Cyber Defense Incident Responder

21 Mar 2025
Apply

OverviewGovCIO is currently hiring for a Cyber Defense Incident Responder to work 1st or 2nd shift onsite in Washington, DC.Responsibilities

Respond to cyber incidents, including responding to SOC IR phone calls and SOC emails from the client and customer POCs

Provide support in the detection, responses, mitigation, and reporting of cyber threats affecting internal and external clients’ networks

Maintain an understanding of the current vulnerabilities, response, and mitigation strategies used in the cyber security operation center

Develop documentation, reports, briefs, and review SOPs with customer to give an accurate depiction of the current threat landscape and associated risk that is affecting the clients’ networks

Provide analysis for correlated information sources to the client which is notified by the Cyber SOC Team Lead or the Government Watch Officer

Act as a Subject Matter Expert in investigations for potential incidents at the SOC Tier 1 Level

Analyze and report cyber threats as well as assist in deterring, identifying, monitoring, investigating, and analyzing computer network intrusions

Work with SOC federal staff, Shift Lead, Senior Analyst to analyze, triage, contain, and remediate security incidents

Follow Federal IRP, SOC SOPs and other prudent documentation procedures to work and be effective while having an eye towards process improvement/effectivity

Knowledgeable on multiple technology and system types

Able to articulate the incident response lifecycle

Qualifications

Bachelor's with 8+ years of cyber defense incident handling experience (or commensurate experience)

7+ years of SOC experience, 3+ years working at a senior/lead capacity. Direct experience executing Incident Handling and Response activities

Understanding of Security tools and the Security Stack

Working knowledge of Splunk

Basic understanding of network protocols and packet analysis tools

Cyber Security background

Certification: Splunk Fundamentals I & II and one or more advanced certifications including but not limited to: CISSP, GCIH, GCIA

Clearance Required: Ability to maintain a Public Trust clearance

Company OverviewGovCIO is a team of transformerspeople who are passionate about transforming government IT. Every day, we make a positive impact by delivering innovative IT services and solutions that improve how government agencies operate and serve our citizens.But we can't do it alone. We need great people to help us do great things - for our customers, our culture, and our ability to attract other great people. We are changing the face of government IT and building a workforce that fuels this mission. Are you ready to be a transformer?We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, or status as a protected veteran. EOE, including disability/vets.Posted Pay RangeThe posted pay range, if referenced, reflects the range expected for this position at the commencement of employment, however, base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, education, experience, and internal equity. The total compensation package for this position may also include other compensation elements, to be discussed during the hiring process. If hired, employee will be in an “at-will position” and the GovCIO reserves the right to modify base salary (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, GovCIO or individual department/team performance, and market factors.Posted Salary RangeUSD $120,000.00 - USD $140,000.00 /Yr.Submit a referral to this job (https://careers-govcio.icims.com/jobs/5775/cyber-defense-incident-responder/job?mode=apply&apply=yes&iniframe=1&hashed=-1834385473)Location US-DC-Washington, D.C.ID 2025-5775Category Information TechnologyPosition Type Full-Time

Full-time
Apply