Talent.com
serp_jobs.error_messages.no_longer_accepting
Cyber Incident Response Analyst (SME)

Cyber Incident Response Analyst (SME)

CACI InternationalHampton, VA, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Overview

Cyber Incident Response Analyst (SME) on the DCGS Management Center (DMC) program located at Langley AFB. The role requires a strong system administration background, Windows and Linux experience, hands-on ELK / Elastic Stack for threat detection, and the ability to follow established Incident Response processes with minimal supervision. This position is onsite with shift work.

Responsibilities

  • Lead and assist in incident response investigations through all phases (detection, containment, eradication, recovery, lessons learned) to ensure the confidentiality, integrity, and availability of the OA DCGS weapon system.
  • Utilize ELK / Elastic Stack to perform log analysis, threat detection, and investigations; create and maintain security incident reports and dashboards.
  • Escalate and document internal / external security incidents through appropriate ticketing and reporting processing.
  • Design, implement, and maintain cybersecurity SOPs and incident playbooks.
  • Maintain documentation of IR processes and case notes; ensure security testing and evaluations are completed and properly documented.
  • Support proactive threat hunting and vulnerability assessments.
  • Analyze and correlate logs from varied data sources to identify patterns and anomalies.
  • Understand network protocols and establish baselines to identify abnormal activity.
  • Perform cyber threat analysis and reporting on information from internal and external sources and apply cyber threat intelligence to defending the enterprise network.
  • Apply knowledge of Zero-Day vulnerabilities and CVEs to incident handling and remediation.
  • Collaborate with cross-functional teams and external stakeholders as needed.
  • Provide guidance for securing information systems and support cyber vulnerability penetration assessments.
  • Operate independently during shifts and respond to security alerts with urgency.

Qualifications

Required :

  • Top Secret / SCI security clearance.
  • Bachelor's degree in IT Technology, Computer Science, or related field with 4+ years of experience. Degree may be substituted with additional years of experience.
  • DOD 8140 (8570) IAT Level II (Security+ or equivalent).
  • Strong system administration skills across Windows and Linux platforms.
  • In-depth understanding of the Incident Response lifecycle.
  • Proficiency in using the Elastic Stack (Elasticsearch, Logstash, Kibana).
  • Familiarity with enterprise security tools and procedures.
  • Strong problem-solving and analytical skills.
  • Comfortable working with limited supervision in a shift-work setting.
  • Availability to work weekends and holidays as part of our 24 / 7 operations.
  • Desired :

  • AF DCGS experience.
  • Four to seven years of intelligence network communications or Systems Administration experience.
  • Knowledge of security best practices and standards, including NIST, ISO, and SOC operations.
  • Experience with AWS and / or other cloud security platforms.
  • Background as an ISSO, including STIG / SCAP and vulnerability management.
  • Familiarity with tools such as Tanium, Trellix, and ACAS.
  • Understanding of network architecture and traffic analysis.
  • Basic scripting skills (Python, PowerShell, Bash).
  • Elastic certification or SME-level expertise.
  • Effective written and verbal communication skills for documentation and collaboration.
  • What You Can Expect

    CACI offers a culture of integrity, trust, and growth. You'll be part of a high-performing team dedicated to our customers\' missions and the safety of our nation, with flexible time off and robust learning resources. We support continuous growth and offer a comprehensive benefits package including healthcare, retirement, and education benefits. Learn more about CACI here.

    Pay and Equal Opportunity

    The proposed salary range for this position is $75,200-$158,100, commensurate with location, experience, and qualifications. CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Incident Response Analyst • Hampton, VA, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    US NavyChesapeake, Virginia, United States
    serp_jobs.job_card.part_time
    Languages are more than just communication-they're cultural codes that need to be analyzed and in some cases, broken.As a Cryptologic Technician Interpretive (CTI) you're more than a linguist-you'r...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IAM Authentication Engineer

    IAM Authentication Engineer

    Smithfield FoodsSmithfield, VA, United States
    serp_jobs.job_card.full_time
    If you are currently employed at Smithfield, please log into Workday and submit your application through the Jobs Hub.A great job-and a great future-awaits you at Smithfield Foods.We are an America...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity Engineer lll

    Cybersecurity Engineer lll

    ENGINEERING SERVICES NETWORK, Inc.Chesapeake, VA, US
    serp_jobs.job_card.full_time
    Founded in 1995, ESN is a Small Disadvantaged Business (SDB), Service-Disabled Veteran-Owned Small Business (SDVOSB) and Veteran Owned Small Business (VOSB). F;ESN delivers trusted solutions that su...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    SIU Investigator

    SIU Investigator

    Allied UniversalWilliamsburg, VA, United States
    serp_jobs.job_card.full_time
    US-VA-Chesapeake | US-VA-Hampton | US-VA-Williamsburg.Advance Your Career in Insurance Claims with Allied Universal Compliance and Investigation Services. Allied Universal Compliance and Investigati...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    ISSJ III Counterintelligence (CI) Analyst Subject Matter Expert (SME)

    ISSJ III Counterintelligence (CI) Analyst Subject Matter Expert (SME)

    BTS Software SolutionsVirginia Beach, VA, US
    serp_jobs.job_card.full_time
    ISSJ III Counterintelligence (CI) Analyst Subject Matter Expert (SME).POSITION AVAILABLE UPON CONTRACT AWARD!.Primary Location : Virginia Beach, VA and Columbus, GA. Clearance Requirement : Active To...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Technical Cybersecurity Assessor-Network

