Enable job alerts via email!

Cyber Defense - Mid-Level Security Operations Center/Incident Response Analyst (REMOTE)

Lensa

Sully Square (VA)

Remote

USD 90,000 - 120,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in IT Services and Security is seeking a Mid-Level Security Operations Center/Incident Response Analyst to support federal government clients. This remote role involves security monitoring, incident response, and threat analysis. Candidates should possess strong cybersecurity knowledge, relevant experience, and a Bachelor’s degree in Cybersecurity. The company offers competitive compensation and comprehensive benefits as part of a dedicated effort to maintaining security within their operations.

Benefits

Health insurance
Dental insurance
Vision insurance
401K with company matching
Paid holidays
Three weeks paid time off

Qualifications

  • 4+ years of experience in security operations.
  • 2+ years of incident response experience.
  • Current Security+ certification or relevant.

Responsibilities

  • Monitor, triage, and analyze security alerts and events.
  • Perform incident response activities and threat hunting.
  • Conduct post-incident analysis and reporting.

Skills

Network security
Analytical skills
Incident response procedures
Documentation abilities

Education

Bachelor's degree in Cybersecurity

Tools

SIEM platforms
Security monitoring tools

Job description

Cyber Defense - Mid-Level Security Operations Center/Incident Response Analyst (REMOTE)

2 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Lensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs, but promotes jobs on LinkedIn on behalf of its direct clients, recruitment ad agencies, and marketing partners. Lensa partners with DirectEmployers to promote this job for Koniag Government Services.

Cyber Defense – Mid-Level Security Operations Center/Incident Response Analyst (REMOTE)

Virtual

Req #596

Wednesday, June 25, 2025

Koniag Data Solutions, a Koniag Government Services company, is seeking a Cyber Defense – Mid-Level Security Operations Center/Incident Response Analyst to support KDS and our government customer in Alexandria, VA. This is a Remote opportunity.

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

KDS is seeking a Mid-Level SOC/Incident Response Analyst to support security monitoring, detection, and response activities for our federal government clients. The ideal candidate will have solid experience in security operations and incident handling, with the ability to work independently while supporting team objectives.

Essential Functions, Responsibilities & Duties may include but are not limited to:

  • The Mid-Level SOC/Incident Response Analyst will perform security monitoring and incident response activities. Key responsibilities include:
  • Monitor, triage, and analyze security alerts and events
  • Perform incident response activities
  • Coordinate with other teams to contain and eradicate threats
  • Conduct security event investigations
  • Support threat hunting operations
  • Analyze potential security incidents
  • Conduct post-incident analysis and reporting
  • Document incident response activities
  • Maintain security monitoring tools
  • Execute incident response playbooks
  • Perform initial forensic analysis
  • Create and maintain security reports
  • Support security tool configuration
  • Participate in incident response drills
  • Assist with security metrics collection
  • Help maintain documentation and procedures
  • Provide tier 2/3 analysis support

Required

Education and Experience:

  • Bachelor's degree in Cybersecurity, Information Technology, or related field
  • 4+ years of experience in security operations
  • 2+ years of incident response experience
  • Current Security+ certification (or relevant)
  • Experience with SIEM platforms

Required Skills And Competencies

  • Strong understanding of network and system security
  • Strong knowledge of security operations, cybersecurity tools and platforms
  • Experience with incident response procedures
  • Proficiency with security monitoring tools
  • Knowledge of log analysis techniques
  • Understanding of network protocols
  • Experience with security frameworks
  • Basic forensic analysis skills
  • Good documentation abilities
  • Strong analytical skills
  • Team collaboration capabilities
  • Understanding of threat intelligence
  • Knowledge of malware behavior
  • Experience with security tools
  • Good communication skills

Desired Skills And Competencies

  • Additional certifications (GCIH, GCIA)
  • Experience with federal systems
  • Knowledge of cloud security
  • Familiarity with automation tools
  • Experience with threat hunting
  • Knowledge of digital forensics
  • Understanding of compliance requirements
  • Experience with multiple SIEM platforms
  • Scripting abilities (Python, PowerShell)
  • Knowledge of network defense tools
  • Experience with vulnerability management
  • Understanding of risk management
  • Familiarity with incident tracking systems
  • Experience with security metrics
  • Knowledge of emerging threats
  • Experience with security orchestration

Our Equal Employment Opportunity Policy

The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at [email protected] or by calling 703-488-9377 to request accommodations.

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com .

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Other Details

  • Job Family IT, Cyber Security, Network Systems
  • Job Function Cyber Security Architect/Engineer
  • Pay Type Salary

<

If you have questions about this posting, please contact support@lensa.com

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Other
  • Industries
    IT Services and IT Consulting

Referrals increase your chances of interviewing at Lensa by 2x

A&A Junior Cybersecurity Engineer (REMOTE)
Security Control Assessment Mid-Level Cybersecurity Analyst (REMOTE)
Cybersecurity Assessment and Authorization Subject Matter Expert
Security Engineer (SIEM/SOAR/SOC Optimization) - Mid-Atlantic region (Remote in NC, VA, WV, MD, DC, DE, NJ, or PA)

Washington, DC $125,000 - $170,000 1 week ago

Washington, DC $115,000 - $125,000 1 month ago

Arlington, VA $100,000 - $118,000 3 months ago

Sterling, VA $90,300 - $189,600 5 months ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Cyber Security Analyst (Incident Response)

DeepSeas

San Diego null

Remote

Remote

USD 100,000 - 140,000

Full time

Yesterday
Be an early applicant

Security Incident Responder Lead

SAIC

El Paso null

Remote

Remote

USD 80,000 - 120,000

Full time

Yesterday
Be an early applicant

Incident Response Analyst

Softswiss

null null

Remote

Remote

USD 70,000 - 100,000

Full time

10 days ago

Incident Response Analyst (Remote, ROU)

CrowdStrike

null null

Remote

Remote

USD 70,000 - 100,000

Full time

28 days ago

Cybersecurity Incident Response Analyst

Splunk

Hyde Park Township null

Remote

Remote

USD 106,000 - 147,000

Full time

30+ days ago

Senior Incident Response Analyst

Centene

null null

Remote

Remote

USD 85,000 - 159,000

Full time

30+ days ago

Principal Incident Response Analyst

RemoteWorker US

Chamois null

Remote

Remote

USD 119,000 - 221,000

Full time

30+ days ago

Principal Incident Response Analyst

RemoteWorker US

Thompson null

Remote

Remote

USD 119,000 - 221,000

Full time

30+ days ago

Principal Cybersecurity Incident Responder - Remote

The TJX Companies

Marlborough null

Remote

Remote

USD 90,000 - 150,000

Full time

30+ days ago