Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense & Incident Responder

$101.38k - $152.06k

NTT Data

Req ID: 393263

NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.

We are currently seeking a Cyber Defense & Incident Responder to join our team in Merrifield, Virginia (US-VA), United States (US).

Job Summary: 

The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to assigned cybersecurity incidents in accordance with established procedures. This role focuses on incident triage, investigation, containment, and recovery to minimize impact and restore normal operations. Analysts leverage security tools, event logs, correlation data, and threat intelligence to determine the nature and scope of incidents, document findings, and recommend remediation steps.

Job Duties:

  • Monitor enterprise security systems and analyze alerts to identify potential cybersecurity incidents.
    • Review SIEM, IDS/IPS, EDR, and other related tool alerts for anomalous activity and indicators of compromise/attacks (IOCs/IOAs).
    • Validate alerts to reduce false positives and prioritize based on severity and potential impact.
  • Perform initial triage and analysis of security events to determine scope, severity, and urgency.
    • Examine log data, network telemetry, and endpoint information to identify possible malicious activity.
    • Correlate event details with internal and external threat intelligence.
  • Execute incident response actions in accordance with established procedures.
    • Contain affected systems, remove malicious artifacts, and assist in system recovery.
    • Escalate complex or critical incidents to Senior SOC Analysts or SOC Leads.
  • Document and communicate incident findings to support resolution and improvement efforts.
    • Prepare incident tickets, timelines, and investigative notes.
    • Contribute to after-action reviews (AARs) and post-incident reporting.
    • Create incident tickets
    • Upload supporting evidence, draw sound conclusions and upload artifacts
    • Communicate effectively, providing clear, accurate, and concise information
    • Exercise sound analytical skills to derive correct conclusions associated with incident investigations.
  • Maintain SOC processes, tools, and playbooks to ensure effective incident handling.
    • Recommend refinements to SOPs and escalation procedures.
    • Identify opportunities to streamline analysis workflows and improve detection capabilities.
  • Participate in training, exercises, and knowledge-sharing to strengthen response readiness.
    • Support red, blue, or purple team exercises when directed.
    • Share lessons learned and best practices with SOC team members.
  • Stay informed on current and emerging cyber threats relevant to the organization’s environment.
    • Track evolving tactics, techniques, and procedures (TTPs) of threat actors.
    • Incorporate relevant intelligence into incident analysis and response.

Basic Qualifications:

  • Bachelor's degree in information technology, cybersecurity, data science, information systems, or computer science.
    • Education Equivalency: One-and-one- half (1.5) years of additional experience can substitute for one (1) year of a typical degree program.
  • Minimum 6 years of experience in Information Technology (IT) and/or Information Security (IS).
  • DoD 8140 certification for their respective area or the ability to obtain certification within six (6) months of onboarding.
  • Ability to obtain a interim Secret Security Clearance and must be eligible for a Top-Secret clearance if requested.

NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this role is $101,376 - $152,064. Actual compensation will depend on a number of factors, including the candidate’s relevant experience, technical skills, and other qualifications. This position may also be eligible for incentive compensation based on individual and/or company performance. If the position offered in temporary, the position will not be eligible for incentive compensation. This position is eligible for company benefits including medical, dental, and vision insurance with an employer contribution, flexible spending or health savings account, life and AD&D insurance, short and long term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits.

About NTT DATA

NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D.

Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client’s needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA recruiters will never ask for payment or banking information and will only use @nttdata.com, @nttdatafed.com and @talent.nttdataservices.com email addresses. If you are requested to provide payment or disclose banking information, please submit a contact us form, 

NTT DATA endeavors to make accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at .  This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here . If you'd like more information on your EEO rights under the law, please click here . For Pay Transparency information, please click here .

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense & Incident Responder in Merrifield, VA vacancy
  • $101.38k - $152.06k

     ...want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Cyber Defense & Incident Responder to join our team in Merrifield, Virginia (US-VA), United States (US).Job Summary: The Cyber Defense & Incident Responder... 
    Cyber
    Full time
    Temporary work
    Interim role
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Merrifield, VA
    20 hours ago
  • $77.6k - $176k

    AI-Powered Cyber Defense Product Sales EngineerThe Opportunity:Join a team delivering next-generation...  ...(SOCs) detect, investigate, and respond to cyber threats. As a Senior Sales...  ...'ll engage directly with SOC analysts, incident responders, security architects, CISOs,... 
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    2 days ago
  •  ...Cybersecurity Engineer (Starshield) to develop and continuously test cyber defenses for the Starshield network. This hands-on role requires breadth across software and security, with a focus on rapid incident response and proactive vulnerability discovery. The ideal... 
    Cyber

