CommunityJobsAdviceEventsReviewsFor EmployersFor Clients
CommunityJobsAdviceEvents

Tier 2 Incident Response Analyst-Nights

company-logo

Leidos

4.1

Ashburn, VA

Why you should apply for a job to Leidos:

  • 4.1/5 in overall job satisfaction

  • 4.3/5 in supportive management

  • 68% say women are treated fairly and equally to men

  • 84% would recommend this company to other women

  • 84% say the CEO supports gender diversity

  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Our Women’s Network is one of nine employee resources groups that provides support for onboarding, networking & professional development.

  • Leidos offers programs to help employees prepare for over 95 industry-standard professional and technical certifications.

  • Leidos offers a voluntary well–being benefit program to help support employees on their personal wellness journey and earn rewards.

  • Get jobs straight to your inbox

    Anonymous company reviews, virtual recruiting events, and a supportive community for women when you sign up.

    #R-00099469

    Position summary

    Description

    Job Description:

    Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise.  The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a new shared DHS incident tracking system and other means of coordination and communication. Leidos is seeking a Tier 2 Incident Response Analyst to join our team on this highly visible DHS CBP SOC Program.

    This position will support a 24X7 shift schedule. The shift is 7PM-7AM

    The Incident Responder will perform the following:

    • Coordinate investigation and response efforts throughout the Incident Response lifecycle

    • Correlate and and analyze events and data to determine scope of Cyber Incidents

    • Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts

    • Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response.

    • Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks

    • Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities

    • Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports

    • Create metrics and determine Key Performance Indicators to drive maturity of SOC operations

    • Develop security content such as scripts, signatures, and alerts

    The ideal candidate will possess:

    • In-depth knowledge of each phase of the Incident Response life cycle

    • Expertise of Operating Systems (Windows/Linux) operations and artifacts

    • Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)

    • Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents

    • Be familiar with Cyber Kill Chain and have utilized the ATT&CK Framework

    • Have scripting experience with Python, PowerShell, and/or Bash

    • Ability to independently prioritize and complete multiple tasks with little to no supervision

    • Flexible and adaptable self-starter with strong relationship-building skills

    • Strong problem-solving abilities with an analytic and qualitative eye for reasoning

    • Strong verbal and written communication skills

    •Ability to communicate with all levels of audiences (subordinates, peers & leadership)

    Basic Qualifications

    All Department of Homeland Security CBP SOC employees are required to favorably pass a 5-year (BI) Background Investigation. Experience in the areas of incident detection and response, malware analysis, or computer forensics.

    Bachelors’ degree in Computer Science, Engineering, Information Technology, Cyber Security, or related field and 8 years of related experience.  Additional years of experience and cyber certifications may be considered in lieu of degree.

    Should have at least one of the following certifications:

    SANS GIAC: GCIH, GCIA, GCFA, GPEN GCFE, GREM

    CISSP OSCP, OSCE, OSWP

    Preferred Qualifications

    Experience in cyber government, and/or federal law enforcement FISMA systems.

    Pay Range:

    Pay Range $97,500.00 - $150,000.00 - $202,500.00

    The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

    What are Leidos perks and benefits

    Backup child care

    Elder care

    Unconscious bias training

    Networking

    Diversity recruiting

    Remote work policy

    Part time policy

    Paid maternity

    Paid paternity

    Paid adoptive

    About the company

    31211

    Leidos

    Industry: Technology: B2B Tech Services

    Leidos is a Fortune 500® information technology, engineering, and science solutions and services leader working to solve the world’s toughest challenges in the defense, intelligence, homeland security, civil, and health markets. The company’s 40,000 employees support vital missions for government and commercial customers. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $12.30 billion for the fiscal year ended January 1, 2021. 

    Why you should apply for a job to Leidos:

  • 4.1/5 in overall job satisfaction

  • 4.3/5 in supportive management

  • 68% say women are treated fairly and equally to men

  • 84% would recommend this company to other women

  • 84% say the CEO supports gender diversity

  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Our Women’s Network is one of nine employee resources groups that provides support for onboarding, networking & professional development.

  • Leidos offers programs to help employees prepare for over 95 industry-standard professional and technical certifications.

  • Leidos offers a voluntary well–being benefit program to help support employees on their personal wellness journey and earn rewards.

  • icon
    © 2023 Fairygodboss. All rights reserved.
    • about
    • careers
    • FAQs
    • privacy policy
    • terms & conditions
    112k
    0k