Senior Incident Response Analyst
$132.48k - $336.96kTikTok USDS Joint Venture
Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC) is responsible for global around-the-clock monitoring, response, mitigation, and resolution of critical security events to protect and defend TikTok US data, infrastructure, customers, users, and products. Aside from monitoring TikTok US infrastructure and networks for indicators of anomalies, breach, and/or unauthorized access, the SOC is responsible for leading response efforts to enterprise-wide incidents, including post-incident root-cause analysis and recovery efforts, as well as leading proactive investigations into threats otherwise unidentified, developing and maintaining response plans, playbooks, and procedures. About the Role This role is based in our Converged Security Operations Center in Washington, D.C., working closely in a follow-the-sun model with our global SOC counterparts in London and Sydney. This is a highly proactive, technical, and high-stakes role. It requires a high degree of autonomy and a self-starter mentality - driven by an unwavering passion to defend the enterprise and minimize impact during critical security incidents. As an IR Analyst, you will belong to a team of strong people, processes, and technologies responsible for monitoring, investigation, containing, eradicating, and recovering from sophisticated threats targeting TikTok's US operations, users, and infrastructure. As a key member of the SOC, you will effectively fuse an understanding of the global threat landscape with deep knowledge of our US-based business operations to lead incident identification, investigation, cross-team management, containment strategies, and remediation efforts that make tangible impacts to the security of the business. Responsibilities You will drive technical response actions to protect our stakeholders and US-based users from increasingly fast-paced and AI-driven threats and attackers, including develop and tuning alerts to quickly identify anomalous and/or malicious activity occurring within TikTok USDS JV infrastructure. You will leverage AI-driven and agentic tools and methodologies, paired closely with your investigative and problem-solving skills to conduct comprehensive investigations and root-cause analysis to guide the business in unearthing, evicting, and recovering from attacks from sophisticated threat actors. You will collaborate closely with a variety of partner teams, including the Hunt team, Cyber Threat Intelligence, Digital Forensics, Legal, and Infrastructure teams to coordinate seamless, effective, and efficient operations. To be most successful in this role, you must excel in highly complex, ambiguous situations, transforming chaotic incident signals into clear paths forward to ensure the resiliency of our critical US operational infrastructure, customers, users, and data. Qualifications Minimum Qualifications 5+ years of experience directly triaging, managing, investigating, and remediating high-severity security incidents Proven experience and capability leading teams in performing deep and complex global investigations involving a multitude of disparate data sources from teams and regions spanning the globe Deep hands‑on Linux/Unix command line experience for low‑level system interrogation, log analysis, and artifact collection Hands‑on experience with cloud forensics and incident response across multi‑cloud infrastructure, including container and container‑level forensics (e.g., Docker, Kubernetes, container runtime logs) during active security investigations Must possess the ability to navigate the chaos of an active breach, make progress without prescriptive direction, proactively drive remediation solutions a high degree of integrity, and have the ability to lead and inspire change through post‑incident lessons learned Preferred Qualifications: Demonstrated teamwork and collaboration skills in leading or contributing to global, multi‑functional incident response teams Demonstrated time management, problem‑solving, and strict effort prioritization and within multiple constraints Strong cross‑functional expertise across multiple IT operational, network, cloud, and security disciplines Excellent communication skills (verbal and written) with the ability to act as a technical leader or incident commander and influence without authority during crises Ability to effectively translate complex technical compromise details into clear executive summaries for a broad range of technical and non‑technical staff Strong understanding and aptitude toward leveraging AI tools to accelerate investigation speeds and response efficacy Excellent fundamental knowledge of industry‑standard incident handling frameworks (e.g., NIST SP 800‑61, ISO/IEC 27035, MITRE ATT&CK) Proven capability and experience in performing deep and complex network analysis using PCAP captures and Zeek logs to reconstruct threat activity and adversary C2 communications Proven experience with live incident identification, investigation, containment, eradication, and recovery from advanced persistent threats (APTs) and threat actor TTPs Tenured experience and efficiency in querying, parsing, and analyzing large‑scale datasets across large data warehouses and distributed data architectures About USDS TikTok USDS Joint Venture LLC is dedicated to the safety and security of millions of Americans who create, discover, and connect with what they love on the apps we operate. The Joint Venture has been established in compliance with the Executive Order signed by President Trump on September 25, 2025. Our foundation is a comprehensive data privacy and cybersecurity program we operate under defined safeguards to protect national security and secure U.S. user data, apps and the algorithm. We safeguard the U.S. content ecosystem, holding decision‑making authority for trust and safety policies and moderation. USDS Joint Venture helps ensure Americans can continue to express their creativity, discover new hobbies and interests, and build thriving communities and businesses on a global scale. On‑site presence across teams allows the company to operate with greater speed, alignment, and agility — especially in areas like real‑time decision‑making, team development, and integrated execution. As such, the company is shifting from a hybrid work model to a fully in‑person schedule up to 5 days a week. Why Join Us Inspiring creativity is at the core of TikTok's mission. Our innovative product is built to help people authentically express themselves, discover and connect – and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and bring joy - a mission we work towards every day. We strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. Every challenge is an opportunity to learn and innovate as one team. We're resilient and embrace challenges as they come. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our company, and our users. When we create and grow together, the possibilities are limitless. Join us. Diversity & Inclusion TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too. USDS Reasonable Accommodation USDS is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at Job Information 【For Pay Transparency】 Compensation Description (Annually) - Washington, DC The base salary range for this position in the selected city is $ 132480 - $ 336960 annually. Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units. Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure). The Company reserves the right to modify or change these benefits programs at any time, with or without notice. #J-18808-Ljbffr TikTok USDS Joint Venture
$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services...SeniorFull timeFlexible hours$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7x365 Security Operations Center and Incident Response team, responsible for continuous monitoring, detection, investigation, and response to cybersecurity threats across enterprise...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$135k - $175k
...global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities... ...and response capabilities. Serve as a senior escalation point for complex and high-priority security...SeniorMonday to FridayAfternoon shiftEarly shift$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SeniorFlexible hours- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements... ...enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SeniorWork at office
$120k - $135k
...been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will...SeniorPermanent employmentContract workRemote work2 days per week- Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will be based in the Washington, D.C area.Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber Intelligence...Contract workFor contractors
$94k - $127k
...Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join...$87.1k - $157.45k
...Description Leidos is seeking an experienced Incident Response Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program . Leidos is a major partner on the contract and will provide a substantialportionof the cybersecurity workforce supporting...Contract workWork at officeLocal areaImmediate startRemote work- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
$80k - $128k
Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber...Interim roleInternshipWork at officeLocal areaWorldwideAfternoon shift- Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Location: Alexandria, VA and Seaside, CA. Responsibilities...
