Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

OT/ICS Incident Response Analyst - Travel-Ready

$86k - $138k

Peraton

Cyber Incident Response Analyst with OT/ICS/SCADA / travel & active TS job at Peraton. Arlington, VA. Program Overview About The Role Peraton is currently seeking an experienced Incident Response Analyst with OT/ICS/SCADA experience for its Federal Strategic Cyber program in Arlington, VA. Location: On-site role in Arlington, VA. Ideal candidates need to be amenable to travel - approximately 40%. In this role, you will: Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within a variety of critical infrastructure sectors. Apply specific functional knowledge to resolve cybersecurity incidents and perform proactive threat hunts. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Be involved with highly technical operations and forensic analysis and serve as consultants, continuously advising client decision makers. Provide industry experience and expertise for one or multiple critical infrastructure sectors/sub-sectors, including but not limited to Water, Power, Critical Manufacturing, and Transportation Follow pre-defined procedures to respond to and escalate incidents. Provide expertise to define procedures for response to customer cyber security incidents in the industrial control system environment. Apply traditional incident response and threat hunting tradecraft to industrial control system/critical infrastructure environments—with a deep understanding of the nuance and constraints of industrial environments. Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements. Maintain accurate records of incident response activities and findings. Prepare and deliver incident reports to management and stakeholders. Need to be comfortable working in a team environment and collaborating to meet mission goals. Keep current with latest security trends and news to continually improve hunt and incident response operations. Be a Self-starter with strong attention to detail and critical thinking ability. Have a strong customer service orientation with excellent written and oral communication skills. The ability to self-teach and self-test new tools and methodologies, and to problem-solve independently. There is an onsite requirement for minimum one day (1) week, with up to 3 days depending on situational requirements. Estimated 40% travel. If you are passionate about safeguarding critical infrastructure and have the expertise to respond to cyber incidents in ICS and SCADA environments, we encourage you to apply for this challenging and rewarding position.

#CISA

Qualifications Required: LU Bachelor’s degree and 5 years of relevant experience. Master’s degree and 3 years’ experience. PhD and 1 years’ experience. A minimum of 9 years will be considered in lieu of degree. 1-2 years of Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / Industrial Control System (ICS) environments. Experience with security site assessments and scoping - including but not limited to the analysis of network security architecture, baseline ports, protocols, and services, and characterize network assets. Experience using a SIEM tool for pattern identification, anomaly detection, and trend analysis. Experience analyzing a variety of industrial control systems network protocols, including but not limited to: ModBus, ENIP/CIP, BACnet, DNP3, etc.. Experience with the common open source and commercial tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations. Experience with collection and detection tools, including OSS/COTS host-based and network-based tools. U.S. citizenship required. An Active Top Secret Security Clearance required. Must be able to obtain a TS/SCI for continued employment. Must be able to obtain and maintain a favorably adjudicated DHS background investigation for continued employment. Desired: Certifications: GISCP, GCFA, GNFA, GRID, and any OT Sensor certifications 2 years of Threat Hunting or Digital Forensics & Incident Response (DFIR) experience preferred. Experience on DoD Cyber Protection Teams, a plus. Experience performing digital forensics and analysis on a variety of vendor/OEM equipment—including but not limited to laptop/desktops, PLC’s, HMI’s, Historians, and related SCADA systems. Experience with SIEM (Splunk) —threat hunting, analytic development, dashboards, and reporting. Familiarity with regulatory standards and frameworks relevant to critical infrastructure (e.g., NIST, IEC 62443). Ability to automate simple/repeatable but critical tasks. Scripting in Python, Bash, PowerShell, and/or JavaScript. SCA / Union / Intern Rate or Range Details Target Salary Range: $86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr Peraton

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the OT/ICS Incident Response Analyst - Travel-Ready in Arlington, VA vacancy
  • $104k - $166k

     ...Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS Job Locations US-VA-Arlington Requisition ID 2026-163351 Position Category Intel and Threat Analysis Clearance Top Secret/SCI Responsibilities... 
    Travel
    Contract work
    Currently hiring
    Shift work
    1 day per week

