Cyber Defense & Incident Responder (SOC Analyst)
Gormat
Cyber Defense & Incident Responder (SOC Analyst)
100% work on site - no remote work
Secret clearance with the ability to acquire a TS
Locations near the Pentagon or Mayfield VA
Customer DEA
Intermediate SOC Analyst
6 years with Bachelor
The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations. The analyst will leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.
Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents
Review SIEM, IDS/IPS, EDR, and related security tool alerts for anomalous activity, indicators of compromise (IOCs), and indicators of attack (IOAs).
Validate alerts, reduce false positives, and prioritize incidents based on severity and impact
Perform triage and analysis of security events to determine scope, severity, and urgency
Examine log data, network telemetry, and endpoint information to identify malicious activity
Correlate event details with internal and external threat intelligence
Execute incident response actions in accordance with established procedures
Contain affected systems, remove malicious artifacts, and assist with system recovery
Escalate complex or critical incidents to senior analysts or SOC leadership as needed
Document investigative findings, incident timelines, and remediation actions
Create and manage incident tickets and upload supporting evidence and artifacts
Contribute to after action reviews and post incident reporting
Communicate findings clearly and concisely to technical and nontechnical stakeholders
Maintain SOC processes, tools, and playbooks to support effective incident handling
Recommend improvements to SOPs, escalation procedures, and detection capabilities
Participate in training exercises and knowledge sharing activities
Support red, blue, or purple team exercises as directed
Stay informed on current and emerging cyber threats, threat actor TTPs, and industry trends
Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, Data Science, or related field from an ABET accredited or CAE designated institution preferred. Equivalent experience may be considered in accordance with SOW education substitution requirements
Minimum of 6 years of experience in Information Technology and/or Information Security
Experience with incident response, threat analysis, SIEM platforms, endpoint security tools, and log analysis
Strong analytical and investigative skills with the ability to derive accurate conclusions during incident investigations
Active Secret clearance or higher required
Must be eligible to obtain a Top Secret clearance if requested
Ability to successfully complete a DEA background investigation
Must possess at least one applicable DoD 8140 certification or obtain certification within 6 months of onboarding
Preferred DCWF Role 511 Cyber Defense Analyst certifications include:
CBROPS
CFR
CompTIA Cloud+, CySA+, PenTest+, or Security+ CE
FITSP O
SANS GCED, GCFA, GCIA, GDSA, GFACT, GICSP, GISF, or GSEC
This role primarily supports the Operations & Response Team, with potential support across Vulnerability Assessment and Penetration Testing and Engineering teams. The position will coordinate closely with cybersecurity, IT operations, engineering, software operations, and investigative technology teams to support enterprise security operations and incident response activities.
- ...is seeking a seasoned Cybersecurity Analyst - Tier 2 (Incident Responder) to support a Federal information... ...resources. The candidate will work with SOC personnel, engineers, threat... ...to minimize impact and strengthen cyber defenses. U.S. #J-18808-Ljbffr Digital Global...Cyber
- NTT DATA seeks a Cyber Defense & Incident Responder to monitor, analyze, and respond to cybersecurity incidents in Arlington, VA. The role emphasizes... ...initial triage, documenting findings, and coordinating with SOC leads. Requires active security clearance and DoD 8140...Cyber
$107k - $124k
...Cyber Defense Incident Responder - SeniorOur client is seeking a Cyber Defense Incident Responder – Senior to work in our Washington, DC office.Lead... ...cybersecurity, and contingency requirements.Manage/mentor SOC team members regarding procedures, schedules, training, event...CyberWork at officeLocal area$101.38k - $152.06k
...with us. We are currently seeking a Cyber Defense & Incident Responder to join our team in Arlington, Virginia... ...and restore normal operations. Analysts leverage security tools, event logs,... ...complex or critical incidents to Senior SOC Analysts or SOC Leads. Document and...CyberTemporary workWork at officeRemote workFlexible hours- S2i2, Inc. is seeking a Lead Cyber Defense Incident Responder in Arlington, VA. This highly experienced role combines hands-on technical work with leadership of a security analytics team operating in TS/SCI and SAP environments. Expect threat hunting, malware research,...Cyber
$131.3k - $237.35k
...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The... ...(DHS), Security Operations Center (SOC) Support Services is a US Government... ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on...CyberFull timeFlexible hours- NTT DATA North America is seeking a Cyber Defense & Incident Responder in Arlington, Virginia to monitor, analyze, and respond to cybersecurity incidents... ...contributing to AARs, with opportunities to advance through senior SOC roles. #J-18808-Ljbffr NTT DATA North AmericaCyber
$91.1k - $170.4k
...) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client... ...Investigative Services (CIS) Junior Incident Coordinator will exercise... ...a Security Operations Center (SOC) Security Incident Response Analyst or supporting function (2 years...CyberSummer holidayRemote workFlexible hours- Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will assess cybersecurity... ...identify operational risks and process gaps, support incident-response, and translate complex cyber information into...Cyber
- ...single focus has been delivering cyber solutions to effectively... ...! TDI is seeking a Senior Incident Response Analyst to join our team in support... ...monitor, detect, investigate, and respond to cybersecurity threats... ...scripts to strengthen SOC monitoring capabilities. Document...CyberPermanent employment
- ## (Cyber) Incident Management Analyst - Weekend Night ShiftApplylocations: Arlington, VAtime type: Full timeposted on: Posted Todayjob requisition... ...Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical...CyberContract workImmediate startShift workNight shiftWeekend work
