OT/ICS Incident Response Analyst - Travel-Ready
$86k - $138kPeraton
Cyber Incident Response Analyst with OT/ICS/SCADA / travel & active TS job at Peraton. Arlington, VA. Program Overview About The Role Peraton is currently seeking an experienced Incident Response Analyst with OT/ICS/SCADA experience for its Federal Strategic Cyber program in Arlington, VA. Location: On-site role in Arlington, VA. Ideal candidates need to be amenable to travel - approximately 40%. In this role, you will: Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within a variety of critical infrastructure sectors. Apply specific functional knowledge to resolve cybersecurity incidents and perform proactive threat hunts. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Be involved with highly technical operations and forensic analysis and serve as consultants, continuously advising client decision makers. Provide industry experience and expertise for one or multiple critical infrastructure sectors/sub-sectors, including but not limited to Water, Power, Critical Manufacturing, and Transportation Follow pre-defined procedures to respond to and escalate incidents. Provide expertise to define procedures for response to customer cyber security incidents in the industrial control system environment. Apply traditional incident response and threat hunting tradecraft to industrial control system/critical infrastructure environments—with a deep understanding of the nuance and constraints of industrial environments. Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements. Maintain accurate records of incident response activities and findings. Prepare and deliver incident reports to management and stakeholders. Need to be comfortable working in a team environment and collaborating to meet mission goals. Keep current with latest security trends and news to continually improve hunt and incident response operations. Be a Self-starter with strong attention to detail and critical thinking ability. Have a strong customer service orientation with excellent written and oral communication skills. The ability to self-teach and self-test new tools and methodologies, and to problem-solve independently. There is an onsite requirement for minimum one day (1) week, with up to 3 days depending on situational requirements. Estimated 40% travel. If you are passionate about safeguarding critical infrastructure and have the expertise to respond to cyber incidents in ICS and SCADA environments, we encourage you to apply for this challenging and rewarding position.
#CISA
Qualifications Required: LU Bachelor’s degree and 5 years of relevant experience. Master’s degree and 3 years’ experience. PhD and 1 years’ experience. A minimum of 9 years will be considered in lieu of degree. 1-2 years of Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / Industrial Control System (ICS) environments. Experience with security site assessments and scoping - including but not limited to the analysis of network security architecture, baseline ports, protocols, and services, and characterize network assets. Experience using a SIEM tool for pattern identification, anomaly detection, and trend analysis. Experience analyzing a variety of industrial control systems network protocols, including but not limited to: ModBus, ENIP/CIP, BACnet, DNP3, etc.. Experience with the common open source and commercial tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations. Experience with collection and detection tools, including OSS/COTS host-based and network-based tools. U.S. citizenship required. An Active Top Secret Security Clearance required. Must be able to obtain a TS/SCI for continued employment. Must be able to obtain and maintain a favorably adjudicated DHS background investigation for continued employment. Desired: Certifications: GISCP, GCFA, GNFA, GRID, and any OT Sensor certifications 2 years of Threat Hunting or Digital Forensics & Incident Response (DFIR) experience preferred. Experience on DoD Cyber Protection Teams, a plus. Experience performing digital forensics and analysis on a variety of vendor/OEM equipment—including but not limited to laptop/desktops, PLC’s, HMI’s, Historians, and related SCADA systems. Experience with SIEM (Splunk) —threat hunting, analytic development, dashboards, and reporting. Familiarity with regulatory standards and frameworks relevant to critical infrastructure (e.g., NIST, IEC 62443). Ability to automate simple/repeatable but critical tasks. Scripting in Python, Bash, PowerShell, and/or JavaScript. SCA / Union / Intern Rate or Range Details Target Salary Range: $86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr Peraton$104k - $166k
Cyber Incident Response Analyst (ICS/OT/SCADA) Location: Onsite in Arlington, VA Travel: Approximately 40% Clearance requirement: Top Secret/SCI (Active TS) Requisition ID: 2026-163351 Position Category: Intel and Threat Analysis Responsibilities Respond to cybersecurity...TravelContract workShift work1 day per week- Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position... ...foreign capabilities against CBRN incidents. Applicants must have an... .... The role requires up to 25% travel and supports the U.S. Department...TravelWork at office
- ...weekend and holiday workdays. Responsibilities Provide on-site CSSP/IR... ...detailed triage of CSSP/IR incidents including implementing intrusion... ...the ability to adjust focus. Travel There is no travel expected... ...PROVIDER/INCIDENT RESPONSE ANALYST #J-18808-Ljbffr Bespoke Corps...TravelWork at officeMonday to FridayWeekend work
- Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment... ...IR procedures. Participate in tabletop exercises , readiness assessments, and operational continuity testing. Monitor...SuggestedFull timeContract workRemote workMonday to Friday
$127k - $140k
...brightest minds in the industry. If you're ready to challenge yourself with work that... ...comprehensive detection and automated response to cyber threats together with... ...the Manager of Adversary Response, the Incident Response Analyst operates on the front lines of active...SuggestedPermanent employmentWork experience placementWork at officeRemote workWork from homeHome officeFlexible hours$131.3k - $237.35k
...Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise... ...and strategic requirements into scalable, production‑ready solutions. You will contribute directly to product planning...$110k - $135k
...Payroll Title Analyst Location BCSA... ...Bachelor's Degree Travel Up to 25%... ...operational technology (OT), implementing... ...monitoring. Key Responsibilities: Support analysis... ..., and incidents impacting the U.S.... ...control systems (ICS) or SCADA concepts...TravelFull timeCurrently hiringLocal areaRemote work- Cayuse Holdings is seeking an ITSM Incident Response Analyst to support and respond to incidents while collaborating with the Service Desk and Desktop support teams. This remote position emphasizes adherence to ITIL-aligned processes, ensuring effective incident management...Remote jobContract work
- A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience...Remote job
- Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
- Eliassen Group is seeking a SOC Analyst to join their team in Washington, DC. This role... ...continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid... ...experience with security monitoring and incident response, proficiency with SIEM tools...Remote work
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...Flexible hours- A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC...
