Incident Response Analyst
Cyber Synergy
Incident Response Analyst
Incident Response Analyst (Task 4 – Federal Cybersecurity Contract)
Location: Remote with occasional on-site (Washington, D.C. Metro Area)
Employment Type: Full-Time
Clearance: Public Trust (or eligibility to obtain)
We are seeking an experienced Incident Response Analyst to support Task 4 – Incident Response Management on a federal cybersecurity services contract. This role provides front-line security event triage, investigation, reporting, and coordination across multiple federal cybersecurity teams.
The ideal candidate has hands-on experience with enterprise IR tooling- CrowdStrike, FireEye (Trellix), Splunk, NetWitness, and Magnet AXIOM -and is comfortable working in a high-tempo operational environment aligned with federal cybersecurity frameworks (NIST, FISMA, OMB).
Key Responsibilities
- Perform initial triage of security events from SIEM, EDR, NDR, and log sources, including CrowdStrike, FireEye/Trellix, Splunk, NetWitness, and related platforms.
- Conduct incident investigations, including host and network forensics, log analysis, and evidence review using tools such as NetWitness and AXIOM.
- Coordinate closely with HHS CSIRC, OpDiv incident response teams, system owners, and security engineering staff to validate findings and recommend containment actions.
- Provide daily updates, SITREPs, and written documentation of incident status, investigative steps, and remediation recommendations.
- Develop incident dashboards and knowledge base documentation within Splunk and other IR platforms.
- Support containment, eradication, and recovery efforts aligned to federal IR procedures.
- Participate in tabletop exercises, readiness assessments, and operational continuity testing.
- Monitor and manage the Incident Response Team (IRT) mailbox; escalate urgent items within required SLAs.
- Assist with audit support, evidence gathering, and post-incident reviews.
- Contribute to continuous improvement of incident response processes and playbooks.
Required Qualifications
- 2–5+ years of experience in cybersecurity operations, SOC analysis, or incident response.
- Direct hands-on experience with IR tools, including:
- CrowdStrike Falcon (EDR)
- FireEye/Trellix (HX, Helix, or equivalent)
- Splunk (SIEM, dashboards, search queries)
- NetWitness (network forensics, packet analysis)
- Magnet AXIOM (host forensics)
- Strong understanding of adversary techniques, malware behavior, incident timelines, and forensic artifacts.
- Familiarity with NIST 800-61, NIST 800-53, FISMA, OMB guidance.
- Ability to clearly document investigations and communicate findings to technical and non-technical audiences.
- Eligibility to obtain and maintain a Public Trust clearance.
Preferred Qualifications
- Experience supporting federal agencies (HHS, DHS, DoD, DOJ, etc.).
- Certifications such as Security+, CySA+, CEH, GCIH, GCIA, CHFI, or related.
- Experience performing threat hunting across EDR, SIEM, and NDR tools.
- Familiarity with packet analysis tools (Wireshark) and scripting languages (Python, PowerShell).
- Experience with ServiceNow or similar ticketing platforms
Work Schedule & Expectations
- Core hours: 7:00 AM – 5:00 PM EST, Monday through Friday, with the flexibility to support after-hours incidents as needed.
- Participation in on-call rotations may be required.
- Remote work permitted with reliable connectivity and camera-enabled participation.
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SuggestedFull timeFlexible hours$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will be based in the Washington, D.C area.Work Schedule: 5 days, 8hrsEssential Responsibilities: Provide a wide range of Cyber Intelligence...SuggestedContract workFor contractors
- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency... ...and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SuggestedWork at office
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SuggestedFlexible hours$94k - $127k
...Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join...$135k - $175k
...team and play a key role in protecting the firm's global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities, and helping strengthen the processes, technologies...Self employmentLocal areaWorldwideMonday to FridayAfternoon shiftEarly shift$80k - $128k
Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber...Interim roleInternshipWork at officeLocal areaWorldwideAfternoon shift- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years...- Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Location: Alexandria, VA and Seaside, CA. Responsibilities...
- Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
$104k - $166k
ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington, VATravel: Approximately 40%Peraton is seeking an experienced Incident Response Analyst with...Contract workCurrently hiringShift work1 day per week$120k - $135k
...been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will...Permanent employmentContract workRemote work2 days per week- ...Overview This is a temporary position ending 02/2027. The Work The Cyber Incident Response Analyst role is pivotal in reinforcing the client's cybersecurity framework by serving as the primary entry point for all external communications regarding cybersecurity...Temporary workWork at officeLocal areaFlexible hoursShift work
- ...Cyber Incident Response Analyst This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization...
$159.3k - $202.4k
...Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats such as malware and intrusion...InternshipFlexible hours$136k - $184k
...requires that the candidate selected be a US Person.Key job responsibilities- You will query big data repositories to identify threat activities... ...risk to Amazon customers and data.- You will work alongside incident response teams and provide direct support to ongoing...InternshipFlexible hoursShift work- ...seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the DMDC CyberPRIMES program. You will perform advanced... ...escalated from Tier 1, correlate security data, and support incident triage and containment for DHRA and DMDC systems. The role requires...
- ...supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners... ...Indicators of Compromise (IOCs), escalating to specialized analysts Required Skills: - Must have an active TS/SCI clearance -...Contract workImmediate startShift work
- Cayuse is hiring a Cyber Incident Response Analyst in Washington, DC. This role is critical for reinforcing the client’s cybersecurity framework, managing communications about incidents, and engaging in operational coordination. The Analyst will be expected to provide first...
- ...Incident Management Analyst Full-time Qualifications - Must have an active TS/SCI clearance - 5+ years of directly relevant experience... ...management or cybersecurity operations - Knowledge of incident response and handling methodologies - Having close familiarity...Full time
- ...Insurance, Dental Insurance, Vision Insurance Full-Time | On-site Required Skills powershell Cybersecurity SIEM Cybersecurity Incident Response Analyst Job Description: The Cybersecurity Incident Response Analyst is responsible for real-time threat detection, security event...Full time
- myBridge Corporation in Chandler, AZ is seeking a Cybersecurity Incident Response Analyst to join our SOC. You will monitor real-time security events, detect threats, and triage incidents across network, cloud, and endpoints, translating alerts into actionable containment...
- ...diversity. The Enterprise Operational Resilience team is looking to hire an Incident / Crisis Management Lead to help drive the continuous enhancement of the crisis event management response structure and play a lead role in facilitating and coordinating large scale...Temporary workLocal areaVisa sponsorshipWork visaFlexible hours
$57.2k - $109.4k
Cybersecurity Incident Response Triage Analyst Arlington, VA The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the analysis and triage team lead to relate...Work experience placementLive inWork at officeLocal areaShift work- Accenture Federal Services in Arlington, VA, seeks a Cybersecurity Incident Response Triage Analyst to join the CIRT team within the CISO organization. The role involves monitoring, triaging, and analyzing alerts from SIEM and security sensors, coordinating with incident...
- ...Job Description Job Description Job Title: Mid-Level Cybersecurity Incident Response Analyst Location: Bethesda, Maryland Type: Direct Hire Compensation: 120k Work Model: Hybrid Hours: 40.0 Security Clearance: Public Trust Responsibilities Monitor...Local area
- Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain...
- Responsibilities:- Perform Computer Security Incident Response activities for a large global enterprise, coordinate with other enterprise IT teams to record... ...a complex network environment and assist security analysts in building operational processes around the SIEM ecosystems...Work experience placement
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Analyst. Be the first to apply!
- etl analyst Washington DC
- utilities analyst Washington DC
- remediation analyst Washington DC
- allocation analyst Washington DC
- industry analyst Washington DC
- packaging analyst Washington DC
- medicare analyst Washington DC
- remote analyst Washington DC
- IT governance analyst Washington DC
- invoice analyst Washington DC


