Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Lead

$140k - $150k

ECS Federal

Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a senior-level Incident Response Lead to join our advanced security operations team which is a specialized group focused on the most complex and high-priority cybersecurity challenges facing the enterprise. This is a Tier 3 position, meaning you are the last line of defense and the highest level of technical escalation within the security operations function.Day to day, you will operate as a senior security operations specialist consisting of hunting threats, developing detection mechanisms, refining processes, and elevating the capabilities of the team around you. When an incident strikes, you step forward. You will be called upon to lead incident response efforts end to end: coordinating containment, driving remediation, communicating timelines, and ensuring the organization emerges from each event with stronger defenses than it had before.Salary Range: $140,000 - $150,000General Description of BenefitsJob RequirementsIncident Response & Threat OperationsProven ability to lead incident response efforts including triage, containment, remediation, and post-incident reportingDeep familiarity with the Cyber Kill Chain, MITRE ATT&CK, Diamond Model of Intrusion Analysis, or equivalent frameworksExperience investigating security incidents, developing timelines, and communicating findings to both technical teams and senior leadershipAbility to perform malware triage, network analysis, and live response as part of incident handlingExperience developing and documenting incident response playbooks, runbooks, and standard operating proceduresThreat Hunting & Detection EngineeringAbility to develop, document, and execute structured hunt plans against enterprise environmentsExperience creating custom detection mechanisms that correlate across multiple log sourcesProficiency in log analysis and security event detection across diverse and complex environmentsAbility to translate hunt findings into actionable detections and repeatable operational processesSecurity OperationsExperience with SIEM platforms, vulnerability scanners, malware analyzers, IDS/IPS systems, and EDR toolsProficiency working across Windows, Linux, and macOS operating systems from a security operations and response perspectiveFamiliarity with cloud security operations across platforms such as AWS, Azure, or GCPAbility to identify new data sources and analysis techniques to improve detection of security eventsExperience with automation platforms and scripting to reduce manual, repetitive tasksLeadership & CollaborationServes as the senior escalation point and subject matter expert for security operations personnelAbility to work with staff to develop a vision and independently lead the implementation of new capabilitiesExperience participating in the development of technical security standards, monitoring standards, and incident investigation proceduresComfortable interacting with executive management to communicate risk and support enterprise-level security decisionsAble to collaborate across teams including networking, systems administration, and technology support partnersA minimum of 6+ years of progressive experience in security operations and incident response is required, with demonstrated experience operating at a senior or Tier 3 analyst level. Candidates who have previously led or co-led incident response efforts in an enterprise environment will be strongly preferred.Job DetailsJob Type: Full-timeCategory: CybersecuritySalaried: Salaried

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Incident Response Lead in Washington DC vacancy
  • $150k - $190.7k

     ...through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates,...  ...and make an impact. Join us!Job Description:The Security Incident Response Orchestration Lead is the senior technical authority responsible for... 
    Suggested
    Full time
    Work at office
    Flexible hours
    Shift work
    Day shift

    Bank of America

    Washington DC
    1 day ago
  •  ...A leading consulting firm is seeking a Security Operations Lead to oversee SOC functions and manage a team of Analysts and Engineers...  ...years of cybersecurity experience with specific expertise in incident response, threat hunting, and SIEM technologies like Splunk and... 
    Suggested

    Accenture

    Washington DC
    5 days ago
  •  ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor’... 
    Suggested

    EmergencyMD

    Washington DC
    1 day ago
  • $100k - $120k

     ...Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity... 
    Suggested

    Bering Straits Native Corporation

    Washington DC
    4 days ago
  •  ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data... 
    Suggested
    Contract work

    ShorePoint Inc

    Washington DC
    5 days ago
  •  ...A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding... 

