Cyber Defense Incident Responder (Advanced)

Chenega MIOS$90K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • High school diploma or GED required; Bachelor's in Computer Science or related major preferred
  • 6+ years of experience in Threat Hunting, Security Research, or Incident Response
  • Demonstrated leadership skills in a formal role
  • Experience in scripting
  • TS/SCI clearance required

Responsibilities

  • Lead a team of analysts to provide tailored Incident Defense services for TS/SCI and SAP environments
  • Serve as the primary contact for complex threat hunting issues and mentor team members
  • Engineer advanced detection alerting rules using various detection tools
  • Research new malware and ensure compliance with classified network protocols
  • Conduct targeted phishing campaigns to educate the workforce
  • Lead red and purple teaming efforts to simulate adversary attacks
  • Provide support to on-call schedules ensuring coverage during after-hours
  • Maintain and evaluate ID Team tools, recommending new technologies

Benefits

  • Broad range of benefits offered
  • Opportunities for professional development and skill sharpening
  • Hands-on experience in a fast-changing global business environment
  • Formal development programs available
  • Encouragement for continuous career growth
Full Job Description
Overview

Cyber Defense Incident Responder (Advanced)

 

Arlington, VA

 

The Cyber Defense Incident Responder (Advanced) position requires a highly experienced, analytical professional who performs hands-on technical work while guiding and directing senior and mid-level analysts. This role involves advanced threat detection, threat intelligence research, practical application of threat intelligence to operations, developing custom scripts, and understanding complex threat actor techniques used to compromise systems and evade detection. The ideal candidate will have extensive operational experience defending highly secure enclaves, specifically navigating Top Secret/Sensitive Compartmented Information (TS/SCI) and Special Access Program (SAP) networks.

Responsibilities
  • Lead a small team of advanced and mid-level security analysts to provide Incident Defense (ID) services for government clients, specifically tailored to the unique security constraints of TS/SCI and SAP environments.
  • Serve as the primary technical point of contact for complex threat hunting issues, and mentor new ID team members to grow their skills and operational abilities.
  • Engineer advanced detection alerting rules for events reported by endpoints, cloud services, network devices, and other relevant event sources across classified enclaves. This includes utilizing Splunk SPL, Microsoft Kusto Query Language (KQL), Elastic Kibana Query Language, Carbon Black, Snort rules, or other pattern-matching detection tools.
  • Proactively research new malware using hunting capabilities on malware repository services (such as VirusTotal) and through established partnerships with other security researchers, ensuring all malware handling adheres to strict classified network protocols.
  • Lead targeted phishing campaigns to help educate the workforce on the risks of social engineering and malicious attachments.
  • Lead purple and red teaming efforts as directed, conducting adversary emulation relevant to the architecture of highly classified networks.
  • Provide critical support to the NOSC and coordinate team schedules to ensure on-call coverage for after-hours, weekends, and holidays.
  • Maintain the toolkit utilized by the ID Team. Conduct research analysis on the latest cybersecurity tools, provide rationale to renew or deprecate current tools, and make recommendations for employing new technologies within the enterprise.
  • Perform comprehensive research and investigations with little to no oversight to locate information relevant to government requests, communicating findings effectively to clients (typically interfacing with government information security professionals).
  • Ensure that all written communication (reports, briefings, and alerts) is professional, high-quality, free of errors, and clearly delivers actionable intelligence.
  • Other duties as assigned
Qualifications
  • High school diploma or GED equivalent required
    • Bachelor’s degree in computer science, Digital Forensics, or related major with an emphasis on Security preferred
  • 6+ years’ experience in Threat Hunting, Security Research, or Incident Response
    • Demonstrated leadership skills, preferably in a formal leadership role
    • Scripting experience
  • TS/SCI clearance required

 

Preferred Qualifications:

  • Successfully pass background and drug screening

 

Knowledge, Skills, and Abilities:

