Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Response Analyst SME

$131.3k - $237.35k

Leidos

Description

This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations.

In this role, you will work alongside government partners, engineers, and other industry teammates to translate operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning, execution, and continuous improvement-helping ensure capabilities are delivered efficiently, aligned to mission priorities, and positioned for sustained success.

This position offers the opportunity to work on a high-visibility, enterprise program at the intersection of data, analytics, and emerging AI technologies. Ideal candidates are motivated by mission impact, comfortable operating in complex stakeholder environments, and interested in building deep domain expertise while delivering capabilities with real-world national security outcomes.

Primary Responsibilities

  • Monitor, detect, analyze, mitigate, and respond to cyber threats across the enterprise.

  • Lead incident detection and response activities at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP).

  • Coordinate efforts through the enterprise incident tracking system and established communication channels.

  • Provide expert investigative support for large-scale and complex security incidents, including those lacking clear technical indicators.

  • Work with cybersecurity, network, and operations teams to ensure timely containment, remediation, and reporting of all incidents.

  • Implement and operate access management mechanisms to control user access to data, tools, and services, including automation of standard access requests and support for VIPs.

  • Collect, analyze, and assess user and customer analytic data to inform system changes and improvements.

  • Design, implement, and improve the customer experience with the User Support Desk, including automation of access requests and integration of modern tools

Basic Qualifications

  • Top Secret with SCI eligibility security clearance

  • Bachelor degree or higher from an accredited college or university OR Offerings listed in DoD 8140 Training Repository ORGCFA or GCIA

  • Minimum of 12 years of experience in cybersecurity incident response.

  • Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO).

  • Proficiency in using cybersecurity tools and technologies for monitoring and incident response.

  • Experience with network security monitoring, intrusion detection systems, and security information and event management (SIEM) tools.

  • Excellent analytical and problem-solving skills.

  • Strong communication and coordination skills to work effectively with various teams.

Preferred Qualifications

  • Active TS/SCI

  • Master's degree in Cybersecurity or a related field.

  • Certifications such as CISSP, CISM, CEH, or GIAC.

  • Experience with cloud security and familiarity with AWS GovCloud/NIPRNet, SC2S AWS Secret Region Cloud for SIPRNet, and C2S AWS Cloud for JWICS environments.

  • Knowledge of automation tools and techniques, including AI chatbots and Robotic Process Automation (RPA).

  • Experience in designing and implementing disaster recovery and continuity of operations plans.

  • Familiarity with customer relationship management and use case intake processes.

#ADVANA

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:

March 30, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit .

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at .

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io .

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( .

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

REQNUMBER: R-00179560

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Response Analyst SME in Alexandria, VA vacancy
  •  ...Business Computers Management Consulting Group Llc is seeking an Enterprise Architect SME to support U.S. Government missions by providing incident response and cyber security solutions. The ideal candidate will have over 12 years of experience in systems engineering... 
    Cyber

    Business Computers Management Consulting Group

    Arlington, VA
    2 days ago
  • A technology firm in Virginia is seeking an experienced SME Cyber Incident Response Analyst to join its team. This role involves monitoring and responding to cyber threats, leading incident response activities, and providing expert investigative support. Ideal candidates... 
    Cyber

    Via Logic LLC

    Alexandria, VA
    2 days ago
  •  ...better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD... 
    Cyber

    Koitecc Solutions

    Alexandria, VA
    5 days ago
  •  ...Koitecc Solutions in Alexandria, Virginia, seeks a seasoned SME Cyber Incident Response Analyst to support a high-visibility program aimed at enhancing data and analytics capabilities across the Department of War. The ideal candidate will have strong cybersecurity incident... 
    Cyber

    Koitecc Solutions

    Alexandria, VA
    5 days ago
  •  ...A leading cybersecurity firm is looking for Cyber Eviction Analysts in Arlington, Virginia. This role involves incident response, analyzing threats, and advising technical personnel on countermeasures. Candidates must have active TS/SCI clearance, a relevant degree, and... 
    Cyber

    NewGen Technologies (Maryland)

    Arlington, VA
    2 days ago
  • $131.3k - $237.35k

    Leidos is seeking an experienced SME Incident Response Analyst in Alexandria, VA. This role involves designing and executing cybersecurity incident response protocols, collaborating closely with government teams to translate strategic requirements into scalable solutions... 
    Cyber

    Leidos

    Alexandria, VA
    2 days ago
  •  ...Solutions Technology Inc. (STI) is seeking a Cyber Eviction Analyst in Arlington, Virginia. This role entails proactive threat hunting, incident response, and technical analysis focusing on complex cybersecurity challenges. Candidates must have 8+ years of relevant experience... 
    Cyber

    Solutions Technology, Inc.

    Arlington, VA
    2 days ago
  •  ...is seeking a Host Forensics Analyst to support critical missions related to cybersecurity incidents. The position requires at least...  ...of relevant experience in cyber forensic investigations and an active TS/SCI clearance. Responsibilities include leading forensic teams... 
    Cyber

    Business Computers Management Consulting Group

    Arlington, VA
    4 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject matter...  ...$125,000 is offered, alongside an opportunity to work on critical national security missions. #J-18808-Ljbffr ARGO Cyber Systems
    Cyber

    ARGO Cyber Systems

    Arlington, VA
    4 days ago
  • A leading cybersecurity firm is seeking a Cyber Eviction Analyst to join their incident response team in Arlington, Virginia. The role involves conducting proactive threat hunting, analyzing security breaches, and communicating complex findings to stakeholders. Candidates... 
    Cyber

