Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Lead

$107.9k - $195.05k

Leidos

Description

At Leidos , we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

If this sounds like the kind of environment where you can thrive, keep reading!

The Digital Modernization Sector brings together our digital transformation and IT programs, allowing us to better serve our customers through scale and repeatability.

Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff.

Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.

Primary Responsibilities

  • In-depth knowledge of each phase of the Incident Response life cycle

  • Expertise in Operating Systems (Windows/Linux) operations and artifacts

  • Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)

  • Ability to recognize suspicious activity/events, common attacker TTPs, perform logical analysis and research to determine root cause and scope of Incidents

  • Drive implementation and improvement of new tools, capabilities, frameworks, and methodologies

  • Instill and reinforce industry best practices in the domains of incident response, cybersecurity analysis, case and knowledge management, and SOC operations

  • Promote and drive implementation of automation and process efficiencies

  • Familiarity with Cyber Kill Chain and ATT&CK Framework and how to leverage in Security Operations

  • Provide guidance and mentorship to improve analyst skill sets and ensure delivery of high quality analysis and work products

  • Establish trust and business relationships with customer and other relevant stakeholders

Bachelor's Degree and 8-12 years of experience in a technical discipline.

  • 4+ years of supervising and/or managing teams

  • 5+ years of intrusion detection and/or incident handling experience

  • CISSP and SANS GCIH or GCIA required upon start

  • Advanced knowledge in planning, directing, and managing Computer Incident Response Team (CIRT) and/or Security Operations Center (SOC) operations for a large and complex Enterprise

  • Significant experience supervising and leading employees of various labor categories and technical skill levels in efforts similar in size and scope to a mature Security Operation

  • Mature understanding of industry accepted standards for incident response actions and best practices related to SOC operations;

  • Strong written and verbal communication skills, and the ability to create technical reports based on analytical findings.

  • Strong analytical and troubleshooting skills.

  • Must be a US Citizen.

  • Must hold active TS/SCI security clearance to be considered

Preferred Qualifications

  • Deep technical understanding of core current cybersecurity technologies as well as emerging capabilities.

  • Hands-on cybersecurity experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization including prior experience performing large-scale incident response.

  • Demonstrated understanding of the life cycle of cybersecurity threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

August 25, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit .

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at .

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io .

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( .

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

REQNUMBER: R-00190531-OTHLOC-PL-2D0108

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Incident Response Lead in Ashburn, VA vacancy
  •  ...IT Operations Manager. The role involves overseeing computer systems and networks, planning technological operations, and leading incident response efforts. Ideal candidates will have over ten years of senior-level networking experience and the capability to manage complex... 
    Suggested

    Akima

    Ashburn, VA
    4 days ago
  •  ...Agile Defense, LLC is seeking an experienced Cyber Incident Response Team Lead to support a 24/7/365 CSOC program. The role leads investigations, forensic analyses (host, cloud, network) and develops countermeasures to protect critical assets across USG customers. The... 
    Suggested

    Agile Defense

    Reston, VA
    2 days ago
  • $155k - $180k

     ...speed, flexibility, and ingenuity to strengthen and protect our nation's vital interests. Requisition #: 1435 Job Title: Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP)... 
    Suggested
    Work experience placement

    Agile Defense

    Reston, VA
    13 hours ago
  •  ...seeking an experienced cyber professional to join our team and support our mission critical customer in Reston, VA. As the Incident Response Lead/Advisor, you will advise/mentor/coach a team of cyber security professionals on best practices regarding incident responses... 
    Suggested
    Full time
    Contract work
    Temporary work
    Immediate start
    Shift work

    AnaVation

    Reston, VA
    2 days ago
  • $95k - $145k

     ...VAComputer World Services - CWS /Full-time /HybridCWS seeks an Incident Support Manager to direct incident management operations for the...  ...directs incident management operations, ensuring timely response and resolution of network disruptions affecting CBP mission systems... 
    Suggested
    Full time
    Contract work
    Local area
    Night shift

    Computer World Services (CWS)Corporation

    Ashburn, VA
    4 days ago
  •  ...MANTECH seeks a motivated, career and customer-oriented Incident Technician Lead to join our team in Chantilly, VA . In this role, you will lead a team of Enterprise IT Support Technicians responsible for overseeing, managing and coordinating the resolution of IT... 
    Temporary work
    For contractors
    Work at office
    Local area
    Flexible hours

