Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Incident Responder

Evolver Federal

Job Description

Job Description

Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client. The Lead Incident Responder serves as the central point of accountability for day-to-day incident response operations, providing leadership and direction in high-pressure environments. This role emphasizes measurable outcomes such as MTTR reduction and compliance audit success while ensuring rapid detection, containment, eradication, and recovery from security incidents. The Lead Incident Responder will maintain compliance with federal cybersecurity frameworks (NIST 800-series, RMF, TIC 3.0), lead investigations into complex threats, and deliver compliance reporting to federal stakeholders. Responsibilities include coordinating with SOC teams, ISSOs, and AOs, integrating threat intelligence and forensic analysis into response processes, and driving continuous improvement to strengthen organizational resilience against evolving cyber threats. This position requires deep technical expertise, strong leadership skills, and the ability to align incident response operations with performance-based federal requirements.Responsibilities:Lead end-to-end incident response activities, including detection, triage, containment, eradication, and recovery. Direct investigations of advanced threats, including APTs, ransomware, and insider threats. Lead tabletop exercises and incident simulations for federal agencies.Coordinate with SOC analysts, engineering teams, and federal stakeholders during major incidents. Develop and maintain incident response playbooks, escalation procedures, and forensic methodologies. Ensure alignment with Zero Trust Architecture principles.Perform root cause analysis and recommend corrective actions to prevent recurrence. Integrate threat intelligence into incident response workflows to enhance detection and mitigation. Oversee digital forensics and evidence handling for legal and compliance requirements. Prepare and deliver executive-level incident reports and post-incident reviews. Support continuous improvement initiatives, including automation of incident response processes. Ensure compliance with federal cybersecurity frameworks (NIST 800-series, RMF, FISMA) and organizational policies.Basic Qualifications:Bachelor 's Degree in Computer Science, Information Management (IM), Information Technology, Engineering, or equivalent with 6 years of technical experience and 4 years' experience in IT Solutions at senior managementCertified Information Systems Security Professional (CISSP)Certified Incident Handler, Certified Intrusion Analyst, Certified Ethical Hacker, or similar certificationsProject Management Institute (PMI) Project Management Professional (PMP) (Highly Recommended)Information Technology Infrastructure Library (ITIL) 4 Foundation10 years of successful enterprise experience in an IT or technology-related field, with the last 5 years, on large government technical BPAs/contractsUS Citizen with the ability to pass a comprehensive government background checkPreferred Qualifications:Experience managing or supporting cybersecurity operations, including SOC functions, in a federal or highly regulated environmentExperience leading cybersecurity programs within federal civilian agenciesMaster's degree in a technical or management-related fieldCISM or GIAC certifications (e.g., GCFA, GCIH)Experience with FedRAMP and CISA directives for federal complianceExperience with performance-based contracts and cross-functional team leadershipStrong communication skills, including experience delivering executive briefings and incident communicationsHands -on experience with SIEM (Splunk, Elastic), SOAR (Cortex XSOAR), and EDR platforms (CrowdStrike, Microsoft Defender). Expertise in malware analysis, reverse engineering, and memory forensics. Familiarity with cloud incident response and hybrid environments (AWS, Azure). Experience leading large-scale incident response efforts in federal or critical infrastructure environments. Experience with federal procurement processes and contract deliverables Hands-on experience with Fed IT programs' SELC/SDLCKnowledge of threat hunting methodologies and proactive detection strategies. Ability to mentor junior responders and build a high-performing incident response team. Understanding of advanced attack techniques, including lateral movement and privilege escalation. Experience with automation tools for incident response and threat containment.Evolver Federal is an equal opportunity employer and welcomes all job seekers. It is the policy of Evolver Federal not to discriminate based on race, color, ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy, physical or mental disability, military/veteran status, or any other factor protected by law.Actual salary will depend on factors such as skills, qualifications, experience, market and work location. Evolver Federal offers competitive benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies.

