Incident Response Analyst
Abile Group, Inc.
Abile Group has an exciting and challenging opportunity for a CSOS Analyst - Tier 2 on a contract providing Network and Cybersecurity services supporting an Intelligence Community customer. All the personnel on the team will work together to support transport and cybersecurity information technology (IT) services on multiple networks and security domains, at multiple locations worldwide, inclusive of new facilities and building constructions to support the IC mission. The right candidate will possess the below skills and qualifications and be ready to handle all responsibilities independently and professionally. Coordinates and implements tasks, performing analysis, and building/documenting response activities required during cyber security incident response, to include but not limited to actions such as implementing containment measures, IP blocks, domain blocks, and disabling user accounts on direction of the Government. Coordinates with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), in addition to other law enforcement and counter intelligence personnel as required to perform advanced investigation and triage of incidents. Collaborates with appropriate authorities in the production of security incident reports. Categorizes incidents and events. Coordinates with other contracts, organizations, activities, and other services as appropriate to ensure incidents are properly reported, contained, and eradicated. Coordinates with other contracts, organizations, activities, and other services as appropriate to de-conflict blue / red team activity with open incidents/events. Coordinates with other contracts, organizations, activities, and services to ensure recovery from an incident/event. Builds timelines, documents, briefings, and other products as required to inform stakeholders of incident response actions, analysis, and the impact of both adversary activity and blue force response actions. Documents actions taken and analysis in the authorized ticketing system to a level of detail where the actions taken and analysis are capable of being systematically reconstructed. Develops and when approved by the Government generates and updates reports in the Joint Incident Management System (JIMS), Incident Case Management System (ICMS), and/or other authorized reporting systems as directed. Develops, maintains, sustains, and when properly authorized by the Government executes custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents/events. Performs digital media analysis on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis. Develops and identifies indicators of compromise to send to Cybersecurity stakeholders and other Contract Services. Provides adversary attribution. Performs malware analysis and signature development. Provides input to and coordinates with all applicable stakeholders to develop and deliver the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report. Serves as C-IRT members as required and serve under the direct control of, and take direction from, the Government C-IRT Commander. Develops and coordinates courses of action with various Government and contract stakeholders, and when properly authorized by the Government, execute Defensive Cyberspace Operations-Internal Defensive Measures on behalf of the networks and systems. Performs digital media analysis and malware reverse engineering on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis. When properly authorized by the Government, execute custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents/events. Develops, documents, and provides to the Government incident investigation reports which include sufficient information to document the entire lifecycle of the incident and the response, including but not limited to adversary and friendly forces activity, host and network analysis, timelines, and recommendations for corrective actions, recommendations for new Tactics, Techniques, and Procedures (TTP) and other recommendations as appropriate, within 30 days of C-IRT stand-down. Conducts Quality Control reviews of a percentage closed CSOC Tier 2 tickets each week to ensure proper analysis, categorization, documentation, and notification. Clearance Required TS/SCI with ability to obtain a CI Poly. Degree and Years of Experience Bachelor’s degree or equivalent experience. Minimum 4 years of related work experience. Required Certifications All Contractor personnel performing CSOC Tier 3 services shall have a certification that is compliant with DoD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Analyst Certification. Desired Skills/Certifications 5+ years of related CSOC tier 2 or 3 work experience. IAT Level III. Required Skills Ability to work 1 or more of 5 work shifts. Abile Group, founded in July 2004 to support the Intelligence Community and its contractors across Enterprise Analytics, IT & Systems Engineering, and Program & Project Management, merged with Valiant Solutions in January 2026 - an established provider of cybersecurity technologies and services for Federal Agencies since 2005. Together, this partnership creates a stronger, more integrated cybersecurity organization with expanded opportunities for employees, deeper technical collaboration, and a unified mission. With significant experience serving the Federal Government, we remain dedicated to our employees and clients and seek high‑performing professionals who excel at providing guidance, developing solutions, and delivering implementation support that blends industry best practices with client expertise and Abile’s broad technical capabilities. Abile is committed to hiring the most qualified and best fit person for the job - always has, always will. Anyone requiring reasonable accommodations should email View email address on click.appcast.io with requested details. A member of the HR team will respond to your request within 2 business days. Please review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities. #J-18808-Ljbffr
- ...been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in support of a mission-critical government program. As part of the Security Operations Center, you will...Suggested
- ...Defense in Washington, DC is seeking a Digital Forensics and Incident Analyst to support the Threat Analysis & Investigations function.... ...incidents to mitigate vulnerabilities in enterprise systems. Responsibilities span analyzing logs, collecting artifacts, performing...Suggested
$131.3k - $237.35k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...SuggestedFlexible hours- ...Cortek, Inc. is seeking a Senior Analyst-CBRN in Washington, DC, to support the Office of WMD Response and Planning. This position involves coordinating interagency... ...and enhancing foreign capabilities against CBRN incidents. Applicants must have an active Top-Secret...SuggestedWork at office
$112.8k - $257k
...skills to guide teams as they solve some of our clients’ most complex problems—and find solutions that keep our nation safe. As an Incident Response SME, you’ll bring your strategic planning, tactical response, risk mitigation, and defense mission expertise to work alongside...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...Incident Response Analyst (Full‑Time/Part‑Time) RiVidium is seeking an Incident Response Analyst to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations – Core Operations and...Full timeContract workPart timeShift workNight shift
- ...Agile Defense in Washington, DC is seeking a Digital Forensics and Incident Analyst to join our Threat Analysis & Investigations team. The role focuses on analyzing digital evidence, incident response, and providing Tier 2/3 support to the enterprise SOC within a TS environment...
