Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VA image - Rise Careers
Job details

Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VA

Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VAAlexandria, VA, USA ? Washington, DC, USA Req #478Wednesday, December 11, 2024ASRC Federal NetCentric Technology seeks a Cybersecurity Incident Response Team (CIRT) Analyst in Alexandria, Virginia to support our Cybersecurity Support Services contract with the Defense Manpower Data Center (DMDC). This position performs activities related to the Cyber Incident Response Team (CIRT), the team responsible for containing, responding to, and eradicating threats and other malicious activity. This position helps build and improve cybersecurity incident response capabilities and coordinate or participate in high-priority investigations, identifying incident response improvements, and preparing reports for management.Responsibilities:- Lead and coordinate the organization's response to cyber incidents, ensuring rapid identification, containment, and resolution.- Perform technical incident response investigations into cybersecurity related events and incidents.- Determine the nature, scope, and cause of incidents including root cause analysis.- Act as the primary point of contact for all major security incidents, managing communication with stakeholders, including senior leadership, mission owners, and external partners.- Identify corrective actions and aid in the containment, eradication, and recovery of a given event and incident.- Track incident response, corrective measures taken, recommendations, and remediation activities; complete incident reports for investigations as needed; provide or contribute to weekly report of events and incidents.- Oversee real-time monitoring of security events, and lead the analysis and investigation of potential breaches, threats, and vulnerabilities.- Create and maintain incident response SOP in accordance with CJCSM 6510.01B, NIST SP 800-61R2, DoD regulations, and industry best practices.- Ensure thorough post-incident analysis to derive lessons learned, identifying gaps and implementing preventive measures.- Ensure proper monitoring and logging across the network infrastructure and endpoints to detect and respond to cyber incidents promptly.- Provide expert guidance on compliance with cybersecurity directives, ensuring the DoD program meets all required security controls and risk management policies.- Provide regular reports to program leadership, DoD officials, and other stakeholders on the status of security incidents, lessons learned, and the effectiveness of response strategies.- Lead the continuous improvement of incident response capabilities by identifying areas of weakness, recommending enhancements, and implementing new technologies and processes.- Respond to and investigate cyber events should an incident occur after regular business hours.Requirements:- Active DoD Secret clearance with the ability to obtain and maintain a Top-Secret Clearance- Active DoD 8570 IAT Level II certification or greater , including at least one of the following certifications in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, or CCSP.- Active DoD 8570 CSSP Incident Responder certification a plus, including at least one of the following certifications in good standing: CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ Knowledge of Incident Response Handling Procedures (NIST SP 800-61)- Familiarity with cyber adversary tactics and frameworks (such as ATT&CK and D3FEND)- Bachelor's Degree in computer science or related field- 7+ years in Information Technology or Information Security- 3+ years in Cybersecurity Incident Response- CIRT lead experience a plusAdvantages of Working at ASRC Federal:- Learning and Development: After 90 days of employment, regular full-time employees are eligible for our professional development program. This includes annual funding for:- Pursuing Associate's, Bachelor's, or Graduate Degrees.- Obtaining industry-standard professional certifications.- Participating in professional certificate programs.- Covering registration fees for professional conferences.- Employee Resource Groups (ERGs): Engage with colleagues through our ERGs, which foster networking and collaboration among individuals with shared interests, backgrounds, and experiences. Our ERGs include:- Women's Impact Network (WIN).- Multicultural ERG.- Military Community (MILCOM).- Pride ERG for LGBTQ+ employees and allies.- Purpose-Driven Careers: Join a company recognized as a:- Certified Great Place to Work .- Military Times' Best for Vets Employer.- Military.com's Top 25 Veteran Employer .Comprehensive Benefits:- Insurance Coverage : Comprehensive plans for medical, dental, vision, life insurance, and short-term/long-term disability.- Paid Leave : Inclusive policies for bereavement, military obligations, and parental needs, along with 11 paid holidays annually.- Retirement Savings : A 401(k) plan with a generous company match and immediate vesting to help secure your financial future.- Incentives : Employee referral bonuses to reward you for helping grow the ASRC Federal FamilyEmbark on a career with ASRC Federal, where your growth, purpose, and well-being are at the forefront of what we do.We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.EEO StatementASRC Federal and its Subsidiaries are Equal Opportunity /Affirmative Action employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.Other details- Job FamilyInformation Technology- Job Sub-FamilyInformation Security- Pay TypeSalary- Required EducationBachelor's Degree- Alexandria, VA, USA- Washington, DC, USA

