Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response (IR) Tech Lead

$160k - $190k

Edgewater Federal Solutions

Incident Response (IR) Tech Lead

Job Locations


US-MD-Bethesda

ID


2026-4536

Category


Information Technology

Type


Full Time

Overview

Edgewater Federal Solutions is currently seeking an Incident Response (IR) Tech Lead to provide technical expertise, oversight, growth, and maturation of an Incident Response team comprised of IR Tier-1, IR Tier-2, and Forensics specialists on a Federal government contract. This role will provide expert Tier-2/3 support for threat mitigation, incident handling, and response in a 24x7x365 environment, ensuring the security of national-level infrastructure. As a senior incident responder, you will manage significant incidents, guide cross-functional teams, and implement advanced investigative techniques to defend against complex cyber threats. This role requires hands-on technical expertise, strategic oversight, and the ability to develop and improve detection and response processes. This role will also partner with the "Right-of-Boom" Deputy to the Cybersecurity Operations Task Lead.

**Due to the nature of the contract and customer US Citizenship is required.

Responsibilities

    Lead the response for significant and escalated incidents, coordinating tasks across the IR team and ensuring timely completion.
  • Oversee incident triage, determining scope, urgency, and potential impact on operations.
  • Develop containment, eradication, and recovery strategies for high-severity incidents.
  • Perform real-time monitoring and alerting for potential threats using enterprise security tools, including SIEMs and cloud service provider tools.
  • Proactively identify and accurately categorize security incidents, leveraging advanced analytics and correlation techniques.
  • Lead threat-hunting operations focused on detecting advanced persistent threats (APTs) and other cyber threats.
  • Coordinate efforts between various incident response teams across the enterprise to provide full-scale detection and incident response.
  • Act as a point of escalation for complex incidents and support junior analysts by providing guidance and mentorship.
  • Collaborate with cybersecurity, counterintelligence, and law enforcement teams for insider threat investigations and other sensitive matters.
  • Conduct malware analysis and reverse engineering of suspicious payloads and network traffic.
  • Perform digital forensics across various platforms, including host-based, network, cloud, and mobile device forensics.
  • Acquire and analyze full disk images and other volatile data as part of investigations, ensuring adherence to NIST SP 800-86 guidelines.
  • Develop new or enhance existing detection and response processes, leveraging innovative technologies like Security Orchestration, Automation, and Response (SOAR) platforms.
  • Create custom detection signatures and automate response workflows.
  • Lead research into new technologies and tools to improve the organization's security posture.
  • Develop detailed After-Action Reports (AARs) following significant incidents, summarizing actions taken and lessons learned.
  • Create executive summaries and provide regular incident updates for senior leadership.
  • Lead and document monthly Lessons Learned meetings for significant incidents, tracking action items to completion.
  • Participate in and lead incident response tabletop exercises, collaborating with national and agency-level stakeholders.
  • Ensure continual improvement of incident response processes by documenting lessons learned from exercises and real-world events.
  • Support counterintelligence and insider threat activities by performing advanced analytics, forensics, and investigation support.
  • Analyze suspicious emails, websites, and downloads for nefarious behaviors, escalating findings as necessary.
  • Perform content development for SIEM systems, including correlation algorithms and threat detection signatures.
  • Assist in evaluating and integrating new security tools to improve threat detection and response capabilities.
Qualifications
    • Bachelor's Degree or higher in relevant cybersecurity-related major and 12 years experience.
    • 5+ years' experience comprehensive cybersecurity operations leadership and management.
    • Demonstrated expert-level delivery experience and knowledge of IR concepts, operations, outputs, and maturity levels.
    • Demonstrated expert-level delivery experience and knowledge of Forensics concepts, operations, outputs, and maturity levels.
    • Demonstrated expert-level delivery experience and knowledge of ticket management tools and practices; troubleshooting; investigations; computer networking; and operating systems.
    • Demonstrated expert-level technical ability/aptitude, demonstrated through prior technical experience and accomplishment.
    • Excellent critical thinking, analytic skills, and experience.
    • Excellent time management skills and experience.
    • Excellent management, teamwork, and interpersonal skills against difficult due dates and timelines.
    • Excellent customer service focus to meet the needs of internal and external customers.
    • Excellent presentation development and delivery skills.
    • Excellent program management, project management, and task tracking skills.
    • Ability to work on occasional weekends and holidays.
    • Ability to pass an HHS Tier-2 security clearance background investigation

Desired:

  • One or more certifications in information security (such as GCIH, GCFA, OSCP, GPEN, GSEC, CISSP, CISM, CompTIA Advanced Security Practitioner, CompTIA Security Analytics Expert, CCTHP, CySA+, Security+, etc.).
  • Project Management Certifications (such as CAPM, PMP, ITIL etc.).
  • Current Security clearance

Salary: $160,000 - $190,000

About Us:

Edgewater Federal Solutions is a privately held government contracting firm located near Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services, and timely delivery. Edgewater is ISO 9001, 20000-1, 27001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2024.

It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other status protected by applicable law.

