drjobs Cybersecurity Subject Matter Expert Incident Response

Cybersecurity Subject Matter Expert Incident Response

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Tysons Corner, VA - USA

Monthly Salary drjobs

$ 130000 - 216000

Vacancy

1 Vacancy

Job Description

Job Family:

Cyber Consulting


Travel Required:

Up to 10


Clearance Required:

Active Top Secret (TS)

This posting is not for immediate hire. Seeking prospective candidate to be considered under Proposal to be award in late Q1 2025 or early Q2 2025.

What You Will Do:

We are seeking a highly skilled and experienced Cybersecurity Subject Matter Expert (SME) to join our dynamic team. The ideal candidate will have a strong background in incident response. This role requires a proactive individual who can lead and participate in incident response activities develop response plans and enhance our security posture through effective incident management.

Key Responsibilities include but not limited to:

Incident Response:

  • Lead and participate in incident response activities including detection analysis containment eradication and recovery.
  • Develop and maintain incident response plans playbooks and procedures.
  • Conduct postincident reviews to identify lessons learned and implement improvements.

Security Monitoring and Detection:

  • Monitor security alerts and events to identify potential security incidents.
  • Analyze security data from various sources to detect and respond to threats.
  • Collaborate with other teams to improve detection and response capabilities.

Threat Intelligence:

  • Gather and analyze threat intelligence to stay informed about the latest threats and attack techniques.
  • Use threat intelligence to enhance incident response strategies and improve overall security posture.

Training and Awareness:

  • Conduct training sessions and awareness programs to educate employees about incident response procedures and best practices.
  • Develop and deliver tabletop exercises and simulations to test and improve incident response capabilities.

Security Assessments and Audits:

  • Perform regular security assessments and audits to ensure compliance with industry standards and best practices.
  • Identify and prioritize security risks and work with relevant teams to implement corrective actions.
  • Stay uptodate with the latest cybersecurity threats trends and technologies.


What You Will Need:

  • An ACTIVE and MAINTAINED TOP SECRET DoD security clearance.
  • Bachelors degree from an accredited university or college in Computer Science Information Security Cybersecurity or a related field AND FIVE 5 plus years of experience in cybersecurity with a focus on incident response; Or Masters degree an accredited university or college in Computer Science Information Security Cybersecurity or a related field AND THREE 3 plus years of experience in cybersecurity with a focus on incident response.
  • Relevant certifications such as GCIH GCFA CISSP or similar.
  • Strong knowledge of cybersecurity frameworks standards and best practices (e.g. NIST ISO 27001.
  • Proficiency with incident response tools (e.g. SIEM EDR forensic tools).
  • Excellent problemsolving skills and the ability to think like an attacker.
  • Strong communication and presentation skills with the ability to convey complex technical concepts to nontechnical stakeholders.
  • Ability to work independently and as part of a team in a fastpaced environment.
  • Ability to travel as required.
  • Currently reside in the contiguous United States.
  • This is a Hybrid role that requires the ability to work onsite in a core Guidehouse Office or Client Office location.

What Would Be Nice To Have:

  • An ACTIVE and MAINTAINED Department of Energy DOE QSensitive security clearance.
  • Preference will be given to candidates within 60 miles of a core Guidehouse office or Client Office location.
  • Experience with threat hunting and threat intelligence.
  • Knowledge of scripting languages (e.g. Python PowerShell) for automation and tool development.
  • Familiarity with cloud security (e.g. AWS Azure) and container security (e.g. Docker Kubernetes).

This posting is not for immediate hire. Seeking prospective candidate to be considered under Proposal to be award in late Q1 2025 or early Q2 2025.

#LIRE1

The annual salary range for this position is $130000.00$216000.00. Compensation decisions depend on a wide range of factors including but not limited to skill sets experience and training security clearances licensure and certifications and other business and organizational needs.


What We Offer:

Guidehouse offers a comprehensive total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical Rx Dental & Vision Insurance

  • Personal and Family Sick Time & Company Paid Holidays

  • Position may be eligible for a discretionary variable incentive bonus

  • Parental Leave and Adoption Assistance

  • 401(k) Retirement Plan

  • Basic Life & Supplemental Life

  • Health Savings Account Dental/Vision & Dependent Care Flexible Spending Accounts

  • ShortTerm & LongTerm Disability

  • Student Loan PayDown

  • Tuition Reimbursement Personal Development & Learning Opportunities

  • Skills Development & Certifications

  • Employee Referral Program

  • Corporate Sponsored Events & Community Outreach

  • Emergency BackUp Childcare Program

  • Mobility Stipend

About Guidehouse

Guidehouse is an Equal Opportunity EmployerProtected Veterans Individuals with Disabilities or any other basis protected by law ordinance or regulation.

Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.

If you have visited our website for information about employment opportunities or to apply for a position and you require an accommodation please contact Guidehouse Recruiting ator via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.

All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse or . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.

If any person or organization demands money related to a job opportunity with Guidehouse please report the matter to Guidehouses Ethics Hotline. If you want to check the validity of correspondence you have received please contact . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicants dealings with unauthorized third parties.

Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.