Cyber Defense Incident Responder Clear Ridge DefenseCyber Defense Incident ResponderQuantico, VAInvestigate Cyber Incidents: Perform in-depth analysis of network and host artifacts (e.g., logs, system images, packet captures) to identify root causes, operational impacts, and enable rapid remediation of threats. Clear Ridge Defense is the premier service solutions provider supporting the Service and Joint cyberspace operations and intelligence community in three core areas of expertise: Cyber Systems & Software Engineering.
Cyber Security Operations Specialist III - Tier 3 CACI International IncCyber Security Operations Specialist III - Tier 3Springfield, VA$86,600–$181,800 / yearCoordinates with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), in addition to other law enforcement and counter intelligence personnel as required to perform advanced investigation and triage of incidents; Collaborates with appropriate authorities in the production of security incident reports; Categorizes incidents and events; Coordinates with other contracts, organizations, activities, and other services as appropriate to ensure incidents are properly reported, contained, and eradicated; Coordinates with other contracts, organizations, activities, and other services as appropriate to de-conflict blue / red team activity with open incidents/events; Coordinates with other contracts, organizations, activities, and services to ensure NGA recovers from an incident/event; Builds timelines, documents, briefings, and other products as required to inform stakeholders of incident response actions, analysis, and the impact of both adversary activity and blue force response actions. Provides input to and coordinates with all applicable stakeholders to develop and deliver the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report; Serve as C-IRT members as required and serve under the direct control of, and take direction from, the Government C-IRT Commander; Develop and coordinate courses of action with various Government and contract stakeholders, and when properly authorized by the Government, execute Defensive Cyberspace Operations-Internal Defensive Measures on behalf of the NGA on NGA networks and systems; Performs digital media analysis and malware reverse engineering on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
Call for Experts: Peace, Justice & Security Pan American BrandCall for Experts: Peace, Justice & SecurityWashington, District of ColumbiaQualified professionals are invited to submit the following for consideration: A current CV or resume detailing relevant technical and regional experience; A brief statement identifying your areas of expertise and the countries or regions where you have worked; Your availability and preferred engagement type (short-term consultant or embedded advisor); and. PADF works alongside national counterparts throughout the Caribbean, Central America, and South America to strengthen civilian security, advance the rule of law, and build accountable, effective, and trusted justice and law enforcement institutions.
SOC Analyst (Tier 2) / Security Incident Investigator CyberLinx SolutionsSOC Analyst (Tier 2) / Security Incident InvestigatorAnnapolis Junction, MarylandThis role is responsible for conducting in-depth investigations of security alerts escalated by Tier 1 analysts, identifying potential threats, validating security incidents, and coordinating containment activities. The ideal candidate has strong analytical skills, experience with SIEM tools, and the ability to perform forensic and log analysis to identify malicious activity.
Target Digital Network Analyst MarkonTarget Digital Network AnalystFort Meade, Maryland$190,000–$210,000 / yearFull timepointer-events-auto R6Vx5W_threadScrollVars scroll-mb-[calc(var(--scroll-root-safe-area-inset-bottom,0px)+var(--thread-response-height))] scroll-mt-[calc(var(--header-height)+min(200px,max(70px,20svh)))]" dir="auto"> Bachelor’s degree in Electrical Engineering, Computer Engineering, Software Engineering, Mathematics, Information Systems, Cybersecurity, or a related STEM discipline. This role combines advanced network and host analysis with Intelligence Community reporting and open-source research to identify adversary activity, characterize cyber threats, and support vulnerability discovery and mitigation efforts for U.S. national defense platforms and critical infrastructure.
Cyber Defense Incident Responder - Swing Shift ASRC Federal Holding CompanyCyber Defense Incident Responder - Swing ShiftVAMinimum Requirements: At least two (2) years of hands-on technical cybersecurity experience and knowledge of incident response concepts, Computer Network Defense, DISA Security Technical Implementation Guides (STIGs), DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01B, This position focuses on detecting and responding to security incidents in real time, performing containment and eradication actions, and coordinating recovery efforts using enterprise tools such as SIEM, SOAR, CrowdStrike, CyberArk, and Endpoint Security Suite (ESS).