    Jobleads-US

    Washington DC
    2 days ago
  • $94k - $112k

     ...Title: Incident Manager III SALARY RANGE: $94,000-$112,000 Onsite – 100% Description...  ...secure cloud-based engagement kits for cyber incident response and threat hunting...  ...threat assessments inform national cyber defense priorities. Eligibility: ~ Must be a... 
    Cyber
    Contract work
    Local area

    Solutions , LLC

    Arlington, VA
    1 day ago
  •  ...Fannie Mae is seeking a Vice President of Cyber Defense to shape and execute the enterprise cybersecurity strategy. You will oversee Threat Detection, Incident Management, and cyber protection programs across on-prem and multi-cloud environments. You will partner with... 
    Cyber

    Jobleads-US

    Washington DC
    6 days ago
  • Noblis is seeking a security professional to advance cyber defense programs for federal missions. You will evaluate capabilities, lead improvements, and design incident response playbooks within an agile framework. The role emphasizes cross‑functional collaboration, data... 
    Cyber
    Remote job

    Noblis

    Bethesda, MD
    2 days ago
  • $85k - $115k

     ...McLean, VA, By Light supports defense, civilian, and commercial IT...  ...services. The Guard Enterprise Cyber Operations Support (GECOS)...  ...the impact of each significant incident and the recovery costs; the...  ...Infrastructure, or Incident Responder certification e.g., CEH, CySA+... 
    Cyber
    Contract work
    Work experience placement
    Remote work
    Worldwide
    Relocation
    Shift work

    By Light Professional IT Services

    Falls Church, VA
    1 day ago
  • $113k - $188.4k

    Position Summary Our Deloitte Cyber team understands the unique challenges and...  ...III on the project, you will: The Incident Responder will execute the client Incident Response...  ...fulfill their mission promise. Our Cyber Defense & Resilience offering assists clients in... 
    Cyber
    Local area

    Deloitte

    Rosslyn, VA
    5 days ago
  •  ...delivered innovative solutions across Defense, Intelligence, Civilian, Health IT,...  ...activities. Track, report, and respond to cybersecurity incidents, ensuring timely coordination and recovery...  ...field ~8+ years of experience as Cyber Analyst ~5+ years’ experience with... 
    Cyber
    Local area
    Flexible hours

    Rippling

    Fairfax, VA
    2 days ago
  •  ...Washington, DC Position Overview We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security documentation and...  ...Information (PII), and coordinating remediation efforts. Cyber Threat Monitoring: Develop and maintain a Cyberthreat... 
    Cyber
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions

    Washington DC
    3 days ago
  •  ...BCMC is seeking Forensic Cyber Network Defense Analysts (CNDA) in Arlington, VA, to perform advanced DFIR in cloud, on-prem, and hybrid environments...  .... You will analyze cloud platform activity, investigate incidents, and build detection automation using PowerShell, Python,... 
    Cyber

    Jobleads-US

    Arlington, VA
    3 days ago
  •  ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client....  ...improvement to strengthen organizational resilience against evolving cyber threats. This position requires deep technical expertise,... 
    Cyber
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    3 days ago
  •  ...operates at the intersection of cyber innovation, national security...  .... From next-generation cyber defense to secure cloud and AI, we...  ...analyst toil and mean time to respond Engineer and operate the...  ...engineering escalation point during incidents and participate in an on-call... 
    Cyber
    Work at office
    Local area
    Flexible hours

    Merlin Cyber

    McLean, VA
    3 days ago
  • $150k - $275k

     ...are pioneering the next generation of cyber defense by building an Agentic Security Operations...  ...our human analysts to handle complex incident response with autonomous agents AI in responsible...  ...for reasonable accommodation will be responded to from this email address.Appian's... 
    Cyber
    Work experience placement
    Local area
    Flexible hours

    Appian

    McLean, VA
    5 days ago
  •  ...passionate about leading the frontline defense against today's most sophisticated cyber threats - both known and unknown?...  ...then Deloitte's Cyber Detect and Respond team could be the place for you!...  ...management, and complex incident investigation, mitigation, and remediation... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    4 days ago
  •  ..., we have delivered innovative solutions across Defense, Intelligence, Civilian, Health IT, and Tribal sectors...  ...SOC 1 Type 2 audit readiness. You will respond to computer security breaches, vulnerabilities, and incidents affecting the environment and embed security practices... 
    Cyber
    For contractors
    Local area
    Flexible hours

    Concept Plus

    Fairfax, VA
    5 days ago
  • $110k - $145k

     ...Senior Incident Response Consultant | $110,000 – $145,000 A specialist consulting client...  ...level Senior and Principal Incident Responders to work with and learn from A bench deep...  ...search.com Maestro Search are a leading cyber security talent partner, connecting... 
    Cyber
    Immediate start

