Senior Incident Response Analyst
$131.3k - $237.35kLeidos
Job Description At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business. Our Digital Modernization Sector brings together our digital transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a new shared DHS incident tracking system and other means of coordination and communication. Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS CISA SOC Program. Responsibilities Coordinate investigation and response efforts throughout the Incident Response lifecycle Correlate and analyze events and data to determine scope of Cyber Incidents Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks Tune and maintain security tools (EDR, IDS, SIEM, etc.) to reduce false positives and improve SOC detection capabilities Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports Create metrics and determine Key Performance Indicators to drive maturity of SOC operations Develop security content such as scripts, signatures, and alerts Basic Qualifications Bachelor's degree in Computer Science, Engineering, Information Technology, Cyber Security, or related field and 12-15 years of related experience. Additional years of experience and/or cyber certifications may be considered in lieu of degree. In-depth knowledge of each phase of the Incident Response life cycle Expertise in Operating Systems (Windows/Linux) operations and artifacts Expertise in Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, etc.), and devices (Firewalls, Proxies, Load Balancers, VPN, etc.) Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents Expertise with Cyber Kill Chain and have utilized the ATT&CK Framework Scripting experience with Python, PowerShell, and/or Bash Ability to independently prioritize and complete multiple tasks with little to no supervision Flexible and adaptable self-starter with strong relationship-building skills Strong problem-solving abilities with an analytic and qualitative eye for reasoning Strong verbal and written communication skills Ability to communicate with all levels of audiences (subordinates, peers & leadership) Candidate must have technical hands‑on experience in the areas of incident detection and response, malware analysis, or computer forensics All Department of Homeland Security SOC employees are required to favorably pass a 5-year (BI) Background Investigation Required certifications: SANS GIAC (GCIH, GCIA, GCFA, GPEN, GCFE, GREM); CISSP; OSCP, OSCE, OSWP Preferred Qualifications Experience in cyber government and/or federal law enforcement FISMA systems Benefits Pay and benefits include competitive compensation, health and wellness programs, income protection, paid leave, and retirement. Compensation ranges between $131,300.00 and $237,350.00 and is determined by responsibilities, education, experience, and other factors. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws. #J-18808-Ljbffr Leidos
- ...Defense in Washington, DC is seeking a Digital Forensics and Incident Analyst to support the Threat Analysis & Investigations function.... ...incidents to mitigate vulnerabilities in enterprise systems. Responsibilities span analyzing logs, collecting artifacts, performing...Senior
- ...has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will...Senior
- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements... ...enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SeniorWork at office
- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...SuggestedWork at office
- ...Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are seeking an experienced Incident Response...SuggestedFull timeContract workRemote workMonday to Friday
$112.8k - $257k
...skills to guide teams as they solve some of our clients’ most complex problems—and find solutions that keep our nation safe. As an Incident Response SME, you’ll bring your strategic planning, tactical response, risk mitigation, and defense mission expertise to work alongside...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Operations Lead to oversee SOC functions and manage a team of Analysts and Engineers in Washington, DC. The ideal candidate will... ...years of cybersecurity experience with specific expertise in incident response, threat hunting, and SIEM technologies like Splunk and ExtraHop...Senior
- ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor...Senior
- ...Wilson Elser is seeking a Senior Cyber Incident Response Attorney for a fully remote role. This position allows nationwide applicants and reports to a regional office if located elsewhere. The attorney will defend complex cybersecurity matters, oversee breach response...SeniorWork at officeRemote work
- ...Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...SeniorWork at officeRemote work
$90k - $120k
...firsthand. Potomac Haven is looking for a Senior Analyst with real, hands-on experience in the... ...assault and harassment prevention and response field to support the National Science... ...assault, sexual harassment and stalking incidents and is responsible for overseeing...SeniorTemporary workWork at officeRemote work$66k - $106k
...is seeking an experienced CIRT Tier 2 Analyst to support its Federal Strategic Cyber... ...candidate will detect and report cybersecurity incidents while performing in-depth analysis in... ...is $66,000 to $106,000, depending on qualifications and responsibilities. #J-18808-Ljbffr...$75k - $85k