  • Advanced technical expertise in threat hunting, deep-dive malware analysis, and the operational application of threat intelligence within highly classified (TS/SCI and SAP) network enclaves.
  • Demonstrated leadership and industry contribution, recognized as a subject matter expert within the defense or broader information security community for advancing incident response methodologies.
  • Proven track record of excellence in leadership, specifically in guiding, mentoring, and directing mid-level and senior information security professionals during active cyber operations and crisis response.
  • Government/Client Service Experience: Extensive experience serving as a primary technical liaison, providing Incident Defense (ID) and threat resolution services directly to government stakeholders and technical clients.
  • Security Engineering & Architecture: Knowledge of planning, designing, and implementing robust security controls, detection rules, and defensive systems tailored to secure network architectures.
  • Adversary Emulation: Skill in executing red team or purple team adversary simulations to test and validate defensive postures against Advanced Persistent Threats (APTs).
  • Technical Mentorship: Experience teaching, mentoring, and guiding junior and mid-level analysts in advanced digital forensics and malware analysis techniques.
  • Advanced Forensics: Deep technical understanding of host and network-based forensic analysis techniques, with the ability to accurately interpret complex artifacts and maintain data integrity during investigations.
  • Malware & Script Analysis: High-level skill in reverse-engineering and analyzing obfuscated, malicious scripts (e.g., PowerShell, VBA, JavaScript, .NET) utilized by sophisticated threat actors.
  • Superior Research Capabilities: Exceptional technical analysis and research skills, capable of proactively identifying novel threats and vulnerabilities.
  • Executive Communication: Excellent written and verbal communication skills, capable of producing high-quality, error-free incident reports and briefings suitable for government leadership.
  • Technical Translation: Ability to clearly explain highly complex cybersecurity incidents, TTPs, and risks to both technical peers and non-technical decision-makers.
  • Project & Case Management: Proven ability to independently manage multiple complex incident investigations or research projects simultaneously, demonstrating high accountability, personal initiative, and integrity.
  • Crisis Management: Ability to take ownership during high-stress cyber incidents, rapidly set triage priorities, multitask effectively, and meet tight government reporting deadlines.
  • Collaboration: Well-developed problem-solving and interpersonal skills to facilitate seamless coordination with Network Operations and Security Centers (NOSCs), intelligence teams, and external partners.
  • Attention to Detail: Excellent organizational skills with acute attention to detail, critical for maintaining chain-of-custody, accurate incident logging, and operating within strict SAP compliance frameworks.

 

How you’ll grow  

At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there’s always room to learn.  

  

We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers.  

  

Benefits  

At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits.  

About Chenega MIOS

Chenega MIOS Careers

Joining Chenega MIOS offers a unique opportunity to become part of an exceptional team of professionals operating in a variety of fields. This company is renowned for its commitment to innovation, leadership, and professional growth, making it a prime choice for those looking to advance their careers.

Explore Job Opportunities

Chenega MIOS provides a plethora of job opportunities that cater to a diverse range of skills and interests. Each position at Chenega MIOS is designed to challenge team members while providing them with the tools to succeed. Prospective employees can expect to find themselves at the forefront of industry developments, working alongside seasoned professionals.

Experience the Culture and Benefits

Chenega MIOS is dedicated to fostering a workplace culture that values diversity and inclusion. Employees enjoy a comprehensive range of benefits designed to support both their professional and personal lives. From health and wellness programs to continuous learning and development opportunities, Chenega MIOS ensures that team members are well taken care of.

Internship Programs

For those beginning their career journey, Chenega MIOS offers internship programs that provide invaluable industry experience and exposure to real-world projects. Internships are a cornerstone of the company's commitment to nurturing new talent and equipping them with the necessary skills to excel.

Professional Growth and Development

Career advancement is a key focus at Chenega MIOS. Employees are encouraged to engage in ongoing professional development through workshops, seminars, and diversity training. The company supports career progression through leadership training programs that prepare individuals for future roles within the company.

Join the Team

Chenega MIOS is actively hiring and looking for individuals who are passionate, curious, and driven. Those interested in applying are encouraged to submit their resume and prepare for an interview process that values insight, experience, and a capacity for teamwork.

Networking and Innovation

At Chenega MIOS, networking and innovation go hand in hand. Employees are encouraged to collaborate across departments and utilize their unique perspectives to contribute to groundbreaking projects. This collaborative environment is integral to the company's success and helps foster a sense of community and shared purpose.

Stay Connected

Keep up to date with the latest from Chenega MIOS by exploring their Careers page for insights into the company's culture, upcoming job opportunities, and industry news. Personalize your experience by signing up for job alert emails tailored to your career preferences and discover the exciting and rewarding opportunities that await at Chenega MIOS.

SEARCH CHENEGA MIOS JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive updates on new postings, news, and tips directly related to your career interests. See what exciting and rewarding opportunities await at Chenega MIOS, where every position offers a chance to thrive.
Learn more about Chenega MIOS

Similar Jobs

More Jobs at Chenega MIOS

More Information Technology Jobs

Find similar Cyber Defense Incident Responder (Advanced) jobs: