Incident Response Analyst

Leidos

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Alexandria, VASeaside, CA
Salary
$87,100–$157,450 / yr
Employment
Full-time
Posted
2 days ago
Freshness
Confirmed live today

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $141k
This role $122k
$77k $181k
below market most similar roles pay here above market

This role pays less than 61% of similar roles. Most pay $113,687–$168,000 — the blue band above. At the midpoint, this role pays about $122k versus about $141k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 399 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 331 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Incident Response Analyst

The Incident Response Analyst joins the team supporting the Defense Manpower Data Center CyberPRIMES program to protect the Defense Human Resources Activity. This role involves managing the full incident-response lifecycle, including detection, analysis, containment, eradication, recovery, and post-incident activities for NIPRNet and SIPRNet environments. The analyst will perform proactive security monitoring, investigate cybersecurity events, and coordinate with Security Operations Center analysts and technical stakeholders to mitigate threats. Key responsibilities include analyzing security information from SIEM platforms, firewalls, Intrusion Detection Systems, Intrusion Prevention Systems, web-security systems, antispam capabilities, and malware-prevention systems. The position requires preserving technical evidence and maintaining accurate records while addressing cybersecurity conditions within a complex environment containing thousands of network and endpoint devices supporting various Government-Off-The-Shelf applications.

What you'll do

  • Investigate and respond to cybersecurity incidents affecting NIPRNet and SIPRNet environments.
  • Perform proactive security monitoring to identify potential intrusion attempts and malicious activity.
  • Analyze security information from SIEM platforms, firewalls, IDS/IPS, and malware-prevention systems.
  • Execute containment, eradication, and recovery actions for active cybersecurity threats.
  • Collect and preserve technical evidence while maintaining accurate incident records and timelines.
  • Coordinate incident-response activities with SOC analysts, system owners, and government stakeholders.
  • Support post-incident analysis to improve monitoring, detection, and defensive capabilities.
  • Participate in after-hours incident response and meet the one-hour recall requirement.

What we're looking for

  • Bachelor’s degree and 4 or more years of relevant cybersecurity experience.
  • Experience supporting cybersecurity incident response, Security Operations Center operations, cyber defense, or security-event investigation.
  • Experience performing analysis of cybersecurity events and determining appropriate response or escalation actions.
  • Experience supporting incident containment, eradication, recovery, and post-incident activities.
  • Experience monitoring and analyzing enterprise cybersecurity tools and security telemetry.
  • Experience documenting incident timelines, investigative findings, evidence, response actions, and status.
  • Experience coordinating cybersecurity incidents across technical teams and stakeholder organizations.
  • U.S. Citizenship and an active Secret security clearance are required.

More like this

Similar roles

Senior Incident Response Analyst

Leidos

Arlington, VA 21 days ago $131,300–$237,350
Incident Response EDR IDS SIEM Python PowerShell Bash Malware Analysis Computer Forensics Windows Linux Firewalls Proxies Load Balancers VPN ATT&CK Framework Cyber Kill Chain FISMA
10+ yrs exp

Incident Response Analyst, Mid

Booz Allen Hamilton

Bethesda, MD 37 days ago $62,000–$141,000
Splunk SIEM EDR IDS/IPS SOAR Digital Forensics Threat Hunting Packet Analysis Malware Triage Vulnerability Management Firewalls Identity and Access Management API Security Container Security Log Analysis Behavioral Analytics Threat Intelligence
2+ yrs exp

Incident Response Analyst, Senior

Booz Allen Hamilton

Bethesda, MD 29 days ago
Splunk SIEM EDR IDS IPS SOAR Microsoft Defender Vulnerability Management Digital Forensics Packet Analysis Threat Hunting Behavioral Analytics Threat Intelligence Identity and Access Management Container Security API Security Log Analysis Incident Response Playbooks
5+ yrs exp

Incident Response Lead

Leidos

Washington, DC +1 47 days ago $107,900–$195,050
Incident Response SOC Operations Cybersecurity Analysis Windows Linux Network Architecture Firewalls Proxies Load Balancers VPN DHCP DNS HTTP Cyber Kill Chain Automation Intrusion Detection
8+ yrs exp

Security Operations Center (SOC) Analyst

Leidos

Alexandria, VA 2 days ago $69,550–$125,725
SIEM SOC Operations Incident Response Cybersecurity Event Analysis Risk Management Framework eMASS Endpoint Security network-security Security Telemetry digital-evidence preservation Cybersecurity Monitoring Security Testing Compliance Checking
2+ yrs exp