ECS FederalEFOR: Federal segment of Everforth delivering technology and engineering solutions.
10+ YOEUS citizen with Top Secret clearance and 10+ years in threat intelligence, incident response, or cybersecurity; expert threat analysis, SOP development, and technical writing; proficiency with Confluence and SharePoint.
Confluence, SharePoint, MITRE ATT&CK, Linux, Windows
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOERequires 3–8+ years supporting SOC or incident response teams, experience with SIEM, EDR, threat hunting, malware analysis, and digital forensics, plus active TS/SCI or DOE Q clearance.
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
3+ YOEPublic Trust clearance, BS in CS/IT or related, 3+ years IR experience, 2+ years Python and PowerShell, experience with live triage, log correlation, Velociraptor, Splunk ES, Sentinel, and familiarity with NIST incident handling.
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOE3+ years SOC/incident response experience; familiarity with SIEM, EDR, threat hunting, malware analysis, digital forensics; knowledge of MITRE ATT&CK and NIST CSF; active TS/SCI or DOE Q clearance required.
Washington Commanders: The Washington Commanders are a privately held professional football team serving fans in the Washington, D.C., area.
Must commit to all home games and major events, be 18+ with HS diploma/GED, work nights/weekends/holidays, have strong writing/communication and tech skills; incident-writing or 24/7 Software experience preferred.
Tetrad Digital Integrity: Cybersecurity firm delivering cybersecurity performance management and full-lifecycle cyber services to government and commercial clients.
12+ YOEAbility to obtain Public Trust; required bachelor's degree and 12+ years experience; hands-on incident detection/response, malware analysis or forensics; expertise with Windows/Linux, networking, SIEM/EDR/IDS/IPS; scripting (Python, PowerShell, Bash).
ManTech International: Advancing the future of defense through innovative technology.
3+ YOERequires high school diploma and 7+ years of cybersecurity experience or bachelor's degree and 3+ years, including 2+ years in incident response; active TS/SCI with polygraph required.
Absolute Business Solutions Corp: Delivering Technology Enabled Solutions to Continuously Advance Intelligence
8+ YOEActive TS/SCI clearance, 8+ years intelligence analyst experience (or higher degree plus experience), knowledge of NIST framework, computer network and forensic terminology, and Intelligence Community production.
(Cyber) Incident Management Analyst - Weekend Night Shift
Arlington, Virginia, United States
OnsiteFull Time
Nightwing: Advanced cyber, intelligence, and systems integration services for national security.
5+ YOE5+ years in cyber incident management or cybersecurity operations; active TS/SCI; U.S. citizenship; DHS suitability; knowledge of NIST 800-62 and FISMA; incident response expertise.
Gormat: Private cybersecurity and engineering consulting firm serving U.S. Department of Defense, Intelligence Community, federal, and industry clients.
6+ YOE6+ years IT/InfoSec experience, incident response and threat analysis experience, active Secret clearance (eligible for Top Secret), ability to pass DEA background check, and DoD 8140 certification within 6 months.
Cayuse Technologies: Tribally owned technology and government-solutions provider delivering IT consulting, operations support, staffing, and training to public-sector clients.
0+ YOERequires 0–2 years of related experience, customer or service desk experience, U.S. citizenship, Security+ and ITIL certifications, and ability to obtain Top Secret/SCI clearance and DHS Fitness.
Amazon Connect, ServiceNOW, Remedy, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree and 4+ years incident response experience; US citizenship and ability to obtain Tier 2 Public Trust; expertise with SIEM/EDR/XDR, digital forensics, malware analysis, and incident documentation.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Wireshark, Velociraptor, SIEM, EDR, XDR, Microsoft Office Suite, ServiceNow, Jira
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
1+ YOEUS citizenship and 1–2 years of information security experience required, including event and log analysis with SIEM. Requires cybersecurity, network, malware, endpoint, communication, and data analysis knowledge.
SIEM, Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools, Excel, grep, sed, awk, regex, TCP/IP, Windows, Linux
Computer Security Incident Report Analyst with TS/SCI Clearance [Salesforce National Security]
Herndon, Virginia, United States
$111k-$122k/yrOnsiteFull Time
SalesforceNYSE: CRM: The #1 AI CRM driving customer success together.
2+ YOEU.S. citizen with active TS/SCI+Polygraph, 2+ years in cybersecurity or incident response, technical degree or equivalent, SIEM and cloud security experience, strong communication and problem-solving skills.
AWS, Splunk, Azure Sentinel, ElasticStack, Kibana, Grafana, SQL, SPL, GraphQL, Bash, Python, Security Information and Event Manager (SIEM), Mac OSX, Microsoft Windows, Linux/Unix
Computer Security Incident Report Analyst with TS/SCI Clearance [Salesforce National Security]
Herndon, Virginia, United States
$111k-$122k/yrOnsiteFull Time
SalesforceNYSE: CRM: The #1 AI CRM driving customer success together.
2+ YOEU.S. citizen with active TS/SCI with Polygraph, 2+ years cybersecurity/incident response experience, technical degree or equivalent, SIEM and cloud security experience, strong communication and problem-solving skills.
Security Information and Event Manager (SIEM), AWS, Splunk, Azure Sentinel, ElasticStack, Kibana, Grafana, SQL, SPL, GraphQL, Bash, Python, Mac OSX, Microsoft Windows, Linux/Unix
Cyber SOC Incident Detector (Swing Shift) - TS/SCI with Polygraph
Reston, Virginia, United States
$111k-$150k/yrOnsiteFull Time
General Dynamics Information TechnologyNew York Stock Exchange: GD: Provider of enterprise IT services and defense solutions.
8+ YOEUS citizen with current Top Secret/SCI (able to obtain TS/SCI + Polygraph), 8+ years related experience, IAT II, CSSP Analyst, GMON, SCCU preferred, cybersecurity and SOC operations experience, familiarity with MITRE ATT&CK.
KBRNYSE: KBR: Provider of science, technology, and engineering solutions.
8+ YOEActive Top Secret/SCI clearance, 8 years incident response experience, DoD 8570 IAT II and CSSP-Analyst certifications, ability to lead investigations and mentor junior analysts.
Cyber SOC Incident Detector (MIDS Shift) - TS/SCI with Polygraph
Reston or Colorado Springs or Washington
$111k-$150k/yrOnsiteFull Time
General Dynamics Information TechnologyNew York Stock Exchange: GD: Provider of enterprise IT services and defense solutions.
8+ YOETop Secret/SCI required; must be able to obtain TS/SCI + Polygraph. 8+ years related experience. Skills in cybersecurity, MITRE ATT&CK Framework, SOC operations. Required certs: IAT II, CSSP Analyst, GMON, SCCU. US citizenship required.
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain FinancialNYSE: OMF: The leader in offering nonprime customers responsible access to credit.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V