- ...technically advanced full-spectrum cyber, data operations, systems... ...space operations, cyber defense and resiliency, vulnerability... ...Government customer to provide onsite incident response to civilian... ...), escalating to specialized analysts Required Skills U.S. Citizenship...CyberContract workImmediate startShift workNight shiftWeekend work
$131.3k - $237.35k
...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The... ...(DHS), Security Operations Center (SOC) Support Services is a US Government... ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on...CyberFlexible hours- ...partnering with Expression to find an SOC Analyst . See details below: About... .... In this role, you will provide cyber threat monitoring, analysis, and incident response support that strengthens... ..., and help mature cyber defense strategies in a mission-focused environment...CyberFor contractorsWork at officeImmediate startShift work
- Cybersecurity Analyst, Incident Responder Location: Bethesda, MD (Hybrid; On-site... ...Security Operations Center (SOC) personnel, Security Engineers... ...to sophisticated cyber threats, and the ability to... ...remediation and long-term defensive improvements. Digital Forensic...CyberFull timeWork at office
- ...Description Job Description Job TitleLead Cyber Defense Incident ResponderClearanceTS/SCI (active,... ...:The Cyber Defense Incident Responder (Advanced) is a highly experienced, analytical... ...and directing senior and mid-level analysts. This role involves advanced threat detection...CyberWeekend work
- ..., technical testing and a full suite of cyber engineering services to Federal agency customers... .... We’re currently seeking a skilled SOC Analyst with an active Secret or Top Secret... ...) tools to identify security events and incidents to evaluate the effectiveness of current...CyberFull timeLocal areaFlexible hours
- ...:- Perform Computer Security Incident Response activities for a large... ...Investigate, interpret, and responds to technical and/or complex... ...environment and assist security analysts in building operational... ...providing the full range of IT cyber security tasks.- Strong working...CyberWork experience placement
$107.9k - $195.05k
Incident ResponderLocation: Suitland, MDClearance: Active... ...is seeking an Incident Responder to join a mission... ...intelligence networks against cyber threats. You will... ...escalations from Tier 1 analysts, conduct spillage response... ..., and other IC and DoD SOC/DCO teams.Maintain...CyberFull timeWork at office$170k - $180k
Senior Cyber Incident Analyst Everforth ECS is seeking a Senior Cyber Incident... ...Agency’s (CISA) Joint Cyber Defense Collaborative (JCDC). The JCDC... ...to plan, share, and respond to cyber threats in real time... ...of stakeholders (Executives, SOC, etc.) Field-related certifications...CyberWork at officeLocal area3 days per week- Reporting directly to the firm’s Cyber Incident Response Director, the successful candidate will... ...skills, and the ability to mentor analysts, establish best practices, and drive security... ..., helping them to manage risk, respond to times of uncertainty and discover new...CyberFull timeWork at office
$87.1k - $157.45k
...opportunities available for SOC Analysts to join our team in... ...at least 2 years of incident handling/response... ...experience (Protect, Detect, Respond and Sustain) within a... ..., OSI model, defense-in-depth and common security... ...Intelligence Driven Defense, Cyber Kill Chain methodology...CyberFull timeWork experience placementAll shiftsShift work- S2i2 is seeking a Lead Cyber Defense Incident Responder in Arlington, VA to manage advanced threat detection and incident response for government clients within TS/SCI and SAP environments. The role requires hands-on technical work, leadership of a security analytics team...Cyber
$64k - $128k
...advanced full-spectrum cyber, data operations, systems... ...operations, cyber defense and resiliency, vulnerability... ...: JR101963 CSOC Analyst T1 - Falls Church, VA or... ...Security Operations Centers (SOC), Cyber Security... ...Centers (CSOC), and Cyber Incident Response Team (CIRT). The...CyberWork experience placementRemote work- Tetrad Digital Integrity LLC is seeking a Senior Incident Response Analyst to join our Security Operations Center. This hybrid position will involve monitoring, detecting, and responding to cybersecurity threats affecting a large-scale environment, especially within mission...Cyber
$100k - $150k
...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance... ...enterprise cybersecurity and cyber defense operations in the Washington,... ...and process gaps, support incident-response and reporting... ...vulnerability management, or SOC/SIEM operations. Relevant...CyberContract work- ...seeking a highly skilled Lead Incident Responder to manage and maintain... ...CSIRC on a 24/7 basis, training analysts in incident response, handling... ...coordinating remediation efforts. Cyber Threat Monitoring: Develop... ...Security Operations Center (SOC) Tools Management: Set up and...CyberContract workFor contractorsWork at officeLocal area
$85k - $110k
...currently seeking a Tier II Incident Response Analyst to provide support to... ...management, and SOC operations. Promote... ...efficiencies. Familiarity with Cyber Kill Chain and ATT&CK... ...Intelligence Driven Defense, Cyber Kill Chain... ...monitoring and responding to threats in Cloud environments...CyberContract work$104k - $166k
...Peraton is seeking a Cyber Incident Response Analyst in Arlington, VA. This role involves responding to cybersecurity incidents across industrial control systems and critical infrastructure. The ideal candidate will leverage their expertise to provide actionable recommendations...Cyber- ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder... ...include coordinating with SOC teams, ISSOs, and AOs, integrating... ...resilience against evolving cyber threats. This position... ...agencies. Coordinate with SOC analysts, engineering teams, and federal...CyberContract workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense & Incident Responder (SOC Analyst). Be the first to apply!
- entry analyst Arlington, VA
- international analyst Arlington, VA
- epic ambulatory analyst Arlington, VA
- safety analyst Arlington, VA
- medicare analyst Arlington, VA
- web analyst Arlington, VA
- fulfillment analyst Arlington, VA
- health analyst Arlington, VA
- strategic sourcing analyst Arlington, VA
- shipping analyst Arlington, VA


