ...focus on post-incident activities, assess affected data,...  ...coordinate remediation with cross-functional teams...  ...communication, and travel readiness. EY offers a... 
    Travel
    Cyber

    Ernst & Young Advisory Services Sdn Bhd

    Mc Lean, VA
    5 days ago
  •  ...Amentum is seeking SOC / Incident Response Analyst to support our U.S....  ...a wide range of Cyber Intelligence (CI) services...  ...malicious cyber activities against U.S. energy sector...  ...teams.Experience with SIEM platforms, EDR tools...  ...Required: Active TS/SCI or DOE Q#javelinThis... 
    Cyber
    Contract work
    For contractors

    Amentum Services

    Washington DC
    1 day ago
  • $96.57k - $130.65k

     ...Description: DATA ANALYST YOUR IMPACT...  ...services. KEY RESPONSIBILITIES Collect,...  ...and tech refresh activities Prepare accurate...  ...CLEARANCE: Active TS/SCI clearance a...  ...Familiarity with Service Central...  ...illness and business travel and accident...  ...in AI, cloud, cyber and software... 
    Travel
    Cyber
    Temporary work
    Immediate start
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Washington DC
    6 days ago
  • $131.3k - $237.35k

     ...has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program....  ...analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC...  ...scope of Incidents Expertise with Cyber Kill Chain and have utilized... 
    Cyber
    Flexible hours

    Leidos Inc

    Arlington, VA
    5 days ago
  • $132.48k - $336.96k

    Responsibilities About the Team The TikTok USDS JV...  ...enterprise-wide incidents, including post-incident...  ...-the-sun model with our global SOC...  ...incidents. As an IR Analyst, you will belong...  ...and/or malicious activity occurring within...  ...the Hunt team, Cyber Threat Intelligence... 
    Cyber
    Temporary work
    Shift work

    TikTok USDS Joint Venture

    Washington DC
    3 days ago
  •  ...motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean,...  ...cyber security ~2+ years’ experience with incident response ~ Knowledge of cybersecurity...  ...Clearance Requirements: ~ Current/active TS/SCI w/Polygraph is required... 
    Cyber
    Shift work
    Night shift
    Day shift
    Afternoon shift

    MANTECH

    McLean, VA
    7 hours ago
  • ARGO Cyber Systems is looking for an Incident Response Expert III to join our team in the Washington DC Metro Area. This...  ...proactive hunting for malicious activity. The ideal candidate will have over...  ...of relevant experience, an active TS/SCI clearance, and a strong... 
    Cyber

    ARGO Cyber Systems

    Fairfax, VA
    5 days ago
  •  ...Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to...  ...the Office of WMD Response and Planning. This position...  ...capabilities against CBRN incidents. Applicants must have an active Top-Secret clearance, a minimum...  ...role requires up to 25% travel and supports the U.S.... 
    Travel
    Work at office

    Cortek, Inc.

    Washington DC
    6 days ago
  •  ...The Incident Response Coordinator supports the end‑to‑end response...  ...point for incident response activities, ensuring alignment with established incident...  ...incidents; engage infra/app/cyber/vendor dependencies. Communications...  ...to 50 pounds" or "some travel" required.) Reasonable... 
    Travel
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Washington DC
    2 days ago
  • $130k - $152.5k

     .../Cybersecurity & Incident Response (Forensic Services...  ...relationships with local, state and...  ...the adequacy of cyber security controls...  ...network forensic analyst or malware analyst...  ...firm development activities. We offer a comprehensive...  ...business travelers. Work Location... 
    Travel
    Cyber
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    2 days ago
  •  ...FOIA) Redaction Analyst NAOVI (...  ...the areas of Cyber Security, Information...  ...government with the following...  ...: Primary responsibilities:...  ...appropriate IC policies and...  ...document collection activities across internal...  ...possess an Active TS/SCI with CI...  ...Holidays ~ Travel Reimbursement... 
    Travel
    Cyber
    Temporary work

    NAOVI

    McLean, VA
    2 days ago
  •  ...Incident Management AnalystFull-timeQualifications- Must have an active TS/SCI clearance- 5+ years of directly relevant experience in cyber incident management or cybersecurity...  ...Knowledge of incident response and handling...  ...close familiarity with NIST 800-62 (latest... 
    Cyber

