Senior Incident Response Analyst

Leidos Inc

Arlington (VA)

On-site

USD 131,300 - 237,350

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive compensation
Health and wellness programs
Paid leave
Retirement benefits

Job summary

Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program.

With an emphasis on strong analytical skills, technical expertise in incident response, and communication abilities, successful candidates will receive competitive compensation ranging from $131,300 to $237,350, along with various health and wellness benefits.

Qualifications

  • 12-15 years of related experience in incident response or cybersecurity.
  • Expertise in recognizing suspicious activity and common attacker TTPs.
  • Technical hands-on experience in incident detection, malware analysis, or forensics.

Responsibilities

  • Coordinate investigation and response efforts throughout the Incident Response lifecycle.
  • Analyze events and data to determine the scope of Cyber Incidents.
  • Develop, document, and maintain Incident Response processes and playbooks.

Skills

Incident Response lifecycle
Operating Systems (Windows/Linux)
Enterprise Network Architectures
Cyber Kill Chain
Scripting (Python, PowerShell, Bash)
Analytical skills
Communication skills

Education

Bachelor's degree in Computer Science or related field

Tools

EDR
IDS
SIEM

Job description

Job Description

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

Our Digital Modernization Sector brings together our digital transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.

The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a new shared DHS incident tracking system and other means of coordination and communication. Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS CISA SOC Program.

Responsibilities
  • Coordinate investigation and response efforts throughout the Incident Response lifecycle
  • Correlate and analyze events and data to determine scope of Cyber Incidents
  • Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts
  • Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response
  • Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks
  • Tune and maintain security tools (EDR, IDS, SIEM, etc.) to reduce false positives and improve SOC detection capabilities
  • Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports
  • Create metrics and determine Key Performance Indicators to drive maturity of SOC operations
  • Develop security content such as scripts, signatures, and alerts
Basic Qualifications
  • Bachelor's degree in Computer Science, Engineering, Information Technology, Cyber Security, or related field and 12-15 years of related experience. Additional years of experience and/or cyber certifications may be considered in lieu of degree.
  • In-depth knowledge of each phase of the Incident Response life cycle
  • Expertise in Operating Systems (Windows/Linux) operations and artifacts
  • Expertise in Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc.), and devices (Firewalls, Proxies, Load Balancers, VPN, etc.)
  • Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents
  • Expertise with Cyber Kill Chain and have utilized the ATT&CK Framework
  • Scripting experience with Python, PowerShell, and/or Bash
  • Ability to independently prioritize and complete multiple tasks with little to no supervision
  • Flexible and adaptable self-starter with strong relationship-building skills
  • Strong problem-solving abilities with an analytic and qualitative eye for reasoning
  • Strong verbal and written communication skills
  • Ability to communicate with all levels of audiences (subordinates, peers & leadership)
  • Candidate must have technical hands‑on experience in the areas of incident detection and response, malware analysis, or computer forensics
  • All Department of Homeland Security SOC employees are required to favorably pass a 5-year (BI) Background Investigation
  • Required certifications: SANS GIAC (GCIH, GCIA, GCFA, GPEN, GCFE, GREM); CISSP; OSCP, OSCE, OSWP
Preferred Qualifications
  • Experience in cyber government and/or federal law enforcement FISMA systems
Benefits

Pay and benefits include competitive compensation, health and wellness programs, income protection, paid leave, and retirement. Compensation ranges between $131,300.00 and $237,350.00 and is determined by responsibilities, education, experience, and other factors.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Analyst
Senior Incident Response Analyst

Leidos • Virginia (MN)

On-site
USD 131,000 - 237,000
SOC Analyst
SOC Analyst

Leidos • Alexandria (VA)

On-site
USD 87,000 - 158,000
Competitive compensation
Health and Wellness programs
Retirement benefits
Cyber Tier 1 Deputy Team Lead
Cyber Tier 1 Deputy Team Lead

Leidos • Chandler (AZ)

On-site
USD 87,000 - 157,000
Cyber Analyst
Cyber Analyst

Leidos • Lawton (OK)

On-site
USD 87,000 - 157,000
Paid Time Off
11 holidays
401K with company match
Cyber Analyst
Cyber Analyst

Leidos Inc • Lawton (OK)

On-site
USD 87,000 - 157,000
Cyber Analyst
Cyber Analyst

Leidos • United States

On-site
USD 87,000 - 157,000
Paid Time Off
11 paid Holidays
401K with company match
+2
Cybersecurity Engineer SME
Cybersecurity Engineer SME

Leidos • United States

On-site
USD 154,000 - 278,000
Paid Time Off
401K with 6% company match
Flexible schedules
Cyber Analyst
Cyber Analyst

Koitecc Solutions • Lawton (OK)

On-site
USD 87,000 - 157,000
Competitive benefits
Cybersecurity Analyst
Cybersecurity Analyst

Leidos Inc • Shiloh (IL)

On-site
USD 69,000 - 126,000
Health and Wellness programs
Paid Leave
Retirement benefits
Insider Threat Program Senior System Engineer
Insider Threat Program Senior System Engineer

Leidos • Fairfax (VA)

On-site
USD 148,000 - 270,000