$101.53k - $132.69k
...Position Description We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security program. This role combines hands‑on cyber and incident lifecycle...Permanent employmentContract workTemporary workWork at officeLocal area- Qualifications At least 2 years of incident response experience Experience with Crowdstrike and Web Application Firewall (WAF) Proficient with at least one scripting language (Python, Java, PowerShell, Bash) Cloud experience is a plus Responsibilities Address cybersecurity...Remote workVisa sponsorship
- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
$83.5k - $87.5k
...Overview The Cyber Incident Response Analyst role is pivotal in reinforcing the client’s cybersecurity framework by serving as the primary entry point for all external communications regarding cybersecurity incidents and related information requests. Operating within the...Temporary workWork at officeLocal areaFlexible hoursShift work- ...rotational weekend and holiday workdays. Responsibilities Provide on-site CSSP/IR support to a... .... Providing detailed triage of CSSP/IR incidents including implementing intrusion detection... ...resume). CYBERSECURITY SERVICE PROVIDER/INCIDENT RESPONSE ANALYST #J-18808-Ljbffr...Work at officeMonday to FridayWeekend work
- ...Cayuse is hiring a Cyber Incident Response Analyst in Washington, DC. This role is critical for reinforcing the client’s cybersecurity framework, managing communications about incidents, and engaging in operational coordination. The Analyst will be expected to provide...
- ...Cyber Incident Response Analyst This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization...
$110k - $130k
...produce meaningful results. This is a contingent position based on contract win. SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity operations by monitoring, analyzing, investigating, and responding to security incidents across enterprise...Contract workRemote work- ...Job Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or eligibility to obtain) We are...Full timeContract workRemote workMonday to Friday
$83.5k - $87.5k
Cayuse Holdings is seeking a Cyber Incident Response Analyst in Washington, DC to enhance the cybersecurity framework. This role involves case management and coordination of cybersecurity incidents while ensuring exceptional customer service. The ideal candidate will hold...- ...Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain...
- We are seeking a motivated Security Analyst (Incident Response) to support enterprise cybersecurity operations in a fast-paced federal environment. The successful candidate will help protect mission-critical systems while collaborating with technical and operational teams...Full time
- ...diversity. The Enterprise Operational Resilience team is looking to hire an Incident / Crisis Management Lead to help drive the continuous enhancement of the crisis event management response structure and play a lead role in facilitating and coordinating large scale...Temporary workLocal areaVisa sponsorshipWork visaFlexible hours
- ...We are seeking a skilled Incident Response Specialist to join our Cybersecurity Operations team. In this role, you will be responsible for... ...You will collaborate with Security Operations Center (SOC) analysts, threat intelligence teams, cloud engineers, IT operations,...
- ...customers, serving as a single point of intake for corporate physical security issues worldwide. The BAC is looking for talented incident response specialists to support our rapidly growing GSOC program. A successful candidate will have a strong track record of managing...WorldwideFlexible hoursShift workAfternoon shift
$100k - $120k
...guidelines and regulations. About this position: Sr. Cybersecurity Incident Response Specialist Location – Washington, DC The Essential Duties... ...briefings. Ability to lead investigations, mentor junior analysts, and collaborate with cross‑functional teams. Applicants...Full timeContract workWork at officeLocal area- ...Amazon Corporate Security’s BAC seeks an Incident Response Coordination Specialist to manage physical security incidents worldwide, draft communications, and coordinate with response stakeholders in a 24/7 GSOC environment. The role requires strong written reporting and...WorldwideShift workAfternoon shift
- ...Bridge Core (BCore) is seeking a Cybersecurity Analyst in McLean, VA. The ideal candidate should have at least 1 year of experience... ...roles and possess an active TS/SCI clearance with polygraph. Responsibilities include utilizing SIEM systems for threat analysis,...Shift workAfternoon shift
$139.1k - $251.45k
...exciting opportunity for a Sr SME Management Analyst in our Intel Sector Analysis... ...Analysis Solutions Business Area! Responsibilities include : Develop written reports... ...your local law enforcement and report the incident to the . Commitment to Non-...Local areaImmediate startFlexible hours- ...Job Description Job Description Incident Response Expert / Cyber Eviction Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is an innovative minority-owned solutions and services company specializing in AI & Automation...
- ...Syms Strategic Group (SSG) is seeking a talented Data Analyst/Data Engineer Location: Hybrid remote Department: Federal... ...Veterans are highly encouraged to apply! Essential Duties and Responsibilities Support data inventory, discovery, transformation,...Full timeContract workRemote work
- ...CONTINGENT UPON AWARD The Information Security Analyst provides expert‑level support for... ...(USCG) requirements. These duties and responsibilities include, but are not limited to the... ...and resolution of information security incidents, violations, compromises, and administrative...Full timeFor contractorsWork at officeLocal areaRelocation
- ...Description Job Title: Information Security Operations Center - Incident Handler III Location: Washington, DC Duration: 12+ Months... ...Any two certifications would be a plus (CEH, Security+, CCNA) Response activities, including containment, remediation, and root cause...Shift workRotating shiftWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Analyst. Be the first to apply!
- client delivery analyst Springfield, VA
- transportation analyst Springfield, VA
- growth analyst Springfield, VA
- development analyst Springfield, VA
- merchandising analyst Springfield, VA
- analyst sales operations Springfield, VA
- consulting analyst Springfield, VA
- contracts analyst Springfield, VA
- remote epic analyst Springfield, VA
- analyst market research Springfield, VA


