Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Response Analyst SME

Navstar

Cyber Incident Response Analyst

This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations.

In this role, you will work alongside government partners, engineers, and other industry teammates to translate operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning, execution, and continuous improvement—helping ensure capabilities are delivered efficiently, aligned to mission priorities, and positioned for sustained success.

This position offers the opportunity to work on a high-visibility, enterprise program at the intersection of data, analytics, and emerging AI technologies. Ideal candidates are motivated by mission impact, comfortable operating in complex stakeholder environments, and interested in building deep domain expertise while delivering capabilities with real-world national security outcomes.

Primary Responsibilities
  • Monitor, detect, analyze, mitigate, and respond to cyber threats across the enterprise.
  • Lead incident detection and response activities at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP).
  • Coordinate efforts through the enterprise incident tracking system and established communication channels.
  • Provide expert investigative support for large-scale and complex security incidents, including those lacking clear technical indicators.
  • Work with cybersecurity, network, and operations teams to ensure timely containment, remediation, and reporting of all incidents.
  • Implement and operate access management mechanisms to control user access to data, tools, and services, including automation of standard access requests and support for VIPs.
  • Collect, analyze, and assess user and customer analytic data to inform system changes and improvements.
  • Design, implement, and improve the customer experience with the User Support Desk, including automation of access requests and integration of modern tools
Basic Qualifications
  • Top Secret with SCI eligibility security clearance
  • Bachelor degree or higher from an accredited college or university OR Offerings listed in DoD 8140 Training Repository ORGCFA or GCIA
  • Minimum of 12 years of experience in cybersecurity incident response.
  • Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO).
  • Proficiency in using cybersecurity tools and technologies for monitoring and incident response.
  • Experience with network security monitoring, intrusion detection systems, and security information and event management (SIEM) tools.
  • Excellent analytical and problem-solving skills.
  • Strong communication and coordination skills to work effectively with various teams.
Preferred Qualifications
  • Active TS/SCI
  • Master's degree in Cybersecurity or a related field.
  • Certifications such as CISSP, CISM, CEH, or GIAC.
  • Experience with cloud security and familiarity with AWS GovCloud/NIPRNet, SC2S AWS Secret Region Cloud for SIPRNet, and C2S AWS Cloud for JWICS environments.
  • Knowledge of automation tools and techniques, including AI chatbots and Robotic Process Automation (RPA).
  • Experience in designing and implementing disaster recovery and continuity of operations plans.
Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the Cyber Incident Response Analyst SME in Alexandria, VA vacancy
  •  ...complexity, and trust intersect. Our single focus has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission‑critical government program.... 
    Cyber
    Permanent employment

    Tetrad Digital Integrity

    Arlington, VA
    1 day ago
  • $131.3k - $237.35k

     ...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland...  ...monitoring, detecting, analyzing, mitigating, and responding to cyber threats and adversarial activity on the DHS Enterprise. The... 
    Cyber
    Flexible hours

    Leidos

    Arlington, VA
    2 days ago
  • $131.3k - $237.35k

     ...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland...  ...to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The... 
    Cyber
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  •  ...Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain... 
    Cyber

    Raytheon Technologies

    Arlington, VA
    4 days ago
  • $180k - $200k

     ...application process. Malware Analyst SME Full Time Professional...  ...State (DoS) Diplomatic Security Cyber Mission (DSCM) program to provide...  ...event of significant cyber incident a continuous on-site presence...  ..., and publish cyber incident response plans. Qualifications: Bachelor... 
    Cyber
    Full time
    Work experience placement
    Interim role
    Flexible hours
    Shift work

    AGR LLC

    Beltsville, MD
    1 day ago
  • Accenture is seeking a hands-on technical leader for its Cyber Investigation and Forensic Response practice in Arlington, Virginia. This role involves conducting complex forensic analyses, leading incident response efforts, and mentoring junior investigators. The ideal... 
    Cyber

    Accenture

    Arlington, VA
    3 days ago
  •  ...Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    3 days ago
  •  ...Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are seeking an experienced Incident Response... 
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy

    Washington DC
    5 days ago
  •  ...A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience... 
    Remote work

    Cyber Synergy Inc

    Washington DC
    7 days ago
  • $60k - $100k

     ...should have a minimum of 4 years in cybersecurity operations and a bachelor's degree in a related field. The role involves leading incident response efforts, documenting actions, and collaborating with technical teams to enhance security across multiple environments.... 
    Cyber

    MAXIMUS

    Washington DC
    22 hours ago
  • Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships... 
    Cyber
    Work at office
    Remote work

    Phase2 Technology

    Mc Lean, VA
    3 days ago
  •  ...step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite role based out of Arlington, VA. The Senior... 
    Cyber
    Contract work
    Local area

    Zantech

    Arlington, VA
    2 days ago
  • MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst will work... 
    Cyber
    Shift work
    Night shift
    Day shift
    Afternoon shift

