Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

OT/ICS Incident Response Analyst - Travel-Ready

$86k - $138k

Peraton

Cyber Incident Response Analyst with OT/ICS/SCADA / travel & active TS job at Peraton. Arlington, VA. Program Overview About The Role Peraton is currently seeking an experienced Incident Response Analyst with OT/ICS/SCADA experience for its Federal Strategic Cyber program in Arlington, VA. Location: On-site role in Arlington, VA. Ideal candidates need to be amenable to travel - approximately 40%. In this role, you will: Respond to cybersecurity incidents for ICS/OT/IT environments and provide recommendations to affected entities to prevent the reoccurrence of these incidents within a variety of critical infrastructure sectors. Apply specific functional knowledge to resolve cybersecurity incidents and perform proactive threat hunts. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Be involved with highly technical operations and forensic analysis and serve as consultants, continuously advising client decision makers. Provide industry experience and expertise for one or multiple critical infrastructure sectors/sub-sectors, including but not limited to Water, Power, Critical Manufacturing, and Transportation Follow pre-defined procedures to respond to and escalate incidents. Provide expertise to define procedures for response to customer cyber security incidents in the industrial control system environment. Apply traditional incident response and threat hunting tradecraft to industrial control system/critical infrastructure environments—with a deep understanding of the nuance and constraints of industrial environments. Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements. Maintain accurate records of incident response activities and findings. Prepare and deliver incident reports to management and stakeholders. Need to be comfortable working in a team environment and collaborating to meet mission goals. Keep current with latest security trends and news to continually improve hunt and incident response operations. Be a Self-starter with strong attention to detail and critical thinking ability. Have a strong customer service orientation with excellent written and oral communication skills. The ability to self-teach and self-test new tools and methodologies, and to problem-solve independently. There is an onsite requirement for minimum one day (1) week, with up to 3 days depending on situational requirements. Estimated 40% travel. If you are passionate about safeguarding critical infrastructure and have the expertise to respond to cyber incidents in ICS and SCADA environments, we encourage you to apply for this challenging and rewarding position.

#CISA

Qualifications Required: LU Bachelor’s degree and 5 years of relevant experience. Master’s degree and 3 years’ experience. PhD and 1 years’ experience. A minimum of 9 years will be considered in lieu of degree. 1-2 years of Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / Industrial Control System (ICS) environments. Experience with security site assessments and scoping - including but not limited to the analysis of network security architecture, baseline ports, protocols, and services, and characterize network assets. Experience using a SIEM tool for pattern identification, anomaly detection, and trend analysis. Experience analyzing a variety of industrial control systems network protocols, including but not limited to: ModBus, ENIP/CIP, BACnet, DNP3, etc.. Experience with the common open source and commercial tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations. Experience with collection and detection tools, including OSS/COTS host-based and network-based tools. U.S. citizenship required. An Active Top Secret Security Clearance required. Must be able to obtain a TS/SCI for continued employment. Must be able to obtain and maintain a favorably adjudicated DHS background investigation for continued employment. Desired: Certifications: GISCP, GCFA, GNFA, GRID, and any OT Sensor certifications 2 years of Threat Hunting or Digital Forensics & Incident Response (DFIR) experience preferred. Experience on DoD Cyber Protection Teams, a plus. Experience performing digital forensics and analysis on a variety of vendor/OEM equipment—including but not limited to laptop/desktops, PLC’s, HMI’s, Historians, and related SCADA systems. Experience with SIEM (Splunk) —threat hunting, analytic development, dashboards, and reporting. Familiarity with regulatory standards and frameworks relevant to critical infrastructure (e.g., NIST, IEC 62443). Ability to automate simple/repeatable but critical tasks. Scripting in Python, Bash, PowerShell, and/or JavaScript. SCA / Union / Intern Rate or Range Details Target Salary Range: $86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr Peraton

Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the OT/ICS Incident Response Analyst - Travel-Ready in Arlington, VA vacancy
  • $104k - $166k

    Cyber Incident Response Analyst (ICS/OT/SCADA) Location: Onsite in Arlington, VA Travel: Approximately 40% Clearance requirement: Top Secret/SCI (Active TS) Requisition ID: 2026-163351 Position Category: Intel and Threat Analysis Responsibilities Respond to cybersecurity... 
    Travel
    Contract work
    Shift work
    1 day per week

