Incident Management Lead Applied Information SciencesIncident Management LeadAlexandria, VirginiaThe Incident Management Lead is responsible for directing enterprise-wide incident response activities, managing advanced cyber defense operations, and guiding teams in identifying, analyzing, and responding to cybersecurity threats. The ideal candidate has deep expertise in incident response, malware analysis, forensics, security engineering, and penetration testing, with a strong record of leading high-performing cyber operations teams.
Principal Network Evaluator Markon SolutionsPrincipal Network EvaluatorAnnapolis Junction, MD$120,000–$225,000 / yearMission Focus: Conduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of Network Defense Integrity (NDI) Methodology, digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
Principal Network Evaluator MarkonPrincipal Network EvaluatorAnnapolis Junction, Maryland$120,000–$225,000 / yearFull timeResponsibilities: Mission Focus: Conduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of Network Defense Integrity (NDI) Methodology, digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
NewSr. IR Specialist Nightwing Intelligence SolutionsSr. IR SpecialistSterling, VirginiaThe Senior JCDC Cyber Triage Analyst serves as a technical subject matter expert within the JCDC triage function, handling complex threat intelligence assessments while mentoring junior analysts and serving as a technical liaison to interagency partners. Working on this team means directly supporting the nation's cybersecurity defenders by ensuring they have reliable, scalable, and secure cloud infrastructure available within hours of a cyber incident—helping protect America's digital infrastructure when it matters most.
Principal Network Evaluator AmentumPrincipal Network EvaluatorMarylandConduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of Network Defense Integrity (NDI) Methodology, digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
Principal Network Evaluator Amentum Services IncPrincipal Network EvaluatorLinthicum, MDEssential Responsibilities: Conduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of Network Defense Integrity (NDI) Methodology, digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
Director, eDiscovery Ankura Consulting Group LLCDirector, eDiscoveryWashington DC, DC$85,000–$200,000 / yearThis role will serve as the client's point of contact and Bright Labs' day-to-day leader in the management and execution of projects and workstreams involving the identification, collection, processing, review, and production of electronic data relevant to litigation or regulatory investigations. Assist the business development team throughout the sales process by building relationships with current and potential future clients, demonstrating firm technology to potential clients, and providing supporting documentation, including proposals and cost estimates, regarding our offerings.
396 - Principal Network Evaluator ARSIEM396 - Principal Network EvaluatorLinthicum, MDFull timeConduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
Computer Network Evaluator (CND) Que Technology GroupComputer Network Evaluator (CND)MarylandMission Focus : Conduct proactive computer network defense activities by analyzing systems and networks to identify vulnerabilities, detect network intrusions, monitor security events, assess attack surfaces, and develop operational courses of action to mitigate cyber threats. Knowledge of digital forensics, intrusion detection systems, vulnerability scanning technologies, MITRE ATT&CK, NIST cybersecurity frameworks, and scripting languages.
Security Engineer, Public Sector Scale AI IncSecurity Engineer, Public SectorWashington, DC$218,400–$342,000 / yearYou will structure investigations, analyze root causes, and clearly communicate the significance of security incidents, their impact, and recommended remediation steps - but you''ll also turn those findings into durable engineering improvements: better detections, tighter schemas, and smarter automation. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position and may be inclusive of several career levels at Scale; it will be determined during the interview process based on work location and additional factors, including job-related skills, experience, qualifications, interview performance, and relevant education or training.
AOUSC - Insider Threat Program Lead cFocus Software IncorporatedAOUSC - Insider Threat Program LeadWashington, DCFull timeThe Lead will integrate user activity monitoring, behavioral analytics, threat intelligence, and investigative workflows to identify and mitigate malicious, negligent, or compromised insider activity. The ideal candidate possesses experience supporting insider threat programs within federal, intelligence community, law enforcement, or highly regulated environments.
NewCybersecurity - Incident Manager - Triage, Threat, SIEM Erias VenturesCybersecurity - Incident Manager - Triage, Threat, SIEMArlington, Virginia$110,000–$145,000 / yearThe Senior JCDC Cyber Triage Analyst serves as a technical subject matter expert within the JCDC triage function, handling complex threat intelligence assessments while mentoring junior analysts and serving as a technical liaison to interagency partners. Working on this team means directly supporting the nation's cybersecurity defenders by ensuring they have reliable, scalable, and secure cloud infrastructure available within hours of a cyber incident—helping protect America's digital infrastructure when it matters most.
