Incident Responder (3rd Shift)

Via Logic LLC

Suitland (MD)

On-site

USD 108,000 - 195,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Leidos is seeking an Incident Responder (3rd Shift) to join a mission-focused cybersecurity team supporting the Office of Naval Intelligence at HGCC in Suitland, MD. You will defend Navy networks, respond to incidents, contain systems, and analyze artifacts to aid recovery.

Responsibilities span the full incident response lifecycle across TS/SCI environments, collaborating with security, intelligence, and investigative partners. Active clearance and strong CND/SIEM experience are essential.

Qualifications

  • Bachelor’s degree in Cybersecurity or related field with 8+ years of experience, or Master’s with 6+ years.
  • Active TS/SCI clearance.
  • Extensive experience in the Computer Network Defense (CND) discipline.
  • Experience with SIEM systems such as Splunk and Elastic.
  • Experience with NIDPS like Cisco FirePower and Palo Alto NGFW, plus end-user tools.

Responsibilities

  • Perform all phases of the incident response lifecycle, including detection, analysis, containment, eradication, and recovery.
  • Receive and act on escalations from Tier 1 analysts, conduct spillage response and cleanup activities, and support incident response for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Receive and respond to incident notifications from customers via telephone and email.
  • Prepare and submit Electronic Spillage Assessment Forms (ESAFs) to the NNWC Electronic Spillage Center.
  • Monitor Data Loss Prevention (DLP) outputs for classified code words and potential spillage indicators.
  • Coordinate and communicate with internal and external stakeholders, including SSOs, JAG, ONI ISSM, Hopper ISSM, CNI, NAVNETWARCOM, IC SCC, NCDOC, NCIS, and other IC/DoD teams.
  • Maintain detailed and accurate incident documentation and timelines throughout the response process.
  • Participate in incident response meetings, briefings, and after action reviews.
  • Support the execution and evaluation of annual security exercises.

Skills

CND discipline
SIEM (Splunk)
Elastic
Python

Education

Bachelor’s degree or higher in Cybersecurity/InfoSec
8+ years experience or Master’s +6 years

Tools

Splunk
Elastic
NIDPS
FirePower
Tanium

Job description

Incident Responder (3rd Shift)

Location: Suitland, MD

Clearance: Active TS/SCI

3rd Shift Work Hours: 2330 - 0730

Leidos is seeking an Incident Responder (3rd Shift) to join a mission focused cybersecurity team supporting the Office of Naval Intelligence (ONI) at the Hopper Global Communications Center (HGCC) in Suitland, MD.

In this role, you will serve as a digital first responder, helping defend the Navy's critical maritime intelligence networks against cyber threats. You will respond to and investigate cybersecurity incidents, contain affected systems, limit operational impact, and collect and analyze digital artifacts to support effective response and recovery. Working across the incident response lifecycle, you will collaborate with cybersecurity, intelligence, and investigative partners to help protect highly sensitive TS/SCI environments.

Work Schedule: This is a 3rd shift position with regular work hours of 2330 - 0730. Occasional floater shifts or coverage outside of these hours may be required based on program and staffing needs.

Primary Responsibilities
  • Perform all phases of the incident response lifecycle, including detection, analysis, containment, eradication, and recovery.
  • Receive and act on escalations from Tier 1 analysts, conduct spillage response and cleanup activities, and support incident response for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Receive and respond to incident notifications from customers via telephone and email.
  • Prepare and submit Electronic Spillage Assessment Forms (ESAFs) to the NNWC Electronic Spillage Center.
  • Monitor Data Loss Prevention (DLP) outputs for classified code words and potential spillage indicators.
  • Coordinate and communicate with internal and external stakeholders, including Special Security Officers (SSOs), Judge Advocate General (JAG), ONI ISSM, Hopper ISSM, CNI, NAVNETWARCOM, IC SCC, NCDOC, NCIS, and other IC and DoD SOC/DCO teams.
  • Maintain detailed and accurate incident documentation and timelines throughout the response process.
  • Participate in incident response meetings, briefings, and after action reviews.
  • Support the execution and evaluation of annual security exercises.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Extensive experience in the Computer Network Defense (CND) discipline.
  • Significant professional experience monitoring, analyzing, and investigating alerts generated by cybersecurity tools.
  • Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
  • Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.
  • Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.
  • Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
  • Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.
Required Certifications
  • Must possess one of the following certifications or obtain one within 30 days of accepting an offer: Certified Ethical Hacker (CEH), CyberSec First Responder (CFR), CompTIA Cybersecurity Analyst (CySA+), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Incident Handler (GCIH), EC Council Certified Incident Handler (ECIH), or Cisco Cybersecurity Specialist (SCYBER).
Pay Range

Pay Range $107,900.00 - $195,050.00

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Responder (3rd Shift)
Incident Responder (3rd Shift)

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder (2nd Shift)
Incident Responder (2nd Shift)

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder (Weekend Day Shift)
Incident Responder (Weekend Day Shift)

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder (2nd Shift)
Incident Responder (2nd Shift)

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Health and Wellness programs
Income protection
Paid leave and retirement
Incident Responder (Weekend Day Shift)
Incident Responder (Weekend Day Shift)

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder (Weekend Night Shift)
Incident Responder (Weekend Night Shift)

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder (Weekend Night Shift)
Incident Responder (Weekend Night Shift)

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Incident Responder
Incident Responder

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Cyber Defense Analyst (3rd Shift)
Cyber Defense Analyst (3rd Shift)

Via Logic LLC • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (3rd Shift)
Cyber Defense Analyst (3rd Shift)

Leidos • Suitland (MD)

On-site
USD 87,000 - 157,000