    Peraton

    Arlington, VA
    3 days ago
  • Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position...  ...foreign capabilities against CBRN incidents. Applicants must have an...  .... The role requires up to 25% travel and supports the U.S. Department... 
    Travel
    Work at office

    CORTEK Inc

    Washington DC
    4 days ago
  •  ...weekend and holiday workdays. Responsibilities Provide on-site CSSP/IR...  ...detailed triage of CSSP/IR incidents including implementing intrusion...  ...the ability to adjust focus. Travel There is no travel expected...  ...PROVIDER/INCIDENT RESPONSE ANALYST #J-18808-Ljbffr Bespoke Corps... 
    Travel
    Work at office
    Monday to Friday
    Weekend work

    Bespoke Corps LLC

    Arlington, VA
    1 day ago
  • Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment...  ...IR procedures. Participate in tabletop exercises , readiness assessments, and operational continuity testing. Monitor... 
    Suggested
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Consulting Group

    Washington DC
    5 days ago
  • $127k - $140k

     ...brightest minds in the industry. If you're ready to challenge yourself with work that...  ...comprehensive detection and automated response to cyber threats together with...  ...the Manager of Adversary Response, the Incident Response Analyst operates on the front lines of active... 
    Suggested
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Home office
    Flexible hours

    Deepwatch

    Washington DC
    1 day ago
  • $131.3k - $237.35k

     ...Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise...  ...and strategic requirements into scalable, production‑ready solutions. You will contribute directly to product planning... 

    Fairygodboss

    Alexandria, VA
    22 hours ago
  • $110k - $135k

     ...Payroll Title Analyst Location BCSA...  ...Bachelor's Degree Travel Up to 25%...  ...operational technology (OT), implementing...  ...monitoring. Key Responsibilities: Support analysis...  ..., and incidents impacting the U.S....  ...control systems (ICS) or SCADA concepts... 
    Travel
    Full time
    Currently hiring
    Local area
    Remote work

    BCS Allegient

    Washington DC
    3 days ago
  • Cayuse Holdings is seeking an ITSM Incident Response Analyst to support and respond to incidents while collaborating with the Service Desk and Desktop support teams. This remote position emphasizes adherence to ITIL-aligned processes, ensuring effective incident management... 
    Remote job
    Contract work

    Cayuse Holdings

    Washington DC
    2 days ago
  • A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience... 
    Remote job

    Cyber Synergy Consulting Group

    Washington DC
    5 days ago
  • Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    1 day ago
  • Eliassen Group is seeking a SOC Analyst to join their team in Washington, DC. This role...  ...continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid...  ...experience with security monitoring and incident response, proficiency with SIEM tools... 
    Remote work

    Eliassen Group

    Washington DC
    4 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Flexible hours

    Leidos Inc

    Arlington, VA
    2 days ago
  • A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC... 

    Tyto Athene, LLC

    Washington DC
    5 days ago
  • CHAOS Industries is looking for a SOC Analyst II to join their Security Operations team in Washington, D.C. This role...  ...experience and strong problem-solving skills. Responsibilities include investigating incidents, managing system alerts, and ensuring compliance with... 

    CHAOS Industries

    Washington DC
    22 hours ago
  • A cybersecurity firm is seeking a qualified Cybersecurity Service Provider/Incident Response Analyst in Arlington, VA. The ideal candidate will provide on-site support for DoD customers, possessing technical skills in intrusion detection and prevention, and will have a... 

    Bespoke Corps LLC

    Arlington, VA
    4 days ago
  • $131.3k - $237.35k

    Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program... 

    Leidos Inc

    Arlington, VA
    3 days ago
  • Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form the backbone of our cybersecurity services. You will play a critical role in securing our customers by monitoring our tools... 
    Part time
    Shift work
    Night shift
    Weekend work
    Day shift
    2 days per week

    Tyto Athene, LLC

    Washington DC
    5 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years... 

