Senior Incident Response Analyst

Leidos

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Arlington, VA
Salary
$131,300–$237,350 / yr
Employment
Full-time
Posted
11 days ago
Freshness
Confirmed live today

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $148k
This role $184k
$98k most similar roles pay here $252k

This role pays more than 80% of similar roles. Most pay $118,425–$177,825 — the shaded band above. At the midpoint, this role pays about $184k versus about $148k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 340 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 294 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Senior Incident Response Analyst

Senior Incident Response Analyst The Senior Incident Response Analyst joins the Digital Modernization Sector to support the DHS CISA Program within the Department of Homeland Security Security Operations Center. This role involves coordinating investigation and response efforts throughout the incident response lifecycle, correlating data to determine the scope of cyber incidents, and analyzing endpoint artifacts, network artifacts, volatile memory, and malicious files. The analyst will develop playbooks, tune security tools like EDR, IDS, and SIEM, and create metrics for SOC operations. Key technical requirements include expertise in Windows and Linux operating systems, enterprise network architectures, and the ATT&CK Framework. Candidates must possess scripting skills in Python, PowerShell, or Bash to develop security content. The role addresses the critical need to monitor, detect, and mitigate cyber threats and adversarial activity across the DHS Enterprise infrastructure.

What you'll do

  • Coordinate investigation and response efforts throughout the entire incident response lifecycle.
  • Correlate and analyze event data to determine the scope of cyber incidents.
  • Acquire and analyze endpoint/network artifacts, volatile memory, and malicious files or scripts.
  • Identify attacker tactics, techniques, and procedures to improve monitoring and detection capabilities.
  • Develop, document, and maintain incident response processes, workflows, and playbooks.
  • Tune and maintain security tools like EDR, IDS, and SIEM to reduce false positives.
  • Document investigation actions in case management systems and prepare formal incident reports.
  • Create metrics and key performance indicators to drive the maturity of SOC operations.

What we're looking for

  • Bachelor's degree in Computer Science, Engineering, Information Technology, Cyber Security, or a related field.
  • 12 to 15 years of related experience (additional experience or cyber certifications may be considered in lieu of a degree).
  • Must pass a 5-year Background Investigation (BI).
  • Must possess at least one of the following certifications: GCIH, GCIA, GCFA, GPEN, GCFE, GREM, CISSP, OSCP, OSCE, or OSWP.
  • Technical hands-on experience in incident detection and response, malware analysis, or computer forensics.
  • Expertise in Windows/Linux operating systems, enterprise network architectures, and common protocols.
  • Proficiency in scripting with Python, PowerShell, and/or Bash.
  • Experience in cyber government, federal law enforcement, or FISMA systems (preferred).

More like this

Similar roles

Senior Incident Response Analyst

Booz Allen Hamilton

Bethesda, MD 19 days ago
Splunk SIEM EDR IDS IPS SOAR Microsoft Defender Packet Analysis Malware Triage Digital Forensics Threat Hunting Behavioral Analytics Threat Intelligence Vulnerability Management Firewalls Identity and Access Management Container Security API Security
5+ yrs exp

Incident Response Analyst, Mid

Booz Allen Hamilton

Bethesda, MD 27 days ago
Splunk SIEM EDR IDS/IPS SOAR Digital Forensics Packet Analysis Malware Triage Threat Hunting Behavioral Analytics Threat Intelligence Identity and Access Management Container Security API Security Vulnerability Management Firewalls Log Analysis
2+ yrs exp

Incident Response Lead

Leidos

Washington, DC +1 37 days ago $107,900–$195,050
Incident Response SOC Operations Cybersecurity Analysis Windows Linux Network Architecture Firewalls Proxies Load Balancers VPN Cyber Kill Chain Automation Knowledge Management CIRT
8+ yrs exp

Cyber Threat Intelligence Analyst III

Leidos

Washington, DC +2 22 days ago
Cyber Threat Intelligence Cyber Kill Chain Diamond Model Splunk Analyst1 Python Bash PowerShell C++ CrowdStrike Falcon Tanium Proofpoint TAP Zscaler Malware Analysis Incident Response Threat Hunting Forensics XML HTML
8+ yrs exp

Senior Incident Responder, Global CSIRT

Salesforce

Remote (Mclean, VA) 27 days ago $148,500–$223,900
Incident Response SOAR CI/CD AWS Azure GCP Windows macOS Linux Malware Analysis Detection Engineering Forensics AI LLM Salesforce Platform SaaS
5+ yrs exp Remote