Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Specialist

$100k - $120k

Bering Straits Native Corporation (BSNC)

About Bering Straits Professional Services Paragon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private‑ and public‑sector clients throughout Alaska and the Continental U.S. Paragon’s experienced professional staff is dedicated to producing high‑quality documentation and providing safe field execution to support its clients’ projects in line with local, state and federal guidelines and regulations. About this position: Sr. Cybersecurity Incident Response Specialist Location – Washington, DC The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position. Wage/Salary Range: $100k - $120k Applicants will be notified via phone or email within ten (10) business days of submittal. Essential Duties & Responsibilities Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization’s Network, Systems, Applications, and Web services. Provide senior level cybersecurity incident response expertise in support of the client’s Incident Response processes and procedures. Develop operational baselines such data flows and application interactions to enhance SOC’s ability to respond to incidents. Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800‑61 and Government guidance. Follow current guidance from NIST 800‑61, Federal Incident Notification Guidelines, CISA’s Incident Response and Vulnerability Playbook, and client guidance. Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards. Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity. Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client’s incident response program. Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents. Implement cybersecurity mitigations leveraging client tools and systems. Create and escalate cybersecurity‑related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines. Manage, coordinate, and respond to FOIA, audits, data calls, e‑discovery and information requests. Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis. Review and handle phishing messages reported by client staff. Required (Minimum Necessary) Qualifications Education Requirements: High School or GED-General Educational Development-GED Diploma; Bachelor’s degree in computer science or equivalent is preferred. Level of Experience Requirements: Minimum of five years hands‑on experience. Proven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments. Knowledge, Skills, Abilities, And Other Characteristics Proficiency with SIEM, EDR/XDR platforms, and forensic tools. Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies. Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity. Familiarity with malware analysis, reverse engineering basics, and memory analysis concepts. Experience developing and tuning detection rules, playbooks, and automated response workflows. Working knowledge of incident response frameworks (e.g., NIST SP 800‑61, SANS). Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting. Understanding of basic computer and networking technologies. Windows and Linux/Unix operating systems. Networking technologies (routing, switching, VLANs, subnets, firewalls). Common networking protocols – SSH, SMB, SMTP, FTP/SFTP, DNS, etc. Common enterprise technologies – Active Directory, Group Policy, and the Microsoft Azure suite of cloud services. Understanding of current system logging technology and retrieving information from a plethora of technology platforms. Ability to work well in a team environment. Self‑starter with ability to work with little supervision. Willingness to take on and adapt to new, open‑ended tasks for which there is no current standard operating procedure. Ability to research independently and self‑teach. Strong analytical and decision‑making skills under pressure. Excellent written and verbal communication, including incident documentation and executive briefings. Ability to lead investigations, mentor junior analysts, and collaborate with cross‑functional teams. Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required. Preferred Interest in security/hacking culture. Ability to “think like an attacker” General cybersecurity certifications (one or more of the following preferred): CompTIA Security+ CompTIA Cybersecurity Analyst (CySA+) Certified Ethical Hacker (CEH) GIAC Certified Incident Handler (GCIH) Any cloud security certification, especially: CompTIA Cloud+ Certified Cloud Security Professional (CCSP) Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK) Any Microsoft 365/Azure cybersecurity certification, especially: Microsoft Certified: Security Operations Analyst Associate (SC‑200) Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC‑900) Microsoft Certified: Azure Fundamentals (AZ‑900) Microsoft Certified: Azure Security Engineer Associate (AZ‑500) Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender. Knowledge of common enterprise technologies, policies, and concepts such as: Microsoft Sentinel SIEM Kusto Query Language (KQL) Mobile device technologies (iOS, Android) Scripting experience (PowerShell, Python, etc.) Microsoft Power BI Azure DevOps Artificial Intelligence (AI) / Machine Learning (ML) expertise In‑depth knowledge of AI and ML concepts. How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities. Experience with specific AI services offered within Microsoft Azure. Supervisory Responsibilities This position will not have supervisory responsibilities. DOT Covered/Safety‑Sensitive Role Requirements This position is not subject to federal requirements regarding Department of Transportation “safety‑sensitive” functions. Necessary Physical Requirements Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about. Work Environment The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Physical Setting: Washington DC Schedule and Flexibility: Full Time in Office Additional Qualifying Factors As a condition of employment, you will be required to pass a pre‑employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations. Shareholder Preference BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job. Bering Straits Native Corporation is an equal opportunity employer. All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law. #J-18808-Ljbffr

Vacancy posted 8 hours ago
Similar jobs that could be interesting for youBased on the Incident Response Specialist in Washington DC vacancy
  •  ...Amazon Corporate Security’s BAC seeks an Incident Response Coordination Specialist to manage physical security incidents worldwide, draft communications, and coordinate with response stakeholders in a 24/7 GSOC environment. The role requires strong written reporting and... 
    Suggested
    Worldwide
    Shift work
    Afternoon shift

    Amazon

    Arlington, VA
    2 days ago
  •  ...We are seeking a skilled Incident Response Specialist to join our Cybersecurity Operations team. In this role, you will be responsible for detecting, investigating, responding to, and recovering from cybersecurity incidents affecting enterprise systems and networks. The... 
    Suggested

    Mybridge

    Arlington, VA
    1 day ago
  •  ..., serving as a single point of intake for corporate physical security issues worldwide. The BAC is looking for talented incident response specialists to support our rapidly growing GSOC program. A successful candidate will have a strong track record of managing physical... 
    Suggested
    Worldwide
    Flexible hours
    Shift work
    Afternoon shift

    PVH (Tommy Hilfiger/Calvin Klein)

    Arlington, VA
    1 day ago
  •  ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite... 
    Suggested
    Contract work
    Local area

    Zantech

    Arlington, VA
    1 day ago
  •  ...Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret clearance, a minimum... 
    Suggested
    Work at office

    CORTEK Inc

    Washington DC
    2 days ago
  •  ...has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will... 

