Incident Response Team Lead (CBP)
$155k - $180kAgile Defense
Job Description
Job Description
About Agile Defense
At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.
Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.
Title : Incident Response Team Lead
Clearance : Active Top Secret with SCI eligibility, ability to obtain and maintain a CBP Background Investigation (CBP BI) and EOD, active BI strongly preferred. We can begin processing for candidates who do not hold one.
Citizenship : U.S. Citizenship required
Location : Reston, VA - Hybrid 3 to 5 days
Salary Range : $155,000-180,000
Signing Bonus : $10,000 for candidates with an active CBP BI. Payable after 90 days; standard terms apply.
SUMMARY
Agile Defense is seeking experienced Cyber Incident Response Team Lead to support an enterprise cybersecurity program that delivers 24/7/365 Cybersecurity Operations Center (SOC) services. The IR team conducts security investigations for potential threat activity identified within the organization, conducts deep-dive forensic investigations (host-based, cloud and network), identify and implement countermeasures, as well as track and report on incident activity to USG customers. To support this vital mission, Agile Defense staff are on the forefront of providing Advanced CSOC Operations to include the development of advanced analytics and countermeasures to protect critical assets from various cyber threats. To ensure the integrity, security and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, technical analysis and incident response lifecycle. A strong work ethic, diligent time and attendance, written and verbal communications skills are a must. The ideal candidate will have a solid understanding of cyber threats and information security in the domains of TTP’s, Threat Actors, Campaigns, and Observables. Additionally, the ideal candidate would be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, and security operations ticket management.
JOB DUTIES AND RESPONSIBILITIES
Drive the incident response lifecycle to include incident detection, analysis, escalation, and coordinated response across all CSOC functions. Develop and standardize incident response runbooks, playbooks, and communication protocols; ensure proper evidence handling and thorough documentation. Monitor and improve key performance metrics (MTTA/MTTR); capture lessons learned and implement corrective actions to strengthen future response efforts.
QUALIFICATIONS
Minimum required experience
- Five (5) years of progressive professional experience in incident response role, SOC analyst role with emphasis in cyber security issues, incidents, hunts or digital forensics and operations, and computer incident response lifecycle.
- Candidates must also exhibit proficient use of cyber tools, including but not limited to:
- Security Information and Event Management (SIEM)
- Network analysis
- Live response
- Endpoint detection and response tools
- Intrusion Prevention / Detections Systems (IPS / IDS)
- CSOC ticketing platforms
Required Certifications
- Certified Information System Security Professional (CISSP) and
- One or more of the following certifications:
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Forensic Analyst (GCFA)
- SANS GIAC Certified Enterprise Defender (GCED)
- Other Information Assurance Technician (IAT) Level III certification in accordance with DoD Directive 8570.1.
Education, Background, and Years of Experience
- Bachelor of Science in computer science, engineering, STEM or cybersecurity IT or cyber security
- Or eight (8) years of relevant work experience in lieu of a degree
Preferred Skills
- One or more of the following:
- GFCA
- GPEN
- GREM
- GFNA
- GIAC
- Familiarity with Cloud environments
Our Core Values
Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental. Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together. Agile Defense has been highly successful in the past few years due to our employees and the culture we create together.
What makes us Agile? We call it the 6Hs, the values that define our culture and guide everything we do. Together, these values infuse vibrancy, integrity, and a tireless work ethic into advancing the most important national security and critical civilian missions. It's how we show up every day. It's who we are.
- Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
- Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
- Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
- Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
- Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
- Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
- ...Agile Defense, LLC is seeking an experienced Cyber Incident Response Team Lead to support a 24/7/365 CSOC program. The role leads investigations, forensic analyses (host, cloud, network) and develops countermeasures to protect critical assets across USG customers. The...Suggested
$155k - $175k
...vital interests. Title : Vulnerability Assessment (VA) Team Lead (CBP) Clearance : Active Top Secret Clearance with SCI eligibility... ...hand confirmed exploitable findings to the threat hunt and incident response leads when they need that context. One thing is worth...SuggestedTemporary workImmediate startRelocation package- ...to be Performed: AnaVation is seeking an experienced cyber professional to join our team and support our mission critical customer in Reston, VA. As the Incident Response Lead/Advisor, you will advise/mentor/coach a team of cyber security professionals on best...SuggestedFull timeContract workTemporary workImmediate startShift work
$107.9k - $195.05k
...who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainable. Everything... ...through scale and repeatability. Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-...SuggestedFull time- ...IT Operations Manager. The role involves overseeing computer systems and networks, planning technological operations, and leading incident response efforts. Ideal candidates will have over ten years of senior-level networking experience and the capability to manage complex...Suggested
$165k - $200k
...vital interests. Title : Threat Hunt Lead (CBP) Clearance : Active Top Secret with... ...and hand confirmed findings to the incident response and digital forensics leads. One thing... ...work with the Cyber Threat Intelligence team to report significant findings of importance...Temporary workImmediate startRelocation package$160k - $185k
...Title : Insider Threat Monitoring Lead (CBP) Clearance : Active Top Secret with... ...resources and security partners, and the incident response and digital forensics leads when a case... ...response arrive with a record that the next team can act on immediately, not one they...Temporary workImmediate startRelocation package$95k - $145k
...Full-time /HybridCWS seeks an Incident Support Manager to direct incident... ...and Border Protection’s (CBP) Network Operations Center (NOC... ...management operations, ensuring timely response and resolution of network... ...efforts.Coordinate response teams during major outages or...Full timeContract workLocal areaNight shift- ...our exciting organization, please visit us at are seeking a Cybersecurity Incident and Application Lead to join our team and support our client. The ideal candidate is a strong incident response and application security professional who remains calm under pressure and...Temporary workFor contractorsWork experience placementWork at officeRemote work2 days per week
- ...other technologies. Responsibilities Contributes to the planning... ...and principles. Leads and directs the work of... ...be provided through a team of subordinate supervisors... ..., and report on the incident remediation efforts.... ...communicating with the CBP Incident Manager and...Contract workFor contractorsRemote work
$155k - $185k
...ability to obtain and maintain a CBP Background Investigation (CBP... ...You will work closely with the leads who run insider threat monitoring, threat hunting, incident response, digital forensics, and vulnerability... ...analyst. You have managed a team through a real incident and can...Temporary workImmediate startRelocation packageShift work$155k - $220k
...Incident Support ManagerWe are seeking an Incident Support Manager to join our team supporting a national law enforcement agency NOC. This team provides support services... ...minimize the impact to business operations. Responsible for planning and coordinating all activities...Full timeContract workTemporary workLocal areaMonday to FridayShift workNight shiftDay shift- ...Description Description: Helpdesk Team Lead Washington, DC Full-time, Exempt... ...efficient service delivery. This role is responsible for the timely resolution of escalated... ...Maintain accurate records of system changes, incidents, and resolutions in the designated...Full timeLocal area
$23 - $26 per hour
...supervisor of Security Officers, Lead Officers, and other company... ...to outline tasks and responsibilities. ~ Meets with client representatives... ...Ability to be an effective team member. Ability to... ...clients, observe and report incidents, and direct others. Frequent...Local areaFlexible hoursShift workNight shiftAfternoon shift$175k - $225k
...Title : Splunk Architect Lead Clearance : Active Top Secret... ...ability to obtain and maintain a CBP Background Investigation (CBP... ...log integration. This role is responsible for ensuring the reliability,... ...compliance audits, and cross-team engineering reviews. QUALIFICATIONS...Relocation package- DescriptionWe are seeking a new Supervisory Team Lead - Recruiting! This position is responsible for leading a team of recruiters while implementing talent acquisition programs that drive recruiting effectiveness across Tyler. This role leverages industry expertise, operating...
