Incident Response Lead
$107.9k - $195.05kLeidos
Description
At Leidos , we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.
If this sounds like the kind of environment where you can thrive, keep reading!
The Digital Modernization Sector brings together our digital transformation and IT programs, allowing us to better serve our customers through scale and repeatability.
Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff.
Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.
Primary Responsibilities
In-depth knowledge of each phase of the Incident Response life cycle
Expertise in Operating Systems (Windows/Linux) operations and artifacts
Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)
Ability to recognize suspicious activity/events, common attacker TTPs, perform logical analysis and research to determine root cause and scope of Incidents
Drive implementation and improvement of new tools, capabilities, frameworks, and methodologies
Instill and reinforce industry best practices in the domains of incident response, cybersecurity analysis, case and knowledge management, and SOC operations
Promote and drive implementation of automation and process efficiencies
Familiarity with Cyber Kill Chain and ATT&CK Framework and how to leverage in Security Operations
Provide guidance and mentorship to improve analyst skill sets and ensure delivery of high quality analysis and work products
Establish trust and business relationships with customer and other relevant stakeholders
Bachelor's Degree and 8-12 years of experience in a technical discipline.
4+ years of supervising and/or managing teams
5+ years of intrusion detection and/or incident handling experience
CISSP and SANS GCIH or GCIA required upon start
Advanced knowledge in planning, directing, and managing Computer Incident Response Team (CIRT) and/or Security Operations Center (SOC) operations for a large and complex Enterprise
Significant experience supervising and leading employees of various labor categories and technical skill levels in efforts similar in size and scope to a mature Security Operation
Mature understanding of industry accepted standards for incident response actions and best practices related to SOC operations;
Strong written and verbal communication skills, and the ability to create technical reports based on analytical findings.
Strong analytical and troubleshooting skills.
Must be a US Citizen.
Must hold active TS/SCI security clearance to be considered
Preferred Qualifications
Deep technical understanding of core current cybersecurity technologies as well as emerging capabilities.
Hands-on cybersecurity experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization including prior experience performing large-scale incident response.
Demonstrated understanding of the life cycle of cybersecurity threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
August 25, 2026
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $107,900.00 - $195,050.00
The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos
Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit .
Pay and Benefits
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at .
Securing Your Data
Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io .
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( .
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
REQNUMBER: R-00190531-OTHLOC-PL-2D0108
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.
- ...IT Operations Manager. The role involves overseeing computer systems and networks, planning technological operations, and leading incident response efforts. Ideal candidates will have over ten years of senior-level networking experience and the capability to manage complex...Suggested
- ...Agile Defense, LLC is seeking an experienced Cyber Incident Response Team Lead to support a 24/7/365 CSOC program. The role leads investigations, forensic analyses (host, cloud, network) and develops countermeasures to protect critical assets across USG customers. The...Suggested
$155k - $180k
...speed, flexibility, and ingenuity to strengthen and protect our nation's vital interests. Requisition #: 1435 Job Title: Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP)...SuggestedWork experience placement- ...seeking an experienced cyber professional to join our team and support our mission critical customer in Reston, VA. As the Incident Response Lead/Advisor, you will advise/mentor/coach a team of cyber security professionals on best practices regarding incident responses...SuggestedFull timeContract workTemporary workImmediate startShift work
$95k - $145k
...VAComputer World Services - CWS /Full-time /HybridCWS seeks an Incident Support Manager to direct incident management operations for the... ...directs incident management operations, ensuring timely response and resolution of network disruptions affecting CBP mission systems...SuggestedFull timeContract workLocal areaNight shift- ...MANTECH seeks a motivated, career and customer-oriented Incident Technician Lead to join our team in Chantilly, VA . In this role, you will lead a team of Enterprise IT Support Technicians responsible for overseeing, managing and coordinating the resolution of IT...Temporary workFor contractorsWork at officeLocal areaFlexible hours
- ...our exciting organization, please visit us at are seeking a Cybersecurity Incident and Application Lead to join our team and support our client. The ideal candidate is a strong incident response and application security professional who remains calm under pressure and...Temporary workFor contractorsWork experience placementWork at officeRemote work2 days per week
- ...support, databases, and other technologies. Responsibilities Contributes to the planning and... ...of the field's concepts and principles. Leads and directs the work of other employees... ...to perform, monitor, and report on the incident remediation efforts. Responsible for communicating...Contract workFor contractorsRemote work
$91.4k - $187k
Independently responsibility for one or more data centers, leading performance analyses across key operational areas and proactively monitoring facility health... ...functions and regions, leads on-the-ground teams in incident resolution, manages escalated technical issues, and...Temporary workRemote workFlexible hoursShift work$120.8k - $265.8k
...but also proactively engineering solutions to address new customer requirements and emerging technologies.Responsibilities include troubleshooting network incidents, collaborating with junior engineers, and remaining abreast of the latest advancements in networking....Contract workWork experience placementLocal areaFlexible hours$120.8k - $265.8k
