77 incident response analyst jobs at 49 companies in Dundalk, MD
1mo
Save
Mark Applied
Hide
1mo
SOC / Incident Response Analyst
Washington, District of Columbia, United States
OnsiteFull Time
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOERequires 3–8+ years supporting SOC or incident response teams, experience with SIEM, EDR, threat hunting, malware analysis, and digital forensics, plus active TS/SCI or DOE Q clearance.
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOE3+ years SOC/incident response experience; familiarity with SIEM, EDR, threat hunting, malware analysis, digital forensics; knowledge of MITRE ATT&CK and NIST CSF; active TS/SCI or DOE Q clearance required.
Tetrad Digital Integrity: Cybersecurity firm delivering cybersecurity performance management and full-lifecycle cyber services to government and commercial clients.
12+ YOEAbility to obtain Public Trust; required bachelor's degree and 12+ years experience; hands-on incident detection/response, malware analysis or forensics; expertise with Windows/Linux, networking, SIEM/EDR/IDS/IPS; scripting (Python, PowerShell, Bash).
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
3+ YOEPublic Trust clearance, BS in CS/IT or related, 3+ years IR experience, 2+ years Python and PowerShell, experience with live triage, log correlation, Velociraptor, Splunk ES, Sentinel, and familiarity with NIST incident handling.
ManTech International: Advancing the future of defense through innovative technology.
3+ YOERequires high school diploma and 7+ years of cybersecurity experience or bachelor's degree and 3+ years, including 2+ years in incident response; active TS/SCI with polygraph required.
Cayuse Technologies: Tribally owned technology and government-solutions provider delivering IT consulting, operations support, staffing, and training to public-sector clients.
0+ YOERequires 0–2 years related experience, Security+ CE and ITIL certification, customer or service desk experience, U.S. citizenship, and ability to obtain Top Secret/SCI clearance and DHS Fitness.
Amazon Connect, ServiceNOW, Remedy, Microsoft Office, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
1+ YOEUS citizenship and 1–2 years of information security experience required, including event and log analysis with SIEM. Requires cybersecurity, network, malware, endpoint, communication, and data analysis knowledge.
SIEM, Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools, Excel, grep, sed, awk, regex, TCP/IP, Windows, Linux
ECS FederalEFOR: Federal segment of Everforth delivering technology and engineering solutions.
10+ YOEUS citizen with Top Secret clearance and 10+ years in threat intelligence, incident response, or cybersecurity; expert threat analysis, SOP development, and technical writing; proficiency with Confluence and SharePoint.
Confluence, SharePoint, MITRE ATT&CK, Linux, Windows
(Cyber) Incident Management Analyst - Weekend Night Shift
Arlington, Virginia, United States
OnsiteFull Time
Nightwing: Advanced cyber, intelligence, and systems integration services for national security.
5+ YOE5+ years in cyber incident management or cybersecurity operations; active TS/SCI; U.S. citizenship; DHS suitability; knowledge of NIST 800-62 and FISMA; incident response expertise.
Gormat: Private cybersecurity and engineering consulting firm serving U.S. Department of Defense, Intelligence Community, federal, and industry clients.
6+ YOE6+ years IT/InfoSec experience, incident response and threat analysis experience, active Secret clearance (eligible for Top Secret), ability to pass DEA background check, and DoD 8140 certification within 6 months.
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree and 4+ years incident response experience; US citizenship and ability to obtain Tier 2 Public Trust; expertise with SIEM/EDR/XDR, digital forensics, malware analysis, and incident documentation.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Wireshark, Velociraptor, SIEM, EDR, XDR, Microsoft Office Suite, ServiceNow, Jira
Senior IT Specialist (Cyber Incident Response Analyst) II
Washington, District of Columbia, United States
$122k-$187k/yrHybridFull Time
United States Federal Government: The central administrative authority of the United States.
5+ YOETechnology-related degree plus 5 years of IT and cybersecurity experience, or 7 years of demonstrated experience; 3 years incident response and TS clearance required. Cybersecurity certifications are preferred.
KBRNYSE: KBR: Provider of science, technology, and engineering solutions.
8+ YOEActive Top Secret/SCI clearance, 8 years incident response experience, DoD 8570 IAT II and CSSP-Analyst certifications, ability to lead investigations and mentor junior analysts.
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain FinancialNYSE: OMF: The leader in offering nonprime customers responsible access to credit.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V
Peraton: Provider of mission-critical national security technologies and services.
5+ YOEActive Top Secret clearance with SCI eligibility, 5 years of experience, DoD 8570 IAT II and CSSP-Analyst certifications, incident response, network security, traffic analysis, and strong communication skills.
Peraton: Provider of mission-critical national security technologies and services.
5+ YOERequires active Top Secret clearance with SCI eligibility, DoD 8570 IAT II and CSSP-Analyst certifications, and 5 years of incident response experience; BS/BA required unless replaced by 4 years relevant experience.
Northern Technologies Group: Cybersecurity, network engineering, and managed IT firm serving U.S. federal agencies and commercial businesses.
8+ YOEU.S. citizen with active DoD Top Secret/SCI clearance, bachelor’s degree with 8+ years relevant experience (or 12+ without degree), 2+ years SOC and incident response experience, DoD 8570 IAT II cert prior to start, must obtain CSSP-Analyst cert within 6 months.
ID.me: Private American digital identity wallet and identity-verification helping people securely access government, healthcare, and commercial services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.