    Nightwing

    Arlington, VA
    4 days ago
  • $135k - $216k

     ...extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise...  ...The Role Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Shift Lead to join Peratons' Federal Strategic Cyber... 
    Contract work
    Temporary work
    Work at office
    Local area
    All shifts
    Shift work
    Afternoon shift

    Peraton

    Beltsville, MD
    5 days ago
  •  ...highest form of third-party validation. is searching for a Rapid Response Team Lead to oversee the integrity, security, and efficiency of the...  ...before they occur.Communicate plans and responses to incidents to customer leadership, providing them confidence that cybersecurity... 
    Full time
    Contract work
    Local area

    ValidaTek

    Arlington, VA
    2 days ago
  •  ...Geospatial & Cloud Analytics (GCA) is seeking a mission-driven Rapid Response Team Lead to support the high-priority, time-sensitive operational...  ...activities, VIP support in GO/Flag quarters, and immediate incident response across critical infrastructure. The ideal... 
    Full time
    Contract work
    Immediate start
    Worldwide
    Night shift

    Geospatial And Cloud Analytics Inc

    Washington DC
    19 days ago
  • $138k - $209k

     ...on projects that matter, alongside industry-leading experts, in an environment that fosters innovation...  ...support the unique needs of our client as a Incident Management Lead. Project Summary The Incident Management Lead is responsible for directing enterprise-wide incident... 
    Contract work
    Temporary work

    Applied Information Sciences

    Alexandria, VA
    5 days ago
  •  ...Overview Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client. The Lead Incident...  ...the central point of accountability for day-to-day incident response operations, providing leadership and direction in high-... 
    Contract work
    Flexible hours

    EmergencyMD

    Washington DC
    1 day ago
  •  ...Washington, DC Position Overview We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security...  ...will have extensive experience in risk management, incident response, and vulnerability assessment within a government contract setting... 
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions

    Washington DC
    5 days ago
  •  ...Description Job Description Job TitleLead Cyber Defense Incident ResponderClearanceTS/SCI (active, required)...  .../SCI) and Special Access Program (SAP) networks.Duties and Responsibilities- Lead a small team of advanced and mid-level security analysts to... 
    Weekend work

    S2i2 Inc

    Arlington, VA
    6 days ago
  • $112k - $179k

    Responsibilities Peraton is now Hiring: TASO Team Lead - Federal Strategic Cyber Programs.Location: Arlington, VAPosition Overview:Peraton is seeking a highly...  ...hunting, malware analysis, digital forensics, and incident response within Department networks.Key... 
    Contract work
    Immediate start
    Shift work

    Peraton Corporation

    Arlington, VA
    4 days ago
  • $111.5k - $150k

     ...System which makes everything possible.The Site Security Lead- Bothell is responsible forCollaborating with internal teams to investigate, audit...  ...compliance to standards, policies, and procedures; conducting incident response analyses.The essential requirements of the job... 
    Hourly pay
    Full time
    Local area
    Immediate start
    Remote work

    Danaher Corporation

    Washington DC
    10 hours ago
  • $86.6k - $181.8k

    Job Title: Team Lead- Network Operations - Tier 2Job Category: Information TechnologyTime...  ...and streaming services. Responsibilities:As a Team Lead of our Tier 2 Network Operations...  ...network components to research errors, incidents, problems and to perform incident analysis... 
    Contract work
    Work experience placement
    Remote work
    Flexible hours

    CACI International

    Washington DC
    2 days ago
  •  ...seeking a technical Security Tools Team Lead to join our dynamic team in supporting...  ...directly to the Security Operations Manager.Responsibilities:Lead a team of security tool...  ...instructions, change management requests, incident tickets, and email communications.Drive... 
    Work experience placement
    Work at office
    2 days per week

    Science Applications International Corporation

    Washington DC
    4 days ago
  • About DMIDMI is a leading provider of digital services and technology solutions, headquartered...  ...distributed sites and manages the full incident lifecycle across LAN, WAN, and cloud...  ...24x7x365 availability.Duties and Responsibilities:Monitor and maintain LAN/WAN performance... 
    Monday to Friday

    DMI Mobile Enterprise Solutions

    Washington DC
    3 days ago
  • $108.01k - $183.61k

     ...a contract award. ICF is seeking an IAM Lead to architect, implement, and operate the...  ...and anomalies. Respond to identity-related incidents including account takeover, phishing, access...  ...Experience supporting identity incident response including account takeover, phishing, and... 
    Full time
    Contract work
    For contractors
    Work experience placement
    Work at office
    Remote work

