Cyber Incident Response Analyst

Remote, USA Full-time
About the position SAIC is actively seeking a Cyber Incident Response Analyst to join the Cyber Incident Response Team (CIRT) in support of the United States Army Corps of Engineers (USACE) OCIO/G-6 Managed Security Services (MSS). This role ensures 24/7/365 cyber threat monitoring, incident response, and forensic investigations to protect USACE networks and systems from advanced cyber threats. This position requires working rotating shifts, including nights, weekends, and holidays, as part of a 24/7/365 cyber operations environment. Responsibilities • Monitor, analyze, and respond to cybersecurity incidents across USACE-supported networks, cloud environments, and classified systems. • Utilize cybersecurity tools to detect, analyze, and correlate security events. • Conduct real-time intrusion detection and prevention (IDS/IPS) monitoring, ensuring continuous protection against malware, denial-of-service (DoS) attacks, and unauthorized access. • Identify, classify, and assess cyber incidents, determining the threat level, attack methodology, and root cause based on received alerts and forensic evidence. • Conduct forensic investigations, including log analysis, host memory analysis, and evidence collection, ensuring compliance with CJCSM 6510.01B Cyber Incident Handling Program. • Implement containment and eradication measures to mitigate cyber threats, preventing lateral movement and minimizing operational impact. • Develop and maintain incident response playbooks based on MITRE ATT&CK framework and USACE threat intelligence. • Provide incident coordination and threat intelligence sharing with Army Cyber Command, USACE OCIO/G-6, DoD, and other Federal agencies. • Generate After Action Reports (AARs), network damage assessments (AR 380-53), and lessons learned, supporting continuous security improvements. • Assist with cyber risk mitigation, vulnerability scanning, and penetration testing to enhance defensive capabilities. • Maintain compliance with DoD 8140.03, ensuring continuous training and certification requirements are met. Requirements • Bachelor's degree and two (2) years or more experience; additional four (4) years of experience accepted in lieu of degree. • Experience working with DoD, USACE, or Federal cyber operations in an incident response role. • Hands-on experience with MITRE ATT&CK framework, DISA STIG compliance, and Army cybersecurity policies. • Familiarity with Risk Management Framework (RMF), NIST 800-53, and DoD 8500.01. Nice-to-haves • Must hold at least one of the following CSSP-Incident Responder (IR) certifications: CEH, CySA+, CFR, CCNA Cyber Ops, CCNA Security, CHFI, GCFA, GCIH, SCYBER, PenTest+. Apply tot his job
Apply Now

Similar Jobs

[Remote] Project Manager, Influencer Marketing

Remote, USA Full-time

Data Infrastructure Engineer

Remote, USA Full-time

Inside Sales Representative (remote)

Remote, USA Full-time

[Remote] Senior Business Analyst (with Insurance domain and Reporting Analytics, KPIs KRAs Standardization experience)

Remote, USA Full-time

Senior Insurance Broker II

Remote, USA Full-time

Customer Service Specialist - REMOTE POSITION

Remote, USA Full-time

Disability Claims Specialist (Part Time 20 hours+)

Remote, USA Full-time

Client Relationship Manager - Insurance Operations (Remote) in Des Moines, IA

Remote, USA Full-time

WebSphere Integration Architect with (IBM IIB, APIC & DataPower) - Remote

Remote, USA Full-time

Intellectual Property Partner for Fast Growing AMLAW Firm (Attorney )

Remote, USA Full-time

Sr Litigation Paralegal - Employment

Remote, USA Full-time

(USA) Senior Director, Data Science - Consumer Health Solutions

Remote, USA Full-time

Video Editor (Remote) Job at Georgia Entertainment News in Atlanta

Remote, USA Full-time

**Customer Care Executive – Remote Jobs – Freshers Opportunities at arenaflex**

Remote, USA Full-time

Online Teachers for AP US History

Remote, USA Full-time

Experienced Full Stack Software Engineer and Customer Service Representative – Remote Work Opportunity with blithequark

Remote, USA Full-time

Experienced Senior Manager, Product Management - Customer Experience - Remote at Blithequark

Remote, USA Full-time

Experienced Remote Live Chat Support Agent – E-Commerce Customer Service and Support Specialist at blithequark

Remote, USA Full-time

Consultant Procurement Partnering 13144

Remote, USA Full-time

Remote Radiology Physician Job at Northwell Health Physician Partners in Remote

Remote, USA Full-time
Back to Home