Job Posted by ApplicantPro

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Lead Incident Responder in Washington DC vacancy
  •  ...problem-solving people-person, apply today! Location: Washington, DC Position Overview: We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security documentation and ensure compliance with government standards for various systems.... 
    Suggested
    Contract work
    For contractors
    Work at office
    Local area

    DirectViz Solutions

    Washington DC
    1 day ago
  •  ...Description Job TitleLead Cyber Defense Incident ResponderClearanceTS/SCI (active, required...  ...Description:The Cyber Defense Incident Responder (Advanced) is a highly experienced,...  ...SAP) networks.Duties and Responsibilities- Lead a small team of advanced and mid-level security... 
    Suggested
    Weekend work

    S2i2 Inc

    Arlington, VA
    6 days ago
  • S2i2 is seeking a Lead Cyber Defense Incident Responder in Arlington, VA on-site to lead a skilled team defending TS/SCI and SAP environments. The role demands hands-on threat detection, threat intelligence, and advanced incident response capabilities in highly secure networks... 
    Suggested

    S2i2, Inc

    Arlington, VA
    1 day ago
  •  ...EmergencyMD is seeking a Lead Incident Responder for a potential government client. This role will involve leading incident response operations, managing complex threats, and ensuring compliance with federal cybersecurity frameworks. The candidate must have a Bachelor’... 
    Suggested

    EmergencyMD

    Washington DC
    2 days ago
  • $138k - $209k

     ...projects that matter, alongside industry‑leading experts, in an environment that fosters...  ...support the unique needs of our client as an Incident Management Lead. Project Summary The...  ...teams in identifying, analyzing, and responding to cybersecurity threats. This role will... 
    Suggested
    Contract work
    Temporary work

    AIS (Applied Information Sciences)

    Alexandria, VA
    1 day ago
  • $135k - $216k

     ...farthest reaches of the galaxy. As the world's leading mission capability integrator and...  ...is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Shift Lead to join...  ...Department of State teams to analyze and respond to events and incidents. ~Monitor and... 
    Contract work
    Temporary work
    Work at office
    Local area
    All shifts
    Shift work
    Afternoon shift

    Peraton

    Beltsville, MD
    1 day ago
  • AnaVation is seeking a Security Analyst (Incident Responder) to support client leadership with vulnerability management and incident response...  ...senior level team members and presenting findings clearly. You'll lead IR operations, monitor EDR and SIEM tools, perform risk-based... 

    Nava

    Alexandria, VA
    3 days ago
  • SkyePoint Decisions seeks an experienced Tier 2 Shift Lead for the Cyber Incident Response Team to support our Federal Strategic Cyber Mission...  ...coordination with government stakeholders, and leadership of Tier 2 responders. You will work with SOAR platforms, SIEMs, EDR tools, and... 
    Shift work

    SkyePoint Decisions

    Laurel, MD
    4 days ago
  • Tetrad Digital Integrity (TDI) is seeking a Senior Incident Response Analyst to join our SOC and help monitor, detect, investigate, and respond to cybersecurity threats across a large enterprise. The role supports coordinated incident response for a government program,... 
    Remote job
    2 days per week

    Tetrad-Digital-Integrity-LL

    Arlington, VA
    2 hours ago
  • Kapili Services, LLC is seeking an Incident Responder/Incident Response Coordinator to offer support for government clients in Arlington, VA. The ideal candidate will have a four year degree in information technology and a minimum of eight years of relevant experience... 

    Kapili Services, LLC

    Arlington, VA
    2 hours ago
  • Amazon Security's Business Assurance Center seeks an Incident Response Coordination Supervisor to lead a 24/7 GSOC team and ensure timely incident management across global security operations. Role requires a Bachelor's degree, 3+ years of operations personnel management... 
    Shift work
    Weekend work
    Afternoon shift

    Socket.dev

    Arlington, VA
    4 days ago
  • $150k - $190.7k

     ...build a successful career with opportunities to learn, grow, and make an impact. Join us!Job Description:The Security Incident Response Orchestration Lead is the senior technical authority responsible for setting the vision, architecture, and execution strategy for... 
    Full time
    Work at office
    Flexible hours
    Shift work
    Day shift

    Bank of America

    Washington DC
    2 days ago
  • $140k - $150k

    Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a senior-level Incident Response Lead to join our advanced security operations team which is a... 
    Work at office
    Remote work

    ECS Federal

    Washington DC
    4 days ago
  • $100k - $120k

     ...Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity... 

    Bering Straits Native Corporation

    Washington DC
    5 days ago
  •  ...A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding... 

    Nightwing

    Arlington, VA
    5 days ago
  •  ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data... 
    Contract work

    ShorePoint Inc

    Washington DC
    1 day ago
  •  ...client seeks a seasoned leader to direct enterprise cybersecurity incident response and offensive security initiatives. The role will...  ...and integrated vulnerability management. The position will also lead penetration testing and adversary emulation programs, align procedures... 
    Hourly pay
    Full time
    Contract work
    Temporary work
    Local area
    2 days per week
    3 days per week

    Eliassen Group

    Alexandria, VA
    3 days ago
  •  ...Enterprises, Inc. in Alexandria, VA is seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability...  ...hands-on cyber and incident lifecycle management. You will lead security operations, coordinate a team, and produce leadership... 