ICS Threat Hunt Analyst / Active Top Secret PeratonICS Threat Hunt Analyst / Active Top SecretArlington, Virginia$86,000–$138,000 / yearFull timeResearch and investigate current threats in operational technology, specific critical infrastructure sectors, and mission areas to inform senior leaders and drive priorities for operational teams, including forward-deployed incident response and threat hunting functions. Analyze network traffic patterns, ICS communication protocols (e.g., Modbus, DNP3, BACnet, OPC UA, Ethernet/IP, S7comm), and system architectures to identify anomalous or malicious activity.
Cloud Threat Analyst ASRC Federal Holding CompanyCloud Threat AnalystHanover, MD$115,000–$134,745 / yearConduct proactive threat hunting activities to detect advanced threats that evade traditional security solutionsContinuously monitor and analyze threat intelligence sources to stay informed about emerging threats, vulnerabilities, and attack vectorsSearch for signs of malicious activity across network infrastructure, endpoints, cloud environments, and systemsDevelop and implement new and innovative threat detection techniques and strategiesAnalyze large datasets using SIEM platforms and security analytics tools to identify patterns and anomalies indicative of malicious activitiesTune detection logic and alerting to reduce false positives and improve threat detection fidelity. Leverage threat intelligence sources to identify emerging threats targeting federal environments and national security systemsMap adversary activity to MITRE ATT&CK framework and develop threat modelsAnalyze advanced persistent threats (APTs) and understand adversary tactics, techniques, and procedures (TTPs)Recommend defensive improvements based on observed threat actor behaviors and attack patternsCorrelate threat intelligence with internal security events to identify potential compromises.
TASO Team Lead / Active Top Secret PeratonTASO Team Lead / Active Top SecretArlington, Virginia$112,000–$179,000 / yearFull timeMust either possess and maintain, or obtain prior to start date, one of the following professional certifications: CASP+ CE, CCNA Cyber Ops, CCNA-Security, CCNP Security, CEH, CFR, CISA, CISSP (or Associate), Cloud+, CySA+, GCED, GCIA, GCIH, GICSP, SCYBER, VCA DCV, PPDA, Agile IC, SNOW App Dev. Fulfill core Peraton management responsibilities, including performance reviews, timesheet approvals, staff development, workload prioritization, and ensuring all milestones and deliverables meet quality and schedule requirements.
SOC Lead ID.me IncSOC LeadMcLean, VA$96,086–$111,683 / yearKey Responsibilities: Lead cyber security incident response for cloud-native infrastructure, including investigating compromised containers, Kubernetes clusters, and CI/CD pipelines, and coordinating rapid isolation, remediation, and root-cause analysis across cloud workloads. Oversee the detection, analysis, and mitigation of complex insider threats and incidents, utilizing advanced security tools such as DLP, SIEM (e.g., Chronicle, Splunk), IDS/IPS, EDR, and firewalls.
Jr Industrial Control System Cyber Threat Intelligence Analyst / Active Top Secret, SCI eligibility PeratonJr Industrial Control System Cyber Threat Intelligence Analyst / Active Top Secret, SCI eligibilityArlington, Virginia$86,000–$138,000 / yearFull timeAs the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace.
Target Digital Network Analyst Markon SolutionsTarget Digital Network Analystfort meade, MD$190,000–$210,000 / yearThis role combines advanced network and host analysis with Intelligence Community reporting and open-source research to identify adversary activity, characterize cyber threats, and support vulnerability discovery and mitigation efforts for U.S. national defense platforms and critical infrastructure. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Target Analyst Reporter Markon SolutionsTarget Analyst Reporterfort meade, MD$160,000–$190,000 / year7+ years of experience in at least two of the following: Computer Network Exploitation (CNE), Vulnerability Assessment, Penetration Testing, Incident Response, Network Forensics, Cryptoanalysis, or Cryptologic Operations. Our growing reach extends across 17 states, 116 countries, and 5 continents, where our team of dynamic professionals collaborates to deliver unparalleled program and project management services.
NewSenior Network Security Engineer II Dhaka Technologies Limited CompanySenior Network Security Engineer IIWashington, DCMonitor trends in documented incidents and determine the actions necessary to eliminate future occurrences and improve customer service levels within an appropriate timeframe. Proactively oversee the activities involved in the quality resolution of complex technical issues, responding with an appropriate sense of urgency to problems escalated to the network engineer level.
