Cyber Eviction Lead
Nightwing
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.
The DHS's Hunt and Incident Response Team (HIRT) secures the nation's infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactive hunting for malicious cyber activity. Nightwing provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks. Nightwing provides HIRT advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation, using host and network-based cybersecurity analysis capabilities. Personnel perform investigations to characterize the level of severity of breaches and develop mitigation/remediation plans. Nightwing is seeking Cyber Eviction Lead to support this critical customer mission.
Responsibilities:
Serves as hunt and incident response subject matter expert (SME), applying in-depth knowledge on threat actor (TA) tools, techniques, and procedures (TTPs)
Distills analytic findings into executive summaries and in-depth technical reports
Provide expert support, analysis, and research with only broad direction into exceptionally complex problems and processes relating to the subject matter as it relates to hunt and incident response activities
Serves as technical expert on high-level incident response teams providing technical direction, interpretation, and alternatives
Exercises considerable latitude in determining technical objectives of an assignment or task at hand
Independently develops technical solutions to complex problems that require the regular use of ingenuity and creativity
Analyzes incident data and victim environments to recommend targeted mitigations
Advise technical personnel on countermeasure implementation and customization
Supports internal stakeholders on containment and eradication missions
Documents analysis in a standardized knowledgebase for sharing and publication
Assists in maintaining branch process and procedure documentation
Guides the completion of hunt and incident response activities
Required Skills:
U.S. Citizenship
Must have an active TS/SCI clearance
Must be able to obtain DHS Suitability
8+ years of directly relevant experience in the area of expertise
Must be able to travel domestically on short notice
Strong understanding of network architecture/security
Experience performing cyber incident response
Ability to think independently
Demonstrates superior written and oral communication skills
Must be able to work collaboratively across physical locations
Skilled in identifying different classes of attacks and attack stages
Understanding of system and application security threats and vulnerabilities
Understanding of proactive analysis of systems and networks, to include creating trust levels of critical resources
Proficiency with common operating systems (e,g, Linux/Unix, Windows)
Desired Skills:
Experience leading and mentoring technical teams
Knowledge of Computer Network Defense policies, procedures and regulations
Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)
Network and System administration experience
Strong understanding of adversarial tactics/techniques/procedures (TTPs)
Experience with Identity and Access Management (IAM) tools
Ability to review and analyze Enterprise Architecture (EA) from a security perspective
Understanding of cyber defense-in-depth principles
Hands-on skill in host/network intrusion detection
Ability to perform event correlation
Experience with malicious activity analysis
Ability to collaborate with stakeholders at multiple levels within an organization
Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 10+ years of technical experience in the area of expertise.
Desired Certifications: One or more
DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst
DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder
DoD 8140.01 CEH, CSSP Analyst
SANS GIAC GNFA preferred
SANS GRID, GICSP, or GCIP a plus
At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.
Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.
Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
- A technology solutions firm located in Arlington, VA is seeking a Cyber Eviction Analyst to support government agencies in incident response to cyber attacks. Ideal candidates will have a BS in Computer Science or a related field, with over 8 years of relevant experience...Suggested
- A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding...Suggested
- A government-focused tech firm in Arlington, VA, seeks a Cyber Eviction Analyst to support on-site incident response for cyber attacks. The ideal candidate will have 5+ years of experience, a strong understanding of network security, and expertise in incident response....Suggested
- A technology solutions provider is looking for a Cyber Eviction Analyst in Arlington, VA. The candidate will support incident response for government clients, leveraging extensive knowledge of cyber threats and incident management. The ideal applicant needs a BS in Computer...Suggested
- A cybersecurity and intelligence firm is seeking a Cyber Eviction Analyst to support critical incident response missions. The role requires extensive expertise in threat actor tools, incident mitigation, and collaborative problem-solving. Ideal candidates will possess...Suggested
- A leading cybersecurity firm in Virginia is seeking a Cyber Eviction Lead to enhance incident response capabilities. The ideal candidate will have a strong background in cyber defense, experience in responding to complex incidents, and relevant certifications. Responsibilities...
- ...Incident Response Expert / Cyber Eviction Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is an innovative minority-owned solutions and services company specializing in AI & Automation. We combine proprietary agile...
- ...Incident Response Expert IV (Cyber Eviction Analysts) Location: Washington Dc Metro Area (On-Site) Citizenship: US only Clearance: Active TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB...Local areaImmediate start
- ...Cyber Defense Analyst – Lead Position Title: Cyber Defense Analyst - Lead Program: SBA – Enterprise Cybersecurity Services (ECS) Position Summary The Cyber Defense Analyst – Senior serves as a senior-level cybersecurity operations and incident response professional supporting...
$131.3k - $237.35k
...better‑informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Zero Trust Cyber Security Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD...- ...cFocus Software Incorporated is seeking a Cyber Defense Analyst – Lead to provide advanced expertise in cybersecurity operations and incident response. The role involves collaborating with teams to protect enterprise systems against cyber threats. Ideal candidates will...
