Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense & Incident Responder (SOC Analyst)

Gormat

Cyber Defense & Incident Responder (SOC Analyst)

100% work on site - no remote work

Secret clearance with the ability to acquire a TS

Locations near the Pentagon or Mayfield VA

Customer DEA

Intermediate SOC Analyst

6 years with Bachelor

The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations. The analyst will leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.

Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents

Review SIEM, IDS/IPS, EDR, and related security tool alerts for anomalous activity, indicators of compromise (IOCs), and indicators of attack (IOAs).

Validate alerts, reduce false positives, and prioritize incidents based on severity and impact

Perform triage and analysis of security events to determine scope, severity, and urgency

Examine log data, network telemetry, and endpoint information to identify malicious activity

Correlate event details with internal and external threat intelligence

Execute incident response actions in accordance with established procedures

Contain affected systems, remove malicious artifacts, and assist with system recovery

Escalate complex or critical incidents to senior analysts or SOC leadership as needed

Document investigative findings, incident timelines, and remediation actions

Create and manage incident tickets and upload supporting evidence and artifacts

Contribute to after action reviews and post incident reporting

Communicate findings clearly and concisely to technical and nontechnical stakeholders

Maintain SOC processes, tools, and playbooks to support effective incident handling

Recommend improvements to SOPs, escalation procedures, and detection capabilities

Participate in training exercises and knowledge sharing activities

Support red, blue, or purple team exercises as directed

Stay informed on current and emerging cyber threats, threat actor TTPs, and industry trends

Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, Data Science, or related field from an ABET accredited or CAE designated institution preferred. Equivalent experience may be considered in accordance with SOW education substitution requirements

Minimum of 6 years of experience in Information Technology and/or Information Security

Experience with incident response, threat analysis, SIEM platforms, endpoint security tools, and log analysis

Strong analytical and investigative skills with the ability to derive accurate conclusions during incident investigations

Active Secret clearance or higher required

Must be eligible to obtain a Top Secret clearance if requested

Ability to successfully complete a DEA background investigation

Must possess at least one applicable DoD 8140 certification or obtain certification within 6 months of onboarding

Preferred DCWF Role 511 Cyber Defense Analyst certifications include:

CBROPS

CFR

CompTIA Cloud+, CySA+, PenTest+, or Security+ CE

FITSP O

SANS GCED, GCFA, GCIA, GDSA, GFACT, GICSP, GISF, or GSEC

This role primarily supports the Operations & Response Team, with potential support across Vulnerability Assessment and Penetration Testing and Engineering teams. The position will coordinate closely with cybersecurity, IT operations, engineering, software operations, and investigative technology teams to support enterprise security operations and incident response activities.

Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Cyber Defense & Incident Responder (SOC Analyst) in Arlington, VA vacancy
  •  ...is seeking a seasoned Cybersecurity Analyst - Tier 2 (Incident Responder) to support a Federal information...  ...resources. The candidate will work with SOC personnel, engineers, threat...  ...to minimize impact and strengthen cyber defenses. U.S. #J-18808-Ljbffr Digital Global... 
    Cyber

    Digital Global Connectors

    Mc Lean, VA
    2 days ago
  • NTT DATA seeks a Cyber Defense & Incident Responder to monitor, analyze, and respond to cybersecurity incidents in Arlington, VA. The role emphasizes...  ...initial triage, documenting findings, and coordinating with SOC leads. Requires active security clearance and DoD 8140... 
    Cyber

    NTT DATA

    Arlington, VA
    4 days ago
  • $107k - $124k

     ...Cyber Defense Incident Responder - SeniorOur client is seeking a Cyber Defense Incident Responder – Senior to work in our Washington, DC office.Lead...  ...cybersecurity, and contingency requirements.Manage/mentor SOC team members regarding procedures, schedules, training, event... 
    Cyber
    Work at office
    Local area

    Merit 321

    Washington DC
    1 day ago
  • $101.38k - $152.06k

     ...with us. We are currently seeking a Cyber Defense & Incident Responder to join our team in Arlington, Virginia...  ...and restore normal operations. Analysts leverage security tools, event logs,...  ...complex or critical incidents to Senior SOC Analysts or SOC Leads. Document and... 
    Cyber
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT DATA North America

    Arlington, VA
    19 hours ago
  • S2i2, Inc. is seeking a Lead Cyber Defense Incident Responder in Arlington, VA. This highly experienced role combines hands-on technical work with leadership of a security analytics team operating in TS/SCI and SAP environments. Expect threat hunting, malware research,... 
    Cyber

