Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Analyst, Senior

$99k - $225k
Full-time

Booz Allen Hamilton

Incident Response Analyst, Senior

The Opportunity:

Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the United States government. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information security risk specialist who will break down complex threats into manageable plans of action.

As an information security risk specialist on our team, you’ll serve as a key member of a 24x7x365 Security Operations Center and Incident Response team, responsible for continuous monitoring, detection, investigation, and response to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms. The role performs hands‑on incident response activities such as alert and incident triage, log and artifact analysis, threat identification, containment support, and incident documentation while leveraging SIEM, EDR, IDS/IPS, SOAR, and forensic tools to validate and escalate security events. The analyst contributes to the development of incident response playbooks and standard operating procedures, conducts proactive threat hunting using behavioral analytics and threat intelligence, and supports continuous monitoring and assessment efforts to identify risks and strengthen detection capabilities. This position collaborates closely with federal stakeholders, communicates findings to technical and non‑technical audiences, and produces high‑quality reports and briefings, all while helping to advance the maturity and effectiveness of the organization’s security operations.

Join us. The world can’t wait.

You Have:

  • 5+ years of experience in a Security Operations Center (SOC) performing incident response activities, including event triage, log and artifact analysis, threat identification, incident documentation, and coordination of response actions

  • Experience analyzing and responding to security events across enterprise networks, endpoints, applications, and security platforms, such as SIEM, EDR, IDS/IPS, firewalls, and vulnerability management tools

  • Experience developing or contributing to incident response playbooks, workflows, or standard operating procedures

  • Experience with continuous monitoring and security assessment practices, including log analysis, control evaluation, and risk identification

  • Experience with security tools and investigative techniques used by SOC and incident response teams, such as packet analysis, log correlation, malware triage, and forensic imaging

  • Ability to communicate clearly with both technical and non-technical audiences, and produce high‑quality incident reports, briefings, and technical documentation

  • Public Trust

  • Bachelor's degree

Nice If You Have:

  • Experience with enterprise security technologies, including SIEM, EDR, IDS/IPS, SOAR platforms, vulnerability management tools, and digital forensics solutions

  • Experience conducting threat hunting activities, leveraging behavioral analytics, threat intelligence, and anomaly detection to identify emerging threats

  • Knowledge of cybersecurity principles, including network security, endpoint security, identity and access management, and secure configuration baselines

  • Knowledge of modern application and infrastructure security concepts, such as container security, API security, and workload protection

  • Ability to build strong client relationships, collaborate across various teams, and communicate complex technical concepts in a clear manner

  • CISSP, CySA+, GCIH, GSEC, or CISSP Certifications

Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .

Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

  • Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

  • Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Incident Response Analyst, Senior in Bethesda, MD vacancy
  • Edgewater Federal Solutions is seeking a Tier II Incident Response Analyst to support a federal government contract. The role requires US Citizenship and offers opportunities to work on enterprise security incidents within a government program. The ideal candidate will... 
    Senior
    Contract work

    Edgewater Federal Solutions

    Bethesda, MD
    2 days ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services... 
    Senior
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity:Respond to cybersecurity incidents and proactively prevent the reoccurrence of these incidents. Apply specific functional knowledge to resolve cybersecurity incidents. Analyze or contribute to solutions to a variety of problems... 
    Senior
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    5 hours ago
  •  ...Defense in Washington, DC is seeking a Digital Forensics and Incident Analyst to support the Threat Analysis & Investigations function....  ...incidents to mitigate vulnerabilities in enterprise systems. Responsibilities span analyzing logs, collecting artifacts, performing... 
    Senior

    Agile Defense

    Washington DC
    8 hours ago
  •  ...has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission‑critical government program. As part of the Security Operations Center, you... 
    Senior
    Permanent employment

    Tetrad Digital Integrity

    Arlington, VA
    1 day ago
  • $131.3k - $237.35k

     ...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... 
    Senior
    Flexible hours

    Leidos

    Arlington, VA
    2 days ago
  • $132.48k - $336.96k

    Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC) is responsible...  ...response efforts to enterprise-wide incidents, including post-incident root-cause analysis...  ...critical security incidents. As an IR Analyst, you will belong to a team of strong... 
    Senior
    Temporary work
    Shift work

    TikTok USDS Joint Venture

    Washington DC
    5 days ago
  • $131.3k - $237.35k

    Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program... 
    Senior

    Leidos

    Arlington, VA
    2 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter expert in incident response, requiring strong analytical skills and an active TS/SCI clearance. Candidates should have over 8 years... 
    Senior

    ARGO Cyber Systems

    Arlington, VA
    3 days ago
  • Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency engagements...  ...enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret... 
    Senior
    Work at office

    Cortek, Inc.