Average salary estimate

Estimate provided by employer
$28 / HOURLY (est.)
min
max
$24.06
$32.56

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VA, ASRC Federal Holding Company

Are you ready to take your cybersecurity skills to the next level? As a Cybersecurity Incident Response Team (CIRT) Incident Response Analyst with ASRC Federal in Alexandria, Virginia, you'll be at the forefront of defending critical systems and responding to cyber threats. In this dynamic role, you will lead the organization's response to cyber incidents, performing in-depth investigations to pinpoint the nature and scope of security breaches. Your responsibilities will include coordinating communication with key stakeholders and utilizing your expertise to implement corrective measures that ensure swift containment and resolution of incidents. You'll also have the chance to improve the incident response plan by identifying gaps and making recommendations for enhancements. If you thrive in high-pressure situations, enjoy collaborating with a talented team, and are passionate about cybersecurity, this is the perfect opportunity for you! Plus, ASRC Federal is dedicated to your professional development, offering support for certifications and degree programs after your first 90 days. Join us in making an impact in the cybersecurity landscape, contributing to the protection of vital defense systems while advancing your career in a supportive and innovative environment.

Frequently Asked Questions (FAQs) for Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VA Role at ASRC Federal Holding Company
What are the main responsibilities of a Cybersecurity Incident Response Team Analyst at ASRC Federal?

The primary responsibilities of a Cybersecurity Incident Response Team (CIRT) Incident Response Analyst at ASRC Federal include leading the response to cyber incidents, performing technical investigations, and identifying the nature and scope of incidents. Analysts are also responsible for managing communications with stakeholders, tracking incident responses, and preparing detailed reports for management. Keeping the incident response standard operating procedures up-to-date and ensuring compliance with NIST and DoD regulations are also key duties.

Join Rise to see the full answer
What qualifications do I need to be a CIRT Incident Response Analyst with ASRC Federal?

To qualify for the CIRT Incident Response Analyst position at ASRC Federal, candidates must have an active DoD Secret clearance and be able to obtain a Top-Secret Clearance. A bachelor's degree in computer science or a related field is required, along with at least 7 years of experience in Information Technology or Information Security and 3 years in Cybersecurity Incident Response. Additionally, candidates should hold relevant certifications like Security+ CE, CISSP, or CCNA Security.

Join Rise to see the full answer
How does ASRC Federal support career growth for Cybersecurity Incident Response Analysts?

ASRC Federal places a strong emphasis on the professional development of its employees. After 90 days of employment, new hires are eligible for the professional development program, which includes funding for pursuing degrees, obtaining certifications, and attending conferences. This commitment to learning enables Cybersecurity Incident Response Analysts to stay updated with industry best practices and enhance their skills continually.

Join Rise to see the full answer
What kind of incidents will a CIRT Analyst at ASRC Federal deal with?

As a CIRT Incident Response Analyst at ASRC Federal, you will be dealing with a wide range of cybersecurity incidents, including unauthorized access attempts, data breaches, malware infections, and denial-of-service attacks. Your role will involve analyzing these incidents, determining their root causes, and leading efforts to contain and remediate any threats affecting the organization.

Join Rise to see the full answer
Is prior experience in incident response required for the CIRT Analyst position at ASRC Federal?

