Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Analyst, Incident Responder

Digital Global Connectors

Cybersecurity Analyst, Incident Responder Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seeking an experienced Cybersecurity Analyst – Tier 2 (Incident Responder) to support a Federal information security program. The Tier 2 Incident Responder is responsible for investigating, containing, eradicating, and recovering from cybersecurity incidents affecting enterprise information systems, networks, cloud environments, and critical business operations. This position performs advanced analysis of cybersecurity events, coordinates incident response activities, conducts forensic triage, analyzes malware and attacker tactics, and collaborates with Security Operations Center (SOC) personnel, Security Engineers, Threat Hunters, ISSOs, and System Owners to minimize operational impact and strengthen the organization's cybersecurity posture. The successful candidate will possess strong technical investigative skills, experience responding to sophisticated cyber threats, and the ability to perform effective incident analysis within complex enterprise environments. Essential Duties and Responsibilities Incident Response Investigate cybersecurity incidents affecting enterprise information systems, applications, cloud services, and networks. Perform incident triage to determine scope, severity, and operational impact. Execute containment, eradication, and recovery procedures in accordance with established incident response plans. Coordinate response activities with technical teams and program leadership. Validate successful remediation before incident closure. Maintain incident timelines and documentation throughout the response lifecycle. Security Investigation Analyze suspicious network traffic, endpoint activity, authentication events, and system logs. Identify indicators of compromise (IOCs), indicators of attack (IOAs), and attacker behaviors. Determine root cause and attack vectors. Assess the extent of compromise across affected systems. Identify persistence mechanisms and unauthorized access. Recommend remediation and long-term defensive improvements. Digital Forensic Triage Collect and preserve digital evidence in accordance with forensic best practices. Perform preliminary forensic analysis of endpoints, servers, and cloud resources. Review memory captures, event logs, registry artifacts, file systems, browser artifacts, and authentication records. Support chain-of-custody documentation. Coordinate with Digital Forensics Analysts for advanced forensic examinations when required. Malware Analysis Support Analyze suspicious files and malicious code using approved analysis tools. Identify malware behavior and associated indicators. Review sandbox analysis results. Document malware characteristics and recommended detection signatures. Coordinate with Threat Intelligence and Threat Hunting personnel regarding emerging threats. Threat Detection and Analysis Investigate alerts generated by SIEM, EDR, IDS/IPS, and XDR platforms. Correlate data from multiple security tools to identify attack patterns. Evaluate threat intelligence to determine relevance to ongoing investigations. Recommend improvements to detection logic based on investigative findings. Assist in developing new detection use cases. Security Tool Operations Utilize technologies including: Microsoft Sentinel Splunk Enterprise Security Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Identity Microsoft Defender for Cloud CrowdStrike Falcon Palo Alto Cortex XDR Trellix Cisco Secure Wireshark Velociraptor Security Information and Event Management (SIEM) Endpoint Detection and Response (EDR) Extended Detection and Response (XDR) Reporting and Documentation Develop and maintain: Incident Reports After-Action Reports Root Cause Analyses Investigation Summaries Lessons Learned Security Recommendations Executive Briefings Incident Metrics Threat Assessments Standard Operating Procedures Ensure documentation is complete, technically accurate, and suitable for operational and audit purposes. Collaboration Coordinate with Tier 1 SOC Analysts, Threat Hunters, Digital Forensics Analysts, Security Engineers, ISSOs, System Owners, and Government stakeholders. Participate in incident response working groups. Provide technical guidance during active cybersecurity incidents. Support enterprise cybersecurity exercises and tabletop events. Share investigative findings with cross-functional cybersecurity teams. Continuous Improvement Recommend improvements to incident response procedures and playbooks. Participate in lessons-learned reviews following significant incidents. Assist with development of new detection capabilities. Monitor emerging attack techniques and defensive technologies. Maintain technical proficiency through ongoing training and professional certification. Minimum Qualifications Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, Digital Forensics, or a related discipline. Minimum four (4) years of experience performing cybersecurity incident response or cyber defense operations. Experience investigating enterprise cybersecurity incidents. Experience using SIEM, EDR, XDR, and log analysis platforms. Understanding of networking protocols, operating systems, malware behavior, and common attack techniques. Strong analytical, investigative, documentation, and communication skills. U.S. Citizenship required. Ability to obtain and maintain a Tier 2 Public Trust. Preferred Qualifications Experience supporting a Federal civilian agency. Experience performing digital forensic triage or malware analysis. Experience supporting cloud incident response in Microsoft Azure or AWS environments. Experience utilizing MITRE ATT&CK during investigations. GIAC Certified Incident Handler (GCIH) CompTIA CySA+ CompTIA Security+ GIAC Certified Forensic Analyst (GCFA) Microsoft Certified: Security Operations Analyst Associate (SC-200) Certified Ethical Hacker (CEH) (preferred) Knowledge, Skills, and Abilities Incident Response Cyber Defense Operations Digital Forensic Triage Malware Analysis Threat Detection Threat Intelligence Microsoft Sentinel Splunk Enterprise Security Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Cloud Endpoint Detection and Response (EDR) Extended Detection and Response (XDR) Security Information and Event Management (SIEM) Wireshark Velociraptor Log Analysis Network Traffic Analysis Windows Security Linux Security Cloud Security MITRE ATT&CK Framework NIST SP 800-61 Incident Response NIST Cybersecurity Framework Technical Documentation Root Cause Analysis Microsoft Office Suite ServiceNow Jira Security Requirements Ability to successfully obtain and maintain a Tier 2 Public Trust investigation. Compliance with all applicable Federal security, privacy, ethics, and information assurance training requirements before receiving system access. Ability to support incident response activities, emergency cybersecurity operations, scheduled maintenance windows, continuity of operations (COOP), and surge support as required. Must maintain strict confidentiality while handling sensitive incident data, forensic evidence, investigative records, and Federal information systems. Ability to respond effectively to cybersecurity incidents in a fast-paced operational environment while coordinating with Government stakeholders, technical teams, and program leadership to minimize risk and restore secure operations. #J-18808-Ljbffr Digital Global Connectors

