Cyber Incident Response Analyst SME
Navstar
Cyber Incident Response Analyst
This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations.
In this role, you will work alongside government partners, engineers, and other industry teammates to translate operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning, execution, and continuous improvement—helping ensure capabilities are delivered efficiently, aligned to mission priorities, and positioned for sustained success.
This position offers the opportunity to work on a high-visibility, enterprise program at the intersection of data, analytics, and emerging AI technologies. Ideal candidates are motivated by mission impact, comfortable operating in complex stakeholder environments, and interested in building deep domain expertise while delivering capabilities with real-world national security outcomes.
Primary Responsibilities
- Monitor, detect, analyze, mitigate, and respond to cyber threats across the enterprise.
- Lead incident detection and response activities at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP).
- Coordinate efforts through the enterprise incident tracking system and established communication channels.
- Provide expert investigative support for large-scale and complex security incidents, including those lacking clear technical indicators.
- Work with cybersecurity, network, and operations teams to ensure timely containment, remediation, and reporting of all incidents.
- Implement and operate access management mechanisms to control user access to data, tools, and services, including automation of standard access requests and support for VIPs.
- Collect, analyze, and assess user and customer analytic data to inform system changes and improvements.
- Design, implement, and improve the customer experience with the User Support Desk, including automation of access requests and integration of modern tools
Basic Qualifications
- Top Secret with SCI eligibility security clearance
- Bachelor degree or higher from an accredited college or university OR Offerings listed in DoD 8140 Training Repository ORGCFA or GCIA
- Minimum of 12 years of experience in cybersecurity incident response.
- Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO).
- Proficiency in using cybersecurity tools and technologies for monitoring and incident response.
- Experience with network security monitoring, intrusion detection systems, and security information and event management (SIEM) tools.
- Excellent analytical and problem-solving skills.
- Strong communication and coordination skills to work effectively with various teams.
Preferred Qualifications
- Active TS/SCI
- Master's degree in Cybersecurity or a related field.
- Certifications such as CISSP, CISM, CEH, or GIAC.
- Experience with cloud security and familiarity with AWS GovCloud/NIPRNet, SC2S AWS Secret Region Cloud for SIPRNet, and C2S AWS Cloud for JWICS environments.
- Knowledge of automation tools and techniques, including AI chatbots and Robotic Process Automation (RPA).
- Experience in designing and implementing disaster recovery and continuity of operations plans.
- ...complexity, and trust intersect. Our single focus has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program....Cyber
$131.3k - $237.35k
...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland... ...monitoring, detecting, analyzing, mitigating, and responding to cyber threats and adversarial activity on the DHS Enterprise. The...CyberFlexible hours$131.3k - $237.35k
...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland... ...to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The...CyberLocal areaImmediate startRemote workFlexible hours- ...Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain...Cyber
$180k - $200k
...application process. Malware Analyst SME Full Time Professional... ...State (DoS) Diplomatic Security Cyber Mission (DSCM) program to provide... ...event of significant cyber incident a continuous on-site presence... ..., and publish cyber incident response plans. Qualifications: Bachelor...CyberFull timeWork experience placementInterim roleFlexible hoursShift work- Accenture is seeking a hands-on technical leader for its Cyber Investigation and Forensic Response practice in Arlington, Virginia. This role involves conducting complex forensic analyses, leading incident response efforts, and mentoring junior investigators. The ideal...Cyber
- ...Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
- ...Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are seeking an experienced Incident Response...Full timeContract workRemote workMonday to Friday
$60k - $100k
...should have a minimum of 4 years in cybersecurity operations and a bachelor's degree in a related field. The role involves leading incident response efforts, documenting actions, and collaborating with technical teams to enhance security across multiple environments....Cyber- ...A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience...Remote work
- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...CyberWork at officeRemote work
- ...JPMorganChase within the Cybersecurity & Technology Controls Incident Management & Response team, you will serve as a critical member of our Global... ...understanding of various operating systems, network fundamentals, cyber tools, and cloud architecture. High-level understanding...Cyber
- ...step in your career. Come join our team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite role based out of Arlington, VA. The Senior...CyberContract workLocal area
- MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst will work...CyberShift workNight shiftDay shiftAfternoon shift
- ...Locations near the Pentagon or Mayfield VA ~ Customer DEA ~ Intermediate SOC Analyst ~6 years with Bachelor Position Summary The Cyber Defense & Incident Responder is responsible for monitoring, analyzing, and responding to cybersecurity incidents in...CyberRemote work
- ...Job Description Job Description Incident Response Expert IV (Cyber Eviction Analysts) Location: Washington Dc Metro Area (On-Site) Citizenship: US only... ...as hunt and incident response subject matter expert (SME), applying in-depth knowledge on threat actor (TA) tools...CyberLocal areaImmediate start
- ...Job Description Job Description Cybersecurity Lead Incident Response Coordinator (Program Manager / On-Site Supervisor) Company: Nationwide... ...Systems, or a related technical discipline. ~3–10 years of cyber incident-response experience. ~ Serves as the Program...CyberFull timeFor contractorsWork at office
$100k - $126.5k
...Consulting Associate/Cybersecurity & Incident Response CRA's Forensic Services practice supports companies' commitment to integrity by assisting... ...assessment/audit and guidance to clients on the adequacy of cyber security controls in accordance with cybersecurity frameworks...CyberWork at officeWork from home3 days per week$130k - $152.5k
...clients in preparation of, and in response to, data security matters,... ...detection, threat analysis, incident response and malware analysis... ...clients on the adequacy of cyber security controls in accordance... ...responder, network forensic analyst or malware analyst. Experience...CyberWork at officeLocal areaWork from home3 days per week$70.35k - $205.8k
...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients... ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response...CyberWork experience placementLive inWork at officeLocal area- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency... ...and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...Work at office
$101.53k - $132.69k
...200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management... ...agency's IT security program. This role combines hands-on cyber and incident lifecycle management. Position Description:...CyberPermanent employmentContract workTemporary workWork at officeLocal area- ...Job Description Job Description Incident Response Expert / Cyber Eviction Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is an innovative minority-owned solutions and services company specializing in AI & Automation...Cyber
$70.35k - $205.8k
...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients... ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response...CyberWork experience placementLive inWork at officeLocal area- ...Services company, seeks a Mid-Level Security Operations Center Analyst to support SBA in Washington, DC. The role requires the... ...obtain a Public Trust and will involve monitoring, analysis, and incident response within a federal government context. The position emphasizes...
- Job Overview A law firm seeks a Cyber Incident Response Associate Attorney in Washington, DC. This role involves managing cybersecurity incidents and advising clients on data privacy laws. The position offers a flexible, hybrid working arrangement. Duties Manage incident...CyberFlexible hours
$87.1k - $157.45k
...frequent opportunities for SOC Analysts to join our team in Alexandria, VA. Primary Responsibilities Utilize alerts from endpoints,... ..., and correlate evidence for incident investigations. Pass triaged alerts... ...Intelligence Driven Defense, Cyber Kill Chain methodology, and/or...CyberWork experience placementAll shiftsShift work$155k - $180k
.... Requisition #: 1435 Job Title: Incident Response Team Lead Location: Reston, VA Clearance... ...Agile Defense is seeking experienced Cyber Incident Response Team Lead to support... ...: GIAC Certified Intrusion Analyst (GCIA), GIAC Certified Incident Handler...CyberWork experience placement$160k - $190k
...looking for a long‑term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Washington, D.C. Office. This position offers a flexible, hybrid working arrangement....CyberFull timeWork at officeFlexible hours$120k - $170k
...Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Day Shift Lead Analyst to support our Prime Contract with the Defense... ...purposes related to employment consideration. Responsibilities RESPONSIBILITIES Collect and analyze...CyberFull timeContract workTemporary workWork at officeLocal areaShift workWeekend workDay shiftAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst SME. Be the first to apply!
- cyber security analyst Alexandria, VA
- information security consultant Alexandria, VA
- cyber Alexandria, VA
- cyber soc analyst
- entry level cyber risk analyst
- cyber security operations analyst
- cyber security analyst no experience
- junior cyber security analyst
- cyber security business analyst
- cyber security analyst internship