    Peraton

    Arlington, VA
    2 days ago
  •  ...Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area)...  ...federal IR procedures. Participate in tabletop exercises , readiness assessments, and operational continuity testing.... 
    Suggested
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy

    Washington DC
    4 days ago
  • $131.3k - $237.35k

     ...Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of...  ...operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning... 
    Suggested
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    4 days ago
  • $127k - $140k

     ...brightest minds in the industry. If you're ready to challenge yourself with work that...  ...comprehensive detection and automated response to cyber threats together with...  ...the Manager of Adversary Response, the Incident Response Analyst operates on the front lines of active... 
    Suggested
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Home office
    Flexible hours

    Deepwatch

    Washington DC
    4 days ago
  • $110k - $135k

     ...Payroll Title Analyst Location BCSA...  ...Bachelor's Degree Travel Up to 25%...  ...operational technology (OT), implementing...  ...monitoring. Key Responsibilities: Support analysis...  ..., and incidents impacting the U.S....  ...control systems (ICS) or SCADA concepts... 
    Travel
    Full time
    Currently hiring
    Local area
    Remote work

    BCS Allegient

    Washington DC
    1 day ago
  • $40 per hour

     ...anywhere in the US, Canada, UK, Ireland, Australia, and New Zealand Responsibilities Evaluate AI-generated cybersecurity content, including threat...  ...in cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis,... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Washington DC
    2 days ago
  • $30 - $39 per hour

     ...Overview Job Title: ITSM Incident Response Analyst Location: Remote Type: Independent Contract - Corp to Corp/1099 Start Date: ASAP Pay Rate: $30-39/hr (Independent Contract) Contract Length: throughAugust 31 Responsibilities Serve as a... 
    Contract work
    For contractors
    Work experience placement
    Local area
    Immediate start
    Remote work

    Cayuse Holdings

    Washington DC
    4 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  • Cayuse Holdings is seeking an ITSM Incident Response Analyst to support and respond to incidents while collaborating with the Service Desk and Desktop support teams. This remote position emphasizes adherence to ITIL-aligned processes, ensuring effective incident management... 
    Remote job
    Contract work

    Cayuse Holdings

    Washington DC
    22 hours ago
  •  ...successful candidate will be responsible for the following: Support...  ...award. Regular CONUS/OCONUS travel is required. Required Experience...  ...Apply Today If you're ready to launch your career in the...  ...disabilities. Keyword: Senior Analyst - Resource Documentation... 
    Travel
    Contract work
    Work at office

    Sigmatech

    Washington DC
    1 day ago
  • A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience... 
    Remote job

    Cyber Synergy Consulting Group

    Washington DC
    3 days ago
  • Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    4 days ago
  • Ardent is seeking a Security Operations Center (SOC) Analyst to support 24x7 security monitoring, alert triage, and incident response activities. This role involves validating alerts, conducting investigations, and coordinating incident response efforts to effectively... 
    Remote job

    Ardent

    Washington DC
    4 days ago
  •  ...Full-Time/Part-Time Full-Time Description RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations - Core Operations... 
    Full time
    Contract work
    Part time
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    4 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years... 

    ARGO Cyber Systems

    Arlington, VA
    2 days ago
  • $131.3k - $237.35k

     ...our digital transformation and IT programs to better serve customers through scale and repeatability. This role is a Senior Incident Response Analyst supporting the DHS CISA Program within the Department of Homeland Security (DHS) Security Operations Center (SOC) Support... 
    Flexible hours

    Leidos

    Arlington, VA
    4 days ago
  • A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC... 

