Incident Response Analyst
Incident Response Analyst - Eligibility for TS/SCI ClearanceLocation: Arlington, VA
About the OpportunityA leading provider of advanced cybersecurity research, software solutions, and engineering services is seeking an experienced Incident Response Analyst. This role supports high-impact cybersecurity operations across critical infrastructure environments, combining incident response, threat hunting, and technical analysis.
Role OverviewThe Incident Response Analyst will support cybersecurity incidents within ICS, OT, and IT environments, working with a multidisciplinary team to protect critical infrastructure sectors such as water, power, and transportation. This role requires strong technical acumen, exceptional analytical skills, and the ability to operate in sensitive and mission-driven environments.
Key ResponsibilitiesRespond to cybersecurity incidents affecting ICS/OT/IT environments and provide recommendations to prevent recurrenceApply traditional and advanced incident response tradecraft to critical infrastructure networksConduct in-depth technical operations and forensic analysisContribute sector expertise across utilities and transportation environmentsCollaborate in a team setting to support mission requirements for incident response and threat huntingMaintain accurate documentation of all findings and actionsPrepare and present incident reports for management and stakeholdersStay current with cybersecurity trends, threat activity, and evolving tools
Required QualificationsBachelors degree with 8+ years of related experience, Masters with 6+ years, or PhD with 3+ years;OR 12 years of technical experience in lieu of a degree12 years of Threat Hunting or DFIR experience supporting Critical Infrastructure (CI) or Industrial Control Systems (ICS)Scripting experience in Python, Bash, PowerShell, and/or JavaScriptExperience analyzing malicious applications across Linux, macOS, Windows, iOS, Android, and IoT devicesExperience conducting security site assessments and scoping activitiesHands-on experience with tools such as Ida-Pro, Ollydbg, X64dbg, Scylla, Objdump, Readelf, Ghidra, Process Explorer, CFF Explorer, Wireshark, Fiddler, Regshot, Process Monitor, and Process HackerFamiliarity with open source and commercial tools for event analysis and security operationsExperience using SIEM platforms for pattern identification, anomaly detection, and trend analysisExperience analyzing industrial control system protocols (e.g., ModBus, ENIP/CIP, BACnet, DNP3)Ability to obtain and maintain a DHS background investigation (EOD)
$160,000 - $200,000 a year
Compensation details: 160000-200000 Yearly Salary

PId45bcfbbde3d-37641-39256398