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Analyst, Incident Responder in Mc Lean, VA vacancy
  • $57.2k - $109.4k

     ...moves missions and the government forward! The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in...  .... Primary responsibilities: Actively monitor and respond to cybersecurity incidents related to alerted policy... 
    Suggested
    Work experience placement
    Live in
    Work at office
    Local area
    Shift work

    Accenture

    Arlington, VA
    1 day ago
  •  ...Allen Hamilton is offering a university cybersecurity analyst program designed to teach how to collect...  ...improve security and address real-world incidents. Participants will explore roles such as Security Analyst, Incident Responder, and Threat Intelligence Analyst while tackling... 
    Suggested

    Booz Allen Hamilton

    Mc Lean, VA
    3 days ago
  • $102.5k - $188.9k

     ...opportunities businesses face in cybersecurity. Join our team to deliver...  ...can identify, analyze, and respond to exploitation activity...  ...operations. As a Cyber Exploitation Analyst, you will support cyber...  ...threat activity, investigating incidents, assessing vulnerabilities,... 
    Suggested
    Work at office

    Deloitte

    Rosslyn, VA
    2 days ago
  • $91.6k - $153.8k

     ...Cyber Incident Response Analyst Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security...  .... Explore thrilling projects in Digital Transformation, Cybersecurity, IT, Data Analytics and Software Development. Elevate your... 
    Suggested
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Local area
    Remote work
    Shift work
    Night shift
    Day shift
    Afternoon shift

    ManTech

    McLean, VA
    2 days ago
  •  ...Position Title: Tier 2 Cybersecurity Incident Response Analyst Location: [On-site - Bethesda, MD Position Overview The Tier 2 Cybersecurity...  ...for NIH enterprise and cloud environments. This role responds to hotline-reported incidents and performs investigation... 
    Suggested

