> Markdown version of [/jobs/ext/3049171-lead-incident-responder](https://www.wearedevelopers.com/jobs/ext/3049171-lead-incident-responder). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Incident Responder - **Company:** DirectViz, LLC - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Databases, Information Management, Information Security Management, Information Systems Security Architecture Professional, Software Vulnerability Management, Information Technology, Vulnerability Analysis - **Published:** September 24, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9189716/lead-incident-responder ## About the Role At DVS, we recognize that our employees are our number one resource. If you are a problem-solving people-person, apply today!, Education: Bachelor's Degree in Computer Science, Information Management (IM), Information Technology, Engineering, or related field., * Minimum of 6 years of relevant technical experience or 4 years in IT solutions at a senior management level. * At least 10 years of experience in an IT or technology-related field, with 5 of those years within the last 10 years on large government technical contracts. * Demonstrated experience in cyber incident response, threat monitoring, and vulnerability management. * Proficiency in creating and managing security documentation for compliance. * Strong project management and risk assessment skills. * Experience with Security Operations Center (SOC) tools and incident response processes. Certifications: * Certified Information Systems Security Professional (CISSP) * Additional certifications: Certified Intrusion Analyst, Certified Ethical Hacker (or similar). * GCIH / GIAC Certified Incident Handler. * Information Technology Infrastructure Library (ITIL) 4 Foundation, * Be able to maintain awareness during scheduled working hours. * Prolonged periods sitting or standing at desk and working on a computer (mouse and keyboard) * Able to lift up to 15 pounds. * Excellent verbal and written communication; good command of the English language * Execute tasks independently and work as a team. * Learns and memories routine tasks. * Strong organizational, grammar, business correspondence, and self-management skills * Candidates must be able to perform the essential functions of the position satisfactorily. If requested, reasonable accommodation will be provided for employees with disabilities. * DVS retains the right to change or assign other duties to this position. ## Description Position Overview: We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security documentation and ensure compliance with government standards for various systems. The ideal candidate will have extensive experience in risk management, incident response, and vulnerability assessment within a government contract setting. This role involves creating, updating, and overseeing security documentation, policies, and processes for about 63 systems, conducting annual Security Control Assessments (SCAs), and managing the Department of Labor's Computer Security Incident Response Capability (CSIRC)., * Security Documentation Management: Develop, maintain, and update critical security documentation, including privacy assessments and system security plans, ensuring full compliance with government standards. * Security Policy Oversight: Manage security policies and procedures, conduct risk assessments, and ensure training compliance for all Information System Security Officers (ISSOs). * Annual Security Control Assessments (SCAs): Oversee and conduct annual SCAs for approximately 63 systems, testing one-third of the security controls each year, and addressing any identified issues. * Incident Response Leadership: Lead the CSIRC on a 24/7 basis, training analysts in incident response, handling incidents involving Personally Identifiable Information (PII), and coordinating remediation efforts. * Cyber Threat Monitoring: Develop and maintain a Cyberthreat Dashboard for reporting activities and insights. Monitor the network for unauthorized activities and ensure financial systems' security for the Office of the Chief Financial Officer (OCFO). * Security Operations Center (SOC) Tools Management: Set up and optimize security tools for the Enterprise Security Operations Center (ESOC). * Vulnerability Management Program: Oversee the Vulnerability Management Program, addressing security weaknesses across the enterprise. * Application and Database Support: Provide support for various applications and databases, ensuring compliance with security, accounting standards, and accessibility requirements. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How to Navigate Professional Relationships in the Tech Industry](https://www.wearedevelopers.com/videos/1276-how-to-navigate-professional-relationships-in-the-tech-industry) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) ## Related Articles - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [The Geometry of Incidents: Connecting User Impact to Architecture](https://www.wearedevelopers.com/magazine/764-the-geometry-of-incidents-connecting-user-impact-to-architecture) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)