Incident Response Analyst, Mid

Booz Allen Hamilton

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$62,000–$141,000 / yr
Posted
10 days ago
Freshness
Confirmed live today

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $147k
This role $102k
$48k most similar roles pay here $190k

This role pays less than 91% of similar roles. Most pay $123,750–$170,000 — the shaded band above. At the midpoint, this role pays about $102k versus about $147k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 818 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 796 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Incident Response Analyst, Mid

As an Incident Response Analyst, Mid, you will join a 24x7x365 Security Operations Center team focused on monitoring, detecting, and responding to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms. Your daily responsibilities include alert triage, log and artifact analysis, threat identification, containment support, and the creation of incident response playbooks and standard operating procedures. You will perform forensic investigations involving malware triage, packet analysis, and identifying indicators of compromise or unauthorized access. To succeed, you must utilize tools such as Splunk, SIEM, EDR, IDS/IPS, SOAR, and firewalls while leveraging behavioral analytics and threat intelligence for proactive hunting. The role requires communicating complex findings to technical and non-technical audiences while addressing security risks within a federal context to improve the overall maturity of security operations.

What you'll do

  • Monitor and respond to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms.
  • Perform incident triage, log analysis, and artifact investigation using SIEM, EDR, and forensic tools.
  • Identify indicators of compromise, lateral movement, and unauthorized data exfiltration through technical analysis.
  • Conduct proactive threat hunting using behavioral analytics and threat intelligence to identify emerging risks.
  • Develop and update incident response playbooks and standard operating procedures.
  • Produce high-quality reports and briefings for both technical and non-technical audiences.
  • Perform malware triage and forensic imaging to support cyber incident investigations.

What we're looking for

  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination.
  • 2+ years of experience in a SOC performing incident response activities including event triage, log analysis, and threat identification.
  • Experience using Splunk for security monitoring, log analysis, and incident response.
  • Experience analyzing and responding to security events across networks, endpoints, applications, and platforms like SIEM, EDR, and IDS/IPS.
  • Experience developing or contributing to incident response playbooks, workflows, or standard operating procedures.
  • Experience with investigative techniques such as packet analysis, malware triage, and forensic imaging.
  • Ability to communicate technical findings clearly to both technical and non-technical audiences.
  • Bachelor's degree.

More like this

Similar roles

Senior Incident Response Analyst

Booz Allen Hamilton

Bethesda, MD 2 days ago $86,800$198,000
Splunk SIEM EDR IDS IPS SOAR Microsoft Defender Packet Analysis Malware Triage Digital Forensics Threat Hunting Behavioral Analytics Threat Intelligence Vulnerability Management Firewalls Identity and Access Management Container Security API Security
5+ yrs exp

Lead Incident Response Analyst, Detection and Response

MSD

Remote (Rahway, NJ) 4 days ago $117,000$184,200
Incident Response Digital Forensics SIEM EDR AWS Azure CloudTrail CloudWatch MITRE ATT&CK Log Analysis SOAR WAF Proxy Malware Analysis Network Forensics Data Loss Prevention Identity Systems Endpoint Management
7+ yrs exp Remote

Security Incident Response Engineer

Stripe

Remote (Chicago, IL) +3 3 days ago $144,300$216,500
Python SQL Log Analysis Network Security Digital Forensics Incident Response Databricks Jupyter Trino PySpark Pandas Sci-kit Learn osquery Splunk LogScale UEBA SIEM SOAR DLP
3+ yrs exp Remote

Mid Cyber Threat Hunter

Booz Allen Hamilton

Bethesda, MD 12 days ago $62,000$141,000
MITRE ATT&CK Splunk SPL Threat Intelligence Behavioral Analytics Log Analysis Forensic Triage Anomaly Detection Machine Learning Cybersecurity Operations Insider Threat SOC IR CTI SOPs
2+ yrs exp

Incident Response Analyst, React

Cloudflare, Inc

Bengaluru, India 82 days ago
Incident Response WAF AWS Azure Google Cloud Python Golang Yara BGP DNS TCP/IP Linux Windows MITRE ATT&CK NIST Cyber Security Framework Malware Analysis Reverse Engineering Bash Regular Expressions
5+ yrs exp