Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SOC CTIC Lead - at ECS Corporate Fairfax, Virginia

disABLEDperson Inc

SOC CTIC Lead - SME

ECS is seeking a SOC CTIC Lead - SME to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this role, you will support Task 3 - Cybersecurity Operations Support by conducting and leading cyber incident response activities for the ARNG enterprise, including evidence collection, forensic acquisition, analysis of host and network artifacts, malware triage, root-cause analysis, containment support, recovery validation, and incident documentation. The position works as part of ENOCS' broader cybersecurity operations construct, coordinating with SOC analysts, Cyber Incident Response Team (CIRT) personnel, watch officers, engineers, and service owners to strengthen defensive cyberspace operations across classified and unclassified environments. This role directly supports ENOCS' mission to defend the DoDIN-Army-NG area of responsibility serving more than 120,000 users and approximately 141,000 endpoints across roughly 2,800 sites in 54 states and territories. The SOC CTIC Lead - SME contributes to cybersecurity operations that enable Title 10 and Title 32 missions, mobilization readiness, domestic emergency response, and classified SIPRNet operations by helping detect, investigate, contain, and document cyber incidents. The position operates within an environment that uses USIEM analytics, EDR, IDS/IPS, SOAR, Zeek metadata, Sysmon-informed MITRE ATT&CK analysis, and eMASS-supported continuous monitoring, while coordinating with organizations such as the NETCOM Global Cyber Center and DISA DCDC to maintain enterprise cyber freedom of action. Please Note: This position is contingent upon contract award.

Responsibilities

  • Conduct cyber incident response investigations through evidence collection, forensic acquisition, and analysis of host and network artifacts in support of ARNG defensive cyberspace operations.
  • Perform malware triage and root-cause analysis to determine incident scope, identify affected systems, and support containment and recovery actions.
  • Document investigative actions, technical findings, and incident outcomes in incident tracking and case management systems to support reporting, governance, and after-action requirements.
  • Support recovery validation by verifying remediation actions, confirming restoration status, and helping ensure incidents are fully resolved before closure.
  • Coordinate incident handling activities with SOC Tier 2 personnel, CIRT, watch officers, problem and change processes, and other cybersecurity operations stakeholders as required.
  • Leverage security data and enterprise monitoring outputs from environments such as USIEM, EDR, IDS/IPS, and related analytics to support investigation, correlation, and incident determination.
  • Apply MITRE ATT&CK-informed analysis and available telemetry such as Sysmon and Zeek metadata to help identify adversary tactics, techniques, and procedures and improve incident understanding.
  • Support coordination and reporting associated with incidents affecting ARNG classified and unclassified enclaves, including environments tied to SIPRNet operations and broader DoDIN-A(NG) mission support.
  • Assist with post-incident reporting and lessons learned documentation to strengthen continuous monitoring, improve defensive measures, and inform follow-on cyber defense activities.
  • Coordinate, as needed, with external mission partners and cyber organizations identified in ENOCS operations, including the NETCOM Global Cyber Center and DISA DCDC, in accordance with incident handling procedures.

Required Qualifications

  • U.S. Citizenship is required
  • Security Clearance: Secret Eligible
  • Required Certifications: DCWF Work Role 531-Cyber Defense Incident Responder - Intermediate proficiency; must hold ONE OR MORE of the following: CEH(P), ECIH, GRID, RCCE Level 1, CBROPS, CCSP, CEH, Cloud+, FITSP-O, GCED, GCIH, GSEC, PenTest+, Security+
  • Experience: 7+ years of experience in cybersecurity
  • Education: Bachelors degree or higher in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering

Demonstrated experience performing evidence collection, forensic acquisition, and analysis of host and network artifacts during cyber incident investigations.

Experience supporting malware triage, technical root-cause analysis, containment actions, and recovery validation in operational cybersecurity environments.

Ability to produce complete, accurate, and timely incident documentation, technical findings, and after-action reporting aligned to continuous monitoring and cybersecurity operations requirements.

Experience working within enterprise cybersecurity operations supporting incident escalation, case management, and coordination across analysts, responders, engineers, and service owners.

Familiarity with cybersecurity monitoring and analysis environments using technologies and data sources referenced in ENOCS operations, including USIEM, EDR, IDS/IPS, and related security telemetry.

Experience supporting investigations and reporting in environments governed by DoD and ARNG cybersecurity policy, including classified and unclassified operational contexts.

Ability to analyze security events and artifacts to determine incident scope, affected assets, and recommended response actions across large enterprise environments.

Experience contributing to lessons learned, remediation follow-up, and continuous improvement activities after cyber incident response actions.