    Merit 321

    Rockville, MD
    1 day ago
  • $70k - $98k

     ...High School Diploma Experience in a cybersecurity-related position Capability to acquire...  ...of cybersecurity principles, incident detection, and response methodologies...  ...guidance and technical mentorship to junior analysts during intensive investigative processes... 
    Shift work
    Day shift

    MANTECH

    McLean, VA
    3 days ago
  • Medical Insurance, Dental Insurance, Vision Insurance Full-Time | On-site Required Skills powershell Cybersecurity SIEM Cybersecurity Incident Response Analyst Job Description: The Cybersecurity Incident Response Analyst is responsible for real-time threat detection... 
    Full time

    Mybridge

    Arlington, VA
    13 hours ago
  • myBridge Corporation in Chandler, AZ is seeking a Cybersecurity Incident Response Analyst to join our SOC. You will monitor real-time security events, detect threats, and triage incidents across network, cloud, and endpoints, translating alerts into actionable containment... 

    Mybridge

    Arlington, VA
    13 hours ago
  • MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst will work... 
    Shift work
    Night shift
    Day shift
    Afternoon shift

    ManTech

    Mc Lean, VA
    6 days ago
  • Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions... 
    For contractors

    kozmetickesluzby.vecnakraska.sk - Jobboard

    Arlington, VA
    13 hours ago
  • Accenture Federal Services in Arlington, VA, seeks a Cybersecurity Incident Response Triage Analyst to join the CIRT team within the CISO organization. The role involves monitoring, triaging, and analyzing alerts from SIEM and security sensors, coordinating with incident... 

    Accenture Federal Services Careers Marketplace

    Arlington, VA
    4 days ago
  • $159.3k - $202.4k

     ...innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats such as malware and intrusion attempts, and provide... 
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    2 days ago
  • Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will assess cybersecurity...  ..., identify operational risks and process gaps, support incident-response, and translate complex cyber information into... 

    OPS TECH ALLIANCE LLC

    Mc Lean, VA
    13 hours ago
  • $120k - $179k

     ...Overview Cybersecurity Analyst McLean, VA TS/SCI with Poly Bridge Core provides high...  ...of experience working within a Cyber Incident Response Team, Security Operations Center...  ...principles and the ability to respond effectively to security incidents. This... 
    Shift work
    Night shift
    Weekend work
    Afternoon shift

    Bridge Core

    McLean, VA
    2 days ago
  •  ...Cybersecurity Analyst LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires...  ...ensure compliance with security protocols and to respond effectively to security incidents. The ideal candidate will have a strong understanding... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Vienna, VA
    1 day ago
  •  ...Cybersecurity Analyst We are seeking a dedicated and detail-oriented Cybersecurity Analyst to join our team and help safeguard...  ...ensure compliance with security protocols and to respond effectively to security incidents. The ideal candidate will have a strong... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    McLean, VA
    1 day ago
  •  ...Job Description Job Description Job Title: Mid-Level Cybersecurity Incident Response Analyst Location: Bethesda, Maryland Type: Direct Hire Compensation: 120k Work Model: Hybrid Hours: 40.0 Security Clearance: Public Trust Responsibilities Monitor... 
    Local area

    System One

    Bethesda, MD
    12 days ago
  • Bridge Core (BCore) is seeking a Cybersecurity Analyst in McLean, VA. The ideal candidate should have at least 1 year of experience in cybersecurity roles and possess an active TS/SCI clearance with polygraph. Responsibilities include utilizing SIEM systems for threat analysis... 
    Shift work
    Afternoon shift

    Bridge Core

    Mc Lean, VA
    13 hours ago
  • Overview Cybersecurity Analyst - McLean, VA. TS/SCI clearance with polygraph required. Bridge Core...  ...of experience working within a Cyber Incident Response Team, Security Operations Center...  ...principles and the ability to respond effectively to security incidents. This... 
    Shift work
    Night shift
    Afternoon shift

    Bridge Core

    Mc Lean, VA
    2 days ago
  • JCS Solutions LLC in the Bethesda area seeks a Cybersecurity Analyst to protect critical federal systems. In this hands-on role, you'll support...  ...management, threat monitoring, endpoint security, incident response, and remediation efforts. You'll work with cybersecurity... 