    Maestro Search

    Tysons Corner, VA
    2 days ago
  •  ...containment, eradication, and recovery of cyber incidents. The candidate will perform malware...  ...handling as part of advanced cyber defense operations. The role requires Top Secret...  ...8570.01-M IAT Level II, CSSP Incident Responder certification, and 8+ years of cyber security... 
    Cyber

    Jobleads-US

    Springfield, VA
    6 days ago
  • $100k - $200k

     ...automation platform from modern cyber threats? As a Security...  ...capabilities and cloud-based defense strategies for our Enterprise...  ...network topology, and historical incident logs into agent prompts.LLM Performance...  ...accommodation will be responded to from this email address.... 
    Cyber
    Work experience placement
    Local area
    Flexible hours

    Appian

    McLean, VA
    5 days ago
  •  ...Position Overview:   We are expanding our Threat Ops team and looking for a  Cyber Threat Analyst to join our first line of defense. Our team investigates and responds to security incidents, creates alerting rules, administrates various security products and is... 
    Cyber
    Work at office
    Remote work

    Cellebrite

    Tysons, VA
    a month ago
  • $120k - $165k

     ...Officer (ISSO) to ensure that a Department of Defense (DoD) virtual desktop infrastructure (VDI...  ...requirements) performing a variety of cyber security related tasks, including...  ...Configuration Management, Continuous Monitoring, and Incident Response.Assist with the Management and... 
    Cyber
    Local area
    Immediate start

    ECS Federal

    Fairfax, VA
    1 day ago
  •  ...MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world.  The Cyber Incident Response Analyst... 
    Cyber
    Shift work
    Night shift
    Day shift
    Afternoon shift

    ManTech

    McLean, VA
    2 days ago
  • $112.2k - $196.4k

     ...possible.Job Description:Parsons is seeking a Defensive Cyber Analyst to support Cyber Operations...  ...industrial base resilience, and cyber incident response initiatives.What You’ll...  ...and strategies to deter, prevent, and respond to cybersecurity intrusions and incidents... 
    Cyber
    Full time
    Flexible hours

    Parsons

    Arlington, VA
    2 days ago
  •  ...and the contracting representative; respond to issues, concerns, and comments with...  ...teams. Experience supporting cyber, intelligence, digital forensics, or...  ...Cyber Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident Response, Cyber Architecture & Capability... 
    Cyber
    Full time
    Contract work
    Temporary work
    For contractors
    For subcontractor
    Local area
    Remote work
    Monday to Friday

    ADP

    Fairfax, VA
    2 days ago
  • $120.7k - $188.73k

     ...security operations to tackle offensive and defensive cyber challenges. They’ll dive deep into...  ...systems by detecting, identifying, and responding to attacks, or by creating defensive toolsets...  ...and exploit methods.Experience with incident response and the ability to quickly... 
    Cyber
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Noblis

    Bethesda, MD
    2 days ago
  •  ...Description Job Description About Agile Defense At Agile Defense we know that action...  ...#:  Job Title: Digital Forensics and Incident Analyst Location: Onsite, Washington,...  ...investigations of computer-based crimes and cyber-intrusion incidents, leveraging... 
    Cyber

    Agile Defense

    Washington DC
    2 days ago
  •  ...by the customer Focus Areas: Cyber & Forensics Policy Research...  ...Products: Prepare presentations and respond to stakeholder inquiries with...  ...and managing policy for a defense or military organization in...  ..., Intrusion Analysis & Incident Response, Cyber Architecture... 
    Cyber
    Full time
    Contract work
    Temporary work
    Local area
    Remote work
    Monday to Friday

    ADP

    Fairfax, VA
    6 days ago
  • $250k - $350k

     ...DescriptionThe Vice President, Cyber Defenseis a senior...  ...Detection and Response, Cyber Incident Management, and cyber protection...  ...anticipate and disrupt threats, respond decisively when incidents occur...  ...leading enterprise-scale Cyber Defense, Security Operations,... 
    Cyber
    Full time
    Work at office
    Remote work

    Fannie Mae

    Washington DC
    4 days ago
  • $132.5k - $338.3k

     ...experienced Threat Informed Defense Senior Manager to an already...  ...organizations prepare, protect, detect, respond to, and recover, at all...  ...strategy, digital identity, cyber defense, application security...  ...Experience in an MxDR/MDR or incident response consulting... 
    Cyber
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    20 hours ago
  • $104k - $166k

    ResponsibilitiesPeraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. Location: On‑site in Arlington,...  ...Strategic Cyber program. This role involves responding to cyber incidents across critical... 
    Cyber
    Contract work
    Currently hiring
    Shift work
    1 day per week

    Peraton Corporation

    Arlington, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense & Incident Responder. Be the first to apply!