A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience with enterprise incident response tools and a good understanding of federal cybersecurity frameworks. Remote work is permitted with occasional on-site duties in the Washington, D.C. area.
Qualifications
Experience supporting federal agencies (HHS, DHS, DoD, DOJ, etc.) is a plus.
Certifications such as Security+, CySA+, CEH, GCIH preferred.
Knowledge of scripting languages (Python, PowerShell) is beneficial.
Responsibilities
Perform initial triage of security events across various platforms.
Conduct incident investigations including forensics and log analysis.
Provide daily updates on incident status and investigative steps.
Contribute to improvement of incident response processes.
Skills
CrowdStrike Falcon (EDR)
FireEye/Trellix
Splunk
NetWitness
Magnet AXIOM
Strong understanding of adversary techniques
Ability to document investigations
Education
2–5+ years of experience in cybersecurity operations
Tools
ServiceNow
Packet analysis tools (Wireshark)
Job description
A cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for federal contracts. The role includes event triage, incident investigations, and close coordination with federal cybersecurity teams. Ideal candidates will have experience with enterprise incident response tools and a good understanding of federal cybersecurity frameworks. Remote work is permitted with occasional on-site duties in the Washington, D.C. area.