Senior Incident Response Analyst
$120k - $135kTetrad Digital Integrity
Senior Incident Response Analyst
Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission, complexity, and trust intersect. Our single focus has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will help monitor, detect, investigate, and respond to cybersecurity threats affecting a large-scale enterprise environment while supporting coordinated incident response across multiple organizations. This role requires two onsite days per week for employees residing within 50 miles of Arlington, VA. Employees residing outside the 50-mile radius are eligible to work fully remote.
Responsibilities:
- Lead and coordinate cyber incident response activities across the full Incident Response lifecycle, including investigation, containment, eradication, and recovery.
- Analyze security events, logs, network traffic, endpoint telemetry, and forensic artifacts to determine the scope, root cause, and impact of cyber incidents.
- Identify adversary tactics, techniques, and procedures (TTPs) and develop indicators of compromise (IOCs) to improve threat detection and response.
- Develop, maintain, and enhance Incident Response processes, playbooks, workflows, and standard operating procedures (SOPs).
- Configure, tune, and optimize security technologies, including SIEM, EDR, IDS/IPS, and related monitoring tools, to improve detection accuracy and reduce false positives.
- Create and maintain detection content, including correlation rules, use cases, signatures, alerts, and automation scripts to strengthen SOC monitoring capabilities.
- Document investigations, response activities, and findings within case management systems, producing clear incident reports and after-action documentation.
- Establish and track SOC performance metrics and key performance indicators (KPIs) to measure operational effectiveness and support continuous improvement.
Qualifications:
- Ability to obtain Public Trust clearance and successfully complete the EOD process.
- Candidates must possess at least one of the following certifications: GIAC: GCIH, GCIA, GCFA, GCFE, GREM, or GPEN, CISSP, OSCP, OSCE, or OSWP.
- Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field and 12–15 years of relevant experience.
- Must have technical hands-on experience in the areas of incident detection and response, malware analysis, or computer forensics.
- Expertise with Windows and Linux operating systems, enterprise networking, common protocols, and security infrastructure (firewalls, proxies, VPNs, load balancers).
- Demonstrated experience investigating cyber incidents, performing root cause analysis, identifying attacker TTPs, and leveraging frameworks such as MITRE ATT&CK and the Cyber Kill Chain.
- Proficiency in Python, PowerShell, Bash, or similar scripting languages to support security automation and incident response.
Preferred Qualifications:
- Experience in cyber government, and/or federal law enforcement FISMA systems.
The anticipated salary range for this position is $120,000 - $135,000. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range.
TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.
"TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws."
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services...SeniorFull timeFlexible hours- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements... ...enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SeniorWork at office
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SeniorFlexible hours$131.3k - $237.35k
Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program...Senior$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years...Senior- bcmcllc is seeking Host Forensics Analysts to support the DHS’s Hunt and Incident Response Team (HIRT). This role focuses on forensic investigations and incident response, requiring an active TS/SCI clearance. Candidates should possess at least 8 years of experience in...Senior
$104k - $166k
...Senior Incident Response Analyst Job Locations US Requisition ID 2026-169782 Position Category Cyber Security Clearance No Clearance Required Responsibilities **Position Is Contingent Upon Award** Peraton Labs...SeniorContract workShift work- Edgewater Federal Solutions is seeking a Tier II Incident Response Analyst to support a federal government contract. The role requires US Citizenship and offers opportunities to work on enterprise security incidents within a government program. The ideal candidate will...SeniorContract work
- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
- ...Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are seeking an experienced Incident...Full timeContract workRemote workMonday to Friday
- A cybersecurity firm is seeking a qualified Cybersecurity Service Provider/Incident Response Analyst in Arlington, VA. The ideal candidate will provide on-site support for DoD customers, possessing technical skills in intrusion detection and prevention, and will have a...
- ...weekend and holiday workdays. Responsibilities Provide on-site CSSP/IR... ...detailed triage of CSSP/IR incidents including implementing intrusion... ...recommended mitigations suitable for senior leaders and technical... ...PROVIDER/INCIDENT RESPONSE ANALYST #J-18808-Ljbffr Bespoke...Work at officeMonday to FridayWeekend work
- Nightwing Group is seeking a Business Analyst to support onsite incident response for U.S. Government agencies experiencing cyber-attacks. The role involves gathering requirements, stakeholder coordination, and ensuring technology integration aligns with operational priorities...
$53.9k - $120.1k
Cybersecurity Incident Response Triage IR Analyst Arlington, VA The Cybersecurity Incident Response Triage IR Analyst role will work in the CIRT team in the CISO organization. This role works under analysis and triage team lead to perform in-depth investigation and analysis...Work experience placementLive inWork at officeLocal area- ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor...Senior
- TLA is seeking a meticulous Information System Security Analyst to join our IT team in McLean, VA. The role focuses on safeguarding... ...to stay current with IT security trends. You will work on incident response, risk assessments, policy development, and security training,...
- ...VA seeks a Security Operations Center Analyst to monitor, detect, and respond to cyber... ...networks. The role includes SIEM monitoring, incident handling, log analysis, and... ...to contain and recover from incidents. Responsibilities include monitoring devices, performing...
$90k - $120k
...firsthand. Potomac Haven is looking for a Senior Analyst with real, hands‑on experience in the... ...assault and harassment prevention and response field to support the National Science Foundation... ..., sexual harassment and stalking incidents and is responsible for overseeing...SeniorTemporary workWork at officeRemote work- BCMC is seeking a Business Analyst to provide vital support for onsite incident response to U.S. Government agencies experiencing cyber-attacks. The role involves leading use case identification, gathering requirements, and facilitating stakeholder communication. The ideal...
- bcmcllc is looking for a Solutions Architect to support U.S. Government mission by providing incident response related to cyber-attacks. This position demands extensive experience in systems engineering, along with capabilities in cybersecurity and technical analytics....Senior
- A leading cybersecurity firm is seeking a Network Forensics Analyst to support critical incident response missions. Candidates must have 8+ years of experience in network investigations, preferably with an active TS/SCI clearance. The role involves coordinating teams, analyzing...Senior
- BCMC is seeking a Cyber Incident Response Expert to support the DHS Hunt and Incident Response Team (HIRT). The role involves advanced host... ...briefs and technical reports, guide response activities with senior teams, and help maintain process documentation across branches...Senior
- A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding...Senior
- A leading cybersecurity firm is seeking a Cloud Forensics Analyst to support onsite incident response to cyber-attacks. The role involves acquiring and analyzing computer artifacts, conducting forensic investigations, and developing mitigation strategies. Candidates should...Senior
$136k - $184k
General Dynamics Information Technology (GDIT) seeks a Cyber Incident Response Team (CIRT) Lead in Falls Church, VA. This full-time onsite role requires active SECRET clearance and leadership of a CIRT, coordinating cyber operations for ARNG IT services. Responsibilities...SeniorFull time- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...SeniorWork at officeRemote work
- A dynamic Woman Owned Small Business is seeking a Senior Incident Response Coordinator for their Program Management and Cyber Support Services project in Arlington, Virginia. The role entails coordinating cyber incident responses, managing stakeholder communications, and...Senior
- A leading cyber security firm in Arlington, VA, is seeking a Cyber Eviction Analyst to support incident response for government agencies experiencing cyber attacks. The ideal candidate will have a degree in a related field or extensive experience. Responsibilities include...Senior
- Everforth ECS seeks a Senior Cyber Incident Analyst to join our Arlington team, coordinating incident response and threat intelligence for government partners. You will design playbooks, guide mitigation strategies, and deliver clear reports to executives and stakeholders...SeniorLocal area
- Castalia Systems seeks an Information Systems Security Specialist to support the Hunt and Incident Response Team (HIRT) securing the Nation’s cyber and communications infrastructure. You will lead RMF lifecycle activities, coordinate with ISSM and CISO, and provide frontline...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Incident Response Analyst. Be the first to apply!
- nonprofit analyst Arlington, VA
- provisioning analyst Arlington, VA
- senior contracts analyst Arlington, VA
- allocation analyst Arlington, VA
- sharepoint analyst Arlington, VA
- corporate strategy analyst Arlington, VA
- reimbursement analyst Arlington, VA
- contracts analyst Arlington, VA
- senior database analyst Arlington, VA
- trade analyst Arlington, VA