    Washington DC
    3 days ago
  • $60k - $85k

    Overview Edgewater is seeking an Incident Response Analystto provide support to an Edgewater Federal government contract. ** Due to the nature...  ...is required ** Responsibilities As an Incident Response Analyst, you and team will be responsible for: Manning a 24x7x365 cybersecurity... 
    Contract work
    Flexible hours

    Edgewater Federal Solutions

    Bethesda, MD
    3 days ago
  • $85k - $110k

    Overview Edgewater Federal Solutions is currently seeking a Tier II Incident Response Analyst to provide support to an Edgewater Federal government contract. **Due to the nature of the contract and work, US Citizenship is a requirement** Responsibilities Understand Enterprise... 
    Contract work

    Edgewater Federal Solutions

    Bethesda, MD
    3 days ago
  • $90k - $120k

     ...firsthand. Potomac Haven is looking for a Senior Analyst with real, hands‑on experience in the...  ...assault and harassment prevention and response field to support the National Science Foundation...  ..., sexual harassment and stalking incidents and is responsible for overseeing... 
    Senior
    Temporary work
    Work at office
    Remote work

    Potomac Haven, Inc.

    Alexandria, VA
    2 days ago
  • $150k - $180k

     ...expertise and support to maximize cyber fusion across the Client’s SOC. The role requires 8+ years in cybersecurity threat hunting or incident response, with strong SIEM, EDR, and malware analysis skills, and eligibility for US citizenship. On-site in Frederick, MD, with... 
    Senior

    Edgewater Federal Solutions

    Bethesda, MD
    2 days ago
  •  ...Anduril Industries is seeking a Senior SecOps Analyst to monitor, detect, and respond to threats across endpoints, cloud, and networks. You’ll lead incident responses and drive detection improvements with engineering teams. You will conduct threat hunting, model threats... 

    Anduril Industries

    Washington DC
    2 days ago
  • $101.53k - $132.69k

     ...Position Description We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security program. This role combines hands‑on cyber and incident lifecycle... 
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises Inc

    Alexandria, VA
    8 hours ago
  • cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    2 days ago
  • $140k - $184k

     ...to provide advanced DFIR expertise across investigations, analysis, and remediation of complex cybersecurity incidents. The role involves leading SOC response, performing malware analysis, and preserving evidentiary-quality documentation for investigators. A Bachelor's... 

    ActioNet

    Rockville, MD
    8 hours ago
  • $87.1k - $157.45k

     ...Leidos is seeking an experienced Incident Response Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program . Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense... 
    Full time
    Contract work
    Work at office
    Immediate start

    Leidos

    Alexandria, VA
    1 day ago
  •  ...Accenture Federal Services in Arlington, VA, seeks a Cybersecurity Incident Response Triage Analyst to join the CIRT team within the CISO organization. The role involves monitoring, triaging, and analyzing alerts from SIEM and security sensors, coordinating with incident... 

    Accenture Federal Services Careers Marketplace

    Arlington, VA
    4 days ago
  • $94k - $127k

     ...Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join... 

    VMD Corp

    Alexandria, VA
    2 days ago
  • Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Location: Alexandria, VA and Seaside, CA. Responsibilities... 

    Xcelerate-Solutions-5

    Alexandria, VA
    5 days ago
  • Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join the Department of State (DOS) Diplomatic Security Cyber Mission program in Beltsville, Maryland. The role operates on an evening shift (1400-2200 EST, Tue-Sat) and focuses on detecting... 
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    4 days ago
  • Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity... 
    Remote work
    Visa sponsorship

    Breeze End Technology, LLC

    Alexandria, VA
    5 days ago
  • A cybersecurity firm is seeking a qualified Cybersecurity Service Provider/Incident Response Analyst in Arlington, VA. The ideal candidate will provide on-site support for DoD customers, possessing technical skills in intrusion detection and prevention, and will have a... 

    Bespoke Corps LLC

    Arlington, VA
    3 days ago
  • $80k - $128k

    Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber... 
    Interim role
    Internship
    Work at office
    Local area
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    4 days ago
  • Nightwing Group is seeking a Business Analyst to support onsite incident response for U.S. Government agencies experiencing cyber-attacks. The role involves gathering requirements, stakeholder coordination, and ensuring technology integration aligns with operational priorities... 

    Nightwing Group

    Arlington, VA
    4 days ago
  •  ...weekend and holiday workdays. Responsibilities Provide on-site CSSP/IR...  ...detailed triage of CSSP/IR incidents including implementing intrusion...  ...recommended mitigations suitable for senior leaders and technical...  ...PROVIDER/INCIDENT RESPONSE ANALYST #J-18808-Ljbffr Bespoke... 
    Work at office
    Monday to Friday
    Weekend work

    Bespoke Corps LLC

    Arlington, VA
    5 days ago
  • Xcelerate Solutions seeks an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management for DHRA. The role requires an Active Secret clearance and collaboration with government stakeholders across multiple environments. Minimum... 

    VMD Corp

    Alexandria, VA
    5 days ago
  •  ...VA seeks a Security Operations Center Analyst to monitor, detect, and respond to cyber...  ...networks. The role includes SIEM monitoring, incident handling, log analysis, and...  ...to contain and recover from incidents. Responsibilities include monitoring devices, performing... 

    NJVC

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Analyst, Senior. Be the first to apply!