    S2i2 Inc

    Arlington, VA
    3 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The...  ...(DHS), Security Operations Center (SOC) Support Services is a US Government...  ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on... 
    Cyber
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  • NTT DATA North America is seeking a Cyber Defense & Incident Responder in Arlington, Virginia to monitor, analyze, and respond to cybersecurity incidents...  ...contributing to AARs, with opportunities to advance through senior SOC roles. #J-18808-Ljbffr NTT DATA North America
    Cyber

    NTT DATA North America

    Arlington, VA
    19 hours ago
  • $91.1k - $170.4k

     ...) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client...  ...Investigative Services (CIS) Junior Incident Coordinator will exercise...  ...a Security Operations Center (SOC) Security Incident Response Analyst or supporting function (2 years... 
    Cyber
    Summer holiday
    Remote work
    Flexible hours

    EY

    Washington DC
    3 days ago
  • Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will assess cybersecurity...  ...identify operational risks and process gaps, support incident-response, and translate complex cyber information into... 
    Cyber

    OPS TECH ALLIANCE LLC

    Mc Lean, VA
    1 day ago
  •  ...single focus has been delivering cyber solutions to effectively...  ...! TDI is seeking a Senior Incident Response Analyst to join our team in support...  ...monitor, detect, investigate, and respond to cybersecurity threats...  ...scripts to strengthen SOC monitoring capabilities. Document... 
    Cyber
    Permanent employment

    Tetrad Digital Integrity

    Arlington, VA
    1 day ago
  • ## (Cyber) Incident Management Analyst - Weekend Night ShiftApplylocations: Arlington, VAtime type: Full timeposted on: Posted Todayjob requisition...  ...Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical... 
    Cyber
    Contract work
    Immediate start
    Shift work
    Night shift
    Weekend work

    Nightwing Group

    Arlington, VA
    4 days ago
  •  ...technically advanced full-spectrum cyber, data operations, systems...  ...space operations, cyber defense and resiliency, vulnerability...  ...Government customer to provide onsite incident response to civilian...  ...), escalating to specialized analysts Required Skills U.S. Citizenship... 
    Cyber
    Contract work
    Immediate start
    Shift work
    Night shift
    Weekend work

    Nightwing

    Arlington, VA
    2 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The...  ...(DHS), Security Operations Center (SOC) Support Services is a US Government...  ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on... 
    Cyber
    Flexible hours

    Leidos

    Arlington, VA
    2 days ago
  •  ...partnering with Expression to find an SOC Analyst . See details below: About...  .... In this role, you will provide cyber threat monitoring, analysis, and incident response support that strengthens...  ..., and help mature cyber defense strategies in a mission-focused environment... 
    Cyber
    For contractors
    Work at office
    Immediate start
    Shift work

    Hatch IT

    Washington DC
    15 days ago
  • Cybersecurity Analyst, Incident Responder Location: Bethesda, MD (Hybrid; On-site...  ...Security Operations Center (SOC) personnel, Security Engineers...  ...to sophisticated cyber threats, and the ability to...  ...remediation and long-term defensive improvements. Digital Forensic... 
    Cyber
    Full time
    Work at office

    Digital Global Connectors

    Mc Lean, VA
    3 days ago
  •  ...Description Job Description Job TitleLead Cyber Defense Incident ResponderClearanceTS/SCI (active,...  ...:The Cyber Defense Incident Responder (Advanced) is a highly experienced, analytical...  ...and directing senior and mid-level analysts. This role involves advanced threat detection... 
    Cyber
    Weekend work

    S2i2 Inc

    Arlington, VA
    8 days ago
  •  ..., technical testing and a full suite of cyber engineering services to Federal agency customers...  .... We’re currently seeking a skilled SOC Analyst with an active Secret or Top Secret...  ...) tools to identify security events and incidents to evaluate the effectiveness of current... 
    Cyber
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    19 hours ago
  •  ...:- Perform Computer Security Incident Response activities for a large...  ...Investigate, interpret, and responds to technical and/or complex...  ...environment and assist security analysts in building operational...  ...providing the full range of IT cyber security tasks.- Strong working... 
    Cyber
    Work experience placement

    NTT DATA

    Arlington, VA
    19 hours ago
  • $107.9k - $195.05k

    Incident ResponderLocation: Suitland, MDClearance: Active...  ...is seeking an Incident Responder to join a mission...  ...intelligence networks against cyber threats. You will...  ...escalations from Tier 1 analysts, conduct spillage response...  ..., and other IC and DoD SOC/DCO teams.Maintain... 
    Cyber
    Full time
    Work at office