    Tyto Athene, LLC

    Washington DC
    3 days ago
  • $60 per hour

    Description Tyto Athene is searching for a Part-Time Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form the backbone of our cybersecurity services. You will play a critical role in securing our customers by... 
    Part time
    Shift work
    Night shift
    Weekend work
    Day shift

    Tyto-Athene

    Washington DC
    2 days ago
  • Ernst & Young Oman is looking for a Cyber Triage and Forensics (CTF) Incident Analyst to be a senior member of the technical team handling security incidents. Responsibilities include performing digital forensic analysis, responding to security incidents, and developing... 
    Flexible hours

    Ernst & Young Oman

    Washington DC
    4 days ago
  • Tyto-Athene is seeking a Part-Time Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor cybersecurity tools, triage alerts, and respond to incidents. Ideal candidates have significant cybersecurity experience and a Bachelor's degree... 
    Part time

    Tyto-Athene

    Washington DC
    4 days ago
  •  ...Global Solutions in Washington, DC is seeking a Senior Security Operations Analyst to monitor and respond to cybersecurity threats. The candidate will analyze security events, manage incident response, and support the National Indian Gaming Commission's cybersecurity... 

    Terrestris Global Solutions

    Washington DC
    1 day ago
  • $84k - $89k

     ...seeking a Financial Management & Audit Readiness Analyst to support the U.S. Air Force...  ...drive timely, compliant deliverables. Key responsibilities include supporting audit response efforts...  ...mission requirements as needed. Occasional travel may be required. Only applicants... 
    Travel
    Flexible hours

    Lynch Consultants

    Arlington, VA
    2 days ago
  • $230k - $270k

     ...Safeguards Enforcement Analyst, Safety Evaluations Remote-Friendly (Travel-Required) | San Francisco...  ...'s Safeguards team is responsible for enforcing our...  ...Support model launch readiness by running evaluations,...  ...product launch cycles, incident response, or regulatory... 
    Travel
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours
    Shift work

    Anthropic

    Washington DC
    4 days ago
  • $131.3k - $237.35k

    Leidos is seeking a Senior Incident Response Analyst to support the DHS CISA Program in Arlington, Virginia. The position involves coordinating investigations and responses to cyber incidents, developing Incident Response processes, and utilizing advanced analytical skills... 

    Leidos

    Arlington, VA
    4 days ago
  • $100.2k - $164.1k

     ...Senior Incident Response Consultant 133254 This role joins SpearTip,...  ...the U.S. and extend up to 20% travel. As a Senior Incident Response...  ..., conducting proactive readiness assessments, tabletop exercises...  ...junior consultants and analysts, providing technical guidance... 
    Travel
    Full time
    Temporary work
    Apprenticeship
    Local area
    Remote work
    Visa sponsorship
    Flexible hours

    Zurich NA

    Washington DC
    1 day ago
  • $120k - $132k

     ...Decisions is seeking a Threat Analyst to support the...  ..., you must be able to travel up to two weeks at a time...  ...domestically. Responsibilities: Be a key part of...  ...Intelligence Community (IC). Acts as the...  ...prior to, or during cyber incidents; this may include attribution... 
    Travel
    Contract work
    Remote work

    SkyePoint Decisions

    Arlington, VA
    1 day ago
  • $60k - $65k

     ...seeking a Korean-Language Analyst, DD&I to join our...  ...or East Asia. Job Responsibilities The Korean-...  ...reports to ensure client readiness. Mentor and train...  ...potential security incidents to the Information Technology...  ..., location, travel requirements and other... 
    Travel
    Work visa
    Monday to Friday

    TD International

    Washington DC
    1 day ago
  • $59k - $79.6k

     ...The IT Configuration Analyst, Junior supports configuration...  ...enable effective incident, change, and problem...  ...environment. Key Responsibilities Maintain accurate,...  ...and support audit readiness. Collaborate with...  ...50 pounds" or "some travel" required.) Reasonable... 
    Travel
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    3 days ago
  •  ...firm in Virginia is seeking a Host Forensics Analyst to support critical missions related to cybersecurity incidents. The position requires at least 8 years of relevant...  ...and an active TS/SCI clearance. Responsibilities include leading forensic teams, providing technical... 

    Business Computers Management Consulting Group Llc

    Arlington, VA
    4 days ago
  • Synchron, LLC in Arlington, VA is seeking a Program Analyst to support logistics and readiness for the Navy. The role involves ensuring logistics strategies...  ...candidates have Navy logistics experience. The position requires occasional travel. #J-18808-Ljbffr Synchron, LLC
    Travel

    Synchron, LLC

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to OT/ICS Incident Response Analyst - Travel-Ready. Be the first to apply!