...opportunity available for a CORE/WAN Network Lead supporting an Intelligence Community... ...in our networking team, you will be responsible for guiding and developing our workforce... ...making strategic decisions during network incidents, and ensuring our team remains at the forefront...Contract workWork experience placementLocal areaFlexible hours$110k - $160k
...time /HybridCWS seeks a NOC Tier 1 Shift Lead to supervise the U.S. Customs and... ...Tier 1 NOC technicians to ensure timely incident detection, triage, and escalation per established... ...performance standards.Duties & Responsibilities Lead Tier 1 operations during assigned...Full timeContract workLocal areaShift workNight shift$103.8k - $218.1k
...hands-on Senior Cybersecurity Engineer to lead the security posture of our division's... ...your technical contributions, you will be responsible for managing, guiding, and mentoring a... ...additional vulnerability assessment platforms.Incident ResponseDirect incident response...Contract workWork experience placementLocal areaFlexible hours$22 - $24.5 per hour
...yourself in creativity and play. Job Responsibilities: Our Field Trip Planning team will... ...Recording details of notable concerns or incidents, and of injuries to campers, staff... ...those around you? Are you comfortable leading groups of kids on your own while still...Hourly paySummer workShift work- ...vital interests. Title: Vulnerability Assessment (VA) Team Lead (CBP) Clearance: Active CBP Background Investigation (CBP... ...and hand confirmed exploitable findings to the threat hunt and incident response leads when they need that context. One thing is worth knowing...Temporary workImmediate startRelocation package
$60 - $105 per hour
...job opening) Type: Part-time consulting Overview Key Responsibilities: Assess Organizational Readiness: Evaluate current cybersecurity... ...a robust supply chain compliance management system. Incident Reporting & Continuous Compliance: Provide guidance on establishing...Contract workPart timeFor contractorsWork experience placementFor subcontractorImmediate startRemote workFlexible hours$155k - $220k
...or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities... ...without notice Responsibilities We are seeking an Incident Support Manager to join our team supporting a national law...Full timeContract workTemporary workWork at officeLocal areaRemote workMonday to FridayShift workNight shiftDay shift- ...nation’s vital interests. Title: Insider Threat Monitoring Lead (CBP) Clearance: Active CBP Background Investigation (CBP... ...Center Manager, human resources and security partners, and the incident response and digital forensics leads when a case moves from monitoring...Temporary workImmediate startRelocation package
- ...Lead Technologist Location: Sterling, VA Hours: Full Time, M-F 7:30 am-5 pm The Lead Technologist is responsible for the daily clinical operations of their assigned centers. This position... ...opportunities to the center director. Completes incident reports as needed. Reports harassment...Full timeRelocation packageFlexible hours
$23 per hour
...hospitality professionals! This position is responsible for preparing and cooking food items in... ...quality. Safety/Risk Management: Leads by example with food safety standards... ...Inn procedures for guest/team member’s incidents. Self/Workload Management: Responsible...Minimum wageFull timeTemporary workLocal areaShift workWeekend workAfternoon shift- ...Headquartered in Denver, Colorado, Cologix is a leading North America network-neutral... ...Security Officer with Cologix you will be responsible for overseeing the day-to-day physical security... ...point of contact during security incidents or emergencies. What you do daily:...Full timeTemporary workFor contractorsWork at officeLocal areaFlexible hoursShift workNight shiftWeekend work
$79.3k - $203.2k
...operations.AT&T is seeking a Quality Control Lead to support mission‑critical IT services... ...SLA performance, reduced repeat incidents, audit findings resolved on schedule, and... ...‑ready quality reporting.Job Duties/Responsibilities:Service Quality & Performance ManagementTranslate...Contract workTemporary workWork at officeLocal area$120.8k - $265.8k
...Opportunity: We are seeking an experienced and skilled Network Firewall Lead to oversee the design, implementation, and maintenance of our... ...'s firewall infrastructure. The ideal candidate will be responsible for ensuring the security, performance, and reliability of our...Contract workWork experience placementLocal areaImmediate startFlexible hours$120.8k - $265.8k
...We are seeking an experienced Network Modeling and Simulation Lead to drive our network planning and optimization efforts. The successful... ...to improve network performance, capacity, and reliability.Responsibilities:Lead the development and maintenance of complex network models...Contract workWork experience placementLocal areaImmediate startFlexible hours$106k - $119k
...not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data,...Full timeWork at office$120.8k - $265.8k
...Opportunity: We are seeking an experienced Configuration Management Lead to oversee and optimize our organization's configuration... ...are implemented across all configuration management activities.Responsibilities:Lead and manage the configuration management team, providing...Contract workWork experience placementLocal areaFlexible hours- ...Lead On Shift Activate is redefining how the world plays across Canada, US, and beyond into the global market. We're a technology... ...964 Southbank Street, Suite 120, Sterling, Virginia 20165. Responsibilities/Accountabilities Responsible to answer phones and emails...Permanent employmentFull timeCasual workWork at officeShift workEarly shift
$95k - $145k
...HybridCWS seeks a Problem Support Manager to lead the problem management function for the... ...root cause analysis (RCA) for recurring incidents.Maintain and manage problem records in... ..., analyzing resumes, or assessing responses and identifying potential inconsistencies...Full timeContract workLocal areaNight shift$122k - $253k
...intelligence community, defense, civil, and commercial markets.Job Title: Lead Systems ArchitectLocation: Sterling, VAClearance: TS/SCI Poly**... ...upon contract award**The Lead Systems Architect (LSA) is responsible for the design, delivery, and overarching technical...Full timeContract work$23 - $31 per hour
...management with the supervision of associates in assigned area of responsibility by assigning duties to associates communicating goals... .... If none are listed, there are no preferred qualifications. Leading a team, Supervising experience to include hiring, evaluating,...Hourly payMinimum wageFull timeTemporary workPart time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Lead. Be the first to apply!