    TDI (Tetrad Digital Integrity)

    Arlington, VA
    1 day ago
  •  ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor... 

    EmergencyMD

    Washington DC
    2 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Flexible hours

    Leidos

    Arlington, VA
    2 days ago
  •  ...A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding... 

    Nightwing

    Arlington, VA
    8 hours ago
  • $100k - $120k

     ...Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity... 

    Bering Straits Native Corporation

    Washington DC
    8 hours ago
  • cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    3 days ago
  • Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    14 hours ago
  •  ...seeking a hands-on technical leader for its Cyber Investigation and Forensic Response practice in Arlington, Virginia. This role involves conducting complex forensic analyses, leading incident response efforts, and mentoring junior investigators. The ideal candidate has... 

    Accenture

    Arlington, VA
    1 day ago
  • Job Overview A law firm seeks a Cyber Incident Response Associate Attorney in Washington, DC. This role involves managing cybersecurity incidents and advising clients on data privacy laws. The position offers a flexible, hybrid working arrangement. Duties Manage incident... 
    Flexible hours

    BCG Attorney Search

    Washington DC
    2 days ago
  • $160k - $190k

     ...for a long‑term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Washington, D.C. Office. This position offers a flexible, hybrid working arrangement. The... 
    Full time
    Work at office
    Flexible hours

    Wilson Elser Moskowitz Edelman & Dicker LLP

    Washington DC
    2 days ago
  • $160k - $190k

     ...survey of the nation’s largest law firms. This position offers a flexible, hybrid working arrangement. The Position Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and international data breach and... 
    Full time
    Flexible hours

    Wilson Elser - Attorneys

    Washington DC
    2 days ago
  •  ...Job Description Job Description Cybersecurity Lead Incident Response Coordinator (Program Manager / On-Site Supervisor)  Company: Nationwide IT Services (NIS) Location: On-Site (5 Days/Week) – Executive Office for Immigration Review (EOIR), Office of Information... 
    Full time
    For contractors
    Work at office

    Nationwide IT Services

    Alexandria, VA
    11 days ago
  • $160k - $190k

    The Position Washington, D.C. - Flexible hybrid working arrangement. Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and international data breach and privacy laws Drafting legal notices of a data breach... 
    Full time
    Flexible hours

    Wilson Elser

    Washington DC
    4 days ago
  •  ...Job Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are... 
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Consulting Group

    Washington DC
    22 days ago
  • $110k - $130k

     ...workforce to produce meaningful results. This is a contingent position based on contract win. SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity operations by monitoring, analyzing, investigating, and responding to security incidents... 
    Contract work
    Remote work

    SkyePoint Decisions

    Washington DC
    4 days ago
  •  ...diversity. The Enterprise Operational Resilience team is looking to hire an Incident / Crisis Management Lead to help drive the continuous enhancement of the crisis event management response structure and play a lead role in facilitating and coordinating large scale... 
    Temporary work
    Local area
    Visa sponsorship
    Work visa
    Flexible hours

    WTW inc.

    Arlington, VA
    4 days ago
  • $160k - $190k

     ...for a long-term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Washington, D.C. Office. This position offers a flexible, hybrid working arrangement.... 
    Full time
    Work at office
    Flexible hours

    Wilson Elser - Attorneys

    Washington DC
    27 days ago
  • $101.53k - $132.69k

     ...Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security... 
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises®, Inc.

    Alexandria, VA
    15 days ago
  • Job title: International Emergency Response Specialist Status: Full-time Location: Alexandria, VA Department: International Programs Position Summary We are seeking a highly experienced and agile International Emergency Response Lead to drive the design, coordination... 
    Full time
    Local area

    Islamic Relief USA

    Alexandria, VA
    14 hours ago
  •  ...Geospatial & Cloud Analytics (GCA) is seeking a mission-driven Rapid Response Team Lead to support the high-priority, time-sensitive...  ...fix activities, VIP support in GO/Flag quarters, and immediate incident response across critical infrastructure. The ideal candidate... 
    Full time
    Contract work
    Immediate start
    Worldwide
    Night shift

    Geospatial And Cloud Analytics Inc

    Washington DC
    15 days ago
  •  ...Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain... 

    Raytheon Technologies

    Arlington, VA
    3 days ago
  •  ...experience in cybersecurity, with a focus on network security and incident response Position   Description PingWind is seeking a...  ...STIG (Security Technical Implementation Guide) Compliance Specialist who is responsible for leading efforts to ensure the organization... 
    Full time
    Temporary work

    Pingwind

    Adelphi, MD
    14 hours ago
  •  ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client...  ...as the central point of accountability for day-to-day incident response operations, providing leadership and direction in high-pressure... 
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    1 day ago
  •  ...Senior Information Assurance Specialist Company Overview: At ValidaTek, we modernize...  ...DHS-affiliated program. This position is responsible for designing, developing, and implementing...  ...investigations in response to cyber incidents, while shaping the evolution of the... 
    Contract work
    Local area
    Monday to Friday

    ValidaTek

    Washington DC
    4 days ago
  •  ...Group. We're looking for a Senior Safety Specialist (EHS) to lead safety performance...  ...continuously improve safety outcomes. Key Responsibilities Lead Safety Culture: Champion a strong...  ...requirements clearly to field teams Incident Management & Risk Reduction Lead incident... 
    For contractors
    Work at office

    Structural Corporation

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Specialist. Be the first to apply!