Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Responder / Malware Analyst (CSOC)

$87k - $95k

RISA

Job Description

Job Description

Incident Responder / Malware Analyst (CSOC Tier 3)

Cyber Security Operations Specialist III - CSOC Tier 3

Location: Springfield, VA - on site

Time Type: Full time, Exempt

Clearance Required to Start: Active TS/SCI (U.S. citizenship required)

Additional Requirement: Must be able to obtain and maintain a Government polygraph (post-hire requirement)

Schedule: Supports a 24x7x365 incident response operation

Travel: None

Salary Range: $87,000 – $95,000

 

When an incident happens, you are the one who contains it.

RISA is hiring a CSOC Tier 3 analyst for the incident response team defending an Intelligence Community customer's enterprise. This is the top of the escalation chain: containment, eradication, and recovery, plus malware and implant analysis and forensic artifact work. When a Cyber Incident Response Team stands up, you work under the Government CIRT Commander; between incidents, you run the exercises that make the next response better. You will talk to the owner here, not a recruiting queue.

What You Will Do

  • Implement containment measures during incidents - IP and domain blocks, account disablement - at Government direction.
  • Perform digital media analysis on host, server, and network data, including volatile and non-volatile memory.
  • Perform malware analysis and reverse engineering, and develop signatures and indicators of compromise.
  • Categorize incidents, build timelines, and brief stakeholders on adversary activity and response actions.
  • Coordinate with counterintelligence, insider threat, and law enforcement partners on advanced investigation and triage.
  • Develop and, when authorized, run custom scripts and tools to collect and analyze data.
  • Write incident investigation reports covering the full lifecycle of each incident, with corrective and TTP recommendations.
  • Contribute to daily and weekly CSOC reporting, and quality-check a share of closed Tier 2 tickets each week.

What You'll Bring

  • S. citizenship and an active TS/SCI.
  • Ability to successfully obtain and maintain a Government polygraph after hire.
  • Education and experience, per the contract labor category criteria: Bachelor's degree in a field applicable to the position plus 6 years of relevant experience. Equivalents accepted - Master's plus 4, Associate's plus 8, or High School diploma/GED plus 10.
  • DoD 8140.01 / 8570.01-M IAT Level II and CSSP Incident Responder; IAT Level III and CSSP Incident Responder must be held or obtained within six months of start.
  • Hands-on incident response: containment, eradication, and recovery.
  • Host, network, and memory forensics, and malware analysis.
  • Documentation disciplined enough that every action and analysis can be reconstructed from the ticket.

Nice to Have

  • Master's degree.
  • IAT Level III already in hand.

About RISA

Rolston Information Systems Assurance (RISA) is a Service-Disabled Veteran-Owned Small Business that has supported federal defense and intelligence cybersecurity missions for more than seventeen years. We are small on purpose: direct access to leadership, a real say in how the work gets done, and none of the layers that slow large primes down.

Benefits

Medical, dental, and vision insurance; 401(k) and Roth; Paid Time Off; and 11 paid Federal Holidays.

RISA is an Equal Opportunity Employer.

  • Upon receiving an offer of employment, all applicants will be required to do a background check, including a criminal record check and employment/education verification.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Responder / Malware Analyst (CSOC) in Springfield, VA vacancy
  • $120k - $135k

     ...focus has been delivering cyber solutions to effectively manage...  ...! TDI is seeking a Senior Incident Response Analyst to join our team in support...  ..., detect, investigate, and respond to cybersecurity threats...  ...incident detection and response, malware analysis, or computer... 
    Cyber
    Permanent employment
    Contract work
    Remote work
    2 days per week

    tetraddigitalintegrityllc

    Arlington, VA
    3 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program....  ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on...  ...of incident detection and response, malware analysis, or computer forensics All... 
    Cyber
    Flexible hours

    Leidos Inc

    Arlington, VA
    2 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program....  ...monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on...  ...of incident detection and response, malware analysis, or computer forensics.... 
    Cyber
    Local area
    Immediate start
    Remote work
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  •  ...Candidate will provide Expert CSOC Tier 3 services, which is...  ...measures for events and incidents. CSOC Tier 3 services includes malware and implant analysis, and...  ...II and CSSP Incident Responder. Job Duties: Coordinate...  ...required during cyber security incident response... 
    Cyber
    Contract work
    For contractors
    Work at office

