Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense & Incident Responder (SOC Analyst)

Gormat

Cyber Defense & Incident Responder (SOC Analyst)

100% work on site - no remote work

Secret clearance with the ability to acquire a TS

Locations near the Pentagon or Mayfield VA

Customer DEA

Intermediate SOC Analyst

6 years with Bachelor

The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations. The analyst will leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.

Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents

Review SIEM, IDS/IPS, EDR, and related security tool alerts for anomalous activity, indicators of compromise (IOCs), and indicators of attack (IOAs).

Validate alerts, reduce false positives, and prioritize incidents based on severity and impact

Perform triage and analysis of security events to determine scope, severity, and urgency

Examine log data, network telemetry, and endpoint information to identify malicious activity

Correlate event details with internal and external threat intelligence

Execute incident response actions in accordance with established procedures

Contain affected systems, remove malicious artifacts, and assist with system recovery

Escalate complex or critical incidents to senior analysts or SOC leadership as needed

Document investigative findings, incident timelines, and remediation actions

Create and manage incident tickets and upload supporting evidence and artifacts

Contribute to after action reviews and post incident reporting

Communicate findings clearly and concisely to technical and nontechnical stakeholders

Maintain SOC processes, tools, and playbooks to support effective incident handling

Recommend improvements to SOPs, escalation procedures, and detection capabilities

Participate in training exercises and knowledge sharing activities

Support red, blue, or purple team exercises as directed

Stay informed on current and emerging cyber threats, threat actor TTPs, and industry trends

Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, Data Science, or related field from an ABET accredited or CAE designated institution preferred. Equivalent experience may be considered in accordance with SOW education substitution requirements

Minimum of 6 years of experience in Information Technology and/or Information Security

Experience with incident response, threat analysis, SIEM platforms, endpoint security tools, and log analysis

Strong analytical and investigative skills with the ability to derive accurate conclusions during incident investigations

Active Secret clearance or higher required

Must be eligible to obtain a Top Secret clearance if requested

Ability to successfully complete a DEA background investigation

Must possess at least one applicable DoD 8140 certification or obtain certification within 6 months of onboarding

Preferred DCWF Role 511 Cyber Defense Analyst certifications include:

CBROPS

CFR

CompTIA Cloud+, CySA+, PenTest+, or Security+ CE

FITSP O

SANS GCED, GCFA, GCIA, GDSA, GFACT, GICSP, GISF, or GSEC

This role primarily supports the Operations & Response Team, with potential support across Vulnerability Assessment and Penetration Testing and Engineering teams. The position will coordinate closely with cybersecurity, IT operations, engineering, software operations, and investigative technology teams to support enterprise security operations and incident response activities.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense & Incident Responder (SOC Analyst) in Arlington, VA vacancy
  • $107k - $124k

     ...Cyber Defense Incident Responder - Senior Our client is seeking a Cyber Defense Incident Responder – Senior to work in our Washington, DC office....  ...cybersecurity, and contingency requirements. Manage/mentor SOC team members regarding procedures, schedules, training,... 
    Cyber
    Temporary work
    Work at office
    Local area
    Flexible hours

    Merit 321

    Washington DC
    1 day ago
  • Responsibilities Respond to and resolve cybersecurity incidents and proactively prevent reoccurrence of these incidents Monitor the operation of systems...  ...supporting federal agencies, including in cybersecurity or SOC environments 1+ years of experience preparing and... 
    Cyber

    Jobtailor

    Arlington, VA
    2 days ago
  • $101.38k - $152.06k

     ...apply now.We are currently seeking a Cyber Defense & Incident Responder to join our team in Arlington, Virginia...  ...and restore normal operations. Analysts leverage security tools, event logs,...  ...complex or critical incidents to Senior SOC Analysts or SOC Leads.Document and communicate... 
    Cyber
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Arlington, VA
    10 hours ago
  • $101.38k - $152.06k

     ...Cyber Defense & Incident Responder NTT DATA Services is seeking a Cyber Defense & Incident Responder to join...  ...and restore normal operations. Analysts leverage security tools, event logs,...  ...complex or critical incidents to Senior SOC Analysts or SOC Leads. Document and... 
    Cyber
    Temporary work
    Work at office
    Remote work
    Flexible hours

    Sierra Systems, An Ntt Data Company

    Arlington, VA
    1 day ago
  • $91.1k - $170.4k

     ...) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client...  ...Investigative Services (CIS) Junior Incident Coordinator will exercise...  ...a Security Operations Center (SOC) ~ Security Incident Response Analyst or supporting function (2 years... 
    Cyber
    Summer holiday
    Local area
    Remote work
    Flexible hours

