Jobs · Tennessee

Tier II-III Incident Response Analyst

Boston Government Services, LLC (BGS) · Knoxville Metropolitan Area · 1 wk ago
$131k–$154k/yrFull-time

About the role

Boston Government Services, LLC. (BGS) is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex projects. We support clients at every stage, from strategic planning and program management to the execution of engineering and technical activities. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our experience and capabilities to provide mission-driven solutions tuned to our client's mission needs and strategic direction. Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability—where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees’ well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection.

Responsibilities

  • Support escalations from Tier 1, requiring deeper analysis, investigation, or response coordination.
  • Conduct triage, event analysis, evidence review, threat correlation, and incident documentation.
  • Analyze suspicious emails, websites, web downloads, endpoint alerts, network activity, and SIEM/EDR data.
  • Support malware analysis, forensic analysis, artifact collection, and digital evidence preservation under established procedures.
  • Coordinate with stakeholders during incident response activities and support containment, eradication, recovery, and lessons learned.
  • Develop incident response tickets, after-action reports, daily remediation activity reports, chain-of-custody forms, and monthly forensic activity summaries.
  • Collect and disseminate indicators of compromise and support cyber threat intelligence analysis.

Requirements

  • Bachelor's degree or equivalent.
  • Experience in incident response, SOC operations, threat analysis, vulnerability analysis, or forensic support.
  • Familiarity with SIEM, EDR, IDS/IPS, endpoint telemetry, logging platforms, ticketing systems, malware analysis processes, and evidence handling.
  • Knowledge of NIST SP 800-61, NIST SP 800-86, US-CERT/Federal incident notification expectations, and common attack techniques.
  • Ability to work under time-sensitive conditions and produce clear incident documentation.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.

Preferred Qualifications

  • GCIH, GCIA, GCFA, GCFE, Security+, CySA+, CISSP, CEH, or equivalent.

Schedule

Full-time, Monday – Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.

Location

This position may be fully onsite or hybrid/remote depending on the needs of the specific contract.

Benefits

  • Health, Dental, Vision, Life Insurance
  • Paid Vacation
  • 401K
  • Long and Short-Term Disability

Similar jobs

Incident Response Analyst II

AstreyaAustin, Texas Metropolitan Area· 1 mo ago
Engineering$70k–$72k/yrapply on astreya.wd5.myworkdayjobs.com