- Base One Technologies is seeking a seasoned Cyber Threat Hunter to serve as the hunt and incident response SME in a high-security environment. You will apply in-depth knowledge of threat actor tools and TTPs, distill findings into executive summaries and deep technical...Senior
$155k - $200k
...for a long-term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position is based in our New Orleans office, we welcome applicants from across the United...SeniorFull timeWork at officeRemote workFlexible hours- ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an...SeniorContract workLocal area
- ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates disciplined war rooms, enforces cadence and runbooks, drives cross-team collaboration, and provides executive-ready communications...SeniorContract workWork experience placementWork at officeShift work
- ...Missles & Space Team! We are seeking a highly skilled Senior Program Analyst to support the Navy Strategic Systems Programs (SSP)... ...Weapons Technical Inspections, safety and security programs, incident response, and operational assessments. Responsibilities include providing...Senior
- ...Job Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract)Location: Remote with occasional on-site (Washington, D.C. Metro Area)Employment Type: Full-TimeClearance: Public Trust (or eligibility to obtain)We are seeking an experienced...Contract workRemote workMonday to Friday
$78.8k - $131.3k
...aids law enforcement during critical incidents and major investigations and is... ...government customer in the role of Senior Investigative Analyst. The analyst will provide case assistance... ..., periodic travel will occur. Responsibilities Support the customer...SeniorContract workLocal areaRemote workWork from homeShift workAfternoon shift$100k - $120k
Join to apply for the Senior Program Analyst role at Piper Companies Piper Companies is looking... ...to perform program management responsibilities Senior level capability with Microsoft... ...Continuity Planning, Crisis Management, Incident Response, Emergency Response,...SeniorFor contractorsWork at office3 days per week$90k - $120k
...firsthand. Potomac Haven is looking for a Senior Analyst with real, hands-on experience in the... ...assault and harassment prevention and response field to support the National Science... ...assault, sexual harassment and stalking incidents and is responsible for overseeing...SeniorTemporary workWork at officeRemote work- Responsibilities:- Perform Computer Security Incident Response activities for a large global enterprise, coordinate with... ...environment and assist security analysts in building operational processes... ...interact with users, team members and senior management; subject matter- Must...Work experience placement
- ...Intermediate Watch Analyst (Senior Watch Officer) SGI is seeking an Intermediate Watch Analyst... ...Service (FPS), under the FPS Incident Management Center (IMC) support contract... .... *Contingent on contract award* Responsibilities Manage watch functions, processes...SeniorContract workLocal area
$104k - $166k
ResponsibilitiesPeraton is currently seeking a Senior Risk and Vulnerability Analyst.Location: Chandler, AZ or Washington DCRole and Responsibilities: The Senior Risk and Vulnerability... ..., threat intelligence, and active incidents.Automate vulnerability reporting, risk...SeniorContract workShift work- Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will... ..., identify operational risks and process gaps, support incident-response, and translate complex cyber information into actionable recommendations...
- The Senior HRIS Analyst is responsible for the administration, support, configuration, maintenance, enhancement, and optimization of the SAP SuccessFactors... ...Integration monitoring Production Support Manage incidents, tickets, and service requests. Investigate and resolve...SeniorPermanent employmentImmediate start
- ...company proudly celebrating 26 years ofexcellence—is seeking Senior Contracts Analyst toimmediately support our Program Executive Office for... ...of Defense (DoD) SECRET personnel security clearance.Responsibilities:· Assist in the preparation of annual budgets.· Examine budget...SeniorContract workFor contractorsWork at office
$125k
Tetra Tech AMT is looking for a Senior Program Analyst, with experience as an Air Traffic Controller and/or pilot (civil or military) coupled... ...Federal Aviation Administration.Primary job duties and responsibilities may include, but are not limited to the following: Serve...SeniorFor contractors$140k - $190k
Celestar, a B&A Company, is seeking a Counterintelligence (CI) Senior Analyst to support the Defense Advanced Research Projects Agency (... ...company matching, paid holidays, and personal time off.Responsibilities:· Lead and mentor CI Analysts, establish priorities, balance...SeniorContract workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Incident Response Analyst. Be the first to apply!
- entry level program analyst Washington DC
- merchandising analyst Washington DC
- accessibility analyst Washington DC
- hybrid analyst Washington DC
- video analyst Washington DC
- back office analyst Washington DC
- operational due diligence analyst Washington DC
- integration analyst Washington DC
- ar analyst Washington DC
- medical coding analyst Washington DC

