user avatar

Incident Response (IR) and Forensics Lead (Q Clearance)

ShorePoint LLC

Posted today

Job Requirements

Germantown, MD
DoE Q or L Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a "work hard, play hard" mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation's critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we're looking for:

We are seeking an Incident Response (IR) and Forensics Lead to manage day-to-day team operations while performing hands-on cyber incident investigations, forensic analysis and response activities. This role provides technical support across cybersecurity areas including cloud security, endpoint security, access management, secure networking and IR. The IR and Forensics Lead position coordinates IR activities, provides technical support across the enterprise and communicates incident findings and responses to customers and federal leadership. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you'll be doing:

  • Manage day-to-day operations of the IR and forensics team.
  • Conduct briefings, coordinate directly with customers and develop IRs for senior federal leadership.
  • Collect and analyze intrusion artifacts, including source code, malware and trojans, to support mitigation of potential cyber defense incidents across the enterprise.
  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents.
  • Coordinate IR functions.
  • Monitor external data sources, including cyber defense vendor sites and Computer Emergency Response resources, to support IR activities.


What you need to know:

  • Knowledge of IR and digital forensics principles and practices.
  • Understanding of cybersecurity operations, including cloud security, endpoint security, access management and secure networking.
  • Knowledge of security risk assessment and cyber incident analysis.


Must have's:

  • Bachelor's degree or Associate's degree plus an additional 2+ years of experience.
  • 7+ years of relevant experience.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must currently hold and maintain an active DOE Q or equivalent DoD Top Secret clearance.


Beneficial to have:

  • Industry recognized certifications.


Where it's done:

  • Onsite (Germantown, MD).
group id: 91085370

Similar Jobs


Clearance Level
DoE Q or L