Mid-Level Cybersecurity Incident Response Analyst

System One

Bethesda (MD)

Hybrid

USD 108,000 - 132,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
Spending accounts
Life insurance
401(k) plan

Job summary

System One in Bethesda, MD is seeking a Mid-Level Cybersecurity Incident Response Analyst to monitor security alerts, perform investigations, and coordinate incident response activities. This role supports hybrid work arrangements and requires hands-on expertise in security operations.

The ideal candidate will have 3–5 years of incident response experience, familiarity with SIEM/EDR/IDS/IPS, and knowledge of MITRE ATT&CK and NIST guidelines.

Qualifications

  • Bachelor's degree required or 4 additional years of relevant experience substituted for degree.
  • 3–5 years of cyber operations/incident response experience with investigations, monitoring, log analysis, and threat detection.

Responsibilities

  • Monitor, analyze, and investigate security alerts from SIEM, EDR, IDS/IPS, and cloud security tools.
  • Perform incident detection, triage, analysis, containment, and recovery activities.
  • Conduct investigations to determine scope, impact, and recommended response actions.
  • Analyze logs, endpoint data, network traffic, and system data for malicious activity.
  • Support continuous monitoring of networks, endpoints, cloud environments, and security infrastructure.
  • Identify IOCs and contribute to CTI activities through research and dissemination.
  • Assist with forensic evidence collection, malware analysis, and investigations.
  • Maintain incident documentation and contribute to metrics and reporting.
  • Participate in tabletop exercises and process improvement initiatives.
  • Provide guidance to junior analysts.

Skills

SIEM
EDR
IDS/IPS
Cloud security
Threat hunting
Digital forensics
CTI
MITRE ATT&CK
NIST SP 800-61

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

SOAR
Cloud security technologies

Job description

Job Title: Mid-Level Cybersecurity Incident Response Analyst
Location: Bethesda, Maryland
Type: Direct Hire
Compensation: 120k
Work Model: Hybrid
Hours: 40.0
Security Clearance: Public Trust

Responsibilities

  • Monitor, analyze, and investigate security alerts generated by SIEM, EDR, IDS/IPS, cloud security platforms, and other enterprise security tools.
  • Perform incident detection, triage, analysis, documentation, containment, recovery, and escalation activities.
  • Conduct incident investigations and determine scope, impact, and recommended response actions.
  • Analyze security logs, endpoint artifacts, network traffic, and system data to identify malicious activity.
  • Support continuous monitoring of enterprise networks, endpoints, cloud environments, and security infrastructure.
  • Perform proactive threat hunting and identify, collect, and document Indicators of Compromise (IOCs).
  • Support Cyber Threat Intelligence (CTI) activities through research, correlation, and dissemination.
  • Assist senior personnel with digital forensic evidence collection, malware analysis, and forensic investigations.
  • Maintain incident documentation and contribute to operational metrics and reporting.
  • Participate in tabletop exercises and continuous process improvement initiatives.
  • Provide technical guidance and day-to-day support to junior analysts.
Requirements
  • Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field. Four additional years of relevant experience may substitute for a bachelor's degree.
  • Experience: 3–5 years supporting cybersecurity operations, SOCs, incident response, or information security programs with experience in incident investigations, security monitoring, log analysis, and threat detection.
  • Preferred Qualifications: Experience with SIEM, EDR, IDS/IPS, SOAR, and cloud security technologies.
  • Knowledge of digital forensics, malware analysis, cyber threat intelligence, and threat hunting.
  • Familiarity with MITRE ATT&CK and NIST SP 800-61/SP 800-86.
  • Experience supporting federal cybersecurity programs.
  • Desired Certifications: CompTIA CySA+, CompTIA Security+, GIAC GCIH, GIAC GSEC, ISC2 Certified in Cybersecurity (CC), Microsoft SC-200, or equivalent.
  • Strong analytical and investigative skills.
  • Working knowledge of incident response methodologies and security operations.
  • Strong written and verbal communication skills.
  • Ability to prioritize multiple tasks in a fast-paced environment.
  • Ability to mentor junior analysts and collaborate across technical teams.
  • Commitment to continuous professional development.

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

  • medical
  • dental
  • vision
  • spending accounts
  • life insurance
  • voluntary plans
  • participation in a 401(k) plan

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

System One • Huntsville (AL)

On-site
USD 110,000 - 160,000
Mid-Level Vulnerability Management Analyst
Mid-Level Vulnerability Management Analyst

System One • Bethesda (MD)

Hybrid
USD 90,000 - 120,000
Health and welfare benefits
401(k) plan
Cyber Security Engineer III
Cyber Security Engineer III

System One • Springfield (VA)

On-site
USD 85,000 - 110,000
RMF IT Security Analyst
RMF IT Security Analyst

System One • Bethesda (MD)

Hybrid
USD 90,000 - 130,000
Health benefits
401(k) plan
Dental insurance
+2
Cybersecurity Analyst with Security Clearance
Cybersecurity Analyst with Security Clearance

B/CORE • McLean (VA)

On-site
USD 120,000 - 179,000
Health/Dental/Vision
401(k)
Paid Time Off
+1
Information Security Vulnerability Analyst
Information Security Vulnerability Analyst

System One • Louisville (KY)

On-site
USD 85,000 - 120,000
Health coverage
Dental coverage
Vision coverage
+4
Mid-Level Security Control Assessor
Mid-Level Security Control Assessor

System One • Bethesda (MD)

Hybrid
USD 135,000 - 145,000
Health and welfare benefits
401(k) plan
Cybersecurity Analyst
Cybersecurity Analyst

ACI Infotech • Washington

Hybrid
USD 75,000 - 95,000
Health, dental, and vision insurance
401(k) with company match
Flexible PTO policy
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

MANTECH • McLean (VA)

On-site
USD 90,000 - 130,000
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

ManTech International • United States

On-site
USD 80,000 - 110,000