Senior Cyber Incident Responder

AGR, LLC
Beltsville, MD, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$130,000.0 - $150,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Microsoft Antivirus Backup Devices VoIP Command-Line Interface Cloud Computing Cyber Security Computer Networks System Configuration Data Control Data Structures Linux
+30 more
Disaster Recovery Domain Name System (DNS) Email Filtering Networking Hardware Intrusion Detection and Prevention Subnetting Virtual Private Networks (VPN) Network Security Network Architecture Network Connections Wireless Security Network Intrusion Detection Systems Network Monitoring Packet Analyzer Network Administration Network Protocols Nslookup Open Systems Interconnection (OSI) Akamai TCP/IP Wide Area Networks Network Routers Cyber Threat Analysis Firewalls (Computer Science) Computer Equipment Cybercrime Fireeye Malware Detection Cyber Warfare Network Server

Job description

  • Lead, facilitate and advise via the Incident Response lifecycle across the Bureau of the Census within the Department of Commerce against 24/7 threats/vulnerabilities/events.
  • Provide leadership w/ security and cybersecurity intelligence, posture/capabilities status, ways-forward, trend analysis and personnel readiness to enhance cyber security and incident response.
  • Advise leadership through multi-vector threat remediation and capabilities enhancement.
  • Leverage multi-source Cyber Intelligence to bolster cybersecurity posture.
  • Effectively lead and advise Security Operations and Infrastructure teams regarding threats and vulnerabilities mitigation procedures and system(s) enhancement(s).
  • Meet/exceed/expand customer mission requirements, goals, and vision.
  • Coordinate and communicate with multi-partner teams/services regarding 24/7 security posture and national regulatory requirements.
  • Learn and foster knowledge and skills training to adhere to and expand security, cybersecurity, and contingency requirements.
  • Manage/mentor SOC team members regarding procedures, schedules, training, event & tools management, and performance requirements.
  • Develop and implement best-practice network security, backup, and recovery procedures.
  • Diagnose network connectivity and performance issues during events and incidents.
  • Integrate new systems into existing network and security architecture.
  • Monitor network capacity, performance and
  • Advise during network patching, expansion, and capability growth to ensure safeguarding of data/information against threats and vulnerabilities.
  • Obtain and retain clearance requirements set by the Dept. of Commerce
  • Provide feedback on network requirements, including network architecture and infrastructure.
  • Test and maintain network infrastructure including software and hardware devices., * Lead the Cybersecurity Incident Response lifecycle as an Incident Commander during high-demand events/incidents.
  • Advise leadership and assist management of SOC personnel, personnel readiness, team cohesion and training.
  • Understand and implement international, federal, state, and local regulation standards of cybersecurity.
  • Organize cyber operations, exercises, and inspections.
  • In-depth knowledge of network encryption, secure network topology and operating network equipment including hubs, routers, switches, bridges, servers, transmission media, and related logical & physical domains.
  • Knowledge of cloud-based networking, security, and best practices
  • Implement network threat detection and prevention rules and data control methods.
  • Operate common network tools (e.g., ping, traceroute, nslookup, ipconfig, nbstat).
  • Interpret Operating Systems command line (e.g., Windows, Linux).
  • Navigate and operate within the organization’s LAN/WAN pathways.
  • Monitor and perform trend analysis of network performance, availability, and incidents.
  • Experience/knowledge monitoring networks for Indicators of Compromise
  • Operate different electronic communication systems and methods (e.g., e-mail, VOIP, IM, web forums, Direct Video Broadcasts).
  • Interpret the information collected by network tools (e.g., Microsoft Defender, FireEye, Akamai and packet capture).
  • Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), bandwidth/utilization management and directory services.
  • Measure, analyze and tune network performance, confidentiality, integrity, and availability.
  • Experience with network data structures and models (e.g., Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).

Requirements

  • Bachelor’s degree or higher.
  • 7+ years’ experience in network management and experience directly performing configurations and security implementation on LAN and WAN equipment.
  • Certifications addressing system security, network infrastructure, access control, cryptography, assessments and audits, and organizational security., * Strong written and verbal communication skills., Additional Experience Preferred:
  • Experience holding a leadership position.
  • Implementing, maintaining, and improving established network security practices.
  • Applying ITIL or equivalent Change Management
  • Installing, configuring, and troubleshooting LAN and WAN components such as routers, hubs, switches. Establishing a routing scheme.
  • Skill in securing network communications and protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
  • Configuring and utilizing network protection components (e.g., Firewalls, VPNs, network intrusion detection systems).
  • Implementing and testing network infrastructure contingency and recovery plans.
  • Applying various subnet techniques (e.g., CIDR)
  • Configuring and utilizing computer protection components (e.g., hardware firewalls, servers, routers, as appropriate).
  • Packet Analysis.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:34 min

Leveraging Akamai edge workers for broad geographic scale

Austin Gil · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:26 min

Spear phishing IT administrators with malicious VoIP spoofing

Mauro Verderosa · LIVE

1:58 min

Application performance and its direct business impact

Jérôme Vieilledent · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all