Vacancy posted 13 hours ago
Similar jobs that could be interesting for youBased on the SOC CTIC Lead - at ECS Corporate Fairfax, Virginia in Fairfax, VA vacancy
  •  ...SOC Vulnerability Management Team Lead - Senior ECS is seeking a SOC Vulnerability Management Team Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this Task 3 role, the selected candidate... 
    Suggested
    Contract work

    disABLEDperson Inc

    Fairfax, VA
    12 hours ago
  •  ...SOC Vulnerability Management AESS Lead - Senior ECS is seeking a SOC Vulnerability Management AESS Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. Supporting Task 3 — Cybersecurity Operations... 
    Suggested
    Contract work

    disABLEDperson Inc

    Fairfax, VA
    12 hours ago
  •  ...SOC Technician (Shift 1 Lead) - Senior ECS is seeking a SOC Technician (Shift 1 Lead) - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this role, you will support Task 3 — Cybersecurity Operations... 
    Suggested
    Contract work
    Shift work

    disABLEDperson Inc

    Fairfax, VA
    12 hours ago
  •  ...SOC Technician (Shift 2 Lead) - Senior ECS is seeking a SOC Technician (Shift 2 Lead) - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. This role supports Task 3 — Cybersecurity Operations Support... 
    Suggested
    Contract work
    Shift work

    disABLEDperson Inc

    Fairfax, VA
    12 hours ago
  •  ...SOC Technician (Shift 3 Lead) - Senior ECS is seeking a SOC Technician (Shift 3 Lead) - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this role, the selected candidate supports Task 3 — Cybersecurity... 
    Suggested
    Contract work
    Shift work

    disABLEDperson Inc

    Fairfax, VA
    12 hours ago
  •  ...SOC Team Lead - Senior ECS is seeking a SOC Team Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity...  ...coverage and alert fidelity; and coordinating with SOC, CTIC, CDAP, and infrastructure teams to maintain continuous... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...SOC Vulnerability Management ACAS Lead - Senior ECS is seeking a SOC Vulnerability Management ACAS Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this senior Task 3 Cybersecurity Operations... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...SOC CIRT Team Lead - SME ECS is seeking a SOC CIRT Team Lead - SME to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. This position supports Task 3 — Cybersecurity Operations Support — by leading cyber... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  • $40 - $45 per hour

     ...Contracts & Compliance Manager | Fully Onsite- Fairfax, VA | $40-45/hr | 6 month Contract to...  ...CarterAston Carter provides world-class corporate talent solutions to thousands of clients...  ...we extend the capabilities of industry-leading companies. We draw on our deep... 
    Full time
    Contract work
    Temporary work
    For subcontractor
    Work at office
    Shift work

    TryApplyNow

    Fairfax, VA
    8 hours ago
  • $300k - $325k

    PulteGroup Inc. in Fairfax, Virginia is looking for a Division President to oversee the overall performance of homebuilding operations. The successful candidate will develop, implement, and achieve strategic plans while monitoring the marketplace for opportunities. With... 

    PulteGroup Inc.

    Fairfax, VA
    3 days ago
  •  ...SOC Security Engineering Team Lead - Senior ECS is seeking a SOC Security Engineering Team Lead - Senior to support the Army National Guard (ARNG) Enterprise...  ...and remediation actions; and coordinating with SOC, CTIC, CDAP, and infrastructure teams to sustain continuous... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  • ECS is seeking an Audit Specialist for its location in Fairfax, Virginia. The specialist will execute critical audit control and ensure compliance with SOC1 readiness activities. Applicants should have at least 3 years of experience in audit support, along with a current... 

    ECS

    Fairfax, VA
    2 days ago
  •  ...Full-Time Description RiVidium is seeking a SOC Shift Lead to support our planned MODES III team supporting Military Community...  ...This role is expected to support work in the Alexandria, Virginia area, with on-site support at the DoD Mark Center or other customer... 
    Full time
    Contract work
    Part time
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    1 day ago
  •  ...COOP Planner And Coordination Lead - Senior Everforth ECS is seeking a COOP Planner and Coordination Lead - Senior to work in Fairfax, Virginia. This position is contingent upon contract award. Responsibilities Lead the development and execution of enterprise... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...Lead, Visual We hope you're interested in building a home with us. Even if you don't feel that you meet every requirement listed...  ...the customer at the center of everything we do, every day. Our corporate values that guide our actions and decisions are our People First... 
    Full time
    Part time
    H1b
    Local area
    Relocation package
    Monday to Friday
    Flexible hours
    Shift work
    Weekend work

    Williams-Sonoma

    Fairfax, VA
    2 days ago
  •  ...Senior Soc Analyst T3 Lead Merlin Group operates at the intersection of cyber innovation, national security, and technology-driven transformation. With a mission to accelerate the adoption of high-impact technologies across the U.S. public sector and regulated commercial... 
    Work at office
    Local area
    Shift work

    Merlin Cyber

    McLean, VA
    1 day ago
  • A cybersecurity firm located in Falls Church, Virginia, seeks a Security Operations Center (SOC) Lead to manage daily security operations, coordinate incident response activities, and oversee SOC analysts. Candidates should have over 12 years of experience in cybersecurity... 