    ICF

    Washington DC
    4 days ago
  • $150k - $180k

     ...hiring for a Vulnerability Management Team Lead to provide support to a Federal...  ...mitigation, active defenses, and automated responses. The VM team’s portfolio of activities includes...  ...Threat Intelligence, Penetration testing, & Incident Response)Deep knowledge and experience of... 
    Contract work
    Work experience placement
    Currently hiring
    Work at office
    Remote work

    Govcio

    Bethesda, MD
    1 day ago
  • $94k - $151.8k

     ...guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us...  ...searching for top talent for Cybersecurity Lead, You will be the Business Information Security...  ...Operations Center (SOC) with security incident investigation activities; work closely... 
    Full time
    Local area
    Immediate start
    Remote work

    Johnson & Johnson

    Washington DC
    4 days ago
  •  ...?**Position Overview:**The Ground Ramp Lead oversees daily ramp operations, ensuring...  ...for the best in the industry.**Job Responsibilities:*** Lead and supervise ramp agents in the...  ...security.* Report any hazards, near misses, incidents, accidents, or dangerous occurrences to... 
    Full time
    Part time
    Immediate start

    lliance Ground International

    Arlington, VA
    5 days ago
  •  ...Position Title SOC Operations Lead / Managed Detection & Response (MDR) Lead Position Overview The SOC Operations Lead will oversee 24x7x3...  ...enterprise environment. The Lead will direct SOC analysts, incident responders, and MDR personnel responsible for security... 
    Full time

    cFocus Software Incorporated

    Washington DC
    24 days ago
  •  ...Do:The Fraud Analytics Senior Consultant Lead will support highly specialized fraud analytics...  ..., deep forensics, fraud detection, incident support, data integration, and continuous...  ..., stakeholder coordination, and incident response environments. Develop practical alternatives... 
    Full time
    For contractors
    Flexible hours

    Guidehouse

    Arlington, VA
    1 day ago
  • About DMIDMI is a leading provider of digital services and technology solutions, headquartered...  ...System upgrade initiative Duties and Responsibilities:Support program and project management...  ...bus, and service vehicle maintenance; incident management; and facility management.... 
    Temporary work

    DMI Mobile Enterprise Solutions

    Washington DC
    3 days ago
  • $132.5k - $221.3k

     ...ResponsibilitiesAs The Security Administration Team Lead, you will:Provide disciplined...  ...-volume security operations.Essential Responsibilities:Process and track administrative...  ...reporting, and administrative support for incidents, waivers, and accreditations when applicable... 
    For contractors
    Work experience placement

    AMERICAN SYSTEMS

    Arlington, VA
    3 days ago
  • $90.3k - $189.6k

    Job Title: Lead Senior Information System Security OfficerJob Category: Information...  ...security documentation is kept up to date.Responsibilities:Primary Responsibilities:The Lead...  ...developing and testing Contingency Plans and Incident Response Plans to ensure business... 
    Contract work
    Work experience placement
    Work at office
    Flexible hours

    CACI International

    Washington DC
    1 day ago
  •  ...Public TrustWhat You Will Do:The Principal II Fraud Analytics Lead will provide strategic technical leadership for fraud...  ...analytics, data science, data engineering, predictive analytics, incident response, investigations, platform advisory, or related technical delivery... 
    Full time
    For contractors
    Flexible hours

    Guidehouse

    Arlington, VA
    3 days ago
  • $150k - $170k

     ...Zachary Piper Solutions is seeking a SOC Lead to support a company focused on cybersecurity operations, engineering, and compliance...  ...oversee Security Operations Center (SOC) activities, lead incident response efforts, and mentor a team of cybersecurity professionals... 

    Zachary Piper Solutions

    Washington DC
    2 days ago
  •  ...Security is a senior security executive responsible for the strategic leadership, design, and...  ...& Behavioral Threat Assessment Lead enterprise-wide Workplace Violence Prevention...  ...visitors, and third parties. Investigations & Incident Management Lead or oversee complex... 
    Local area

    Fresenius Medical Care

    Washington DC
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Lead. Be the first to apply!