77 incident response analyst jobs at 49 companies in Dundalk, MD

1mo
Save
Mark Applied
Hide
SOC / Incident Response Analyst
Washington, District of Columbia, United States
OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOERequires 3–8+ years supporting SOC or incident response teams, experience with SIEM, EDR, threat hunting, malware analysis, and digital forensics, plus active TS/SCI or DOE Q clearance.
SIEM, EDR, MITRE ATT&CK, NIST Cybersecurity Framework
1mo
Save
Mark Applied
Hide
SOC / Incident Response Analyst
Washington, District of Columbia, United States
OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOE3+ years SOC/incident response experience; familiarity with SIEM, EDR, threat hunting, malware analysis, digital forensics; knowledge of MITRE ATT&CK and NIST CSF; active TS/SCI or DOE Q clearance required.
SIEM, EDR, MITRE ATT&CK, NIST Cybersecurity Framework
1mo
Save
Mark Applied
Hide
Senior Incident Response Analyst
Arlington, Virginia, United States
HybridFull Time
Tetrad Digital Integrity
Tetrad Digital Integrity: Cybersecurity firm delivering cybersecurity performance management and full-lifecycle cyber services to government and commercial clients.
12+ YOEAbility to obtain Public Trust; required bachelor's degree and 12+ years experience; hands-on incident detection/response, malware analysis or forensics; expertise with Windows/Linux, networking, SIEM/EDR/IDS/IPS; scripting (Python, PowerShell, Bash).
SIEM, EDR, IDS/IPS, Python, PowerShell, Bash, Windows, Linux, MITRE ATT&CK, Cyber Kill Chain, firewalls, proxies, VPN
1w
Save
Mark Applied
Hide
Senior Incident Response Analyst
Washington, District of Columbia, United States
$132k-$337k/yr OnsiteFull Time
TikTok USDS Joint Venture LLC
TikTok USDS Joint Venture LLC: Ensuring U.S. data security and content integrity for TikTok.
5+ YOERequires 5+ years handling high-severity security incidents, advanced Linux/Unix skills, multi-cloud and container forensics experience, complex investigations, and incident leadership.
Linux, Unix, Docker, Kubernetes, NIST SP 800-61, ISO/IEC 27035, MITRE ATT&CK, PCAP, Zeek
1mo
Save
Mark Applied
Hide
AOUSC - Incident Response Analyst
Washington, District of Columbia, United States
HybridFull Time
cFocus Software Incorporated
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
3+ YOEPublic Trust clearance, BS in CS/IT or related, 3+ years IR experience, 2+ years Python and PowerShell, experience with live triage, log correlation, Velociraptor, Splunk ES, Sentinel, and familiarity with NIST incident handling.
Python, PowerShell, Velociraptor, Splunk ES, Sentinel
3w
Save
Mark Applied
Hide
Cybersecurity Incident Response Analyst
McLean, Virginia, United States
$92k-$154k/yr OnsiteFull Time
ManTech International
ManTech International: Advancing the future of defense through innovative technology.
3+ YOERequires high school diploma and 7+ years of cybersecurity experience or bachelor's degree and 3+ years, including 2+ years in incident response; active TS/SCI with polygraph required.
SIEM, MITRE ATT&CK
5d
Save
Mark Applied
Hide
Cyber Incident Response Analyst- Junior
Washington, District of Columbia, United States
$84k-$88k/yr OnsiteFull Time, Temporary
Cayuse Technologies
Cayuse Technologies: Tribally owned technology and government-solutions provider delivering IT consulting, operations support, staffing, and training to public-sector clients.
0+ YOERequires 0–2 years related experience, Security+ CE and ITIL certification, customer or service desk experience, U.S. citizenship, and ability to obtain Top Secret/SCI clearance and DHS Fitness.
Amazon Connect, ServiceNOW, Remedy, Microsoft Office, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
2w
Save
Mark Applied
Hide
Cybersecurity Incident Response Triage Analyst
Arlington, Virginia, United States
$57k-$109k/yr RemoteFull Time
Accenture Federal Services
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
1+ YOEUS citizenship and 1–2 years of information security experience required, including event and log analysis with SIEM. Requires cybersecurity, network, malware, endpoint, communication, and data analysis knowledge.
SIEM, Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools, Excel, grep, sed, awk, regex, TCP/IP, Windows, Linux
1mo
Save
Mark Applied
Hide
Senior Cyber Incident Analyst
Arlington, Virginia, United States
$170k-$180k/yr OnsiteFull Time
ECS Federal
ECS FederalEFOR: Federal segment of Everforth delivering technology and engineering solutions.
10+ YOEUS citizen with Top Secret clearance and 10+ years in threat intelligence, incident response, or cybersecurity; expert threat analysis, SOP development, and technical writing; proficiency with Confluence and SharePoint.
Confluence, SharePoint, MITRE ATT&CK, Linux, Windows
3mo
Save
Mark Applied
Hide
(Cyber) Incident Management Analyst - Weekend Night Shift
Arlington, Virginia, United States
OnsiteFull Time
Nightwing
Nightwing: Advanced cyber, intelligence, and systems integration services for national security.