    ARGO Cyber Systems

    Arlington, VA
    4 days ago
  • Nightwing Group is seeking a Business Analyst to support onsite incident response for U.S. Government agencies experiencing cyber-attacks. The role involves gathering requirements, stakeholder coordination, and ensuring technology integration aligns with operational priorities... 

    Nightwing Group

    Arlington, VA
    5 days ago
  •  ...Global Solutions in Washington, DC is seeking a Senior Security Operations Analyst to monitor and respond to cybersecurity threats. The candidate will analyze security events, manage incident response, and support the National Indian Gaming Commission's cybersecurity... 

    Terrestris Global Solutions

    Washington DC
    3 days ago
  • $112.8k - $257k

     ...problems—and find solutions that keep our nation safe. As an Incident Response SME, you’ll bring your strategic planning, tactical response...  ..., implement, and assess complex incident response plans and readiness exercises, ensuring resilience in the face of natural... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    22 hours ago
  • $100.2k - $164.1k

     ...Senior Incident Response Consultant 133254 This role joins SpearTip,...  ...the U.S. and extend up to 20% travel. As a Senior Incident Response...  ..., conducting proactive readiness assessments, tabletop exercises...  ...junior consultants and analysts, providing technical guidance... 
    Travel
    Full time
    Temporary work
    Apprenticeship
    Local area
    Remote work
    Visa sponsorship
    Flexible hours

    Zurich NA

    Washington DC
    4 days ago
  • $84k - $89k

     ...seeking a Financial Management & Audit Readiness Analyst to support the U.S. Air Force...  ...mission requirements as needed. Occasional travel may be required. Salary: $84,000 - $8...  ...to solve complex issues, take on new responsibilities, build relationships and think in unique... 
    Travel
    Interim role
    Flexible hours

    Lynch Consultants Llc

    Arlington, VA
    4 days ago
  •  ...Operational Requirements Analyst -...  ...of space defense.**Key Responsibilities:**KBR is seeking a US...  ...On-site, Pentagon* **Travel Requirements:** Minimal...  ...Service HQ or DoD Agency or IC staffs.* Bachelor's Degree...  ...exceptional performance.**Ready to Make a Difference?*... 
    Travel
    Temporary work
    Work at office
    Local area
    Relocation package
    Flexible hours

    KBR

    Arlington, VA
    2 days ago
  • $95k - $112k

     ...Description DATA ANALYST Location: Washington...  ...products. Key Responsibilities Perform data exploitation...  ...Community (IC), DoD, or national security...  ...Details Travel: No travel required....  ..., enhance operational readiness, and advance mission success... 
    Travel
    Full time
    Local area
    Remote work

    DarkStar Intelligence, LLC

    Washington DC
    8 hours ago
  •  ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service...  ...coordinator maintains complete, audit-ready documentation throughout the incident lifecycle...  ...or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations... 
    Travel
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Washington DC
    8 hours ago
  •  ...Key Responsibilities War‑Room Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign actions/owners...  ...PIRs and trend analysis. Readiness & Drills: Run tabletop exercises...  ...up to 50 pounds" or "some travel" required.) Reasonable accommodations... 
    Travel
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Washington DC
    2 days ago
  • Valid8 Financial, Inc. is urgently seeking SOC Analysts for positions at the Drug Enforcement Administration Security...  ...at least 3 years of experience in Cyber Security. Responsibilities include monitoring incidents, investigating alerts, and coordinating responses to... 
    Immediate start

    Valid8 Financial, Inc.

    Fairfax, VA
    3 days ago
  • $110k - $170k

    Zachary Piper Solutions is looking for a SOC Analyst in McLean, VA to support a critical...  ...experience in cyber threat detection and incident analysis and must possess an active TS/SCI Full Scope Polygraph. Responsibilities include detecting cyber-attacks, analyzing... 

    Zachary Piper Solutions

    Mc Lean, VA
    1 day ago
  •  ...Solutions, LLC is seeking a skilled Security Operations Center Analyst (SOC) in Arlington, Virginia. This role requires a bachelor's degree...  ...environment. You will monitor security events, analyze network incidents, and utilize various security tools. Join a team committed to... 

    Chenega Agile Real Time Solutions, LLC

    Arlington, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to OT/ICS Incident Response Analyst - Travel-Ready. Be the first to apply!