Senior Incident Response Lead (TS/SCI)

Leidos

Ashburn (VA)

On-site

USD 110,000 - 195,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Leidos seeks an Incident Response Lead to join our cyber security team supporting the DHS SOC program. You will oversee incident handling, detection, and analysis across a 24x7 environment, guiding a seasoned team and coordinating with DHS components.

Preferred qualifications include a CISSP and SANS GCIH/GCIA, active TS/SCI clearance, and 8–12 years in technical roles. A Bachelor's degree and supervisory experience are required.

Qualifications

  • Bachelor's Degree and 8-12 years of technical experience.
  • 4+ years of supervising and/or managing teams
  • 5+ years of intrusion detection and/or incident handling experience
  • CISSP and SANS GCIH or GCIA required upon start
  • Advanced knowledge in planning, directing, and managing Computer Incident Response Team (CIRT) and/or Security Operations Center (SOC) operations for a large and complex Enterprise
  • Significant experience supervising and leading employees of various labor categories and technical skill levels in efforts similar in size and scope to a mature Security Operation
  • Mature understanding of industry accepted standards for incident response actions and best practices related to SOC operations
  • Strong written and verbal communication skills, and the ability to create technical reports based on analytical findings
  • Strong analytical and troubleshooting skills
  • Must be a US Citizen
  • Must hold active TS/SCI security clearance to be considered

Responsibilities

  • In-depth knowledge of each phase of the Incident Response life cycle
  • Expertise in Operating Systems (Windows/Linux) operations and artifacts
  • Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)
  • Ability to recognize suspicious activity/events, common attacker TTPs, perform logical analysis and research to determine root cause and scope of Incidents
  • Drive implementation and improvement of new tools, capabilities, frameworks, and methodologies
  • Instill and reinforce industry best practices in the domains of incident response, cybersecurity analysis, case and knowledge management, and SOC operations
  • Promote and drive implementation of automation and process efficiencies
  • Familiarity with Cyber Kill Chain and ATT&CK Framework and how to leverage in Security Operations
  • Provide guidance and mentorship to improve analyst skill sets and ensure delivery of high quality analysis and work products
  • Establish trust and business relationships with customer and other relevant stakeholders

Skills

Incident response life cycle
Operating Systems Windows/Linux
Network architectures
Threat detection & TTPs
Tools/frameworks/methodologies
SOC operations best practices
Automation & process improvement
Cyber Kill Chain / ATT&CK
Mentorship & guidance
Stakeholder relations

Education

Bachelor's degree in a technical field

Tools

None

Job description

Leidos seeks an Incident Response Lead to join our cyber security team supporting the DHS SOC program. You will oversee incident handling, detection, and analysis across a 24x7 environment, guiding a seasoned team and coordinating with DHS components.

Preferred qualifications include a CISSP and SANS GCIH/GCIA, active TS/SCI clearance, and 8–12 years in technical roles. A Bachelor's degree and supervisory experience are required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Lead – SOC & Cyber Defense
Senior Incident Response Lead – SOC & Cyber Defense

Leidos Inc • Washington

On-site
USD 108,000 - 195,000
Senior Incident Response Lead — TS/SCI | 24x7 SOC
Senior Incident Response Lead — TS/SCI | 24x7 SOC

Leidos Inc • Ashburn (VA)

On-site
USD 108,000 - 195,000
Senior Incident Response Lead — Cyber Defense SOC
Senior Incident Response Lead — Cyber Defense SOC

Via Logic LLC • Ashburn (VA)

On-site
USD 108,000 - 195,000
Senior Incident Response Lead | SOC & Cyber Defense
Senior Incident Response Lead | SOC & Cyber Defense

Via Logic LLC • Washington

On-site
USD 108,000 - 195,000
Senior Incident Response Lead
Senior Incident Response Lead

Leidos • Washington

On-site
USD 108,000 - 195,000
Health and Wellness programs
Competitive compensation
Retirement benefits
Senior Cyber Incident Response Analyst (Remote)
Senior Cyber Incident Response Analyst (Remote)

Leidos • United States

On-site
USD 150,000 - 190,000
Senior SOC Lead: Incident Response & Threat Analytics
Senior SOC Lead: Incident Response & Threat Analytics

Leidos Inc • Alexandria (VA)

On-site
USD 131,000 - 237,000
SOC Lead: Cyber Incident Response & 24x7 Ops
SOC Lead: Cyber Incident Response & 24x7 Ops

Leidos • Alexandria (VA)

On-site
USD 131,000 - 237,000
Senior SOC Lead - Incident Response & Cyber Defense
Senior SOC Lead - Incident Response & Cyber Defense

Via Logic LLC • Alexandria (VA)

On-site
USD 131,000 - 237,000
Cyber Defense SOC Analyst – Incident Response Lead (TS/SCI)
Cyber Defense SOC Analyst – Incident Response Lead (TS/SCI)

Leidos Inc • Fort Belvoir (VA)

On-site
USD 87,000 - 157,000