5+ YOE5+ years in cyber incident management or cybersecurity operations; active TS/SCI; U.S. citizenship; DHS suitability; knowledge of NIST 800-62 and FISMA; incident response expertise.
1mo
Save
Mark Applied
Hide
Cyber Defense & Incident Responder (SOC Analyst)
Arlington, Virginia, United States
$130k/yr OnsiteFull Time
Gormat
Gormat: Private cybersecurity and engineering consulting firm serving U.S. Department of Defense, Intelligence Community, federal, and industry clients.
6+ YOE6+ years IT/InfoSec experience, incident response and threat analysis experience, active Secret clearance (eligible for Top Secret), ability to pass DEA background check, and DoD 8140 certification within 6 months.
SIEM, IDS/IPS, EDR
1mo
Save
Mark Applied
Hide
Cybersecurity Analyst, Incident Responder
Bethesda, Maryland, United States
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree and 4+ years incident response experience; US citizenship and ability to obtain Tier 2 Public Trust; expertise with SIEM/EDR/XDR, digital forensics, malware analysis, and incident documentation.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Wireshark, Velociraptor, SIEM, EDR, XDR, Microsoft Office Suite, ServiceNow, Jira
5d
Save
Mark Applied
Hide
Senior IT Specialist (Cyber Incident Response Analyst) II
Washington, District of Columbia, United States
$122k-$187k/yr HybridFull Time
United States Federal Government
United States Federal Government: The central administrative authority of the United States.
5+ YOETechnology-related degree plus 5 years of IT and cybersecurity experience, or 7 years of demonstrated experience; 3 years incident response and TS clearance required. Cybersecurity certifications are preferred.
Windows, Linux, iOS, SIEM, ATT&CK framework
1mo
Save
Mark Applied
Hide
NOSC Cyber Analyst
Washington, District of Columbia, United States
$149k-$224k/yr OnsiteFull Time
KBR
KBRNYSE: KBR: Provider of science, technology, and engineering solutions.
8+ YOEActive Top Secret/SCI clearance, 8 years incident response experience, DoD 8570 IAT II and CSSP-Analyst certifications, ability to lead investigations and mentor junior analysts.
NetFlow, IDS, IPS
1mo
Save
Mark Applied
Hide
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain Financial
OneMain FinancialNYSE: OMF: The leader in offering nonprime customers responsible access to credit.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V
3w
Save
Mark Applied
Hide
NOSC Cyber Analyst
Arlington, Virginia, United States
$80k-$128k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
5+ YOEActive Top Secret clearance with SCI eligibility, 5 years of experience, DoD 8570 IAT II and CSSP-Analyst certifications, incident response, network security, traffic analysis, and strong communication skills.
IDS/IPS, Splunk, Elastic, MITRE ATT&CK, Cyber Kill Chain, net flow, firewalls
3w
Save
Mark Applied
Hide
NOSC Cyber Analyst
Arlington, Virginia, United States
$80k-$128k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
5+ YOERequires active Top Secret clearance with SCI eligibility, DoD 8570 IAT II and CSSP-Analyst certifications, and 5 years of incident response experience; BS/BA required unless replaced by 4 years relevant experience.
IDS, IPS, Splunk, Elastic, MITRE ATT&CK, Cyber Kill Chain
2mo
Save
Mark Applied
Hide
SOC Analyst
Alexandria, Virginia, United States
$150k-$165k/yr OnsiteFull Time
Northern Technologies Group
Northern Technologies Group: Cybersecurity, network engineering, and managed IT firm serving U.S. federal agencies and commercial businesses.
8+ YOEU.S. citizen with active DoD Top Secret/SCI clearance, bachelor’s degree with 8+ years relevant experience (or 12+ without degree), 2+ years SOC and incident response experience, DoD 8570 IAT II cert prior to start, must obtain CSSP-Analyst cert within 6 months.
NetFlow, Full Packet Capture (PCAP), SIEM, Splunk, ArcSight, QRadar, McAfee Enterprise Security Management (Nitro), LogLogic, IDS/IPS, HBSS, Unix, Linux, MITRE ATT&CK Framework, Cyber Kill Chain Methodology, TCP/IP
1mo
Save
Mark Applied
Hide
SOC Analyst
Crownsville, Maryland, United States
OnsiteFull Time
DMI
DMI: Private IT services firm providing digital transformation and managed technology services to government agencies and commercial enterprises.
Monitor, detect, and analyze threats; perform threat hunting, triage incidents, develop SIEM rules, support incident response; bachelor's in CS/IS/engineering/business preferred and relevant security certifications.
Wireshark, VirusTotal, Splunk, Python, PowerShell, VBScript
1mo
Save
Mark Applied
Hide
SOC Analyst
McLean, Virginia, United States
$96k-$112k/yr OnsiteFull Time
ID.me
ID.me: Private American digital identity wallet and identity-verification helping people securely access government, healthcare, and commercial services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
SIEM, IDS/IPS, EDR, Splunk, Chronicle, Python, Bash, AWS, GCP, Azure, LLMs