Cyber Incident Response Analyst SME
Navstar
Cyber Incident Response Analyst
This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations.
In this role, you will work alongside government partners, engineers, and other industry teammates to translate operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning, execution, and continuous improvement—helping ensure capabilities are delivered efficiently, aligned to mission priorities, and positioned for sustained success.
This position offers the opportunity to work on a high-visibility, enterprise program at the intersection of data, analytics, and emerging AI technologies. Ideal candidates are motivated by mission impact, comfortable operating in complex stakeholder environments, and interested in building deep domain expertise while delivering capabilities with real-world national security outcomes.
Primary Responsibilities
- Monitor, detect, analyze, mitigate, and respond to cyber threats across the enterprise.
- Lead incident detection and response activities at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP).
- Coordinate efforts through the enterprise incident tracking system and established communication channels.
- Provide expert investigative support for large-scale and complex security incidents, including those lacking clear technical indicators.
- Work with cybersecurity, network, and operations teams to ensure timely containment, remediation, and reporting of all incidents.
- Implement and operate access management mechanisms to control user access to data, tools, and services, including automation of standard access requests and support for VIPs.
- Collect, analyze, and assess user and customer analytic data to inform system changes and improvements.
- Design, implement, and improve the customer experience with the User Support Desk, including automation of access requests and integration of modern tools
Basic Qualifications
- Top Secret with SCI eligibility security clearance
- Bachelor degree or higher from an accredited college or university OR Offerings listed in DoD 8140 Training Repository ORGCFA or GCIA
- Minimum of 12 years of experience in cybersecurity incident response.
- Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO).
- Proficiency in using cybersecurity tools and technologies for monitoring and incident response.
- Experience with network security monitoring, intrusion detection systems, and security information and event management (SIEM) tools.
- Excellent analytical and problem-solving skills.
- Strong communication and coordination skills to work effectively with various teams.
Preferred Qualifications
- Active TS/SCI
- Master's degree in Cybersecurity or a related field.
- Certifications such as CISSP, CISM, CEH, or GIAC.
- Experience with cloud security and familiarity with AWS GovCloud/NIPRNet, SC2S AWS Secret Region Cloud for SIPRNet, and C2S AWS Cloud for JWICS environments.
- Knowledge of automation tools and techniques, including AI chatbots and Robotic Process Automation (RPA).
- Experience in designing and implementing disaster recovery and continuity of operations plans.
- A technology firm in Virginia is seeking an experienced SME Cyber Incident Response Analyst to join its team. This role involves monitoring and responding to cyber threats, leading incident response activities, and providing expert investigative support. Ideal candidates...Cyber
- Business Computers Management Consulting Group Llc is seeking an Enterprise Architect SME to support U.S. Government missions by providing incident response and cyber security solutions. The ideal candidate will have over 12 years of experience in systems engineering and...Cyber
- ...better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD...Cyber
- ...Koitecc Solutions in Alexandria, Virginia, seeks a seasoned SME Cyber Incident Response Analyst to support a high-visibility program aimed at enhancing data and analytics capabilities across the Department of War. The ideal candidate will have strong cybersecurity incident...Cyber
$131.3k - $237.35k
Leidos is seeking an experienced SME Incident Response Analyst in Alexandria, VA. This role involves designing and executing cybersecurity incident response protocols, collaborating closely with government teams to translate strategic requirements into scalable solutions...Cyber$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter... ...$125,000 is offered, alongside an opportunity to work on critical national security missions. #J-18808-Ljbffr ARGO Cyber SystemsCyber- A leading cybersecurity firm is looking for Cyber Eviction Analysts in Arlington, Virginia. This role involves incident response, analyzing threats, and advising technical personnel on countermeasures. Candidates must have active TS/SCI clearance, a relevant degree, and...Cyber
- ...SME Incident Response Analyst This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization...
