??Incident Response Deputy Team Lead ?

Leidos Holding$131K — $237K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Engineering, IT, or Cybersecurity.
  • 12+ years of experience in incident detection and response or malware analysis.
  • Advanced knowledge of the Incident Response Lifecycle and its application.
  • Experience creating processes, playbooks, and SOPs for tools and workflows.
  • Ability to script in Python, Bash, Visual Basic, or PowerShell.

Responsibilities

  • Assist the CIRT Team Lead in managing CIRT analysts and incident response priorities.
  • Partner with task leads on customer initiatives and cyber incidents.
  • Create dashboards for key metrics and deliver technical presentations to customer leadership.
  • Interface with senior DHS & CBP leaders to support the SOC's critical systems.
  • Conduct in-depth analysis of hosts and networks for incident response.
  • Recognize attacker activity as indicators of compromise to improve processes.
  • Lead incident response activities and mentor junior SOC staff.

Benefits

  • Flexible working environment and work-life balance.
  • Professional development opportunities for continuous learning.
  • Access to state-of-the-art technologies and tools.
  • Collaborative team culture with emphasis on mentorship.
  • Opportunity to engage directly with senior government leadership.
Full Job Description
Leidos is seeking an experiencedIncident Response professionaltojoin our team. As a leader of thishighly visible cyberSecurityOperationsCenter (SOC) forU.S.CustomsandBorder Protection (CBP),you will be responsible for managing day to day operations of the team, coordinating efforts of the team, leading by example and performing in-depth technical analysis of network and endpoint logs & activity,cyberincidentanalysis,escalating findings as deemed appropriate, and containment, remediation and root cause analysis in support of the protection of the customers27 systems, networks, and assets. Primary Responsibilities: Responsible forassistingthe CIRT Team Lead with managing the team of CIRT analysts,Incident Response actions and priorities,technical analysisand root cause analyses, and interfacing with the customer. Partnerwith othertask leadsin support of customer initiatives and cyber incidents. Create dashboards for key metrics and processes and deliver technical presentations to various levels of customer leadership. Interface with senior DHS& CBPleaders and directors to helpmaintainand sustain critical systems supporting the CBP Security Operations Center. Utilizestate of the arttechnologies such as host forensicstools(FTK/Encase), Endpoint Detection & Response tools, log analysis (Splunk)and network forensics (full packet capture solution) to perform hunt and investigative activity to examine endpoint and network-based data. Conductin-depthanalysisonhostsand networks, forensicanalysis, log analysis, and triage in support of incident response. Recognize attacker and APT activity, tactics, and procedures as indicators of compromise (IOCs) that can be used to improve monitoring, analysis, and incident responseprocesses. Develop and build security content, scripts, tools, or methods to enhance the incident investigation processes. Leadincidentresponse activities and mentor junior SOC staff. Work with key stakeholders to implement remediation plans in response to incidents. Effectively investigative andidentifyroot cause findings then communicate findings to stakeholders including technical staff, and leadership. Flexible and adaptable self-starter with strong relationship-building skills Ability to stayup to date with the latestthreatintelligence,security trends,toolsand capabilities. Possess strong problem-solving abilities with an analytic and qualitative eye for reasoning. Ability to independently prioritize and complete multiple tasks with little to no supervision. Effectively communicate with customer leadership anddisseminatetimelyupdates of critical incidents with emphasis on attention to detail andaccuratereporting. Basic Qualifications: Bachelor27s degree inascienceor engineeringfield, IT, or Cybersecurity related field. 12+ years of experience be in the areas of incident detection and response, remediation,malware analysis, or computer forensics. Ability to prioritize and complete multiple tasks with little to no supervision. Experience organizing, directing, and managing contract operation support functions involving multiple, complex, and interrelated project tasks. Experience effectively communicating at senior levels within a customer organization. Advanced knowledge of the Incident Response Lifecycle and applicability tovarious typesof incidents and situations. Ability to collaborate with technical staff and customers toidentify, assess, and resolve complex security problems/issues/risks andfacilitateresolution and risk mitigation. Effective communication skills with emphasis on attention to detail, ability to accurately capture and document technical remediation details, and ability to brief stakeholders on incident statuses. Experience creating new processes, playbooks, and SOPs for new tools and workflows.Prior relevant experience should be in the areas of incident detection and response, malware analysis, or computer forensics. Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell. Experience running cyber incident investigations with emphasis on attention to detail, adept communication skills, and adherence to defined escalation paths. Clearance:All CBP SOC employeesare required tocurrentlypossessa CBP Background Investigation to support this program. Preferred Qualifications: Experience in Federal Government, DOD or Law Enforcement in CND,CIRTor SOC role Knowledge of the Cyber Kill Chain and the MITRE ATT&CK framework Knowledge of Structured Analytic Techniques Required certifications: The candidate should have at minimum ONE of the following certifications: CompTIA Cyber Security Analyst (CySA+) CompTIA Linux Network Professional (CLNP) CompTIA Pentest+ CompTIA Cybersecurity Analyst (CySA+) GPEN 6 PenetrationTester GWAPT 6 Web Application Penetration Tester GSNA 6 System andNetwork Auditor GISF 6 SecurityFundamentals GXPN 6 Exploit Researcher and Advanced PenetrationTester GWEB 6 Web ApplicationDefender GNFA 6 Network ForensicAnalyst GMON 6 Continuous Monitoring Certification GCTI 6 Cyber Threat Intelligence GOSI 6Open SourceIntelligence OSCP (CertifiedProfessional) OSCE (Certified Expert) OSWP (WirelessProfessional) OSEE (Exploitation Expert) CCFP 6 Certified Cyber Forensics Professional CISSP 6 Certified Information SystemsSecurity CEH 6 Certified EthicalHacker CHFI 6 Computer Hacking Forensic Investigator LPT 6 Licensed PenetrationTester CSA 6 EC Council Certified SOC Analyst (Previously ECSA 6 EC-Council Certified Security Analyst) ENSA 6 EC-Council Network Security Administrator ECIH 6 EC-Council Certified Incident Handler ECSS 6 EC-Council Certified Security Specialist ECES 6 EC-Council Certified Encryption Specialist

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

  • Systems Engineer
    $107K — $195K *
    Greenbelt, MD 20770 (Prince Georges County)
    Aerospace & Defense
    In-Person
  • Flight Dynamicist
    $69K — $125K *
    San Diego, CA 92154 (San Diego County)
    Aerospace & Defense
    In-Person
  • ICAM/AD Solutions Architect
    $131K — $237K *
    Washington, DC 20011 (District Of Columbia County)
    Information Technology
    In-Person
  • Database Administrator
    $107K — $195K *
    Bethesda, MD 20817 (Montgomery County)
    Information Technology
    In-Person
  • SharePoint Senior Administrator
    $92K — $166K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar ??Incident Response Deputy Team Lead ? jobs: