Job Requirements
Arlington, VA
Top Secret/SCI Polygraph not specified
Senior Level Career (10+ yrs experience)
$145,000 - $155,000
Job Description
Cyber Incident Response Expert (TS/SCI)
Location: Arlington, VA
Clearance: Active TS/SCI required
Apply Now!
or
Contact Recruiter: Brenton Anderson
Email: banderson3@kforce.com
LinkedIn: https://www.linkedin.com/in/myitrecruiterbrenton/
Overview
We are seeking a highly skilled Cyber Incident Response Expert to support a mission-critical federal cybersecurity program focused on protecting national infrastructure. This role sits on a front-line team responsible for proactive threat hunting and rapid response to sophisticated cyber incidents across enterprise and critical environments.
This is a high-impact opportunity to work alongside elite cybersecurity professionals conducting advanced investigations, containment, and remediation of complex threats.
Key Responsibilities
Serve as a subject matter expert (SME) for cyber hunt and incident response activities
Analyze threat actor tactics, techniques, and procedures (TTPs) to detect and mitigate risks
Lead and support incident response efforts, including containment, eradication, and recovery
Conduct deep analysis of endpoint and network data to identify indicators of compromise
Produce executive-level summaries and detailed technical reports
Develop and recommend targeted mitigation and remediation strategies
Provide technical guidance to stakeholders and response teams during active incidents
Support proactive threat hunting across enterprise environments
Document findings and contribute to internal knowledgebases
Collaborate across distributed teams and advise on countermeasure implementation
Required Qualifications
Active TS/SCI clearance
Ability to obtain additional federal suitability as required
7+ years of relevant cybersecurity experience
3+ years supporting or developing cyber response capabilities
Strong experience in incident response and threat hunting
Solid understanding of network architecture and security principles
Experience analyzing system and application vulnerabilities
Knowledge of attack methods, kill chains, and adversarial behaviors
Proficiency with Windows and Linux/Unix environments
Strong written and verbal communication skills
Ability to work independently and collaboratively in fast-paced environments
Willingness to travel domestically on short notice
Preferred Qualifications
Experience leading or mentoring technical teams
Knowledge of cyber defense policies and operational frameworks
Familiarity with a range of threat environments, including advanced adversaries
Hands-on experience with intrusion detection, event correlation, and threat analysis
Exposure to identity and access management (IAM) tools
Ability to assess enterprise environments from a security architecture perspective
Understanding of defense-in-depth strategies
Background in network or system administration
Education
Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or a related field
OR
High School Diploma with 7+ years of relevant technical experience
Certifications (Preferred)
One or more of the following:
DoD 8140-aligned certifications (IAT Level II, IASAE II, CSSP Analyst/Incident Responder)
GIAC certifications (GCIA, GCIH, GNFA)
CEH or equivalent
Other advanced cybersecurity certifications
Location: Arlington, VA
Clearance: Active TS/SCI required
Apply Now!
or
Contact Recruiter: Brenton Anderson
Email: banderson3@kforce.com
LinkedIn: https://www.linkedin.com/in/myitrecruiterbrenton/
Overview
We are seeking a highly skilled Cyber Incident Response Expert to support a mission-critical federal cybersecurity program focused on protecting national infrastructure. This role sits on a front-line team responsible for proactive threat hunting and rapid response to sophisticated cyber incidents across enterprise and critical environments.
This is a high-impact opportunity to work alongside elite cybersecurity professionals conducting advanced investigations, containment, and remediation of complex threats.
Key Responsibilities
Serve as a subject matter expert (SME) for cyber hunt and incident response activities
Analyze threat actor tactics, techniques, and procedures (TTPs) to detect and mitigate risks
Lead and support incident response efforts, including containment, eradication, and recovery
Conduct deep analysis of endpoint and network data to identify indicators of compromise
Produce executive-level summaries and detailed technical reports
Develop and recommend targeted mitigation and remediation strategies
Provide technical guidance to stakeholders and response teams during active incidents
Support proactive threat hunting across enterprise environments
Document findings and contribute to internal knowledgebases
Collaborate across distributed teams and advise on countermeasure implementation
Required Qualifications
Active TS/SCI clearance
Ability to obtain additional federal suitability as required
7+ years of relevant cybersecurity experience
3+ years supporting or developing cyber response capabilities
Strong experience in incident response and threat hunting
Solid understanding of network architecture and security principles
Experience analyzing system and application vulnerabilities
Knowledge of attack methods, kill chains, and adversarial behaviors
Proficiency with Windows and Linux/Unix environments
Strong written and verbal communication skills
Ability to work independently and collaboratively in fast-paced environments
Willingness to travel domestically on short notice
Preferred Qualifications
Experience leading or mentoring technical teams
Knowledge of cyber defense policies and operational frameworks
Familiarity with a range of threat environments, including advanced adversaries
Hands-on experience with intrusion detection, event correlation, and threat analysis
Exposure to identity and access management (IAM) tools
Ability to assess enterprise environments from a security architecture perspective
Understanding of defense-in-depth strategies
Background in network or system administration
Education
Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or a related field
OR
High School Diploma with 7+ years of relevant technical experience
Certifications (Preferred)
One or more of the following:
DoD 8140-aligned certifications (IAT Level II, IASAE II, CSSP Analyst/Incident Responder)
GIAC certifications (GCIA, GCIH, GNFA)
CEH or equivalent
Other advanced cybersecurity certifications
group id: kforcecx
We offer roles across all three clearance levels: Confidential, Secret and Top Secret. With a Top Secret Facilities clearance, a proven subcontractor track record and a deep understanding of agencies across Defense, Intelligence, Homeland, Justice and Federal Civilian Sectors, Kforce brings more than 20 years of experience to supporting critical missions at federal, state and local levels.