    Oxley Enterprises, Inc.

    Alexandria, VA
    2 days ago
  • Edgewater Federal Solutions is seeking an Incident Response (IR) Manager to lead a team of IR Tier-1, Tier-2, and Forensics specialists on a Federal government contract. The role also serves as the Right-of-Boom Deputy to the Cybersecurity Operations Task Lead. The candidate... 
    Contract work

    Edgewater Federal Solutions

    Bethesda, MD
    3 days ago
  • A dynamic Woman Owned Small Business is seeking a Senior Incident Response Coordinator for their Program Management and Cyber Support Services project in Arlington, Virginia. The role entails coordinating cyber incident responses, managing stakeholder communications, and... 

    Zantech

    Arlington, VA
    2 days ago
  • $138k - $209k

    Applied Information Sciences, Inc is seeking a Security Architect in Alexandria, Virginia. The ideal candidate will lead incident management activities, develop cybersecurity strategies, and oversee incident response teams. With a Master's degree in IT or a related field... 
    Contract work

    Applied Information Sciences, Inc

    Alexandria, VA
    2 days ago
  • GEICO seeks a GSOC Supervisor at GEICO Headquarters in Bethesda, MD, to oversee on‑duty SOC operators and lead incident response from detection to resolution, ensuring timely triage and escalation to crisis teams. The role requires proven leadership, strong writing and... 

    GEICO

    Bethesda, MD
    2 days ago
  • $108.01k - $183.61k

     ...contingent upon a contract award. ICF is seeking an IAM Lead to architect, implement, and operate the identity and access...  ...Monitor sign-in activity, risk signals, and anomalies. Respond to identity-related incidents including account takeover, phishing, access abuse, and... 
    Full time
    Contract work
    For contractors
    Work experience placement
    Work at office
    Remote work

    ICF

    Washington DC
    1 day ago
  • $195k - $205k

     ...complex IT operations, ensuring compliance with DoD standards, and leading a team in providing technical support. Key responsibilities...  ...preparing Monthly IPRs, ensuring COOP compliance, and managing incidents efficiently. The ideal candidate will have a Bachelor’s degree... 

    Akima

    Alexandria, VA
    2 days ago
  •  ...Program Security Officer (CPSO) to support DoD/IC environments in Arlington, VA. You will coordinate security authorizations, manage incidents, and ensure program access controls. The role requires TS/SCI, 5+ years CPSO, DoDM 5205.07 familiarity, DISS usage, and strong... 
    For contractors

    Jobtailor

    Arlington, VA
    1 day ago
  • $101k - $125k

     ...relationship to the Director Projects – Health, Safety, the Senior Lead, Occupational Health & Safety, Projects is responsible...  ...targets and measures. Ensures available resources to respond to critical workplace incidents, personally leads investigations into significant events... 
    Full time
    For contractors
    Local area
    Flexible hours

    Teck

    Washington DC
    a month ago
  • $70k - $90k

     ...Description Position Title: Tier III Helpdesk Lead Location: Washington, DC (hybrid)...  ...root cause analysis (RCA) for critical incidents and outages, completing post-mortems and...  ...network infrastructure. · Investigate and respond to security incidents, enforcing patch... 
    Local area
    Monday to Friday

    Addison Group

    Washington DC
    24 days ago
  •  ...The Advanced Problem Resolution (APR) Lead is responsible for overall project management...  ...personnel covered under the contract. Respond to administrative and technical requests...  ...documentation, and trend analysis for recurring incidents. Support migration initiatives and... 
    Full time
    Contract work
    Work at office

    Leader Communications

    Alexandria, VA
    2 days ago
  • cFocus Software seeks a Forensic and Malware Lead to join our program supporting the...  ...Coordinate with Cybersecurity Triage and Incident Response teams to support investigation,...  ...investigative findings to AO leadership, incident responders, SOC management, and federal staff.... 
    Full time
    Work at office

    cFocus Software Incorporated

    Washington DC
    29 days ago
  •  ...Position Summary The Cybersecurity Lead will serve as a “Dual-Hat” role providing...  ...provide expert oversight for the entire incident response lifecycle, from initial detection...  ...numerous enterprise systems and networks. Respond to requests for information, and help... 
    Full time
    Local area

    Leader Communications

    Alexandria, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Incident Responder. Be the first to apply!