    General Dynamics Information Technology

    Springfield, VA
    a month ago
  •  ...and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy...  ...: Provide a wide range of Cyber Intelligence (CI) services to deliver...  ...platforms, EDR tools, threat hunting, malware analysis, and digital forensics.Knowledge... 
    Cyber
    Contract work
    For contractors

    Amentum Services

    Washington DC
    3 days ago
  • $113k - $188.4k

    Position Summary Our Deloitte Cyber team understands the unique challenges and...  ...III on the project, you will: The Incident Responder will execute the client Incident Response...  ...reported to the SOC; performing initial malware analysis and triage support; operating... 
    Cyber
    Local area

    Deloitte

    Rosslyn, VA
    3 days ago
  •  ...Federal is seeking a Lead Incident Responder to fulfill a requirement for...  ...resilience against evolving cyber threats. This position requires...  .... Coordinate with SOC analysts, engineering teams, and federal...  ...Defender). Expertise in malware analysis, reverse... 
    Cyber
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    17 days ago
  • $100k - $125k

    A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject...  ...0 - $125,000 is offered, alongside an opportunity to work on critical national security missions. #J-18808-Ljbffr Argo Cyber Systems
    Cyber

    ARGO Cyber Systems

    Arlington, VA
    3 days ago
  •  ...Operational Resilience team is looking to hire an Incident / Crisis Management Lead to help drive...  ...resilience and can effectively respond and mitigate any potential incidents that...  ...events (e.g., global technology outages, cyber-attacks, geopolitical issues etc). Coordinate... 
    Cyber
    Full time
    Temporary work
    Local area
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    WTW

    Washington DC
    1 day ago
  • $107.9k - $195.05k

     ...sector is seeking a SOC Analyst to join our team in...  ...years of experience of incident handling/response in a...  ...experience (Protect, Detect, Respond and Sustain) within a...  ...Forensics.Experience with malware analysis concepts and...  ...Driven Defense, Cyber Kill Chain methodology,... 
    Cyber
    Full time
    Work experience placement
    Shift work
    Day shift

    Leidos

    Alexandria, VA
    23 hours ago
  • $94k - $127k

    Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy...  ...cybersecurity events and incidents. Respond to incidents affecting NIPR and SIPR...  ...firewall, IDS/IPS, web-security, antispam, malware-prevention, and related enforcement... 

    Xcelerate-Solutions-5

    Alexandria, VA
    5 days ago
  • CSOC Threat Detection Analyst The candidate will support the mission of the Threat Intelligence Unit by analyzing and tracking adversaries, creating...  ...internal and external to CISO, and creating and updating cyber threat profiles for leadership. Technical skills:... 
    Cyber

    Central Business Solutions

    Falls Church, VA
    3 days ago
  • Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain... 
    Cyber

    Raytheon Technologies

    Arlington, VA
    4 days ago
  •  ...We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security...  ...Lead the CSIRC on a 24/7 basis, training analysts in incident response, handling...  ...and coordinating remediation efforts. Cyber Threat Monitoring: Develop and maintain... 
    Cyber
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions, LLC

    Washington DC
    17 days ago
  •  ...WCBinc) is looking for a Cyber Security Engineering...  ...during cyber security incident response, including but...  ...and analyze data, and respond to incidents/events...  ...attribution Performs malware analysis and signature...  ...development Coordinate with CSOC Tier 1 and 2 services... 
    Cyber
    Contract work
    Work at office

    WILLIAM C BROWN INC (WCBinc)

    Springfield, VA
    28 days ago
  •  ...Description Job Title: Cyber Security Engineer...  ...role is focused on cyber incident response, investigation,...  ...experience in incident response, CSOC or SOC operations, digital forensics, malware analysis, indicator...  ...Ability to meet CSSP Incident Responder requirements... 
    Cyber
    Contract work
    For contractors
    Local area

    System One

    Springfield, VA
    a month ago
  • $104k - $166k

    Cyber Incident Response Analyst (ICS/OT/SCADA) Location: Onsite in Arlington, VA Travel: Approximately 40...  ...and Threat Analysis Responsibilities Respond to cybersecurity incidents across...  ...analysis, incident response, forensics, malware analysis, or security operations. Experience... 
    Cyber
    Contract work
    Shift work
    1 day per week

    Peraton

    Arlington, VA
    2 days ago
  • $138k - $209k

     ...Information Sciences) is seeking a qualified Security Architect to lead incident response activities and manage cybersecurity threats...  ...incident response and extensive knowledge of digital forensics and malware analysis. Competitive salary range is $138,000-$209,000... 
    Cyber

    AIS (Applied Information Sciences)

    Alexandria, VA
    1 day ago
  • Xcelerate Solutions is seeking an Incident Response Analyst to support CyberPRIMES cybersecurity, privacy, records and information management,...  ...the full incident lifecycle from preparation to recovery, responding to NIPR and SIPR incidents, coordinating with SOC analysts... 