    Raytheon

    Arlington, VA
    4 days ago
  •  ...cybersecurity firm in Virginia is seeking a Cyber Eviction Lead to enhance incident response capabilities. The ideal candidate...  ...investigations, collaborating with internal teams, and developing...  ...role requires U.S. Citizenship, active TS/SCI clearance, and a minimum of 8... 
    Cyber

    Nightwing

    Arlington, VA
    2 days ago
  •  ...Description Overview The Cyber Incident Response Analyst role is pivotal in...  ...This position aligns with Cayuse’s core values of Innovation...  ...stakeholders. Maintain active oversight of shared mailboxes...  ...related experience. Some travel may be required to Continuity... 
    Travel
    Cyber
    Temporary work
    Work at office
    Local area
    Flexible hours
    Shift work

    Cayuse Holdings

    Washington DC
    26 days ago
  •  ...a U.S. Government customer to provide onsite incident response for civilian agencies and critical asset owners during cyber-attacks. The Cyber Incident Manager will investigate...  ...initial detection through final resolution. Active TS/SCI clearance and U.S. #J-18808-Ljbffr... 
    Cyber

    bcmcllc

    Arlington, VA
    2 days ago
  • $104k - $166k

    Senior Incident Response Analyst Job Locations: US Requisition ID: 2026-169782 Position Category: Cyber Security Clearance: No Clearance Required Responsibilities...  ...manager in coordination with the client's Information...  ...response leadership. Active GCIH or GCIA certification... 
    Cyber
    Contract work
    Shift work

    Peraton

    Reston, VA
    3 days ago
  • Leidos is seeking a Cyber Security Analyst to defend DoD networks from sophisticated...  ...handling monitoring, detection, incident response, and vulnerability management across...  ...reports. The role requires TS/SCI and baseline certifications, with hands-on SIEM experience. #J-1... 
    Cyber

    Leidos Inc

    Fort Belvoir, VA
    3 days ago
  • $120k - $135k

     ...focus has been delivering cyber solutions to effectively manage...  ...TDI is seeking a Senior Incident Response Analyst to join our team in support...  ...coordinate cyber incident response activities across the full Incident...  ...forensics. Expertise with Windows and Linux operating... 
    Cyber
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity LLC

    Arlington, VA
    12 days ago
  •  ...in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery across government networks...  ...Level II certification and a DoD Secret Clearance with potential TS/SCI eligibility. You'll work with a suite of security... 
    Cyber

    Njvc LLC

    Arlington, VA
    2 days ago
  •  ...technical authority responsible for advising on...  ...authorization activities, and enterprise...  ...alignment with Department of Defense...  ...Community (IC) security...  ...and compliant cyber operations....  .... • Support incident response planning...  ...programs. • Active TS/SCI with Polygraph... 
    Cyber
    Full time

    Synertex LLC

    Bethesda, MD
    5 days ago
  • $101.53k - $132.69k

     ..., VT, WA, WY Future Need - Actively Interviewing Location: Executive...  ...seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee...  ...This role combines hands‑on cyber and incident lifecycle management...  ...Excellent experience with Security Information and Event... 
    Cyber
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises Inc

    Alexandria, VA
    3 days ago
  • $112k - $179k

     ...Responsibilities Peraton is now Hiring: TASO...  ...Strategic Cyber Programs.Location...  ..., and incident response within...  ...and testing activities.Provide subject...  ...international travel for Cyber Security...  ...compliance with security...  ...PPDA, Agile IC, SNOW App Dev...  ...obtain a final TS/SCI clearance... 
    Travel
    Cyber
    Contract work
    Immediate start
    Shift work

    Peraton Corporation

    Arlington, VA
    a month ago
  •  ...are seeking a Senior OT Cybersecurity...  ...Industrial Control Systems (ICS), and SCADA environments. The...  ...and collaborate with cybersecurity, network...  ...from emerging cyber threats. Roles and Responsibilities Design, deploy,...  ...vulnerability remediation, and incident response processes... 
    Cyber
    Contract work
    Remote work

    Neshent Technologies

    Washington DC
    16 days ago
  • Mobile Threat Analyst Staffing Pros, a division...  ...telework allowed. Responsibilities: Conduct forensic...  ...vectors, emerging cyber threats, and...  ...software. Collaborate with other forensic analysts...  ...digital evidence. Travel to domestic and...  ...to compromised activity. Demonstrated critical... 
    Travel
    Cyber
    Full time
    For contractors
    Remote work
    Worldwide
    Overseas

    Veterans Enterprise Technology Solutions (VETS) Inc.

    Arlington, VA
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS. Be the first to apply!