NewSenior Network Security Engineer GoIntellects Inc.Senior Network Security EngineerWashington, DCFull timeCoordinate with appropriate personnel to determine positive solutions that increase end user satisfaction, following through to completion, and communicating resolution results; escalate to management any situation that could adversely impact the service provided to the end user; Security: Cisco Firepower (Next generation firewall), Cisco ASA Firewalls, Cisco ISE 2.0 and above (Identity Services Engine), Cisco NGFW (Next Generation Firewall), Cisco AMP (Advanced Malware Protection), Cisco Firepower.
NewNetwork Security Engineer GoIntellects Inc.Network Security EngineerWashington, DCFull timeMonitor security measures in place within network perimeter, ensuring breaches do not occur and information is safeguarded from unauthorized access; Proactively oversee the activities involved in quality resolution of complex technical issues, responding with an appropriate sense or urgency to problems escalated to Network Engineer’s level; Coordinate with appropriate personnel to determine positive solutions that increase end user satisfaction, following through to completion, and communicating resolution results; escalate to management any situation that could adversely impact the service provided to the end user; Monitor trends in documented incidents and determine appropriate actions necessary to eliminate future occurrences and improve customer service levels in an appropriate timeframe; Provide network design services. Coordinate with the Infrastructure Services Group staff to establish the scope, timing and technical approach to be used for proposed network changes; Ensure adherence to network policies and procedures; Manage production and disaster recovery networks and security.
NewDigital Forensics Analyst Dynamo Technologies LLCDigital Forensics AnalystAlexandria, VAExecutes proactive defense through Indicators of Compromise (IOC) sweeps, host interrogation, and persistent threat hunting using Virtual Machines, CloudTrail, and IAM logs; Leverages EDR, SIEM, and full packet capture for hunt and investigative activity examining endpoint and network-based activity. Must have at least 5 years of experience conducting, or supporting the conduct of, digital forensic analysis (Windows, Linux and Mac), digital media acquisition (disk duplication), mobile device acquisition/analysis, malware analysis.
New5Yrs Senior Network Security Engineer with cisco exp - Onsite GoIntellects Inc.5Yrs Senior Network Security Engineer with cisco exp - OnsiteWashington, DCFull timeMonitor security measures in place within network perimeter, ensuring breaches do not occur and information is safeguarded from unauthorized access; Proactively oversee the activities involved in quality resolution of complex technical issues, responding with an appropriate sense or urgency to problems escalated to Network Engineer’s level; Coordinate with appropriate personnel to determine positive solutions that increase end user satisfaction, following through to completion, and communicating resolution results; escalate to management any situation that could adversely impact the service provided to the end user; Monitor trends in documented incidents and determine appropriate actions necessary to eliminate future occurrences and improve customer service levels in an appropriate timeframe; Provide network design services. Technical Skills: Security: Cisco Firepower (Next generation firewall), Cisco ASA Firewalls, Cisco ISE 2.0 and above (Identity Services Engine), Cisco NGFW (Next Generation Firewall), Cisco AMP (Advanced Malware Protection), Cisco Firepower.
DevOps Engineer Argo Cyber SystemsDevOps EngineerArlington, VAFull timeRole and Responsibilities Develop and maintain CI/CD pipelines for automated engagement kit deployment Manage source control and code repositories for infrastructure configurations Implement infrastructure-as-code using tools such as Terraform, CloudFormation, or similar Automate provisioning, configuration, and scaling of cloud resources Enhance kit capabilities through automation and optimization initiatives Collaborate with architects and administrators to streamline deployment processes Implement monitoring, alerting, and logging solutions Support troubleshooting and performance optimization during active operations Maintain version control and change management processes Develop automation scripts and tools to reduce manual effort Ensure consistency and repeatability across engagement kit deployments Participate in security hardening and compliance automation effortsQualifications, Education and Skills Requirements U.S. Citizenship required. DevOps EngineerLocation: Arlington, VA (On-Site)Citizenship: US onlyClearance: Active TS/SCI (DHS Suitability required)Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB)About Argo Cyber SystemsArgo Cyber Systems provides mission-critical cybersecurity support to U.S. Government agencies and critical infrastructure owners nationwide.
Host Based Cyber Systems Analyst III Argo Cyber SystemsHost Based Cyber Systems Analyst IIIArlington, VAFull timeCompany: ARGO Cyber Systems (SDVOSB)Location: Arlington, VAClearance: Active TS/SCI requiredEmployment Type: Full-TimeWe are seeking experienced Host Forensics Analysts to support a critical federal customer mission. Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical discipline; orHigh School Diploma/GED with 10+ years of host or digital forensics experience.