Incident Response Senior Analyst (Tier 3)

Resource Management Concepts, Inc.

Quantico (VA)

On-site

USD 135,000 - 150,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Relocation assistance
Paid vacation (11 federal holidays)
Healthcare plans
Pet insurance
401K

Job summary

Resource Management Concepts, Inc. (RMC) seeks a Tier 3 Incident Response Senior Analyst to support a government contract in Quantico, Virginia.

You will provide defensive cyberspace operations and CSSP functions to help deny, disrupt, and degrade adversaries while protecting IT services for network users. Responsibilities include DFIR analysis, incident management from detection to resolution, QA reporting, alert tuning, and mentoring junior analysts.

Qualifications

  • Three years of incident response experience.
  • Active TS/SCI clearance eligibility and potential DoD Secret clearance.
  • DoD 8570 IAT Level II certification.
  • DoD 8570 CSSP Incident Responder certification or ability to obtain within 180 days.

Responsibilities

  • Collect and analyze network and host artifacts to characterize activity and enable remediation.
  • Conduct DFIR analysis of devices and packet captures.
  • Manage and document cyber defense incidents from detection to resolution.
  • QA incident reports for accuracy and policy compliance.
  • Recommend alert tuning and new detection use cases.
  • Mentor junior analysts through investigations.
  • Develop and refine curriculum for Incident Response Course.
  • Assist in instructing the Incident Response Course.

Skills

Incident response
Forensic analysis
Cyber defense
Mentoring
Curriculum development

Education

Associate's degree in CS/IT/IS/Engineering
Five years of relatable work experience

Job description

RMC is hiring a Tier 3 Incident Response Senior Analyst to support an active government contract in Quantico, Virginia, providing defensive cyberspace operations and Cyber Security Service Provider (CSSP) functions. This position will support the government's mission to deny, disrupt, and degrade adversaries’ abilities and attempts to disrupt, exploit and attack the information technology (IT) services provided to network users.

The selected applicant will perform a variety of activities including but not limited to:

  • Collect and analyze network and host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and mitigation of cyber threats within the Enterprise Network through the investigation process.
  • Conduct forensic analysis of device timeline, device memory, file systems, and packet captures (pcap) - Digital Forensics & Incident Response (DFIR).
  • Manage and document cyber defense incidents from initial detection through final resolution.
  • Perform quality assurance on routine cyber incident reporting to ensure accuracy and compliance to policies and procedures.
  • Make recommendations for alert tuning and creation of new detection use cases from information gathered during response to new techniques observed on the network.
  • Mentor junior analysts and guide them through the investigation process as necessary.
  • Develop and refine curriculum for the supported customer's Incident Response Course.
  • Assist in instructing an Incident Response Course.
  • Three years of incident response experience.
  • Active TS/SCI (DoD TOP SECRET clearance with Sensitive Compartmented Information access) eligibility is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information. Candidate can begin supporting this position with a fully adjudicated DoD Secret clearance.
  • Associate's degree in a Computer Science, Information Technology, Information Systems, or Computer Engineering field; OR five (5) years of relatable work experience.
  • DoD 8570 IAT Level II certification.
  • DoD 8570 CSSP Incident Responder certification (or be able to obtain within 180 days).

Schedule: M-F, 5 X 8, between 7:00am EST and 5:00pm EST, normally not to exceed 40 hours per week.

This position may require extended or non-standard hours occasionally to support major cyber incidents. This position is considered essential and may be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.

At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.

RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. We offer Monday to Friday full-time day shift work, and can assist in paid relocation. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.

“Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements. The current salary range for this position will be $135,000.00 to $150,000.00 annually.”

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Defense Incident Responder (Tier 2)
Cyber Defense Incident Responder (Tier 2)

Resource Management Concepts, Inc. • Quantico (VA)

On-site
USD 120,000 - 130,000
Competitive salary
11 paid federal holidays
Health care plans
+3
Cloud Response Subject Matter Expert (SME)
Cloud Response Subject Matter Expert (SME)

Resource Management Concepts, Inc. • Quantico (VA)

On-site
USD 155,000 - 175,000
11 paid federal holidays
Competitive health plans
401K with company match
+1
Cloud Response Subject Matter Expert (SME)
Cloud Response Subject Matter Expert (SME)

RMC - Resource Management Concepts Inc. • Quantico (VA)

On-site
USD 155,000 - 175,000
Tuition assistance
Healthcare plans
Pet insurance
+2
Cyber Defense Threat Hunting Analyst
Cyber Defense Threat Hunting Analyst

Resource Management Concepts, Inc. • Quantico (VA)

On-site
USD 125,000 - 145,000
Relocation assistance
Health insurance
401K
+4
Senior Incident Response Analyst (Tier 3) — TS/SCI Eligible
Senior Incident Response Analyst (Tier 3) — TS/SCI Eligible

Resource Management Concepts, Inc. • Quantico (VA)

On-site
USD 135,000 - 150,000
Relocation assistance
Paid vacation & holidays
Healthcare plans
+2
Senior Incident Response Analyst - TS/SCI (Defense Cyber)
Senior Incident Response Analyst - TS/SCI (Defense Cyber)

Resource Management Concepts, Inc. • Quantico (VA)

On-site
USD 135,000 - 150,000
Relocation assistance
Paid vacation (11 federal holidays)
Healthcare plans
+2
Cyber Defense Threat Hunting Analyst
Cyber Defense Threat Hunting Analyst

Resource Management Concepts, Inc. • United States

On-site
USD 125,000 - 145,000
Relocation assistance
Paid vacation (11 holidays)
Health insurance
+2
Sr. System Administrator - Tier II Lead
Sr. System Administrator - Tier II Lead

Resource Management Concepts, Inc. • Crane (IN)

On-site
USD 80,000 - 120,000
Cyber Security Specialist at Resource Management Concepts, Inc. Dahlgren, VA
Cyber Security Specialist at Resource Management Concepts, Inc. Dahlgren, VA

Comunidade Metodista • Dahlgren (VA)

On-site
USD 90,000 - 135,000
Relocation assistance
Vacation and holidays
Healthcare plans
+2
Sr. System Administrator - Tier II Lead
Sr. System Administrator - Tier II Lead

Resource Management Concepts, Inc. • Crane (TX)

On-site
USD 80,000 - 120,000
Healthcare plans
401K package