Tier 3 Incident Response Lead

Tyto Athene, LLC

  • Washington, Washington, DC
  • 2 days ago
  • $170,000–$180,000 Per Year
  • Full-time
Want to know if you’re a fit?
Upload your resume and let our AI show you.

Skills

  • Analysis Skillsunmatched
  • CEH - Certified Ethical Hackerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Computer Forensicsunmatched
  • Computer Securityunmatched
  • Cross-Functionalunmatched
  • Customer Relationsunmatched
  • Cyber Threat Huntingunmatched
  • Defense Intelligenceunmatched
  • GCFA - GIAC Certified Forensic Analystunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • Hybrid Cloudunmatched
  • IP Multimedia System (IMS)unmatched
  • Incident Managementunmatched
  • Incident Responseunmatched
  • Industry Standardsunmatched
  • Internet Securityunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Prevention Systemsunmatched
  • Law Enforcementunmatched
  • Leading Edge Technologyunmatched
  • Malwareunmatched
  • Malware Analysisunmatched
  • Mentoringunmatched
  • Network Architecture/Engineeringunmatched
  • Open Sourceunmatched
  • Operations Security (OPSEC)unmatched
  • People Managementunmatched
  • Public Safetyunmatched
  • Python Programming/Scripting Languageunmatched
  • Regular Expressionsunmatched
  • Reverse Engineeringunmatched
  • Risk Managementunmatched
  • Root Cause Analysisunmatched
  • Safety/Work Safetyunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Software as a Service (SaaS)unmatched
  • Standard Operating Procedures (SOP)unmatched
  • Team Lead/Managerunmatched
  • Team Playerunmatched

Description

Description:

Tyto Athene is searching for a Tier 3 Incident Response Lead. You will play a critical role in conducting in-depth analyses and responding to incidents from cyber threats facing our clients. In addition to being our initial point of contact for end users, you will serve as the escalation point for other analysts, helping guide them through more complex and high-priority incidents.

 

Responsibilities:

  • Lead cross-functional teams to perform in-depth analysis and investigation of high-priority cybersecurity incidents
  • Utilize security tools to analyze, investigate, and triage security alerts
  • Coordinate the monitoring of our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
  • Utilize advanced tools, such as digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
  • Collaborate with cyber threat hunting and cyber threat intelligence teams
  • Serve as the primary incident point of contact with law enforcement, third-party vendors, and other external parties
  • Conduct post-incident analysis and lessons learned to identify improvement opportunities
  • Develop or tune detection rules or signatures to improve the effectiveness of security monitoring and collaborate with engineering teams to implement them
  • Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
  • Learn new open and closed-source investigative techniques
  • Perform research on emerging threats and vulnerabilities to aid their prevention and mitigation
  • Assist in developing and implementing initiatives that will enhance the SOC’s performance (e.g., SOPs, playbooks, capability deployments)
  • Escalate SOC performance issues or risks to management
  • Provide guidance and mentorship to Tier 1 and Tier 2 SOC Analysts to enhance their skills and capabilities
Qualifications:

Required:

  • Bachelor’s Degree or an equivalent combination of formal education and experience in relevant field.
  • 8 or more years of cyber security experience.
  • 8 or more years of experience in investigating network and endpoint architecture
  • CISSP and CEH certifications or equivalent.
  • 3 or more years of incident response experience.
  • 3 or more years of SIEM experience.
  • 2 or more years of Endpoint Detection Response (EDR) experience.
  • Demonstrated competency in opensource industry standard forensic tools and suites
  • Experience with operational security, including security operations center (SOC), incident response, malware analysis, or IDS and IPS analyses
  • Understanding of scripting languages such as Python and regular expressions

Desired:

  • CISSP - Certified Information Systems Security Professional
  • GCFA - GIAC Certified Forensic Analyst
  • GCFE - GIAC Certified Forensic Examiner
  • GREM - GIAC Reverse Engineering Malware

Location:

  • This is hybrid position with requirements to report to the client site in Washington, DC for incident support as needed
About Tyto Athene:

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $170,000-$180,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

 

Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide. 
 
At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto? 
 
Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Numbers & Facts

LocationWashington, Washington, DC
Job TypeFull-time
Salary$170,000–$180,000 Per Year

Similar Jobs