...classify, process, track, and report on cyber security events and incidents. Perform advanced in‑depth analysis of coordinated Tier 1... ...and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email inboxes. Create tickets and initiate...Full timeInterim roleLocal areaAfternoon shift$101.53k - $132.69k
...Position Description We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security program. This role combines hands‑on cyber and incident lifecycle...Permanent employmentContract workTemporary workWork at officeLocal area- ...Incident Response Analyst (Full‑Time/Part‑Time) RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations – Core Operations and...Full timeContract workPart timeShift workNight shift
- ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite...SeniorContract workLocal area
$60k - $85k
...Incident Response Analyst Job Locations US-MD-Bethesda ID 2026-4753 Category Information Technology Type Full Time Overview Edgewater is seeking an Incident Response Analyst to provide support to an Edgewater Federal...Full timeContract workFlexible hours$110k - $130k
...produce meaningful results. This is a contingent position based on contract win. SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity operations by monitoring, analyzing, investigating, and responding to security incidents across...Contract workRemote work- Senior Analyst-CBRN Washington, DC Onsite: Cortek Senior Analyst to support the Response Portfolio within the Office of WMD Response and Planning (WRP). This role involves... ...their capabilities to respond to CBRN incidents. The analyst will also coordinate U.S....SeniorWork at officeRemote workWorldwide
$100k - $120k
...Join to apply for the Senior Program Analyst role at Piper Companies Piper Companies is looking... ...methods to perform program management responsibilities Senior level capability with... ...Continuity Planning, Crisis Management, Incident Response, Emergency Response, Evacuation...SeniorFor contractorsWork at office3 days per week$117.72k - $132.55k
...cross‑functional teamwork and shared responsibility. Transparency ensures open communication... ...of Information Technology, the Senior Analyst, Technology Governance & Controls is responsible... ...related to risks, issues, exceptions, incidents, remediation items, and management...SeniorContract work- Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
$119k - $172k
...Summary: Analytic Services, Inc. (ANSER) is seeking a Senior Legislative Analyst to serve as the principal advisor on congressional and legislative... ..., and national security priorities. Day to Day Responsibilities: Advise senior leaders on congressional intent,...SeniorFull timeWork experience placementWork at officeLocal area$70.35k - $205.8k
...our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare... ...for, respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response services to our...SeniorWork experience placementLive inWork at officeLocal area$139.1k - $251.45k
...exciting opportunity for a Sr SME Management Analyst in our Intel Sector Analysis... ...Analysis Solutions Business Area! Responsibilities include : Develop written reports... ...your local law enforcement and report the incident to the . Commitment to Non-...SeniorLocal areaImmediate startFlexible hours- ...~ Customer DEA ~ Intermediate SOC Analyst ~6 years with Bachelor Position Summary The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding... ...complex or critical incidents to senior analysts or SOC leadership as needed...Remote work
$117.29k - $167.66k
A defense support company seeks a Senior Analyst to aid a Navy customer. Responsibilities focus on enhancing operational readiness through advanced analytics, producing actionable insights from complex data. The ideal candidate will have 15 years of relevant experience,...SeniorContract work- ...Paid time off Vision insurance We are seeking a Senior Investigative Analyst to support fraud investigations through advanced data analysis... ...supporting federal oversight and law enforcement. Responsibilities: Should have a minimum of three (3) years of...Senior
- ...Senior FOIA Analyst Crowned Grace International is recruiting a Senior FOIA Analyst with experience in the Freedom of Information Act (FOIA... ...conducting initial reviews, performing searches, drafting response materials, and applying exemptions under supervision. Your contribution...SeniorWork at officeLocal areaRemote work
- ...set you apart from everyone else. Demonstrate innovative solutions to our clients. Join Barrow Wise Consulting, LLC today. Responsibilities Identify performance metrics, consolidate data from Salesforce, Oracle, and Tableau into actionable dashboards Develop process...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Incident Response Analyst. Be the first to apply!
- proposal analyst Arlington, VA
- client delivery analyst Arlington, VA
- transportation analyst Arlington, VA
- growth analyst Arlington, VA
- development analyst Arlington, VA
- merchandising analyst Arlington, VA
- behavioral analyst Arlington, VA
- category analyst Arlington, VA
- shipping analyst Arlington, VA
- analyst sales operations Arlington, VA