    ZTI Solutions LLC

    Falls Church, VA
    4 days ago
  •  ...proposals. The role is remote, with a preferred location in Fairfax, VA, but can consider other Virginia locations. Responsibilities include managing proposal...  ..., coordinating teams, and ensuring compliance with corporate standards. Candidates must possess strong project... 
    Remote job
    Full time

    Dewberry

    Fairfax, VA
    2 days ago
  • ECS is seeking an Enterprise Support ISSE - Senior in Fairfax, Virginia. This position entails engineering and validating security controls, advising on secure implementation, and ensuring compliance with DoD cybersecurity policies. The ideal candidate will hold a Master... 

    ECS

    Fairfax, VA
    4 days ago
  •  ...Manager SME - Endpoint Security Solutions Lead Everforth ECS is seeking a Product Manager SME to...  ...covering the Pentagon, Falls Church, and Fairfax. Please Note: This position is...  ...platforms, Security Operations Center (SOC) monitoring workflows, and supply chain... 
    Contract work
    Local area

    ECS

    Fairfax, VA
    1 day ago
  • A leading engineering consulting firm is looking for a Construction Management Services Discipline Lead in Fairfax, Virginia. This role requires over 15 years of experience in construction management...  ...leadership, and compliance with corporate policies. The position offers... 
    Flexible hours

    Stantec Consulting International Ltd.

    Fairfax, VA
    4 days ago
  • $200.7k - $229.1k

    Capital One is seeking an experienced corporate/commercial attorney in McLean, Virginia to join the Global Payment Network Legal team. The ideal candidate will provide strategic legal advice on various commercial initiatives and debit transactions. With at least 6 years... 

    Capital One

    Mc Lean, VA
    3 days ago
  • Summerwood Corporation in Fairfax, Virginia, is seeking an Associate Restaurant Manager to support the Restaurant General Manager. The ARM will drive customer satisfaction, oversee daily operations, and ensure food quality standards are met. The ideal candidate will possess... 

    Summerwood Corporation

    Fairfax, VA
    1 day ago
  • Position Title: Corporate Controller Requisition ID: 1724 Position Location: Fairfax, VA (onsite) Position Reports To: Chief Financial Officer Supervises Others: Yes...  ...and forward-thinking Corporate Controller to lead accounting operations and policy across multiple... 
    Temporary work
    For contractors
    Local area

    Trident

    Fairfax, VA
    2 days ago
  • Duck Donuts in Fairfax, Virginia is seeking a Manager who will oversee daily operations and ensure high standards of quality and service. Ideal candidates will have 2+ years of management experience in food service, exceptional team leadership skills, and a proactive approach... 
    Flexible hours

    Ontario Trillium Foundation

    Fairfax, VA
    1 day ago
  •  ...Position Summary: Will lead Member Experience operations at their home gym, with an emphasis on member service, schedules, and inventory. This position reports to the home-gym General Manager. Major Responsibilities: Lead Member Experience TM in their home Club... 

    Gold's Gym

    Fairfax Station, VA
    3 days ago
  • $7.5k

     ...Requirements Management Lead Location: McLean / Herndon / Reston, VA (Northern Virginia Territory) Security Clearance Required: Security Clearance with appropriate...  ...- Employee appreciation + family-friendly corporate events...and much more. About Us: RealmOne... 
    Work experience placement
    Work at office
    Immediate start
    Flexible hours

    RealmOne

    McLean, VA
    3 days ago
  •  ...Devsecops/Supply Chain Lead Sme Everforth ECS is seeking a DevSecOps/Supply Chain Lead SME to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. This position is contingent upon contract award. The War Data Platform (WDP) is a... 
    Contract work

    ECS

    Fairfax, VA
    3 days ago
  •  ...T&E Gate Lead/Evaluation Science Lead Sme Everforth ECS is seeking a T&E Gate Lead/Evaluation Science Lead SME to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. This position is contingent upon contract award. The War Data... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  • $104k - $166k

     ...SOC Shift Lead Job Locations US-VA-Herndon Requisition ID 2026-165291 Position Category Cyber Security Clearance Top Secret/SCI Responsibilities We are seeking a highly skilled and innovative SOC Shift Lead to join... 
    Contract work
    Shift work
    Night shift

    Peraton

    Herndon, VA
    17 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SOC CTIC Lead - at ECS Corporate Fairfax, Virginia. Be the first to apply!