- A leading cybersecurity firm is seeking a Cyber Eviction Analyst to join their incident response team in Arlington, Virginia. The role involves conducting proactive threat hunting, analyzing security breaches, and communicating complex findings to stakeholders. Candidates...Cyber
- ...Full-Time Description RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community... ...contract award. Key Responsibilities Support cyber incident response activities including analysis,...CyberFull timeContract workPart timeShift workNight shift
- Solutions Technology Inc. (STI) is seeking a Cyber Eviction Analyst in Arlington, Virginia. This role entails proactive threat hunting, incident response, and technical analysis focusing on complex cybersecurity challenges. Candidates must have 8+ years of relevant experience...Cyber
$131.3k - $237.35k
Leidos is seeking a Senior Incident Response Analyst to support the DHS CISA Program in Arlington, Virginia. The position involves coordinating investigations and responses to cyber incidents, developing Incident Response processes, and utilizing advanced analytical skills...Cyber- ...is seeking a Host Forensics Analyst to support critical missions related to cybersecurity incidents. The position requires at least... ...of relevant experience in cyber forensic investigations and an active TS/SCI clearance. Responsibilities include leading forensic teams...Cyber
$131.3k - $237.35k
...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland... ...to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The...CyberLocal areaImmediate startRemote workFlexible hours- ...Job Title: Incident Response SME Location: Onsite - Washington DC Experience: 10+ Years Work authorization: US Citizen Job Description Seeking... ...response planning and operations • Security operations and cyber incident handling • NIST 800-61 expertise • Policy and...Cyber
$131.3k - $237.35k
...customers through scale and repeatability. This role is a Senior Incident Response Analyst supporting the DHS CISA Program within the Department of... ...and analyze events and data to determine scope of cyber incidents Acquire and analyze endpoint and network artifacts...CyberFlexible hours- A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC...Cyber
- A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes... ...work is permitted with occasional on-site duties in the Washington, D.C. area. #J-18808-Ljbffr Cyber Synergy Consulting GroupCyberRemote job
- ...Matter Expert - Cybersecurity in McLean, Virginia. Candidates must hold a TS/SCI clearance with Poly. Responsibilities include improving Cyber Defense operations and incident response, along with maximizing tool efficiency. A range of educational backgrounds is required...Cyber
- Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment... ...work permitted with reliable connectivity and camera‑enabled participation. #J-18808-Ljbffr Cyber Synergy Consulting GroupCyberFull timeContract workRemote workMonday to Friday
- Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form... ...our tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the initial...CyberPart timeShift workNight shiftWeekend workDay shift2 days per week
- Ernst & Young Oman is looking for a Cyber Triage and Forensics (CTF) Incident Analyst to be a senior member of the technical team handling security incidents. Responsibilities include performing digital forensic analysis, responding to security incidents, and developing...CyberFlexible hours
$110k - $170k
...Piper Solutions is looking for a SOC Analyst in McLean, VA to support a critical... ...ideal candidate will have experience in cyber threat detection and incident analysis and must possess an active TS/SCI Full Scope Polygraph. Responsibilities include detecting cyber-attacks,...Cyber$127k - $140k
...protecting organizations from ever-increasing cyber threats 24/7/365. Powered by Deepwatch... ...comprehensive detection and automated response to cyber threats together with... ...the Manager of Adversary Response, the Incident Response Analyst operates on the front lines of active...CyberPermanent employmentWork experience placementWork at officeRemote workWork from homeHome officeFlexible hours- ...Incident Response Expert III (Cyber Eviction Analysts) Location: Washington Dc Metro Area (On-Site) Citizenship: US only Clearance: Active TS/SCI (DHS... ...as hunt and incident response subject matter expert (SME), applying in-depth knowledge on threat actor (TA) tools...CyberLocal areaImmediate start
$131.3k - $237.35k
...seeking an experienced SCRM Analyst SME to support the delivery, enhancement... ...security outcomes. Primary Responsibilities: Conducts comprehensive Cyber Supply Chain Risk Assessments on... ...law enforcement and report the incident to the U.S. Federal Trade...CyberWork at officeLocal areaImmediate start$57.2k - $109.4k
Broughton Group is seeking a Cybersecurity Incident Response Triage Specialist to join their team in Arlington, Virginia. In this role, you will be responsible for monitoring and triaging alerts from various security sources, collaborating with incident response teams,...Cyber- ...NewGen Technologies is seeking a Cyber Shift Incident Manager to support U.S. Government agencies in response to cyber-attacks. The role involves incident triage, data correlation, and service restoration. Candidates must have a BS in a relevant field, active TS/SCI Clearance...CyberShift work
- A leading cybersecurity firm in Virginia is seeking a Cyber Eviction Lead to enhance incident response capabilities. The ideal candidate will have a strong background in cyber defense, experience in responding to complex incidents, and relevant certifications. Responsibilities...Cyber
- A leading cybersecurity solutions provider is seeking a Cyber Action Officer to manage cyber incidents for U.S. Government agencies. The role requires supporting incident response, maintaining incident reporting, and coordinating with stakeholders. Candidates should have...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst SME. Be the first to apply!
- information security consultant Alexandria, VA
- cyber security analyst Alexandria, VA
- cyber Alexandria, VA
- information security consultant
- cyber security operations analyst
- remote cyber security analyst
- cyber security analyst no experience
- entry level cyber security analyst
- cyber security analyst
- cyber soc analyst