Yes, the CIRT Incident Response Analyst position at ASRC Federal requires candidates to have at least 3 years of experience specifically in Cybersecurity Incident Response. This experience is essential for effectively leading investigations and implementing corrective measures in response to various types of cyber incidents.

Join Rise to see the full answer
Common Interview Questions for Cybersecurity Incident Response Team (CIRT) Incident Response Analyst - Mark Center, VA
Can you describe your experience with responding to cybersecurity incidents?

When discussing your experience with cybersecurity incidents, focus on specific situations where you led or significantly contributed to incident response efforts. Highlight the steps you took, such as the investigation process, communication with stakeholders, and lessons learned. Be sure to mention any frameworks or methodologies you utilized, as this demonstrates your technical knowledge and problem-solving skills.

Join Rise to see the full answer
What tools and technologies have you used in incident response investigations?

In your answer, list specific tools such as SIEM solutions, forensic analysis tools, or intrusion detection systems that you've used in past roles. Explain how you applied these tools to analyze incidents, monitor network traffic, or conduct investigations. This will showcase your hands-on experience and familiarity with essential technologies in the field.

Join Rise to see the full answer
How do you stay current with the latest cybersecurity threats and trends?

To effectively answer this question, mention specific resources you use for staying updated, such as cybersecurity blogs, podcasts, professional organizations, or online courses. Discuss any certifications or training programs you've pursued recently, as this demonstrates your commitment to continuing education in the field of cybersecurity.

Join Rise to see the full answer
What is your approach to conducting a thorough post-incident analysis?

When answering, explain the importance of post-incident analysis and how you methodically gather data, review actions taken, and identify improvements. Discuss frameworks or models you use to analyze incidents and share how you incorporate lessons learned into future response plans to enhance organizational resilience.

Join Rise to see the full answer
Can you provide an example of a time you had to coordinate with various stakeholders during a security incident?

Use this question to illustrate your communication skills and ability to collaborate under pressure. Describe a specific incident where you acted as the point of contact for stakeholders, detailing how you provided updates, gathered information, and coordinated responses. Emphasize the outcome and any positive feedback received from leadership or team members.

Join Rise to see the full answer
How familiar are you with NIST SP 800-61 guidelines?

In your response, showcase your understanding of NIST SP 800-61 and its importance in cybersecurity incident response. Discuss any instances where you applied these guidelines in your previous roles, including how they influenced your incident response planning and execution.

Join Rise to see the full answer
What corrective actions have you implemented after a cybersecurity incident?

Provide a concrete example of a cybersecurity incident you've worked on and outline the corrective actions you recommended or implemented afterward. Explain the reasoning behind these actions, how they addressed vulnerabilities, and any subsequent improvements in security posture.

Join Rise to see the full answer
What do you believe is the most critical skill for a CIRT Incident Response Analyst?

While answering, highlight skills such as analytical thinking, communication, and technical proficiency. Discuss why you believe this skill is essential and how you've demonstrated it in previous roles, ensuring to relate it to successful incident management outcomes.

Join Rise to see the full answer
How do you prioritize tasks during a high-pressure incident response situation?

Explain your approach to assessing the severity of incidents and prioritizing tasks based on impact and urgency. Discuss any tools or frameworks you rely on to maintain organization and focus during stressful situations while ensuring effective communication with your team.

Join Rise to see the full answer
What strategies do you use to improve incident response capabilities?

Detail how you evaluate current incident response plans and identify areas for improvement. Share strategies used to implement new technologies, training, or process enhancements. Highlight your proactive approach and any successes you've had in improving response times or reducing incident recurrence.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Zscaler Remote Remote - India
Posted 5 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Dexterity Hybrid Portola Valley, CA
Posted 5 days ago

ASRC Federal’s mission is aligned with federal civilian, intelligence and defense agencies to achieve successful outcomes and elevate their mission performance. We are dedicated to building an enduring enterprise for our people, customers and shar...

13 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 18, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!