Hausa & Spanish/Chinese Triage Examiners LeidosHausa & Spanish/Chinese Triage ExaminersBethesda, MarylandTriage Examiners should be experienced in general linguist operations and Document and Media Exploitation (DOMEX) operations, and are expected to leverage language and analytical skills, as well as advanced computer systems aptitude in addressing triage examination projects. Must have the sufficient language skills, analytic skills, and technical aptitude to gain proficiency with job-required tools and processes (On-the-job training may be provided as needed to address customer-specific needs, with ongoing evaluations throughout train-up period).
System Security Engineer CymertekSystem Security EngineerChantilly, VirginiaCybersecurity Engineer, Information Security Engineer, Network Security Engineer, IT Security Engineer, Cloud Security Engineer, Infrastructure Security Engineer, Endpoint Security Engineer, Security Operations Engineer, Security Systems Analyst, Data Security Engineer, Application Security Engineer, Identity and Access Management Engineer, Threat Detection Engineer, Vulnerability Management Engineer, Risk Assessment Engineer, Compliance Security Engineer, Incident Response Engineer, Secure Systems Architect, Security Automation Engineer, etc. Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, Network Engineering, Software Engineering, Systems Engineering, Electrical Engineering, Data Science, Telecommunications, Information Assurance, Security Management, Digital Forensics, Cryptography, Cyber Operations, Applied Mathematics, Artificial Intelligence, Risk Management, Secure Systems Design, etc.
Data Scientist - TS/SCI Xcelerate Solutions LLCData Scientist - TS/SCIVAResponsibilities: Work closely with a tight-knit team of data scientists, as well as a larger team of software developers, network engineers, senior investigators, program managers, researchers, and data analysts to design, build, and optimize a Data Science platform to produce and analyze results, disseminate findings, and contribute to publications and presentations. Bring your mix of intellectual curiosity, quantitative acumen, and customer-focus to identify novel sources of data across a range of fields, to improve the performance of predictive algorithms, and to encourage user adoption of high-end data analytics platforms in partnership with a highly qualified, highly motivated team.
Senior SIEM Engineer - Splunk Quantum SkySenior SIEM Engineer - SplunkWashington, Washington, DC$145,000–$155,000 / yearFull time8 years of general work experience with 6 years relevant “functional” experience in security operations or detection engineering, with substantial hands-on Splunk ownership, including at least some experience in distributed/clustered environments. Relevant certifications preferred: Splunk Core Certified Advanced Power User, Splunk Certified Architect, Splunk Enterprise Security Certified Admin, GCIA, GCIH, GCFA, or CISSP.
System Security Engineer CymertekSystem Security EngineerChantilly, VirginiaCybersecurity Engineer, Information Security Engineer, Network Security Engineer, IT Security Engineer, Cloud Security Engineer, Infrastructure Security Engineer, Endpoint Security Engineer, Security Operations Engineer, Security Systems Analyst, Data Security Engineer, Application Security Engineer, Identity and Access Management Engineer, Threat Detection Engineer, Vulnerability Management Engineer, Risk Assessment Engineer, Compliance Security Engineer, Incident Response Engineer, Secure Systems Architect, Security Automation Engineer, etc. Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, Network Engineering, Software Engineering, Systems Engineering, Electrical Engineering, Data Science, Telecommunications, Information Assurance, Security Management, Digital Forensics, Cryptography, Cyber Operations, Applied Mathematics, Artificial Intelligence, Risk Management, Secure Systems Design, etc.
Cyber Incident Manager III NewGen TechnologiesCyber Incident Manager IIIArlington, VirginiaKnowledge of system and application security threats and attack methods (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code). Our Partner is support a US Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, bringing immediate investigation and resolution.
Incident Manager III ARSIEMIncident Manager IIIArlington, VAIdentifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident, Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts. Knowledge of system and application security threats and attack methods (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code).
Lead Security Engineer II, Splunk Security Content Visualization Expert (Secret Clearance) Deloitte Touche Tohmatsu LtdLead Security Engineer II, Splunk Security Content Visualization Expert (Secret Clearance)Arlington, VAServing federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.