ECS

Mid. Cyber Incident Coordinator

ECS$135K — $160K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years in threat intelligence or cybersecurity roles
  • Active TS security clearance with SCI eligibility
  • Strong understanding of computer networks
  • Familiarity with detection frameworks like SIGMA and YARA
  • Excellent analytical writing and communication skills
  • Experience with collaborative multi-stakeholder environments

Responsibilities

  • Analyze cyber threat intelligence for relevance and operational impact
  • Correlate data to detect patterns and emerging threats
  • Apply threat hunting techniques for actionable insights
  • Contribute to detection logic development using SIGMA and YARA
  • Develop written guidance for JCDC partners
  • Stay updated on cybersecurity trends and technologies
  • Provide insights into vulnerabilities across diverse environments
  • Assist in mapping cyber threats to frameworks like MITRE ATT&CK
  • Engage in operational coordination and briefings

Benefits

  • On-site work 3-5 days a week in Arlington, VA
  • Opportunity to engage in high-stakes cybersecurity initiatives
  • Access to a collaborative environment with multiple stakeholders
  • Support for continuous learning in emerging cybersecurity trends
  • Engagement in impactful national cybersecurity efforts
Full Job Description
Everforth ECS is seeking a Mid. Cyber Incident Coordinator to work out of our Arlington, VAoffice.

We are looking for a Mid. Cyber Incident Coordinator for a team that provides deep technical analysis of cyber threat intelligence and operational data, correlating information across available datasets, and producing actionable context to support detection, threat hunting, and incident response activities. This position will support a team that interfaces extensively with multiple organizations within CISA including Vulnerability Management (VM) and Threat Hunt (TH) to provide guidance and analysis on active cyber threats for JCDC partners. This position emphasizes analytical rigor, contextualization, and effective communication in support of coordinated cyber defense operations across government and partner organizations.

The Mid. Cyber Incident Coordinator will support a team that works closely with many stakeholders, including DHS CISA TH and VM, Agency security analysts / user groups, and the ECS team to ensure alignment between solution development and needs of stakeholders. The coordinator will perform research and assist with solutions for specific IOCs and IOAs. The coordinator will aid in defining tools, processes, and procedures for advancing Threat Hunting and Incident Response capabilities within CISA, FCEB, CI and SLTT.

Responsibilities:
  • Analyze cyber threat intelligence and related reporting to assess relevance, credibility, and potential operational impact.
  • Correlate intelligence with internal datasets and partner-provided information to identify patterns, behaviors, and emerging threats.
  • Apply threat hunting and detection analysis techniques to provide contextual insights that support detection and response activities.
  • Contribute analytical findings and behavioral context to inform the development and refinement of detection logic, including SIGMA and YARA-based detections.
  • Support the development of written guidance and recommendations to assist JCDC partners with solutions for active and ongoing cyber vulnerabilities.
  • Stay current with emerging technologies and trends in cybersecurity, and apply this knowledge to improve threat detection and mitigation efforts.
  • Through hands-on analysis provide insights into vulnerabilities, adversarial tactics, and mitigation strategies across diverse environments like IT, OT/ICS, cloud, and AI systems.
  • Assist with mapping technical insights on cyber threats to frameworks like MITRE ATT&CK and other cyber frameworks.
  • Support collaboration and information sharing across internal teams and external partners in alignment with the JCDC mission.
  • Participate in operational coordination activities and briefing as required.


Salary Range: $135,000 - $160,000

General Description of Benefits

  • US citizenship with the ability to obtain and maintain DHS Suitability (EOD).
  • Active TS security clearance and SCI eligible.
  • On-site 3-5 days per week in Arlington, VA.
  • 6+ Years of previous experience in a threat intelligence, cyber security, incident response, or similar role
  • Strong understanding of computer and network fundamentals
  • Experience in cyber threat intelligence analysis, cyber incident analysis, or related cybersecurity roles.
  • Working knowledge of threat hunting concepts and detection methodologies.
  • Familiarity with detection logic frameworks and concepts (e.g. behavioral detection, SIGMA, YARA).
  • Strong analytical writing skills with the ability to produce clear, defensible documentation.
  • With minimum support perform in-depth research tasks and produce written summaries to include insights and predictions based on an analytical process
  • Excellent written and oral communication skills
  • An understanding of current cyber threats/exploits, attack methodology, and detection techniques using a wide variety of security products including COTS and open source
  • Experience working in collaborative, multi-stakeholder environments.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar Mid. Cyber Incident Coordinator jobs: