Cyber Defense & Incident Responder
$101.38k - $152.06kNTT Data
Req ID: 393263
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
We are currently seeking a Cyber Defense & Incident Responder to join our team in Merrifield, Virginia (US-VA), United States (US).
Job Summary:
The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to assigned cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations. Analysts leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.
Job Duties:
- Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents.
- Review SIEM, IDS/IPS, EDR, and other related tool alerts for anomalous activity and indicators of compromise/attacks (IOCs/IOAs).
- Validate alerts to reduce false positives and prioritize based on severity and potential impact.
- Perform initial triage and analysis of security events to determine scope, severity, and urgency.
- Examine log data, network telemetry, and endpoint information to identify possible malicious activity.
- Correlate event details with internal and external threat intelligence.
- Execute incident response actions in accordance with established procedures.
- Contain affected systems, remove malicious artifacts, and assist in system recovery.
- Escalate complex or critical incidents to Senior SOC Analysts or SOC Leads.
- Document and communicate incident findings to support resolution and improvement efforts.
- Prepare incident tickets, timelines, and investigative notes.
- Contribute to after-action reviews (AARs) and post-incident reporting.
- Create incident tickets
- Upload supporting evidence, draw sound conclusions and upload artifacts
- Communicate effectively, providing clear, accurate, and concise information
- Exercise sound analytical skills to derive correct conclusions associated with incident investigations.
- Maintain SOC processes, tools, and playbooks to ensure effective incident handling.
- Recommend refinements to SOPs and escalation procedures.
- Identify opportunities to streamline analysis workflows and improve detection capabilities.
- Participate in training, exercises, and knowledge-sharing to strengthen response readiness.
- Support red, blue, or purple team exercises when directed.
- Share lessons learned and best practices with SOC team members.
- Stay informed on current and emerging cyber threats relevant to the organization’s environment.
- Track evolving tactics, techniques, and procedures (TTPs) of threat actors.
- Incorporate relevant intelligence into incident analysis and response.
Basic Qualifications:
- Bachelor's degree in information technology, cybersecurity, data science, information systems, or computer science.
- Education Equivalency: One-and-one- half (1.5) years of additional experience can substitute for one (1) year of a typical degree program.
- Minimum 6 years of experience in Information Technology (IT) and/or Information Security (IS).
- DoD 8140 certification for their respective area or the ability to obtain certification within six (6) months of onboarding.
- Ability to obtain a interim Secret Security Clearance and must be eligible for a Top-Secret clearance if requested.
NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this role is $101,376 - $152,064. Actual compensation will depend on a number of factors, including the candidate’s relevant experience, technical skills, and other qualifications. This position may also be eligible for incentive compensation based on individual and/or company performance. If the position offered in temporary, the position will not be eligible for incentive compensation. This position is eligible for company benefits including medical, dental, and vision insurance with an employer contribution, flexible spending or health savings account, life and AD&D insurance, short and long term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits.
About NTT DATA
NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D.
Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client’s needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA recruiters will never ask for payment or banking information and will only use @nttdata.com, @nttdatafed.com and @talent.nttdataservices.com email addresses. If you are requested to provide payment or disclose banking information, please submit a contact us form,
NTT DATA endeavors to make accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at . This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here . If you'd like more information on your EEO rights under the law, please click here . For Pay Transparency information, please click here .
$101.38k - $152.06k
...want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Cyber Defense & Incident Responder to join our team in Merrifield, Virginia (US-VA), United States (US).Job Summary: The Cyber Defense & Incident Responder...CyberFull timeTemporary workInterim roleWork at officeRemote workFlexible hours$77.6k - $176k
AI-Powered Cyber Defense Product Sales EngineerThe Opportunity:Join a team delivering next-generation... ...(SOCs) detect, investigate, and respond to cyber threats. As a Senior Sales... ...'ll engage directly with SOC analysts, incident responders, security architects, CISOs,...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...Cybersecurity Engineer (Starshield) to develop and continuously test cyber defenses for the Starshield network. This hands-on role requires breadth across software and security, with a focus on rapid incident response and proactive vulnerability discovery. The ideal...Cyber
$94k - $112k
...Title: Incident Manager III SALARY RANGE: $94,000-$112,000 Onsite – 100% Description... ...secure cloud-based engagement kits for cyber incident response and threat hunting... ...threat assessments inform national cyber defense priorities. Eligibility: ~ Must be a...CyberContract workLocal area- ...Fannie Mae is seeking a Vice President of Cyber Defense to shape and execute the enterprise cybersecurity strategy. You will oversee Threat Detection, Incident Management, and cyber protection programs across on-prem and multi-cloud environments. You will partner with...Cyber
- Noblis is seeking a security professional to advance cyber defense programs for federal missions. You will evaluate capabilities, lead improvements, and design incident response playbooks within an agile framework. The role emphasizes cross‑functional collaboration, data...CyberRemote job
$85k - $115k
...McLean, VA, By Light supports defense, civilian, and commercial IT... ...services. The Guard Enterprise Cyber Operations Support (GECOS)... ...the impact of each significant incident and the recovery costs; the... ...Infrastructure, or Incident Responder certification e.g., CEH, CySA+...CyberContract workWork experience placementRemote workWorldwideRelocationShift work$113k - $188.4k
Position Summary Our Deloitte Cyber team understands the unique challenges and... ...III on the project, you will: The Incident Responder will execute the client Incident Response... ...fulfill their mission promise. Our Cyber Defense & Resilience offering assists clients in...CyberLocal area- ...delivered innovative solutions across Defense, Intelligence, Civilian, Health IT,... ...activities. Track, report, and respond to cybersecurity incidents, ensuring timely coordination and recovery... ...field ~8+ years of experience as Cyber Analyst ~5+ years’ experience with...CyberLocal areaFlexible hours
- ...Washington, DC Position Overview We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security documentation and... ...Information (PII), and coordinating remediation efforts. Cyber Threat Monitoring: Develop and maintain a Cyberthreat...CyberContract workFor contractorsWork at officeLocal area
- ...BCMC is seeking Forensic Cyber Network Defense Analysts (CNDA) in Arlington, VA, to perform advanced DFIR in cloud, on-prem, and hybrid environments... .... You will analyze cloud platform activity, investigate incidents, and build detection automation using PowerShell, Python,...Cyber
- ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client.... ...improvement to strengthen organizational resilience against evolving cyber threats. This position requires deep technical expertise,...CyberContract workFlexible hours
- ...operates at the intersection of cyber innovation, national security... .... From next-generation cyber defense to secure cloud and AI, we... ...analyst toil and mean time to respond Engineer and operate the... ...engineering escalation point during incidents and participate in an on-call...CyberWork at officeLocal areaFlexible hours
$150k - $275k
...are pioneering the next generation of cyber defense by building an Agentic Security Operations... ...our human analysts to handle complex incident response with autonomous agents AI in responsible... ...for reasonable accommodation will be responded to from this email address.Appian's...CyberWork experience placementLocal areaFlexible hours- ...passionate about leading the frontline defense against today's most sophisticated cyber threats - both known and unknown?... ...then Deloitte's Cyber Detect and Respond team could be the place for you!... ...management, and complex incident investigation, mitigation, and remediation...CyberLocal areaVisa sponsorship
- ..., we have delivered innovative solutions across Defense, Intelligence, Civilian, Health IT, and Tribal sectors... ...SOC 1 Type 2 audit readiness. You will respond to computer security breaches, vulnerabilities, and incidents affecting the environment and embed security practices...CyberFor contractorsLocal areaFlexible hours
$110k - $145k
...Senior Incident Response Consultant | $110,000 – $145,000 A specialist consulting client... ...level Senior and Principal Incident Responders to work with and learn from A bench deep... ...search.com Maestro Search are a leading cyber security talent partner, connecting...CyberImmediate start- ...containment, eradication, and recovery of cyber incidents. The candidate will perform malware... ...handling as part of advanced cyber defense operations. The role requires Top Secret... ...8570.01-M IAT Level II, CSSP Incident Responder certification, and 8+ years of cyber security...Cyber
$100k - $200k
...automation platform from modern cyber threats? As a Security... ...capabilities and cloud-based defense strategies for our Enterprise... ...network topology, and historical incident logs into agent prompts.LLM Performance... ...accommodation will be responded to from this email address....CyberWork experience placementLocal areaFlexible hours- ...Position Overview: We are expanding our Threat Ops team and looking for a Cyber Threat Analyst to join our first line of defense. Our team investigates and responds to security incidents, creates alerting rules, administrates various security products and is...CyberWork at officeRemote work
$120k - $165k
...Officer (ISSO) to ensure that a Department of Defense (DoD) virtual desktop infrastructure (VDI... ...requirements) performing a variety of cyber security related tasks, including... ...Configuration Management, Continuous Monitoring, and Incident Response.Assist with the Management and...CyberLocal areaImmediate start- ...MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst...CyberShift workNight shiftDay shiftAfternoon shift
$112.2k - $196.4k
...possible.Job Description:Parsons is seeking a Defensive Cyber Analyst to support Cyber Operations... ...industrial base resilience, and cyber incident response initiatives.What You’ll... ...and strategies to deter, prevent, and respond to cybersecurity intrusions and incidents...CyberFull timeFlexible hours- ...and the contracting representative; respond to issues, concerns, and comments with... ...teams. Experience supporting cyber, intelligence, digital forensics, or... ...Cyber Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident Response, Cyber Architecture & Capability...CyberFull timeContract workTemporary workFor contractorsFor subcontractorLocal areaRemote workMonday to Friday
$120.7k - $188.73k
...security operations to tackle offensive and defensive cyber challenges. They’ll dive deep into... ...systems by detecting, identifying, and responding to attacks, or by creating defensive toolsets... ...and exploit methods.Experience with incident response and the ability to quickly...CyberFull timeContract workPart timeLocal areaRemote work- ...Description Job Description About Agile Defense At Agile Defense we know that action... ...#: Job Title: Digital Forensics and Incident Analyst Location: Onsite, Washington,... ...investigations of computer-based crimes and cyber-intrusion incidents, leveraging...Cyber
- ...by the customer Focus Areas: Cyber & Forensics Policy Research... ...Products: Prepare presentations and respond to stakeholder inquiries with... ...and managing policy for a defense or military organization in... ..., Intrusion Analysis & Incident Response, Cyber Architecture...CyberFull timeContract workTemporary workLocal areaRemote workMonday to Friday
$250k - $350k
...DescriptionThe Vice President, Cyber Defenseis a senior... ...Detection and Response, Cyber Incident Management, and cyber protection... ...anticipate and disrupt threats, respond decisively when incidents occur... ...leading enterprise-scale Cyber Defense, Security Operations,...CyberFull timeWork at officeRemote work$132.5k - $338.3k
...experienced Threat Informed Defense Senior Manager to an already... ...organizations prepare, protect, detect, respond to, and recover, at all... ...strategy, digital identity, cyber defense, application security... ...Experience in an MxDR/MDR or incident response consulting...CyberFull timeWork experience placementLive inWork at officeLocal area$104k - $166k
ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington,... ...Strategic Cyber program. This role involves responding to cyber incidents across critical...CyberContract workCurrently hiringShift work1 day per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense & Incident Responder. Be the first to apply!




