Full-Time

NSOC Incident Response Lead

Confirmed live in the last 24 hours

Leidos

Leidos

10,001+ employees

Provides technology solutions for defense and healthcare

Data & Analytics
Enterprise Software
Cybersecurity
Defense

Compensation Overview

$112.5k - $203.3kAnnually

Expert

Hampton, VA, USA

May require occasional short-term travel to CONUS and OCONUS sites.

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
PowerShell
Bash
Python
Requirements
  • Bachelor's degree and 12 – 15 years of prior relevant experience or Masters with 10 – 13 years of prior relevant experience. May possess a Doctorate in technical domain. Additional years of relevant experience will be considered in lieu of degree.
  • Top Secret clearance with ability to obtain and maintain TS/SCI.
  • Strong problem-solving abilities using analytic and qualitative reasoning.
  • Ability to independently prioritize and complete multiple tasks with little to no supervision.
  • Ability to accurately capture and document technical remediation details, and ability to brief stakeholders on incident statuses.
  • Effective communication with customer leadership to disseminate timely updates of critical incidents with an emphasis on attention to detail and accurate reporting.
  • Experience organizing, directing, and managing operation support functions involving multiple, complex, and interrelated project tasks.
  • Advanced knowledge of the Incident Response Lifecycle and applicability to various types of incidents.
  • Ability to collaborate with technical staff and customers to identify, assess, and resolve complex security problems, issues, and risks to facilitate resolution and risk mitigation.
  • Experience creating processes, playbooks, and SOPs for tools and workflows. Relevant experience should be in the areas of incident detection and response, malware analysis, or computer forensics.
  • Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell.
  • Experience running cyber incident investigations with emphasis on attention to detail and adherence to defined escalation paths.
  • At least one current DoD 8140 certification.
Responsibilities
  • Assesses, categorizes, recommends prioritization, develops, reports on, guides, and assumes responsibility for cyber-IR actions in accordance with NIST SP 800-61 Rev. 2.
  • Leads the IR team.
  • Conducts in-depth analysis on hosts and networks, forensic analysis, log analysis, and triage in support of IR.
  • Develops and builds security content, scripts, tools, or methods to enhance the incident investigation processes.
  • Recognize attacker and APT activity, tactics, and procedures as indicators of compromise (IOCs) that can be used to improve monitoring, analysis, and incident response processes.
  • Utilizes technologies such as host forensics tools, Endpoint Detection & Response tools, log analysis and full packet capture to perform hunt and investigative activity to examine endpoint and network-based data.
  • Populates dashboards with key metrics and processes and deliver technical presentations to various levels of customer leadership. Compiles and presents reports to senior leaders.
  • Works with stakeholders to implement remediation plans in response to incidents.
  • Ensures that the IR team has necessary personnel, resources, and skills.
  • Develops artifacts supporting Information Assurance and Risk Management Framework (RMF) processes.
Desired Qualifications
  • Experience with virtualized environments (VMware, Red Hat).
  • Experience working with cloud computing and infrastructure security (AWS, Azure, etc.) to IL6.
  • Experience as a member of agile programs.
  • Experience in Federal Government, DOD or Law Enforcement in CND, CIRT or SOC role.
  • Knowledge of the Cyber Kill Chain and the MITRE ATT&CK framework.
  • Knowledge of Structured Analytic Techniques.

Leidos operates in the technology, science, and engineering sectors, focusing on enhancing safety, health, and efficiency. The company provides specialized solutions in defense, aviation, information technology, and biomedical research, catering to government agencies, private companies, and healthcare organizations. Leidos offers services such as cybersecurity, data analytics, systems integration, and software development, which are tailored to meet the unique needs of its clients. The company generates revenue through long-term contracts and service agreements, ensuring a steady income stream. Leidos is distinguished by its commitment to sustainability, corporate responsibility, and a diverse workplace, earning recognition as a top employer and for its innovative solutions.

Company Stage

IPO

Total Funding

$36.5M

Headquarters

Reston, Virginia

Founded

1969

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for AI-driven cybersecurity solutions benefits Leidos' offerings.
  • Growing interest in sustainable technology aligns with Leidos' sustainability commitment.
  • Rising government defense spending could boost Leidos' defense sector operations.

What critics are saying

  • Increased competition in AI and data science may challenge Leidos' market position.
  • Multiple new VP appointments may lead to strategic misalignment.
  • Investor pressure for short-term gains may impact long-term strategies.

What makes Leidos unique

  • Leidos excels in defense, aviation, IT, and biomedical research markets.
  • The company is recognized for its commitment to sustainability and corporate responsibility.
  • Leidos is a top employer for veterans and promotes workplace diversity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Medical, dental, & vision insurance

Health Savings account

Income protection

PTO

Paid parental leave

Jury duty pay

Bereavement leave

401(k) Retirement Plan

Employee Stock Purchase Plan

Family Benefits