    MANTECH

    Chantilly, Loudoun County, VA
    15 hours ago
  •  ...our exciting organization, please visit us at are seeking a Cybersecurity Incident and Application Lead to join our team and support our client. The ideal candidate is a strong incident response and application security professional who remains calm under pressure and... 
    Temporary work
    For contractors
    Work experience placement
    Work at office
    Remote work
    2 days per week

    Unissant

    Herndon, VA
    2 days ago
  •  ...support, databases, and other technologies. Responsibilities Contributes to the planning and...  ...of the field's concepts and principles. Leads and directs the work of other employees...  ...to perform, monitor, and report on the incident remediation efforts. Responsible for communicating... 
    Contract work
    For contractors
    Remote work

    Akima

    Ashburn, VA
    4 days ago
  • $91.4k - $187k

    Independently responsibility for one or more data centers, leading performance analyses across key operational areas and proactively monitoring facility health...  ...functions and regions, leads on-the-ground teams in incident resolution, manages escalated technical issues, and... 
    Temporary work
    Remote work
    Flexible hours
    Shift work

    Oracle Corporation

    Ashburn, VA
    4 days ago
  • $120.8k - $265.8k

     ...but also proactively engineering solutions to address new customer requirements and emerging technologies.Responsibilities include troubleshooting network incidents, collaborating with junior engineers, and remaining abreast of the latest advancements in networking.... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Sterling, VA
    3 days ago
  • $120.8k - $265.8k

     ...opportunity available for a CORE/WAN Network Lead supporting an Intelligence Community...  ...in our networking team, you will be responsible for guiding and developing our workforce...  ...making strategic decisions during network incidents, and ensuring our team remains at the forefront... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Sterling, VA
    3 days ago
  • $110k - $160k

     ...time /HybridCWS seeks a NOC Tier 1 Shift Lead to supervise the U.S. Customs and...  ...Tier 1 NOC technicians to ensure timely incident detection, triage, and escalation per established...  ...performance standards.Duties & Responsibilities Lead Tier 1 operations during assigned... 
    Full time
    Contract work
    Local area
    Shift work
    Night shift

    Computer World Services (CWS)Corporation

    Ashburn, VA
    4 days ago
  • $103.8k - $218.1k

     ...hands-on Senior Cybersecurity Engineer to lead the security posture of our division's...  ...your technical contributions, you will be responsible for managing, guiding, and mentoring a...  ...additional vulnerability assessment platforms.Incident ResponseDirect incident response... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Sterling, VA
    15 hours ago
  • $22 - $24.5 per hour

     ...yourself in creativity and play. Job Responsibilities: Our Field Trip Planning team will...  ...Recording details of notable concerns or incidents, and of injuries to campers, staff...  ...those around you? Are you comfortable leading groups of kids on your own while still... 
    Hourly pay
    Summer work
    Shift work

    Steve & Kate's Camp

    Ashburn, VA
    a month ago
  •  ...vital interests. Title: Vulnerability Assessment (VA) Team Lead (CBP) Clearance: Active CBP Background Investigation (CBP...  ...and hand confirmed exploitable findings to the threat hunt and incident response leads when they need that context. One thing is worth knowing... 
    Temporary work
    Immediate start
    Relocation package

    Agile Defense

    Ashburn, VA
    1 day ago
  • $60 - $105 per hour

     ...job opening) Type: Part-time consulting Overview Key Responsibilities: Assess Organizational Readiness: Evaluate current cybersecurity...  ...a robust supply chain compliance management system. Incident Reporting & Continuous Compliance: Provide guidance on establishing... 
    Contract work
    Part time
    For contractors
    Work experience placement
    For subcontractor
    Immediate start
    Remote work
    Flexible hours

    TestPros

    Sterling, VA
    more than 2 months ago
  • $155k - $220k

     ...or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities...  ...without notice Responsibilities We are seeking an Incident Support Manager to join our team supporting a national law... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    Monday to Friday
    Shift work
    Night shift
    Day shift

    TekSynap

    Ashburn, VA
    2 days ago
  •  ...nation’s vital interests. Title: Insider Threat Monitoring Lead (CBP) Clearance: Active CBP Background Investigation (CBP...  ...Center Manager, human resources and security partners, and the incident response and digital forensics leads when a case moves from monitoring... 
    Temporary work
    Immediate start
    Relocation package

    Agile Defense

    Ashburn, VA
    1 day ago
  •  ...Lead Technologist Location: Sterling, VA Hours: Full Time, M-F 7:30 am-5 pm The Lead Technologist is responsible for the daily clinical operations of their assigned centers. This position...  ...opportunities to the center director. Completes incident reports as needed. Reports harassment... 
    Full time
    Relocation package
    Flexible hours