    Solutions Technology, Inc / STI Health & Wellness

    Arlington, VA
    5 days ago
  • $131.3k - $237.35k

     ..., better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    4 days ago
  •  ...Full-Time Description RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community...  ...contract award. Key Responsibilities Support cyber incident response activities including analysis,... 
    Cyber
    Full time
    Contract work
    Part time
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    6 days ago
  • $131.3k - $237.35k

    Leidos is seeking a Senior Incident Response Analyst to support the DHS CISA Program in Arlington, Virginia. The position involves coordinating investigations and responses to cyber incidents, developing Incident Response processes, and utilizing advanced analytical skills... 
    Cyber

    Leidos

    Arlington, VA
    1 day ago
  • Nightwing Group is seeking a Business Analyst to support onsite incident response for U.S. Government agencies experiencing cyber-attacks. The role involves gathering requirements, stakeholder coordination, and ensuring technology integration aligns with operational priorities... 
    Cyber

    Nightwing Group

    Arlington, VA
    5 days ago
  • Description RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community and Family Policy...  ...upon contract award. Key Responsibilities Support cyber incident response activities including analysis, documentation... 
    Cyber
    Contract work
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    3 days ago
  • Rividium Inc is looking for an Incident Response Analyst to join the MODES III team in Alexandria, Virginia. The role involves supporting IT, Cybersecurity...  ...personnel and their families. Key responsibilities include cyber incident response, triage, and coordinating with SOC teams... 
    Cyber
    Shift work

    Rividium Inc

    Alexandria, VA
    2 days ago
  • $131.3k - $237.35k

     ...and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland...  ...to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The... 
    Cyber
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  • $131.3k - $237.35k

     ...customers through scale and repeatability. This role is a Senior Incident Response Analyst supporting the DHS CISA Program within the Department of...  ...and analyze events and data to determine scope of cyber incidents Acquire and analyze endpoint and network artifacts... 
    Cyber
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  • $86k - $138k

    Cyber Incident Response Analyst with OT/ICS/SCADA / travel & active TS job at Peraton. Arlington, VA. Program Overview About The Role Peraton is currently seeking an experienced Incident Response Analyst with OT/ICS/SCADA experience for its Federal Strategic Cyber program... 
    Cyber
    Contract work
    Temporary work
    Internship
    Shift work
    1 day per week

    Peraton

    Arlington, VA
    1 day ago
  • Job Title: Incident Response SME Location: Onsite - Washington DC Experience: 10+ Years Work authorization: US Citizen Job Description Seeking...  ...response planning and operations Security operations and cyber incident handling NIST 800‑61 expertise Policy and... 
    Cyber

    Softthink Solutions

    Washington DC
    4 days ago
  • A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC... 
    Cyber

    Tyto Athene, LLC

    Washington DC
    5 days ago
  • A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes...  ...work is permitted with occasional on-site duties in the Washington, D.C. area. #J-18808-Ljbffr Cyber Synergy Consulting Group
    Cyber
    Remote job

    Cyber Synergy Consulting Group

    Washington DC
    5 days ago
  •  ...Matter Expert - Cybersecurity in McLean, Virginia. Candidates must hold a TS/SCI clearance with Poly. Responsibilities include improving Cyber Defense operations and incident response, along with maximizing tool efficiency. A range of educational backgrounds is required... 
    Cyber

    DCCA

    Mc Lean, VA
    4 days ago
  • $100k - $145k

     ...Dark Wolf Solutions is seeking a Defensive Cyber Operations Analyst in Washington, DC. This role involves continuous...  ...identify and respond to cyber threats, with responsibilities including vulnerability management, incident response, and drafting documentation. The ideal... 
    Cyber

    Dark Wolf

    Washington DC
    3 days ago
  •  ...Ernst & Young Oman is looking for a Cyber Triage and Forensics (CTF) Incident Analyst to be a senior member of the technical team handling security incidents. Responsibilities include performing digital forensic analysis, responding to security incidents, and developing... 
    Cyber
    Flexible hours

    Ernst & Young Oman

    Washington DC
    2 days ago
  •  ...Valid8 Financial, Inc. is urgently seeking SOC Analysts for positions at the Drug Enforcement Administration...  ...clearance and at least 3 years of experience in Cyber Security. Responsibilities include monitoring incidents, investigating alerts, and coordinating responses... 
    Cyber
    Immediate start

    VALID8 Financial

    Fairfax, VA
    2 days ago
  • $110k - $170k

     ...Piper Solutions is looking for a SOC Analyst in McLean, VA to support a critical...  ...ideal candidate will have experience in cyber threat detection and incident analysis and must possess an active TS/SCI Full Scope Polygraph. Responsibilities include detecting cyber-attacks,... 
    Cyber

    Zachary Piper Solutions

    McLean, VA
    2 days ago
  • Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment...  ...work permitted with reliable connectivity and camera‑enabled participation. #J-18808-Ljbffr Cyber Synergy Consulting Group
    Cyber
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Consulting Group

    Washington DC
    5 days ago
  • $60 per hour

    Tyto Athene is searching for a Part‑Time Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts...  ...our tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the... 
    Cyber
    Part time
    Shift work
    Night shift
    Weekend work
    Day shift

    Tyto Athene, LLC

    Washington DC
    5 days ago
  • $127k - $140k

     ...protecting organizations from ever-increasing cyber threats 24/7/365. Powered by Deepwatch...  ...comprehensive detection and automated response to cyber threats together with...  ...the Manager of Adversary Response, the Incident Response Analyst operates on the front lines of active... 
    Cyber
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Home office
    Flexible hours

    Deepwatch

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Response Analyst SME. Be the first to apply!