    Leidos

    Suitland, MD
    2 days ago
  • $170k - $180k

    Senior Cyber Incident Analyst Everforth ECS is seeking a Senior Cyber Incident...  ...Agency’s (CISA) Joint Cyber Defense Collaborative (JCDC). The JCDC...  ...to plan, share, and respond to cyber threats in real time...  ...of stakeholders (Executives, SOC, etc.) Field-related certifications... 
    Cyber
    Work at office
    Local area
    3 days per week

    ECS Limited

    Arlington, VA
    4 days ago
  • Reporting directly to the firm’s Cyber Incident Response Director, the successful candidate will...  ...skills, and the ability to mentor analysts, establish best practices, and drive security...  ..., helping them to manage risk, respond to times of uncertainty and discover new... 
    Cyber
    Full time
    Work at office

    American International Group (AIG)

    Reston, VA
    3 days ago
  • $87.1k - $157.45k

     ...opportunities available for SOC Analysts to join our team in...  ...at least 2 years of incident handling/response...  ...experience (Protect, Detect, Respond and Sustain) within a...  ..., OSI model, defense-in-depth and common security...  ...Intelligence Driven Defense, Cyber Kill Chain methodology... 
    Cyber
    Full time
    Work experience placement
    All shifts
    Shift work

    Leidos

    Alexandria, VA
    4 days ago
  • S2i2 is seeking a Lead Cyber Defense Incident Responder in Arlington, VA to manage advanced threat detection and incident response for government clients within TS/SCI and SAP environments. The role requires hands-on technical work, leadership of a security analytics team... 
    Cyber

    S2i2 Inc

    Arlington, VA
    1 day ago
  • $64k - $128k

     ...advanced full-spectrum cyber, data operations, systems...  ...operations, cyber defense and resiliency, vulnerability...  ...: JR101963 CSOC Analyst T1 - Falls Church, VA or...  ...Security Operations Centers (SOC), Cyber Security...  ...Centers (CSOC), and Cyber Incident Response Team (CIRT). The... 
    Cyber
    Work experience placement
    Remote work

    Nightwing

    Falls Church, VA
    4 days ago
  • Tetrad Digital Integrity LLC is seeking a Senior Incident Response Analyst to join our Security Operations Center. This hybrid position will involve monitoring, detecting, and responding to cybersecurity threats affecting a large-scale environment, especially within mission... 
    Cyber

    Tetrad Digital Integrity

    Arlington, VA
    1 day ago
  • $100k - $150k

     ...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance...  ...enterprise cybersecurity and cyber defense operations in the Washington,...  ...and process gaps, support incident-response and reporting...  ...vulnerability management, or SOC/SIEM operations. Relevant... 
    Cyber
    Contract work

    OPS TECH ALLIANCE LLC

    McLean, VA
    4 days ago
  •  ...seeking a highly skilled Lead Incident Responder to manage and maintain...  ...CSIRC on a 24/7 basis, training analysts in incident response, handling...  ...coordinating remediation efforts. Cyber Threat Monitoring: Develop...  ...Security Operations Center (SOC) Tools Management: Set up and... 
    Cyber
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions

    Washington DC
    1 day ago
  • $85k - $110k

     ...currently seeking a Tier II Incident Response Analyst to provide support to...  ...management, and SOC operations. Promote...  ...efficiencies. Familiarity with Cyber Kill Chain and ATT&CK...  ...Intelligence Driven Defense, Cyber Kill Chain...  ...monitoring and responding to threats in Cloud environments... 
    Cyber
    Contract work

    Edgewater Federal Solutions

    Bethesda, MD
    3 days ago
  • $104k - $166k

     ...Peraton is seeking a Cyber Incident Response Analyst in Arlington, VA. This role involves responding to cybersecurity incidents across industrial control systems and critical infrastructure. The ideal candidate will leverage their expertise to provide actionable recommendations... 
    Cyber

    Peraton

    Arlington, VA
    19 hours ago
  •  ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder...  ...include coordinating with SOC teams, ISSOs, and AOs, integrating...  ...resilience against evolving cyber threats. This position...  ...agencies. Coordinate with SOC analysts, engineering teams, and federal... 
    Cyber
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense & Incident Responder (SOC Analyst). Be the first to apply!