ICS NettVerified Source

Cyber Incident Responder ICS Nett

Onsite · Washington, District of Columbia
Posted August 12, 2026
payroll

Overview

Revolutionize technology drive innovation and unlock potential as a front-line defender supporting swing shift weekend and holiday coverage at Hanover MD. This on-site position requires detecting triaging containing eradicating cyber threats across enterprise infrastructure while preserving forensic evidence for DoD missions.

What You'll Do6

  • 1Execute incident response procedures in accordance with NIST SP 800-61 and DoD guidelines
  • 2Coordinate with JFHQ-DODIN on cyber incident reporting and remediation
  • 3Support insider threat response and investigations
  • 4Contain and remediate compromised systems accounts and endpoints
  • 5Preserve and document forensic evidence for incident case management
  • 6Maintain incident response playbooks and ensure high operational readiness during all covered hours

Requirements5

  • 1At least two years of hands-on technical cybersecurity experience and knowledge of incident response concepts Computer Network Defense DISA STIGs DoD A&A Process NIST SP 800-53 NIST SP 800-61 CJCSM 6510.01B
  • 2Active Top Secret Clearance with eligible to be upgraded to TS/SCI
  • 3Bachelor’s degree in Information Technology Information Systems Management Cyber Security or equivalent experience
  • 4DoD 8570 certification requirements at time of hire IAT Level II (CCNA Security CySA+ GICSP GSEC Security+ SSCP)
  • 5CSIH GCIH or GCFA preferred for incident handling

Salary Insight

Salary not disclosed in listing

Location

Typeonsite
LocationWashington, District of Columbia

Required Skills

siemsoarcrowdstrikecyberarkendpoint security suite
Share:

Similar open positions

Explore active roles that match your skills and interests.

MANTECH

MANTECH

15h agoWashington, District of Columbiapayroll

Cyber Security Analyst, Incident Response & SOC

You will own security event correlation and incident triage across enterprise networks, detecting and responding to threats in real time. You will work within a 24x7 SOC team, analyzing alerts from Windows and Linux systems and coordinating remediation. You hold IAT Level II certification (Security+ or equivalent) and thrive in high-stakes environments. This role offers direct exposure to COTS security tools and a clear path to advanced cyber roles.

Competitive salary
Security event and incident correlationCyber incident triageCyber engineering trend analysis+7 more
BCforward

BCforward

13h agoPhoenix, Arizonapayroll

Cyber Security Engineer, SOC & Incident Response

Own security monitoring and incident response for a Fortune 500 client in Phoenix, AZ. You will join BCforward's security operations team, working onsite to detect, investigate, and mitigate threats across a hybrid cloud and on-premise environment. This role demands hands-on expertise with SIEM platforms and EDR tools, with a direct impact on the client's security posture.

135K–146K
splunkcrowdstrikeaws+2 more

SPAHR SOLUTIONS GROUP LLC

16h agoWashington, District of Columbiapayroll

Cyber Security Operations Jr Analyst

Lead 24x7x365 cybersecurity monitoring and threat detection for DTRA's enterprise network. Work shift nights weekends and holidays. Must be SCI eligible Top Secret clearance. Collaborate with CSSP analysts engineers and agency stakeholders to protect national security interests.

Competitive salary
Splunk
System One

System One

9d agoWashington, District of Columbiapayroll

Mid-Level Cybersecurity Incident Response Analyst

Own security alert investigation and response at scale. Deliver actionable insights within 90 days. Differentiate through proactive threat hunting and cross-functional collaboration.

Competitive salary
pythonawsreact+2 more
00100 LEIDOS, INC.

00100 LEIDOS, INC.

13h agoWashington, District of Columbiapayroll

SOC Analyst, Incident Response & Threat Detection

You will own threat detection and incident response for customer networks at Leidos' Digital sector in Alexandria, VA. With 2+ years of SOC experience, you will triage alerts from endpoints, IDS/IPS, NetFlow, and custom sensors, and perform intermediate-level log analysis. You will work shift rotations in a 24/7 mission-essential environment, supporting a team that protects critical infrastructure. This role moves beyond monitoring: you will document findings, craft incident reports, and grow into senior-level investigations. Expect to work weekends and in bad weather, with an active Top Secret clearance and ability to obtain SCI.

Competitive salary
splunkqradartcp/ip+2 more
631 Booz Allen Hamilton_United States

631 Booz Allen Hamilton_United States

13h agoIndianapolis, Indianapayroll

Cyber Security Analyst, SOC Tier 2

You will own threat detection and incident response for critical infrastructure, monitoring and mitigating attacks in real time as a Tier 2 SOC analyst. You will join a security operations team using state-of-the-art tools to analyze logs, investigate alerts, and escalate incidents. You will work with intelligence sources to identify patterns and stop attackers, directly impacting mission success. This role offers hands-on experience in threat assessment and incident response, with clear paths for growth.

Competitive salary
siemessacas+2 more