Vacancy posted 5 hours ago
Similar jobs that could be interesting for youBased on the Incident Response (IR) Tech Lead in Bethesda, MD vacancy
  • A leading provider of real estate information is seeking a Lead Security Engineer in Arlington, VA. The ideal candidate will have...  ...experience in Information Security and a strong background in incident response and technical assessments. The role requires expertise in scripting... 
    Suggested

    CoStar

    Arlington, VA
    2 days ago
  • A leading cybersecurity firm is seeking a Cloud Forensics Analyst to support onsite incident response to cyber-attacks. The role involves acquiring and analyzing computer artifacts, conducting forensic investigations, and developing mitigation strategies. Candidates should... 
    Suggested

    Nightwing

    Arlington, VA
    4 days ago
  • A cybersecurity company in Arlington, VA, is seeking experienced Network Forensics Cybersecurity Analysts to support incident response missions for government clients facing cyber threats. The ideal candidate has at least 8 years of experience in network investigations,... 
    Suggested

    Nightwing

    Arlington, VA
    1 day ago
  •  ...is seeking a skilled Security Engineer to enhance our SOC's capabilities in cybersecurity across cloud platforms. You will lead incident response, develop playbooks, and mentor junior engineers. The ideal candidate has 5+ years in cybersecurity with proficiency in SIEM... 
    Suggested
    Flexible hours

    Aledade, Inc.

    Washington DC
    1 day ago
  • $142.79k - $184k

     ...Technical Lead Cybersecurity Operations Advance your career...  ...Lead Hosting platform will be responsible for providing leadership across...  ...of security risks and incidents. Oversee vulnerability management...  ...post-tax dollars up to the IRS annual limits and receive a company... 
    Suggested
    Temporary work
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics

    Bethesda, MD
    1 day ago
  • $120k - $140k

     ...seeking a Detection Engineer to enhance cybersecurity for a leading healthcare client. You'll be responsible for managing Splunk applications, developing monitoring alerts, and responding to security incidents. Ideal candidates have at least 5 years of experience with Splunk... 

    Edgewaterit

    Bethesda, MD
    1 day ago
  •  ...remote position. Job Title: IT Technical Lead – Software & DevOps Location: Remote Duration: Full-Time NEED IRS MBI Clearance. Description: This...  ...productivity and efficiency. The Lead is ultimately responsible for coordinating the effort of the team... 
    Permanent employment
    Full time
    Contract work
    For contractors
    Remote work

    3M Consultancy

    Washington DC
    14 days ago
  • $131.3k - $237.35k

     ...We are currently seeking an Technical Lead to join the Compartmented Enterprise Services...  ..., VA and is 100% on-site. Primary Responsibilities Engineering Experience in working...  ...local law enforcement and report the incident to the U.S. Federal Trade Commission (... 
    Temporary work
    For contractors
    Work at office
    Local area
    Immediate start

    Leidos

    Arlington, VA
    4 days ago
  • $131.3k - $237.35k

     ...We are currently seeking an Technical Lead to join the Compartmented Enterprise Services...  ..., VA and is 100% on-site. Primary Responsibilities Engineering Experience in...  ...your local law enforcement and report the incident to the U.S. Federal Trade Commission.... 
    Temporary work
    Work at office
    Local area
    Immediate start

    Leidos

    Arlington, VA
    1 day ago
  •  ...Duration: Full-Time Clearance: IRS MBI Required We are seeking an experienced...  ...Amazon Web Services. This role will be responsible for establishing and maintaining our AWS...  ...• Establish security monitoring and incident response procedures • Ensure compliance... 
    Full time
    Remote work

    3M Consultancy

    Washington DC
    23 days ago
  •  ...a Site Reliability Engineer to join their team in Washington, DC. The role involves monitoring customer-facing services, managing incidents, and automating production issue resolutions. Candidates should possess a Bachelor's degree in Computer Science or related fields,... 

    Relha LLC

    Washington DC
    1 day ago
  •  ...Lead Technologist Job is remote. Candidates must be located in the Northeast. Will...  ...them. The EAM Developer – Senior is responsible for execution of tasks of the Software Development...  ...and execution. Level III support for incidents (root cause analysis, source code... 
    Remote work

    Software Technology Inc

    Washington DC
    1 day ago
  •  ...CDM Tech Lead Job Locations US-MD-Bethesda ID 2026-4555 Category Information Technology Type...  ...with the federal CDM team and other federal stakeholders. Responsibilities Provide expertise in aligning solutions with current and... 
    Full time

    Edgewater Federal Solutions

    Bethesda, MD
    23 hours ago
  •  ...WORK AND PERSONAL IMPACT As the Technical Lead Hosting, the work you'll do at GDIT will...  ...Technical Lead Hosting platform will be responsible for providing leadership across both...  ...management practices ( e.g., monitoring, incident, and change management). Collaborate... 

    General Dynamics

    Bethesda, MD
    1 day ago
  •  ...seeking a highly skilled IT Software Developer III to support the IRS Audit Information Management System Digitalization program....  ...strong expertise in COBOL and UNISYS mainframe environments. Responsibilities include designing and maintaining applications, gathering requirements... 