    JCS Solutions LLC

    Bethesda, MD
    1 day ago
  • $91k - $124k

     ...logistics and information technology to cybersecurity and facilities operations, we are...  ...Job Title: Senior Cybersecurity Analyst Work Location: Remote or...  ...Monitor, investigate, and respond to cybersecurity alerts, incidents, vulnerabilities, and threats across... 
    Full time
    Temporary work
    For contractors
    Work at office
    Local area
    Remote work
    Flexible hours

    Tlingit Haida Tribal Business Corporation

    Falls Church, VA
    3 days ago
  • $53k - $108k

    University, Cybersecurity Analyst The Opportunity: Contribute to the evolving field of cybersecurity...  ...and address real-world security incidents, vulnerabilities, and risks with experienced...  ...including Security Analyst, Incident Responder, Threat Intelligence Analyst, Data... 
    Full time
    Contract work
    Part time
    Summer work
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    7 days ago
  • $104k - $166k

     ...currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal...  ...Strategic Cyber program. This role involves responding to cyber incidents across critical...  ....In This Role, You Will: Respond to cybersecurity incidents across ICS, OT, and IT... 
    Contract work
    Currently hiring
    Shift work
    1 day per week

    Peraton Corporation

    Arlington, VA
    4 days ago
  • $80k - $128k

     ...currently searching for a Junior Cyber Incident Analyst - Notification Specialist - for our...  ...law enforcement reporting, to identify cybersecurity incidents, threats, and vulnerabilities...  ...actions and ticket submissions.Monitor, respond, and catalog targeted notification... 
    Contract work
    Shift work

    Peraton Corporation

    Arlington, VA
    13 hours ago
  • $53k - $108k

     ...Number: R0248214 University - Summer 27, Cybersecurity Analyst Intern The Opportunity Contribute to...  ...infrastructure, investigating incidents, and analyzing emerging risks. These experiences...  ...such as Security Analyst, Incident Responder, Threat Intelligence Analyst, or Data... 
    Full time
    Contract work
    Part time
    Internship
    Summer internship
    Work at office
    Local area
    Remote work

    Phase2 Technology

    Mc Lean, VA
    4 days ago
  • $53k - $108k

    University, Cybersecurity Analyst The Opportunity: Contribute to the evolving field of cybersecurity...  ...and address real-world security incidents, vulnerabilities, and risks with experienced...  ...including Security Analyst, Incident Responder, Threat Intelligence Analyst, Data... 
    Full time
    Contract work
    Part time
    Summer work
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Mc Lean, VA
    3 days ago
  • Booz Allen Hamilton in McLean, VA seeks a Cybersecurity Analyst Intern to research, analyze, and address real-world security challenges...  ...business audiences, with roles such as Security Analyst, Incident Responder, Threat Intelligence Analyst, or Data Analyst. #J-18808-... 
    Remote job
    Internship

    Phase2 Technology

    Mc Lean, VA
    4 days ago
  • $136k - $184k

     ...risk to Amazon customers and data.- You will work alongside incident response teams and provide direct support to ongoing investigations...  ...and reduce operating risk for our customers.- Monitor cybersecurity media, blog posts, and other sources to maintain awareness of... 
    Internship
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    2 days ago
  • $111k - $122k

     ...Salesforce.Computer Security Incident Response AnalystThis is a...  ...seeking an Incident Response Analyst for our Government Cloud Security...  ...Response Analyst will respond to and investigate cyber security...  ..., Software Engineering, Cybersecurity, Information Assurance, or equivalent... 
    Full time
    Work experience placement
    Local area

    Salesforce

    Herndon, VA
    3 days ago
  • Accenture Federal Services in Arlington, VA is seeking a Cybersecurity Incident Response Junior Analyst and Triage Analyst to join the CIRT team within the CISO organization. You will monitor, triage, and respond to alerts from SIEM and security sensors, and work with incident... 

    Accenture Federal Services

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Analyst, Incident Responder. Be the first to apply!