    EY

    Washington DC
    1 day ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The...  ...(DHS), Security Operations Center (SOC) Support Services is a US Government...  ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on... 
    Cyber
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  • $120k - $135k

     ...Senior Incident Response Analyst Tetrad Digital Integrity (TDI) is a cybersecurity...  ...focus has been delivering cyber solutions to effectively...  ...monitor, detect, investigate, and respond to cybersecurity threats...  ...automation scripts to strengthen SOC monitoring capabilities.... 
    Cyber
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity

    Arlington, VA
    2 days ago
  • $46k - $76k

     ...Job Family : IT Cyber Security Travel Required...  ...Operations Center (SOC) and perform initial triage...  ...potential security incidents using SIEM, endpoint, network...  ...incidents to senior analysts or incident response...  ...ability to prioritize and respond to alerts in a fast-... 
    Cyber
    Full time
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    4 days ago
  • $120k - $170k

     ...Job Description Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Swing- Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret Clearance... 
    Cyber
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Shift work
    Weekend work
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    a month ago
  •  ...SOC Analyst We are looking for a SOC Analyst to support a contract...  ...States Mint. Serves as a Tier 2 cyber security analyst supporting...  ...more of the following areas: incident response, monitoring and detection...  ...of professional experience responding to information system... 
    Cyber
    Contract work

    Marathon TS

    Washington DC
    2 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program....  ...Security (DHS), Security Operations Center (SOC) Support Services is a US Government...  ..., detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the... 
    Cyber
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Arlington, VA
    2 days ago
  •  ...Description Job Description Job TitleLead Cyber Defense Incident ResponderClearanceTS/SCI (active,...  ...:The Cyber Defense Incident Responder (Advanced) is a highly experienced, analytical...  ...and directing senior and mid-level analysts. This role involves advanced threat detection... 
    Cyber
    Weekend work

    S2i2 Inc

    Arlington, VA
    6 days ago
  •  ..., technical testing and a full suite of cyber engineering services to Federal agency customers...  .... We’re currently seeking a skilled SOC Analyst with an active Secret or Top Secret...  ...) tools to identify security events and incidents to evaluate the effectiveness of current... 
    Cyber
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    2 days ago
  • Cybersecurity Analyst, Incident Responder Location: Bethesda, MD (Hybrid; On-site...  ...Security Operations Center (SOC) personnel, Security Engineers...  ...to sophisticated cyber threats, and the ability to...  ...remediation and long-term defensive improvements. Digital Forensic... 
    Cyber
    Full time
    Work at office

    Digital Global Connectors

    Mc Lean, VA
    3 days ago
  •  ...SOC Analyst At Accenture Federal Services, nothing matters more...  ...ingenuity for clients across defense, national security, public safety...  ...monitoring and security incident triage through the review of...  ...incidents to Tier 2 or incident responders. Job Qualifications:... 

    Accenture Federal Services

    Washington DC
    4 days ago
  •  ...:- Perform Computer Security Incident Response activities for a large...  ...Investigate, interpret, and responds to technical and/or complex...  ...environment and assist security analysts in building operational...  ...providing the full range of IT cyber security tasks.- Strong working... 
    Cyber
    Work experience placement

    NTT DATA

    Arlington, VA
    4 days ago
  • $87.1k - $157.45k

     ...opportunities available for SOC Analysts to join our team in...  ...at least 2 years of incident handling/response...  ...experience (Protect, Detect, Respond and Sustain) within a...  ..., OSI model, defense-in-depth and common security...  ...Intelligence Driven Defense, Cyber Kill Chain methodology... 
    Cyber
    Full time
    Work experience placement
    All shifts
    Shift work

    Leidos

    Alexandria, VA
    4 days ago
  • $110k - $130k

     ...SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity...  ...analyzing, investigating, and responding to security incidents across enterprise...  ..., incident response, SOC operations, threat detection, or cyber defense. Experience supporting Federal... 
    Cyber
    Contract work
    Remote work

    SkyePoint Decisions

    Bethesda, MD
    2 days ago
  • $170k - $180k

     ...DescriptionEverforth ECS is seeking a Senior Cyber Incident Analyst to work in our Arlington, VA office....  ...Security Agency’s (CISA) Joint Cyber Defense Collaborative (JCDC). The JCDC is CISA...  ...as they continue to plan, share, and respond to cyber threats in real time to... 
    Cyber
    Work at office
    3 days per week

    ECS Federal

    Arlington, VA
    4 days ago
  • $101.38k - $152.06k

     ...apply now. We are currently seeking a Cyber Defense & Incident Responder to join our team in Arlington,...  ...impact and restore normal operations. Analysts leverage security tools, event logs,...  ...complex or critical incidents to Senior SOC Analysts or SOC Leads. # Document... 
    Cyber
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT DATA, Inc.

    Arlington, VA
    22 days ago
  • $140k - $180k

     ...Job Title: SOC Analyst Tier 3 Place of Performance: Springfield...  ...some of the U.S. Department of Defense and the Intelligence...  ...for a SOC Analyst Tier 3 and Incident Responder , a senior analyst role in...  ...experience ~ Bachelor's degree in Cyber Security, Information... 
    Cyber
    Temporary work
    Local area
    Immediate start
    All shifts
    Flexible hours
    Shift work
    Night shift
    Rotating shift

    JFL Consulting

    Springfield, VA
    3 days ago
  • $100k - $150k

     ...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance...  ...enterprise cybersecurity and cyber defense operations in the Washington,...  ...and process gaps, support incident-response and reporting...  ...vulnerability management, or SOC/SIEM operations. Relevant... 
    Cyber
    Contract work

    OPS TECH ALLIANCE LLC

    McLean, VA
    4 days ago
  •  ...seeking a highly skilled Lead Incident Responder to manage and maintain...  ...CSIRC on a 24/7 basis, training analysts in incident response, handling...  ...coordinating remediation efforts.Cyber Threat Monitoring: Develop...  ....Security Operations Center (SOC) Tools Management: Set up and... 
    Cyber
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions, LLC

    Washington DC
    6 days ago
  •  ...Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for...  ...include coordinating with SOC teams, ISSOs, and AOs,...  ...resilience against evolving cyber threats. This position requires...  ...agencies.Coordinate with SOC analysts, engineering teams, and federal... 
    Cyber
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    6 days ago
  •  ...Industries is redefining modern defense with a multi‑product...  ...We are seeking a SOC AnalystII to join our growing...  ...against evolving cyber threats. This role will...  ...Security Monitoring & Incident Response Monitor and triage...  ...incidents to senior analysts or engineering teams as... 
    Cyber

    Chaos Industries

    Washington DC
    5 days ago
  • $110k - $160k

     ...Cybersecurity SOC Analyst II Washington, District of Columbia, United...  ...is redefining modern defense with a multi-product portfolio...  ...organization against evolving cyber threats. This role will support...  ...Security Monitoring & Incident Response Monitor and triage... 
    Cyber
    Contract work
    Work experience placement
    Casual work
    Relocation package

    CHAOS Industries

    Washington DC
    3 days ago
  • $102.5k - $188.9k

     ...Summary Our Deloitte Cyber team understands the...  ...can identify, analyze, and respond to exploitation activity...  ...As a Cyber Exploitation Analyst, you will support cyber defense efforts by analyzing threat...  ...activity, investigating incidents, assessing vulnerabilities... 
    Cyber
    Work at office

    Deloitte

    Rosslyn, VA
    10 hours ago
  • $92k - $153k

     ...Job Family : IT Cyber Security Travel Required...  ...Security Operations Center (SOC) and perform initial...  ...potential security incidents using SIEM, endpoint, network...  ...incidents to senior analysts or incident response teams...  ...to prioritize and respond to alerts in a fast-paced... 
    Cyber
    Full time
    Temporary work
    Work experience placement
    Flexible hours
    Shift work

    Guidehouse

    Washington DC
    1 day ago
  • $90.5k - $128.6k

     ...Incident Responder Location: Long Island City, NY, US, 1110...  ...Summary: At JetBlue, cyber security operates across...  ...experienced Incident Response Analyst to support the Cyber...  .... Create clear, defensible case notes and...  ...work experience on a SOC, Incident Response, Threat... 
    Cyber
    Temporary work
    Work experience placement
    Immediate start
    Flexible hours
    Night shift

    JetBlue

    Washington DC
    2 days ago
  • $78.2k - $137.7k

     ...global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a...  ....Knowledge of Compliance Certifications such as SOX, SOC, SOC2.Serve as the Subject Matter Experts in advising BAC... 
    Cyber
    Full time
    Work at office
    Day shift

    Bank of America

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense & Incident Responder (SOC Analyst). Be the first to apply!