    E Logic

    Washington DC
    1 day ago
  • $100k - $160k

     ...Client needs change) Position Title: Lead Software Engineer - DevSecOps &...  ...plans, ORR readiness support). Key Responsibilities Technical Leadership & Hands-On Engineering...  ...the victim of a scam, contact your local law enforcement and report the incident to the .
    Work experience placement
    Local area
    Immediate start

    LCG

    Bethesda, MD
    1 day ago
  • A technology solutions company is seeking an experienced professional for a systems troubleshooting role in McLean, Virginia. This position requires a strong background in operational analysis with a BS degree and 6-8 years of relevant experience or a Masters with 2-4 years...

    Triglocon

    Mc Lean, VA
    4 days ago
  • A leading technology solutions firm located in Bethesda, MD is seeking a Technical Program Manager. The ideal candidate will have...  ...with a strong background in the hospitality or travel domain. Responsibilities include managing multiple programs simultaneously and fostering... 

    krg technology inc

    Bethesda, MD
    4 days ago
  • $90 - $130 per hour

     ...Security Infrastructure Support - SIEM & Data Pipeline Technical Lead / SME to join their team! This position is located in...  ...flow, transformation, and correlation logic to support incident detection and response Develop scripts and automation processes: Python, JavaScript... 
    Local area

    KellyMitchell Group

    Bethesda, MD
    4 days ago
  • $154.05k - $278.48k

     ...opportunity for Cyber Security Engineer—Technical Lead in our Intel Security Sector's Analysis...  ...Security! Job Summary This role is responsible for protecting the customer’s...  ...in remediation efforts of cyber security incidents (system and/or network breaches, malware... 
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    3 days ago
  •  ...Description This is a remote position. Job Title: Lead Java Developer Location: Remote Duration: Full-Time NEED IRS MBI Clearance. Description: The...  ...and deliver high quality applications. Responsibilities: Lead the design, coding testing, and... 
    Full time
    Remote work

    3M Consultancy

    Washington DC
    14 days ago
  •  ...Area Employment Type: Full-Time Clearance: Ability to obtain IRS staff-like access / MBI Clearance Praescient Analytics is seeking...  ...with work locations in Washington, DC or Lanham, MD. Key Responsibilities Design and develop AI/ML models and services using modern frameworks... 
    Full time

    Praescient Analytics

    Washington DC
    1 day ago
  • $40 per hour

    A technology company specializing in AI cybersecurity is seeking experienced cybersecurity professionals to help train AI models. The role involves evaluating AI-generated content, solving technical problems, and providing feedback to improve AI security systems. Candidates...
    Hourly pay
    Remote work
    Flexible hours

    DataAnnotation

    Washington DC
    4 days ago
  • $107.9k - $195.05k

     ...biometric systems and data for end users. Lead the integration, maintenance, and...  ...reliability and performance. Key Responsibilities: Develop and maintain software...  ...your local law enforcement and report the incident to the U.S. Federal Trade Commission.... 
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Bethesda, MD
    1 day ago
  • $107.9k - $195.05k

     ...design, coding and unit testing. Primary Responsibilities: Participates in and/or directs...  ...SAFe practices, using industry leading DevOps tools like GitHub, Jenkins, Unix...  ...your local law enforcement and report the incident to the U.S. Federal Trade Commission.... 
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    1 day ago
  • $100k - $150k

     ...Software Developer, Lead -.NET / React / Cloud Location: Bethesda, MD Work Type...  ...-performing software solutions. Key Responsibilities Lead architecture, design,...  ...your local law enforcement and report the incident to the U.S. Federal Trade Commission.... 
    Work experience placement
    Local area
    Immediate start
    Shift work

    LCG

    Bethesda, MD
    23 hours ago
  •  ...with or exposure to web-based application development, including responsive and RESTful design principles ~ Basic understanding of...  ...work Report all suspected or confirmed information security incidents or breaches to the NIH Incident Response Team within one (1) hour... 
    Temporary work
    Work at office
    Local area

    Lexical Intelligence

    Bethesda, MD
    2 days ago
  • $69.55k - $125.73k

     ...cutting edge, working with state-of-the-art tech to shape naval training systems like...  ...offer include (but are not limited to) responsibilities of the job, education, experience,...  ...your local law enforcement and report the incident to the U.S. Federal Trade Commission (... 
    Interim role
    Local area
    Immediate start
    Night shift

    Leidos

    Bethesda, MD
    4 days ago
  • $154.05k - $278.48k

     ...issues in dev, test, and production environments. Primary Responsibilities: Supports software deployments, cloud infrastructure baselines...  ...of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( . Commitment to Non... 
    Work experience placement
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    5 days ago
  •  ...Job Description Job Title: Sr Java Developer. Location: Remote. Duration: Full-Time NEED IRS MBI Clearance. Experience with Java development programming language (i.e., Spring Boot) and maintain APIs. Familiar with software engineering and Agile delivery... 
    Full time
    Remote work

    3M Consultancy

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response (IR) Tech Lead. Be the first to apply!