Cybersecurity Incident and Application Lead

Unissant

Bethesda (MD)

Hybrid

USD 120,000 - 170,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Unissant deals with cybersecurity incident response and application security leadership to support federal clients. The role requires deep knowledge of network security, cloud technologies, and threat detection while maintaining composure under pressure.

The candidate will lead incident lifecycle activities, coordinate across teams, and develop lessons learned, SOPs, and improved processes. Remote work is common with onsite collaboration in Bethesda, MD as needed.

Qualifications

  • Bachelor's Degree is required; preferred fields include Computer Science, Information Technology, Information Systems, Operations Management, or related field.
  • MBA/Master's Degree in a relevant field is preferred.

Responsibilities

  • Lead the full lifecycle of incident detection, analysis, containment, recovery, and post-incident activities across enterprise systems.
  • Coordinate incident response efforts, manage escalations, and support cross-functional response activities.
  • Monitor, detect, and report suspected cybersecurity incidents using enterprise logging, SIEM, EDR, IAM, antivirus, and cloud tools.
  • Configure alerts and reporting to help identify indicators of compromise, suspicious behavior, and insecure configurations.
  • Track incidents through remediation and support the development of lessons learned, SOPs, and process improvements.
  • Assist with incident response testing, reporting, and stakeholder communications.

Skills

Network security
Web application security
Cloud technologies
Incident response

Education

Bachelor's Degree
MBA/Master's Degree

Tools

Splunk
Tenable
FireEye
IDS/IPS platforms
Event analysis tools

Job description

Unissant, Inc. delivers innovative capabilities to the agencies that keep our nation healthy and safe. We apply our domain expertise, data acumen, and technology know-how to achieve breakthrough results for our clients. Working collaboratively, we advance missions and careers through a focus on honesty, integrity, and dependability. We continuously look for talent, excited to join that effort. To learn more about our exciting organization, please visit us at www.unissant.com.

We are seeking a Cybersecurity Incident and Application Lead to join our team and support our client. The ideal candidate is a strong incident response and application security professional who remains calm under pressure and brings deep technical knowledge across network security, web application security, cloud technologies, and threat detection. This individual is motivated by protecting enterprise systems, improving response readiness, and working collaboratively to resolve high-priority cybersecurity events.

Essential Duties and Responsibilities:
  • Lead the full lifecycle of incident detection, analysis, containment, recovery, and post-incident activities across enterprise systems.
  • Coordinate incident response efforts, manage escalations, and support cross-functional response activities.
  • Monitor, detect, and report suspected cybersecurity incidents using enterprise logging, SIEM, EDR, IAM, antivirus, and cloud tools.
  • Configure alerts and reporting to help identify indicators of compromise, suspicious behavior, and insecure configurations.
  • Track incidents through remediation and support the development of lessons learned, SOPs, and process improvements.
  • Assist with incident response testing, reporting, and stakeholder communications.
Work Experience and Job Skills:
  • Minimum of 5-7 years of hands-on experience in network security, web application security, and cloud technologies.
  • Strong knowledge of ports, protocols, weak configurations, vulnerable services, and common intrusion techniques.
  • Experience applying incident response processes across preparation, detection and analysis, containment, recovery, and post-incident review.
  • Hands-on experience with technologies such as Splunk, Tenable, FireEye, IDS/IPS platforms, and related event analysis tools.
  • Good understanding of Windows and Linux operating systems.
  • Ability to create management reports, escalation documentation, and incident response process materials.
Education:
  • Bachelor's Degree is required. Preferred field of study in Computer Science, Information Technology, Information Systems, Operations Management, or related field of study.
  • MBA/Master's Degree in a relevant field of study preferred.
Certificates, Licenses and Registrations:
  • Desired certifications include ECIH, OSCP, GCIH, and Splunk certifications.
Communication Skills:
  • Excellent verbal and written skills, ability to present proposals and performance data, comfortable interfacing all levels of organization.
  • Ability to write clear and concise creative content in a highly confidential manner.
Clearance Requirements:
  • Ability to obtain and maintain a Public Trust clearance.
Travel:
  • Work under this task order is expected to be performed primarily remotely at the contractor's non-Federally controlled facility.
  • Key personnel are expected to work onsite in Bethesda, Maryland two days per week, with onsite schedules and working hours subject to approval by Federal staff.
  • Additional onsite meetings or temporary support within Federally controlled facilities may be required based on program needs.
Environmental Requirements:
  • Mainly a routine office environment.
  • May be required to lift up to ten (10) pounds
  • Flexible in working extended hours

The above statements are intended to describe the general nature and level of work being performed by the individual(s) assigned to this position. They are not intended to be an exhaustive list of all duties, responsibilities, and skills required. Unissant management reserves the right to modify, add, or remove duties and to assign other duties as necessary. In addition, where applicable and available, reasonable accommodation(s) may be made to enable individuals with disabilities to perform essential functions of this position.

Candidate(s) will be required to go through pre-employment screening.

Unissant, Inc. is a proud Equal Opportunity Employer! (EOE; M/F/Disability/Vets)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Operations Lead
Cybersecurity Operations Lead

Unissant • Bethesda (MD)

Hybrid
USD 140,000 - 190,000
Vulnerability Management Lead
Vulnerability Management Lead

Unissant • Bethesda (MD)

Hybrid
USD 120,000 - 180,000
Team Leader - Security
Team Leader - Security

Unissant • Washington

On-site
USD 120,000 - 160,000
Security Assessment & Accreditation Lead
Security Assessment & Accreditation Lead

Unissant • Bethesda (MD)

Hybrid
USD 120,000 - 150,000
Program Manager
Program Manager

Unissant • Bethesda (MD)

On-site
USD 130,000 - 180,000
System Database Developer - SecDevOps
System Database Developer - SecDevOps

Unissant • Bethesda (MD)

Hybrid
USD 120,000 - 160,000
Remote Cyber Incident & App Security Lead
Remote Cyber Incident & App Security Lead

Unissant • Bethesda (MD)

Hybrid
USD 120,000 - 170,000
Cloud / DevSecOps Architect
Cloud / DevSecOps Architect

Unissant • Bethesda (MD)

On-site
USD 160,000 - 230,000
Systems Architect / Technical Lead
Systems Architect / Technical Lead

Unissant • Washington

On-site
USD 140,000 - 190,000
Team Leader - Engineering and Integration
Team Leader - Engineering and Integration

Unissant • Bethesda (MD)

On-site
USD 120,000 - 150,000