    Technical Cybersecurity Assessor-Network

    AERMOR LLCSuffolk, VA, US
    serp_jobs.job_card.full_time
    Job Type : Cyber Security Assessor-Network.Cyber Security Assessor – Network.The ideal candidate will have a minimum of three (3) years’ experience in DoD Network Operations or IA operat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Network Security Engineer • •

    Senior Network Security Engineer • •

    SimVentions, Inc - Glassdoor 4.6Chesapeake, VA, US
    serp_jobs.job_card.full_time
    SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced network security professional to join our team! As a Network Security Engineer IV, you will perform...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    IT SOX Risk Manager, SOX Advisory Team

    IT SOX Risk Manager, SOX Advisory Team

    Capital OneCapitol, VA, US
    serp_jobs.job_card.full_time +1
    IT SOX Risk Manager, SOX Advisory Team If you’re looking for a fast paced, dynamic and innovative firm founded on a culture of diversity and inclusion that can provide you with a challenging role a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    NOSC Cyber Defense Specialist

    NOSC Cyber Defense Specialist

    Knight Federal SolutionsSuffolk, VA, US
    serp_jobs.job_card.full_time
    Knight Federal Solutions is a trusted provider to industry leading prime contractors, the Department of Defense and the Intelligence Community. We have established a company culture that supports ou...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    NavyWilliamsburg City, VA, United States
    serp_jobs.job_card.full_time
    ABOUT Enlisted Sailors in the Navy Cryptology community analyze encrypted electronic communications, jam enemy radar signals, decipher information in foreign languages, and maintain state-of-the-ar...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IT Security Specialist

    IT Security Specialist

    Robert HalfChesapeake, VA, US
    serp_jobs.job_card.permanent
    We are looking for an experienced IT Security Specialist to join our team in Chesapeake, Virginia.In this role, you will play a critical part in protecting sensitive data, enhancing the security of...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Anti-Money Laundering, Financial Intelligence Unit - Subject Matter Expert (SME)

    Anti-Money Laundering, Financial Intelligence Unit - Subject Matter Expert (SME)

    Capital OneCapitol, VA, US
    serp_jobs.job_card.full_time +1
    Anti-Money Laundering, Financial Intelligence Unit - Subject Matter Expert (SME) Role Overview : The Subject Matter Expert will play a multi-faceted role within Capital One’s Anti-Money Laundering (...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    SPY-6(V)2 / 3 (EASR) Test Project Officer

    SPY-6(V)2 / 3 (EASR) Test Project Officer

    Decision TechnologiesVirginia Beach, VA, United States
    serp_jobs.job_card.full_time
    Work for a dynamic company specializing in technical support services and engineering consultancy.RF Systems and Missile Sensors, production transition, quality and reliability assessment, test and...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cyber Security Expert III (A)

    Cyber Security Expert III (A)

    SimIS Inc.Virginia Beach, VA, US
    serp_jobs.job_card.full_time
    Veteran Owned Small Business (VOSB) that models future environments, requirements, and capabilities, and then secures the enterprise from internal and external threats compliant with Federal, State...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    NWTP & ULTRA Support - Cyber

    NWTP & ULTRA Support - Cyber

    PrevailanceSuffolk, VA, US
    serp_jobs.job_card.full_time
    This position is currently filled, however we are accepting applications for Ready Replacement Pool consideration.Prevailance is seeking an experienced and mission-focused professional to provide.N...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Systems Security Engineer (ISSE)

    Systems Security Engineer (ISSE)

    Solvere Technical GroupSuffolk, VA, United States
    serp_jobs.job_card.full_time
    Solvere Technical has an immediate need for an.Information Systems Security Engineer (ISSE) at Navy Information Warfighting Development Center (NIWDC) based in Norfolk, Virginia.MUST be a US CITIZE...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    CYBER SECURITY ENGINEER

    CYBER SECURITY ENGINEER

    DEFTEC CorporationChesapeake, VA, US
    serp_jobs.job_card.full_time
    DEFTEC delivers mission-critical solutions through skillfully delivered services and innovative products.We are inspired by our clients' critical missions and driven to provide the most effecti...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Cyber Security Analyst

    Cyber Security Analyst

    PingWindVirginia Beach, Virginia, United States, 23451
    serp_jobs.job_card.full_time
    M in accordance with (IAW) DFARS 252.Baseline Certification, minimum IAT Level I, Level II or Level III depending on position hired to fill. Bachelors degree in Cybersecurity, Cyber Operations, Cybe...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Professional - Flex Access Control

    Security Professional - Flex Access Control

    Allied UniversalSmithfield, VA, United States
    serp_jobs.job_card.full_time +1
    Security Professional - Flex Access Control.Monday - Friday, Saturday - Sunday.Morning, Afternoon, Evening, Overnight.Allied Universal, North America's leading security and facility services compan...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Cyber Analyst Mid level w / Secret clearance

    Cyber Analyst Mid level w / Secret clearance

    Connect Talent SolutionsHampton, VA, US
    serp_jobs.job_card.full_time
    The Cyber Analyst, Mid-Level, applies expertise and work experience executing cyber risk assessments.The ideal candidate will provide a broad range of information assurance activities and has a str...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30