Cyber Defense Incident Responder (Tier 2)

Quantico, VA, US

Onsite
Full-time
5 days ago
Save Job

Summary

Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America. RMC is hiring a dedicated Cyber Defense Incident Responder (Tier 2) to join our team and provide 24/7/365 cybersecurity monitoring and detection for the government enterprise network. In this role, you will be responsible for conducting in-depth cyber investigations and responding to incidents across the enterprise network. This critical position involves working with advanced tools, engaging with global stakeholders, and ensuring the network's security and operational integrity. This is a fast-paced and high-impact role in a mission-critical environment. The selected applicant will perform a variety of activities including but not limited to: * Investigate Cyber Incidents: Perform in-depth analysis of network and host artifacts (e.g., logs, system images, packet captures) to identify root causes, operational impacts, and enable rapid remediation of threats. * Incident Triage: Assess the scope, urgency, and potential impact of incidents, identify vulnerabilities, and recommend effective mitigation strategies. * Incident Management: Manage incidents from detection to resolution, documenting actions and outcomes in compliance with DoD Cyber Incident Handling Program (CJCSM 6510.01B). * Forensics and Threat Analysis: Conduct real-time forensic collections, intrusion correlation, threat analysis, and direct system remediation tasks. * Collaboration: Work closely with subordinate organizations, law enforcement, and counterintelligence teams on high-profile incidents and insider threat investigations. * Documentation and Training: Update incident response tactics, techniques, and procedures annually, and deliver quarterly training sessions to enhance team readiness. * Red Team Interaction: Collaborate with Red Teams to validate and enhance incident response capabilities through realistic penetration testing exercises. * Quality Assurance: Maintain high standards in incident response, ensuring consistent quality and efficiency as assessed by government-defined metrics.

How strong is your resume?

Upload your resume and get feedback from our expert to help land this job