Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailAbout the Opportunity
The Federal Reserve System (FRS) National Incident Response Team (NIRT) has an immediate opening for an Incident Response Advisor Senior position reporting to a Senior Manager Information Security. The NIRT a national service provider for the FRS delivers effective intrusion detection incident response forensics security intelligence threat assessment and penetration testing services.
The role is for an experienced incident response professional. You will be expected to be able to investigate and respond to security events within the FRS with minimal oversight. Additionally as you gain experience you will be expected to lead larger and more impactful incidents. The ideal candidate will have some more specialized skills such as Security Operations Center (SOC) support disk and/or memory forensics phone forensics malware analysis and/or threat hunting skills. This position will also serve as the Night Shift lead and will be responsible for technical training for junior tenured staff shift scheduling and other lead duties.
Hours: The core hours are evening/night shift and are to be confirmed during onboarding. You may also be required to work overnights weekends or holidays scheduling flexibility is required. Due to the nature of this work and 2nd shift schedule for this role this position will have the ability to work remotely within a commutable distance to a Federal Reserve Bank location.
What You Will Do:
Perform security event triage and analysis with knowledge in current security threats and techniques.
Manage and lead security incidents and conduct incident analysis containment protection mitigation and recovery activities across the FRS.
Perform and lead incident response workflow processes.
Analyze all relevant data sources for attack indicators and potential network and host compromises.
Respond to different attack vectors such as data exfiltration DDoS malware insider risk and phishing.
Develop scripts and tools to improve the efficiency of incident detection and response processes.
Lead investigations.
Identify gaps/opportunities for enhancements to workflows and processes for enhancing the incident response lifecycle.
Support cross-team projects to help implement cybersecurity improvements.
Provide subject matter expertise to partners on an as-needed basis.
Interface with NIRT customers and stakeholders.
Qualifications:
Bachelors Degree or equivalent experience with 6 to 9 years of relevant work experience.
You should have in-depth understanding of a variety of information technologies and information security topics. Specifically this should include the following:
Advanced SIEM/SOAR utilization skills to analyze security events from multiple monitoring and logging sources to identify investigate and confirm suspicious activity.
Advanced knowledge of incident response and handling methodologies.
Advanced knowledge of common adversary tactics techniques and procedures (TTPs).
Advanced knowledge of cyber threats and vulnerabilities.
Advanced knowledge of cyber-attack stages (e.g. reconnaissance scanning enumeration gaining access escalation of privileges maintaining access network exploitation covering tracks).
Advanced knowledge of which system files (e.g. log files registry files configuration files) contain relevant information and where to find those system files).
Advanced ability to analyze all relevant data sources for attack indicators and potential network and host compromises.
Advanced knowledge of current security threats techniques and landscape and a dedicated approach to research current information security landscape.
Advanced understanding of IT Infrastructure designs technologies products and services. This should include knowledge of networking protocols firewall functionality host and network intrusion detection systems operating systems databases encryption load balancing and other technologies.
You will hold one or more relevant security certifications/degrees and/or commensurate experience.
Ability to communicate complex information concepts or ideas in a confident and well-organized manner through verbal written and/or visual means evaluate information for reliability validity and relevance and function effectively in a dynamic fast-paced environment.
In addition youll function in a collaborative environment seeking continuous consultation with other analysts and expertsboth internal and external to the organizationto leverage analytical and technical expertise think critically and think like threat actors.
Ability to develop productive working relationships with a broad range of business and operational area professionals.
Discover the Reason Why So Many People Love It Here!
When you join the Richmond Fed not only will you find a challenging and purposeful career but youll also have access to a wide range of benefits and perks that support your health and wealth including:
Great medical benefits
Pension and 401(k) with employer match
Paid time off
Tuition reimbursement
Paid volunteer leave
Onsite amenities that make working here fun!
Other Requirements and Considerations:
Candidates should review the Banks Employee Code of Conduct to ensure compliance with conflict of interest rules and personal investment restrictions.
If you need assistance or an accommodation due to a disability please notify .
Sponsorship is not available for this role. The selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Eligibility for this specific position requires U.S. Citizenship.
The hiring range is $126000 $174000 annually.
For candidates located near other National IT locations outside of Richmond VA the listed hiring and salary ranges may be adjusted based on your geographic location.
Salary offered will be based on the job responsibilities and the individuals knowledge skills and experience as defined in the job qualifications.
Applications are reviewed on a rolling basis. Interested candidates are strongly encouraged to apply by September 15 2025.
Always verify and apply to jobs on Federal Reserve System Careers or through verified Federal Reserve Bank social media channels.
The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.
Always verify and apply to jobs on Federal Reserve System Careers ( or through verified Federal Reserve Bank social media channels.
Required Experience:
Senior IC
Full-Time