Jobs · Information Technology · Virginia

Incident Response Senior Analyst (Tier 3)

Resource Management Concepts, Inc. · Quantico, VA · 3 days ago
On-siteInformation Technology$135k–$150k/yrFull-time

About the role

This position supports an active government contract in Quantico, Virginia, providing defensive cyberspace operations and Cyber Security Service Provider (CSSP) functions. The role supports the government's mission to deny, disrupt, and degrade adversaries' abilities and attempts to disrupt, exploit and attack the information technology (IT) services provided to network users.

Responsibilities

  • Collect and analyze network and host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and mitigation of cyber threats within the Enterprise Network through the investigation process
  • Conduct forensic analysis of device timeline, device memory, file systems, and packet captures (pcap) - Digital Forensics & Incident Response (DFIR)
  • Manage and document cyber defense incidents from initial detection through final resolution
  • Perform quality assurance on routine cyber incident reporting to ensure accuracy and compliance to policies and procedures
  • Make recommendations for alert tuning and creation of new detection use cases from information gathered during response to new techniques observed on the network
  • Mentor junior analysts and guide them through the investigation process as necessary
  • Develop and refine curriculum for the supported customer's Incident Response Course
  • Assist in instructing an Incident Response Course

Requirements

  • Three years of incident response experience
  • Active TS/SCI (DoD TOP SECRET clearance with Sensitive Compartmented Information access) eligibility is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information. Candidate can begin supporting this position with a fully adjudicated DoD Secret clearance
  • Associate's degree in a Computer Science, Information Technology, Information Systems, or Computer Engineering field; OR five (5) years of relatable work experience
  • DoD 8570 IAT Level II certification
  • DoD 8570 CSSP Incident Responder certification (or be able to obtain within 180 days)

Schedule

  • M-F, 5 X 8, between 7:00am EST and 5:00pm EST, normally not to exceed 40 hours per week
  • This position may require extended or non-standard hours occasionally to support major cyber incidents
  • This position is considered essential and may be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies

Benefits

  • Investment in career growth through training, certification, education, and employee development
  • Tuition assistance
  • Monday to Friday full-time day shift work
  • Paid relocation assistance
  • Competitive paid vacation package with 11 paid federal holidays
  • High-quality, low-deductible healthcare plans
  • Pet insurance
  • Competitive 401K package
  • Salary range: $135,000.00 to $150,000.00 annually

Similar jobs