    Washington Radiology

    Sterling, VA
    3 days ago
  • $23 per hour

     ...hospitality professionals!  This position is responsible for preparing and cooking food items in...  ...quality.   Safety/Risk Management:  Leads by example with food safety standards...  ...Inn procedures for guest/team member’s incidents.    Self/Workload Management:  Responsible... 
    Minimum wage
    Full time
    Temporary work
    Local area
    Shift work
    Weekend work
    Afternoon shift

    B.F. Saul Company Hospitality Group

    Sterling, VA
    24 days ago
  •  ...Headquartered in Denver, Colorado, Cologix is a leading North America network-neutral...  ...Security Officer with Cologix you will be responsible for overseeing the day-to-day physical security...  ...point of contact during security incidents or emergencies.  What you do daily:... 
    Full time
    Temporary work
    For contractors
    Work at office
    Local area
    Flexible hours
    Shift work
    Night shift
    Weekend work

    Cologix

    Ashburn, VA
    2 days ago
  • $79.3k - $203.2k

     ...operations.AT&T is seeking a Quality Control Lead to support mission‑critical IT services...  ...SLA performance, reduced repeat incidents, audit findings resolved on schedule, and...  ...‑ready quality reporting.Job Duties/Responsibilities:Service Quality & Performance ManagementTranslate... 
    Contract work
    Temporary work
    Work at office
    Local area

    AT&T

    Chantilly, Loudoun County, VA
    1 day ago
  • $120.8k - $265.8k

     ...Opportunity: We are seeking an experienced and skilled Network Firewall Lead to oversee the design, implementation, and maintenance of our...  ...'s firewall infrastructure. The ideal candidate will be responsible for ensuring the security, performance, and reliability of our... 
    Contract work
    Work experience placement
    Local area
    Immediate start
    Flexible hours

    CACI International

    Sterling, VA
    2 days ago
  • $120.8k - $265.8k

     ...We are seeking an experienced Network Modeling and Simulation Lead to drive our network planning and optimization efforts. The successful...  ...to improve network performance, capacity, and reliability.Responsibilities:Lead the development and maintenance of complex network models... 
    Contract work
    Work experience placement
    Local area
    Immediate start
    Flexible hours

    CACI International

    Sterling, VA
    2 days ago
  • $106k - $119k

     ...not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data,... 
    Full time
    Work at office

    Cubic Corporation

    Ashburn, VA
    1 day ago
  • $120.8k - $265.8k

     ...Opportunity: We are seeking an experienced Configuration Management Lead to oversee and optimize our organization's configuration...  ...are implemented across all configuration management activities.Responsibilities:Lead and manage the configuration management team, providing... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Sterling, VA
    2 days ago
  •  ...Lead On Shift Activate is redefining how the world plays across Canada, US, and beyond into the global market. We're a technology...  ...964 Southbank Street, Suite 120, Sterling, Virginia 20165. Responsibilities/Accountabilities Responsible to answer phones and emails... 
    Permanent employment
    Full time
    Casual work
    Work at office
    Shift work
    Early shift

    Activate Games

    Sterling, VA
    3 days ago
  • $95k - $145k

     ...HybridCWS seeks a Problem Support Manager to lead the problem management function for the...  ...root cause analysis (RCA) for recurring incidents.Maintain and manage problem records in...  ..., analyzing resumes, or assessing responses and identifying potential inconsistencies... 
    Full time
    Contract work
    Local area
    Night shift

    Computer World Services (CWS)Corporation

    Ashburn, VA
    4 days ago
  • $122k - $253k

     ...intelligence community, defense, civil, and commercial markets.Job Title: Lead Systems ArchitectLocation: Sterling, VAClearance: TS/SCI Poly**...  ...upon contract award**The Lead Systems Architect (LSA) is responsible for the design, delivery, and overarching technical... 
    Full time
    Contract work

    Nightwing

    Sterling, VA
    1 day ago
  • $23 - $31 per hour

     ...management with the supervision of associates in assigned area of responsibility by assigning duties to associates communicating goals...  .... If none are listed, there are no preferred qualifications. Leading a team, Supervising experience to include hiring, evaluating,... 
    Hourly pay
    Minimum wage
    Full time
    Temporary work
    Part time

    Socket

    Sterling, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Lead. Be the first to apply!