$110k - $160k
...seeks a NOC Tier 1 Shift Lead to supervise the U.S.... ...and Border Protection’s (CBP) Network Operations... ...technicians to ensure timely incident detection, triage, and... ...standards.Duties & Responsibilities Lead Tier 1 operations... ...assist our recruitment team but do not replace human...Full timeContract workLocal areaShift workNight shift$112.8k - $257k
DFIR Team LeadThe Opportunity:Lead and inspire a team of skilled incident response analysts, fostering a culture of technical expertise, collaboration, and excellent client delivery. Serve as the team lead, leading incident response for major incidents and coordinating...Full timeContract workPart timeWork at officeLocal areaRemote workAfternoon shift$116.35k - $210.33k
...Leidos has an opening for a Tier II Site Lead to support the customer’s computer data... ...the Tier II Site Lead are as follows: • Responsible for the overall health and wellness of the... ...Resolves escalated customer issues and incident reports.• Coordinates network operations...Full time$95k - $145k
...Problem Support Manager to lead the problem management... ...Border Protection’s (CBP) Network Operations... ...analysis (RCA) for recurring incidents.Maintain and manage... ...resumes, or assessing responses and identifying potential... ...assist our recruitment team but do not replace human...Full timeContract workLocal areaNight shift$73.45k - $132.78k
...placement for a Leidos Airport Site Lead to provide technical, and... ...of capability. PRIMARY RESPONSIBILITIES: Site Leads are the technical... ...the CP DC and the TSA Design Team of any new airport/airline projects... ...enforcement and report the incident to the U.S. Federal Trade...Hourly payFor contractorsFor subcontractorWork at officeLocal areaImmediate startRemote workRelocationShift workWeekend workAfternoon shift$87.1k - $157.45k
Leidos is seeking a Cyber Tier 1 Deputy Team Lead to join our team on a highly visible... ...Center (NOSC) is a U.S. Government program responsible to monitor, detect, analyze, mitigate,... ...and responding to security events and incidents detected at the Trusted Internet Connection...Full timeHome officeAll shiftsShift workNight shiftAfternoon shift- ...Description Overview ***** This position is contingent upon contract award ***** SOSi is seeking a Team Lead to support a 24/7/365 program, who will be responsible for managing day-to-day shift. The Team Lead will play a key role in ensuring smooth workflow by...Full timeContract workSecond jobWorldwideShift workNight shiftDay shift
- ...Full-Time Ground Infrastructure Lead at their Herndon, Virginia... ...mobility will be available to the responsible individual, including... ...closely with the engineering team and product teams to incorporate... ...configuration management, on-call/incident processes, and continuous...Full timeRemote work
$17.69 - $22.28 per hour
...Area Customer Service Coordinator Join our team as an Area Customer Service Coordinator, where you'll be a vital link in ensuring... ...-focused mindset drive transformative change! Roles and Responsibilities: Provide coverage across multiple customer sites, ensuring...Work experience placementWork at officeWorldwideRelocationFlexible hoursShift work- ...healthcare, career growth, paid PTO, no inventory or overnights, and bonus potential. Be a decision maker and lead a team while improving your community. Responsibilities Essential Duties and Responsibilities: Supports the Donation Express Manager in operations for...Shift workWeekend work
- ...DLA Piper seeks a Chief Information Security Officer to lead a mature, business-aligned information security program that protects... ...across technology investments and client service delivery, while guiding incident response and governance.” #J-18808-Ljbffr Jobleads-US
$131.3k - $237.35k
...seeking a Full Stack Software Developer Team Lead, with strong systems, software, cloud,... ...within Customs and Border Protection (CBP). In this hands-on position, you will work... ...in Ashburn, VA, twice a week**Primary Responsibilities:Guide team development efforts towards...Full time$19 per hour
...properties are operated by a team of more than 1,000 enthusiastic... ...to the next level! As a leading Owner and Management Company... ...new Housekeeping Inspector is responsible to supervise, train and inspect... ...procedures for guest/team member incidents. Associate Management and...Minimum wageTemporary workLocal areaShift work$148.75k - $175k
Job TitleConstruction Project Manager - Team LeadJob Description SummaryThe Construction Management Team Lead is responsible for the overall leadership, performance, and success of a portfolio of construction projects managed by a team of Project Managers. This role provides...Minimum wageFull timeContract workRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Team Lead (CBP). Be the first to apply!
- key team leader Reston, VA
- compliance team leader Reston, VA
- focus group leader Reston, VA
- team lead data science Reston, VA
- disability team leader Reston, VA
- team supervisor Reston, VA
- team leader mental health Reston, VA
- quality control team lead Reston, VA
- integration team lead Reston, VA
- leader Reston, VA



