Cyber Defense Incident Responder (Tier 2)

RESOURCE MANAGEMENT INC
Quantico, VA, United States
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$120,000.0 - $130,000.0
Working hours
Shift work

Tech stack

Azure Security Center Tanium Platform Expertise Kibana

Requirements

  • At least 2+ years in cybersecurity, with hands-on experience in incident response or related roles. \n
  • Familiarity with tools such as Tanium, Elastic/Kibana, and Microsoft Defender for Endpoint. \n
  • Strong understanding of the DoD environment and cybersecurity frameworks. \n, * Excellent problem-solving abilities and attention to detail. \n
  • Strong communication skills for interacting with technical teams, leadership, and external stakeholders. \n

Benefits & conditions

Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.\n \n RMC is hiring a dedicated \nCyber Defense Incident Responder (Tier 2) to join our team and provide 24/7/365 cybersecurity monitoring and detection for the government enterprise network. In this role, you will be responsible for conducting in-depth cyber investigations and responding to incidents across the enterprise network. This critical position involves working with advanced tools, engaging with global stakeholders, and ensuring the network’s security and operational integrity. This is a fast-paced and high-impact role in a mission-critical environment.\n \n The selected applicant will perform a variety of activities including but not limited to:\n \n \n

  • Investigate Cyber Incidents: Perform in-depth analysis of network and host artifacts (e.g., logs, system images, packet captures) to identify root causes, operational impacts, and enable rapid remediation of threats. \n
  • Incident Triage: Assess the scope, urgency, and potential impact of incidents, identify vulnerabilities, and recommend effective mitigation strategies. \n
  • Incident Management: Manage incidents from detection to resolution, documenting actions and outcomes in compliance with DoD Cyber Incident Handling Program (CJCSM 6510.01B). \n
  • Forensics and Threat Analysis: Conduct real-time forensic collections, intrusion correlation, threat analysis, and direct system remediation tasks. \n
  • Collaboration: Work closely with subordinate organizations, law enforcement, and counterintelligence teams on high-profile incidents and insider threat investigations. \n
  • Documentation and Training: Update incident response tactics, techniques, and procedures annually, and deliver quarterly training sessions to enhance team readiness. \n
  • Red Team Interaction: Collaborate with Red Teams to validate and enhance incident response capabilities through realistic penetration testing exercises. \n
  • Quality Assurance: Maintain high standards in incident response, ensuring consistent quality and efficiency as assessed by government-defined metrics. \n, This position is considered essential and will be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.\n \n This position covers 24x7x365, 12-hour shifts (Su-Tu alternate Wednesdays, and alternate Wed-Th-Sa). The applicant is likely to start on a night shift that covers the 12-hour period from 7pm to 7am.\n \n \nBenefits\n \n At RMC, we’re committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.\n \n RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.\n \n Salary at RMC is determined by various factors, including but not limited to location, a candidate’s specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements. The current salary range for this position will be $120,000 to $130,000 (annually).\n \n #LI-LL1\n \n PI286173849”, “hiringOrganization”: {“@type”: “Organization”, “name”: “RMC - Resource Management Concepts Inc.”}, “jobLocation”: {“address”: {“addressCountry”: “United States”, “streetAddress”: “Not specified”, “@type”: “PostalAddress”, “postalCode”: “22134”, “addressLocality”: “Quantico”, “addressRegion”: “Virginia - VA”}, “@type”: “Place”}, “industry”: “”, “identifier”: {“@type”: “PropertyValue”, “name”: “RMC - Resource Management Concepts Inc.”, “value”: “286173849”}, “baseSalary”: {“@type”: “MonetaryAmount”, “currency”: “USD”, “value”: {“@type”: “QuantitativeValue”, “value”: “100000”, “unitText”

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:21 min

Deploying a primary Elasticsearch and Kibana cluster configuration

Philipp Krenn · World Congress 2022

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:51 min

Executing simple full-text search queries using the Kibana interface

Derek Binkley · LIVE

5:42 min

Navigating the incident timeline and dynamic resolver engagement

Tobias Dunn-Krahn · LIVE

1:31 min

Exploring the core components of the ELK stack

Derek Binkley · LIVE

Videos

See all

Related articles

See all