- CHAOS Industries is looking for a SOC Analyst II to join their Security Operations team in Washington, D.C. This role... ...experience and strong problem-solving skills. Responsibilities include investigating incidents, managing system alerts, and ensuring compliance with...
- A cybersecurity firm is seeking a qualified Cybersecurity Service Provider/Incident Response Analyst in Arlington, VA. The ideal candidate will provide on-site support for DoD customers, possessing technical skills in intrusion detection and prevention, and will have a...
$131.3k - $237.35k
Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program...- Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form the backbone of our cybersecurity services. You will play a critical role in securing our customers by monitoring our tools...Part timeShift workNight shiftWeekend workDay shift2 days per week
$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years...- Nightwing Group is seeking a Business Analyst to support onsite incident response for U.S. Government agencies experiencing cyber-attacks. The role involves gathering requirements, stakeholder coordination, and ensuring technology integration aligns with operational priorities...
- ...Global Solutions in Washington, DC is seeking a Senior Security Operations Analyst to monitor and respond to cybersecurity threats. The candidate will analyze security events, manage incident response, and support the National Indian Gaming Commission's cybersecurity...
$112.8k - $257k
...problems—and find solutions that keep our nation safe. As an Incident Response SME, you’ll bring your strategic planning, tactical response... ..., implement, and assess complex incident response plans and readiness exercises, ensuring resilience in the face of natural...Full timeContract workPart timeWork at officeLocal areaRemote work$100.2k - $164.1k
...Senior Incident Response Consultant 133254 This role joins SpearTip,... ...the U.S. and extend up to 20% travel. As a Senior Incident Response... ..., conducting proactive readiness assessments, tabletop exercises... ...junior consultants and analysts, providing technical guidance...TravelFull timeTemporary workApprenticeshipLocal areaRemote workVisa sponsorshipFlexible hours$84k - $89k
...seeking a Financial Management & Audit Readiness Analyst to support the U.S. Air Force... ...mission requirements as needed. Occasional travel may be required. Salary: $84,000 - $8... ...to solve complex issues, take on new responsibilities, build relationships and think in unique...TravelInterim roleFlexible hours- ...Operational Requirements Analyst -... ...of space defense.**Key Responsibilities:**KBR is seeking a US... ...On-site, Pentagon* **Travel Requirements:** Minimal... ...Service HQ or DoD Agency or IC staffs.* Bachelor's Degree... ...exceptional performance.**Ready to Make a Difference?*...TravelTemporary workWork at officeLocal areaRelocation packageFlexible hours
$95k - $112k
...Description DATA ANALYST Location: Washington... ...products. Key Responsibilities Perform data exploitation... ...Community (IC), DoD, or national security... ...Details Travel: No travel required.... ..., enhance operational readiness, and advance mission success...TravelFull timeLocal areaRemote work- ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service... ...coordinator maintains complete, audit-ready documentation throughout the incident lifecycle... ...or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations...TravelContract workWork experience placementWork at officeShift work
- ...Key Responsibilities War‑Room Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign actions/owners... ...PIRs and trend analysis. Readiness & Drills: Run tabletop exercises... ...up to 50 pounds" or "some travel" required.) Reasonable accommodations...TravelContract workWork experience placementWork at officeShift work
- Valid8 Financial, Inc. is urgently seeking SOC Analysts for positions at the Drug Enforcement Administration Security... ...at least 3 years of experience in Cyber Security. Responsibilities include monitoring incidents, investigating alerts, and coordinating responses to...Immediate start
$110k - $170k
Zachary Piper Solutions is looking for a SOC Analyst in McLean, VA to support a critical... ...experience in cyber threat detection and incident analysis and must possess an active TS/SCI Full Scope Polygraph. Responsibilities include detecting cyber-attacks, analyzing...- ...Solutions, LLC is seeking a skilled Security Operations Center Analyst (SOC) in Arlington, Virginia. This role requires a bachelor's degree... ...environment. You will monitor security events, analyze network incidents, and utilize various security tools. Join a team committed to...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to OT/ICS Incident Response Analyst - Travel-Ready. Be the first to apply!
- construction analyst Arlington, VA
- paid search analyst Arlington, VA
- remediation analyst Arlington, VA
- entry level program analyst Arlington, VA
- accessibility analyst Arlington, VA
- health analyst Arlington, VA
- law enforcement response team analyst Arlington, VA
- utilities analyst Arlington, VA
- internal audit analyst Arlington, VA
- integration analyst Arlington, VA