- ...Business Computers Management Consulting Group Llc is seeking a Cyber Incident Response Expert to support critical missions in Arlington, Virginia. The role requires in-depth knowledge of threat actor tools and incident response expertise. Key responsibilities include...
- ...Business Computers Management Consulting Group Llc is seeking a Cyber Shift Incident Manager to provide crucial support for incident response to U.S. Government agencies facing cyber threats. This role involves managing cybersecurity incidents, coordinating responses,...Shift workNight shiftWeekend work
- ...A global cybersecurity consultancy is seeking an Incident Response Engagement Lead to manage cyber incidents and lead a team of experts. The role involves project management, relationship building, and effective incident response. Ideal candidates should possess strong...
- ...A government contractor in Washington, DC is seeking a Lead Cyber Threat Analyst to oversee cybersecurity operations for enterprise systems. The ideal candidate will have significant experience in cybersecurity, strong leadership skills, and relevant certifications such...For contractors
- ...CTI Lead We are looking for a CTI Lead for potential upcoming work. This would be part of an opportunity for our Partner to expand... ...to obtain a Public Trust Clearance ~ GCTI or relevant vendor Cyber Threat Intelligence certification, such as Mandiant Cyber Threat...
$86.8k - $198k
...Job Number: R0231450 Aviation Cyber Security Policy Lead The Opportunity: When our country's cyber security is on the line, simply reacting is not enough – we need a plan. And when that plan needs to support our nation's airspace and aviation safety systems, we need strategic...Full timeContract workPart timeLocal areaRemote work- ...Cyber Threat Lead Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies. Since 1968, we've been solving the toughest challenges with groundbreaking...Work at officeLocal area
- ...management and compliance with federal regulations. Candidates should have at least 5 years in cybersecurity and be familiar with DoDI 8510.01 and related frameworks. The position requires on-site support and offers a chance to lead cybersecurity efforts. #J-18808-Ljbffr...Part time
- ...Description Spatial Front, Inc. (SFI), a two-time USA Today Top Workplaces awardee and Washington Top Workplaces honoree, is seeking a Cyber Lead to support our growing team. The ideal candidate will be a Cyber Lead to manage and guide cybersecurity professionals supporting...Full timeContract work
$150k - $160k
...a Cybersecurity and Zero Trust Assessment Manager for a full-time position. This role requires a Top Secret Clearance and involves leading assessments across the Defense Healthcare Management Systems. Candidates should have over 12 years of experience and a Bachelor’s in...Full time$118.81k - $201.97k
...Description ICF is seeking an experienced Cyber Analysis Lead to support a Defense Human Resources Activity (DHRA) cybersecurity program. In this role, you will lead a team of cyber analysts responsible for threat analysis, vulnerability assessments, and security monitoring...Full timeContract workWork experience placementWork at office- ...ShorePoint, LLC is seeking a Senior Cyber Threat Intelligence Analyst in Washington, DC. This position requires proven expertise in cyber... ...experience and a Top Secret Clearance. The role involves leading intelligence activities, mentoring junior staff, and integrating...
- ...ShorePoint in Washington, DC is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to guide enterprise threat intelligence activities. The ideal candidate will have over 15 years of experience in cybersecurity and a current active Top-Secret Clearance, managing complex...
- ...NewGen Technologies is seeking a Blue Team Lead for potential upcoming work in Washington, DC. This role involves leading cybersecurity assessments and developing crucial technical standards within the Federal IT sector. The ideal candidate should have at least 5 years...
$108.48k - $184.41k
...Description We are seeking a Cyber Security Lead to support enterprise IT initiatives in a regulated environment where security, privacy, risk management, and standards compliance are central to planning and execution. This role operates across multiple programs and...Full timeContract workWork experience placementWork at office- ...A cybersecurity support firm seeks a Cyber Incident Manager in Arlington, Virginia. The role involves supporting U.S. Government agencies during cyber incidents by correlating data, conducting triage, and ensuring effective responses. Candidates must have relevant cybersecurity...
- ...Whateverittakescom is seeking a Senior Cyber Threat Intelligence Specialist in Washington, DC. This role involves providing analytical support to mitigate cyber and physical risks, requiring a minimum of 8 years in cyber intelligence and a Top Secret clearance. The ideal...
- ...The Hong Kong Study Skills Research Institute is looking for a Senior Cyber Threat Intelligence Analyst to work fully remote, supporting cybersecurity initiatives. This position requires active Public Trust clearance. The ideal candidate will have extensive experience...Remote work
- A government services company is seeking a Cybersecurity Resource Manager in Alexandria, VA, requiring an active TS/SCI security clearance. This role focuses on financial management of a $100 million budget across 15 contracts, ensuring compliance with fiscal regulations...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Eviction Lead. Be the first to apply!
- senior manager cyber security Arlington, VA
- cybersecurity manager Arlington, VA
- cyber security lead Arlington, VA
- director - cyber security Arlington, VA
- cyber security program manager Arlington, VA
- cyber Arlington, VA
- cyber threat intelligence analyst Arlington, VA
- senior manager cyber security
- cyber security account manager
- cybersecurity manager