    MANTECH

    Mc Lean, VA
    3 days ago
  •  ...Locations near the Pentagon or Mayfield VA ~ Customer DEA ~ Intermediate SOC Analyst ~6 years with Bachelor Position Summary The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in... 
    Cyber
    Remote work

    Gormat

    Arlington, VA
    11 days ago
  •  ...Cybersecurity Lead Incident Response Coordinator (Program Manager / On-Site Supervisor)  Company: Nationwide IT Services (NIS) Location...  ...Systems, or a related technical discipline. ~3–10 years of cyber incident-response experience. ~ Serves as the Program Manager... 
    Cyber
    Full time
    For contractors
    Work at office

    Nationwide IT Services

    Alexandria, VA
    2 days ago
  •  ...Job Description Job Description Incident Response Expert IV (Cyber Eviction Analysts) Location: Washington Dc Metro Area (On-Site) Citizenship: US only...  ...as hunt and incident response subject matter expert (SME), applying in-depth knowledge on threat actor (TA) tools... 
    Cyber
    Local area
    Immediate start

    Argo Cyber Systems

    Washington DC
    23 days ago
  • $100k - $126.5k

     ...Consulting Associate/Cybersecurity & Incident Response CRA's Forensic Services practice supports companies' commitment to integrity by assisting...  ...assessment/audit and guidance to clients on the adequacy of cyber security controls in accordance with cybersecurity frameworks... 
    Cyber
    Work at office
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    22 hours ago
  • $70.35k - $205.8k

     ...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients...  ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response... 
    Cyber
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    22 hours ago
  •  ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency...  ...and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret... 
    Work at office

    CORTEK Inc

    Washington DC
    3 days ago
  • $84.63k - $112.84k

     ...join us today. The Role Cybersecurity Incident Response Team (CIRT) Engineers at Lumen are on the...  ...from 10:00am to 7:00pm Pacific Time. Analyst can be located in any US state. Respond...  .... Support Security projects to improve Cyber Defense Team or Lumen's security posture... 
    Cyber
    Temporary work
    Remote work
    Shift work

    Lumen Inc

    Washington DC
    3 days ago
  • $101.53k - $132.69k

     ...200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management...  ...agency's IT security program. This role combines hands-on cyber and incident lifecycle management. Position Description:... 
    Cyber
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises®, Inc.

    Alexandria, VA
    6 days ago
  •  ...Job Description Job Description Incident Response Expert / Cyber Eviction Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is an innovative minority-owned solutions and services company specializing in AI & Automation... 
    Cyber

    Node.Digital

    Arlington, VA
    24 days ago
  • $70.35k - $205.8k

     ...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients...  ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response... 
    Cyber
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    3 days ago
  •  ...Services company, seeks a Mid-Level Security Operations Center Analyst to support SBA in Washington, DC. The role requires the...  ...obtain a Public Trust and will involve monitoring, analysis, and incident response within a federal government context. The position emphasizes... 

    Koniag Government Services

    Washington DC
    2 days ago
  • Job Overview A law firm seeks a Cyber Incident Response Associate Attorney in Washington, DC. This role involves managing cybersecurity incidents and advising clients on data privacy laws. The position offers a flexible, hybrid working arrangement. Duties Manage incident... 
    Cyber
    Flexible hours

    BCG Attorney Search

    Washington DC
    3 days ago
  • $155k - $180k

     .... Requisition #: 1435 Job Title: Incident Response Team Lead Location: Reston, VA Clearance...  ...Agile Defense is seeking experienced Cyber Incident Response Team Lead to support...  ...: GIAC Certified Intrusion Analyst (GCIA), GIAC Certified Incident Handler... 
    Cyber
    Work experience placement

    Agile Defense

    Reston, VA
    1 day ago
  • $87.1k - $157.45k

     ...frequent opportunities for SOC Analysts to join our team in Alexandria, VA. Primary Responsibilities Utilize alerts from endpoints,...  ..., and correlate evidence for incident investigations. Pass triaged alerts...  ...Intelligence Driven Defense, Cyber Kill Chain methodology, and/or... 
    Cyber
    Work experience placement
    All shifts
    Shift work

    Leidos

    Alexandria, VA
    1 day ago
  • $160k - $190k

     ...looking for a long‑term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Washington, D.C. Office. This position offers a flexible, hybrid working arrangement.... 
    Cyber
    Full time
    Work at office
    Flexible hours

    Wilson Elser Moskowitz Edelman & Dicker LLP

    Washington DC
    3 days ago
  • $120k - $170k

     ...Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Day Shift Lead Analyst to support our Prime Contract with the Defense...  ...purposes related to employment consideration. Responsibilities RESPONSIBILITIES Collect and analyze... 
    Cyber
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Shift work
    Weekend work
    Day shift
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    11 days ago
  • $160k - $190k

    The Position Washington, D.C. - Flexible hybrid working arrangement. Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and international data breach and privacy laws Drafting legal notices of a data breach... 
    Cyber
    Full time
    Flexible hours

    Wilson Elser

    Washington DC
    22 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Response Analyst SME. Be the first to apply!