user avatar

SHIFT 2 - Cyber Incident Manager

Quantum Science Solutions

Posted today

Job Requirements

Arlington, VA
Top Secret/SCI Polygraph not specified
Early Career (2+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Job Title: Shift 2 Cyber Incident Manager
Location: Arlington, VA (On-Site)
Clearance: Active TS/SCI Required
Company: Quantum Science Solutions (QSS)
Compensation: Open Rate

Position Overview
Quantum Science Solutions (QSS) is seeking a Cyber Shift Incident Manager to provide onsite incident response support against cyber-attacks. This position will support the immediate investigation and resolution of cybersecurity incidents, characterize the severity and scope of breaches, develop mitigation plans, and assist with the restoration of impacted services.
The Cyber Shift Incident Manager will perform Computer Network Defense (CND) incident triage, analyze and correlate incident and network alert data, identify potential attack vectors, and track incidents from initial detection through final resolution. This position will coordinate with internal and external entities to obtain information related to ongoing incidents and support effective response and mitigation activities

Key Responsibilities
• Correlate incident data to identify trends and patterns across reported cybersecurity incidents.
• Perform Computer Network Defense incident triage to determine incident scope, urgency, and potential impact.
• Receive and analyze network alerts from various enterprise sources and determine possible causes.
• Apply cybersecurity concepts to detect and defend against intrusions affecting small- and large-scale IT networks.
• Conduct cursory analysis of log data in support of incident investigation and response.
• Identify the cause of cybersecurity incidents and determine key information required from external entities to understand incident background and potential infection vectors.
• Research and compile known resolution steps and workarounds to support mitigation of potential Computer Network Defense incidents.
• Track and document CND incidents from initial detection through final resolution.
• Coordinate with other organizational components to obtain and share information related to ongoing incidents.
• Monitor external data sources to maintain awareness of current Computer Network Defense threat conditions and identify security issues that may impact the enterprise.
• Recommend defense-in-depth principles and practices, including layered defenses, defense in multiple places, and security robustness.
• Identify and categorize vulnerabilities and associated attack methods.
• Apply knowledge of attack stages, including footprinting and scanning, enumeration, gaining access, privilege escalation, maintaining access, network exploitation, and covering tracks.
• Support incident investigation, mitigation planning, resolution, and restoration of impacted services.
• Provide operational incident response support during assigned Shift 2 hours, Monday through Friday from 2:00 PM to 10:00 PM

Mandatory Skills
• U.S. Citizenship
• Active TS/SCI Clearance
• Ability to obtain DHS Suitability
• 2+ years of directly relevant experience in cyber incident management or cybersecurity operations.
• Knowledge of incident response and incident handling methodologies.
• Close familiarity with NIST 800-62, latest revision, and FISMA standards as they relate to incident reporting.
• Knowledge of the NCCIC National Cyber Incident Scoring System and its application to prioritizing incident triage.
• Knowledge of general cyberattack stages, including footprinting and scanning, enumeration, gaining access, privilege escalation, maintaining access, network exploitation, and covering tracks.
• Ability to recognize and categorize different types of vulnerabilities and associated attacks.
• Knowledge of basic system administration and operating system hardening techniques.
• Knowledge of Computer Network Defense policies, procedures, and regulations.
• Knowledge of different operational threat environments, including script kiddies, non-nation-state threats, and nation-state threats.
• Knowledge of system and application security threats and vulnerabilities, including buffer overflows, mobile code, cross-site scripting, PL/SQL and injection attacks, race conditions, covert channels, replay attacks, return-oriented attacks, and malicious code.

Preferred Skills
• Knowledge of different operational threat environments, including first-generation (script kiddies), second-generation (non nation-state), and third generation (nation-state) threats.
• Knowledge of system and application security threats and vulnerabilities, including buffer overflows, mobile code, cross-site scripting, PL/SQL and injection attacks, race conditions, covert channels, replay attacks, return-oriented attacks, and malicious code

Education
• Bachelor's degree in Incident Management, Operations Management, Cybersecurity, or a related field
OR
• High School Diploma with 4–6 years of incident management or cybersecurity experience

Desired Certifications
• GCIH, GCFA, GISP, GCED, CCFP, or CISSP

Why QSS?
At QSS, you'll support mission-critical cyber operations by enabling rapid deployment of secure cloud environments used by incident responders and threat hunters protecting federal agencies and critical infrastructure.
Benefits Include:
• Competitive compensation with annual performance bonuses
• Premium Medical, Dental, & Vision coverage
• Generous PTO plus Federal Holidays
• 401(k) with company match
• Professional development and certification support
group id: 91142086
Find Quantum Science Solutions on Social Media
Recruiters
user avatar
About Us
Quantum Science Solutions is traditional in the sense that it was built with core foundations based on honesty and integrity. We take great pride in all of our efforts and projects, we are proud to serve the front lines of cyber defense. We challenge our team members frequently and thrive on the motto “One for all, all for one”. Here at QSS, we invite individuals who think outside of the box and are mentally stimulated by complex problems in the fast paced world of cyber and technology. Our collaborative work environment allows you to think freely and develop iron clad solutions for our customers. At QSS, your ideas and designs are not only heard but are recognized and rewarded. We support you and will provide you with the resources needed to fuel innovations and creativity. Imagine, you are working on cyber integration concept and it turns into fully funded project by a federal agency. Join the QSS team where rather than making a difference, we are the difference

Quantum Science Solutions Jobs


Job Category
IT - Security
Clearance Level
Top Secret/SCI