    Xcelerate-Solutions-5

    Alexandria, VA
    5 days ago
  • $132.23k - $176.31k

     ...researchers, data engineers, malware reverse engineers, data scientists...  ...detection. Work with cyber operators, when requested, to...  ...Support customer RFIs on incidents and emerging threats. Use...  ...repeatable workflows that combine analyst expertise, automation, and AI... 
    Cyber
    Full time
    Temporary work
    Work experience placement
    Work at office
    Remote work

    Lumen

    Annandale, VA
    2 days ago
  •  ...Industries is seeking a Security Operations Analyst to support a mission‑critical customer...  ...24x7x365 security monitoring and incident response. The selected candidate will...  ...infrastructure by detecting, investigating, and responding to cyber threats across diverse network... 
    Cyber
    Shift work
    Night shift
    Day shift
    Afternoon shift

    WarCollar Industries, LLC

    Mc Lean, VA
    3 days ago
  • Security Analyst - Forensics/Malware Analysis Full-time Clearance Requirement: Secret Founded...  ...Forensics/Malware Analysis to support cyber defense and incident response activities in alignment...  ...Support; CSSP Incident Responder Clearance/Suitability: Secret (active... 
    Cyber
    Full time
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    1 day ago
  • Cybersecurity Operations Analyst Tier 3 Clearance: Active TS/SCI...  ...operations support Serve as a senior incident responder supporting the containment,...  ...perform forensic analysis, malware investigation, threat...  ...malware analysis, and defensive cyber operations. Strong... 
    Cyber

    Si Tec Consulting

    West Springfield, VA
    4 days ago
  • $94k - $112k

     ...Title: Incident Manager III SALARY RANGE: $94,000-$112,000...  ...cloud-based engagement kits for cyber incident response and threat...  ...contract, this program enables analysts to quickly access the tools...  ...Demonstrated expertise in malware analysis, threat actor attribution... 
    Cyber
    Contract work
    Local area

    Solutions , LLC

    Arlington, VA
    4 days ago
  • $66.56k - $88.55k

     ...None Job Family: Cyber and IT Risk Management Job...  ...Continuous Monitoring, Incident Management, Information Security...  ...seeking an Information Assurance Analyst to help support our Base Infrastructure...  ...system resources and responds to security events or incidents... 
    Cyber
    Contract work
    Temporary work
    Local area
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Falls Church, VA
    5 days ago
  •  ...As recognized members of the Cyber Elite, we work together in partnership...  ...We are seeking a  Tier 2 Analyst for a potential opportunity...  ...operations by reviewing and responding to escalated tickets from...  ...of cybersecurity to improve incident detection, analyze threat intelligence... 
    Cyber
    Contract work

    ShorePoint

    Washington DC
    15 days ago
  • $107.9k - $195.05k

     ...repeatability. Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ...  ...detect, analyze, mitigate, and respond to cyber threats and...  ...guidance and mentorship to improve analyst skill sets and ensure delivery... 
    Cyber

    Via Logic LLC

    Washington DC
    2 days ago
  •  ...direct enterprise cybersecurity incident response and offensive...  ...management, threat detection, and cyber defense capabilities through...  ...teams. ~ Strong knowledge of malware analysis, forensics, threat...  ...EC-Council Certified Security Analyst. ~ Ability to obtain and... 
    Cyber
    Hourly pay
    Full time
    Contract work
    Local area
    2 days per week
    3 days per week

    Eliassen Group

    Alexandria, VA
    a month ago
  •  ...against today's most sophisticated cyber threats - both known and...  ...Deloitte's Cyber Detect and Respond team could be the place for you...  ...teams of managers and analysts - onshore and offshore - to solve...  ...escalation management, and complex incident investigation, mitigation,... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Rosslyn, VA
    1 day ago
  •  ...Job Description Job Description Incident Response Expert III (Cyber Eviction Analysts) Location: Washington Dc Metro Area (On-Site) Citizenship: US...  ...DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder - DoD 8140.01 CEH, CSSP Analyst - SANS GIAC GNFA... 
    Cyber
    Local area
    Immediate start

    Argo Cyber Systems

    Washington DC
    17 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Responder / Malware Analyst (CSOC). Be the first to apply!