Senior Incident Responder
Listed on 2026-06-21
-
IT/Tech
Cybersecurity, Security Manager
Due to contract requirements, United States Citizenship is required for this role.
Key Responsibilities- Monitor security information and event management (SIEM) platforms and other security tools to identify potential security incidents and anomalous activity across multiple client environments.
- Lead the investigation and triage of complex security incidents, determining scope, impact, and appropriate response actions.
- Perform advanced threat hunting activities to proactively identify indicators of compromise and emerging threats.
- Coordinate incident response efforts across multiple stakeholders, including clients, technical teams, and management.
- Execute containment, eradication, and recovery procedures in accordance with incident response playbooks and client requirements.
- Analyze security events and correlate data from multiple sources, including network traffic, endpoint detection and response (EDR) tools, firewall logs, and threat intelligence feeds.
- Escalate critical incidents following established protocols and ensure timely communication with clients and internal teams.
- Document all incident response activities, findings, and recommendations in detailed incident reports.
- Develop and maintain incident response procedures, playbooks, and standard operating procedures.
- Conduct post-incident reviews and contribute to lessons learned documentation.
- General
Experience:- Minimum eight (8) years of hands‑on experience in information security with at least five (5) years focused on incident response, security operations, or threat analysis.
- Demonstrated experience working in a managed security services provider (MSSP) or enterprise SOC environment.
- Proven track record of investigating and responding to complex security incidents, including malware infections, data breaches, ransomware attacks, and advanced persistent threats (APTs).
- Strong working knowledge of SIEM platforms (e.g., Splunk, QRadar, Sentinel, Chronicle) and security orchestration, automation, and response (SOAR) tools.
- Experience with monitoring, analyzing, and tuning industry‑leading EDR solutions.
- Proficiency in network traffic analysis, log analysis, and forensic investigation techniques.
- Understanding of common attack vectors, MITRE ATT&CK framework, and threat actor tactics, techniques, and procedures (TTPs).
- Proven organizational and communication skills
- Demonstrate excellent writing and oral communication skills.
- US citizen
- Specialized experience:
- Deep understanding of Windows and Linux operating systems, including registry analysis, process behavior, and system artifacts.
- Knowledge of network protocols (e.g., TCP/IP, DNS, HTTP/HTTPS, SMB) and ability to analyze packet captures using tools like Wireshark or tcpdump.
- Experience with threat intelligence platforms and integrating threat feeds into detection and response workflows.
- Familiarity with cloud environments (AWS, Azure, GCP) and their associated security tools and logging capabilities.
- Preferred certifications:
- GIAC Certified Incident Handler (GCIH);
- GIAC Certified Forensic Analyst (GCFA);
- Certified Information Systems Security Professional (CISSP);
- Certified Ethical Hacker (CEH);
- SANS FOR
508, FOR
572, or SEC
504 course completion; or - Vendor‑specific certifications (Crowd Strike Certified Falcon Responder, Splunk Enterprise Security Certified Admin, etc.)
Braxton‑Grant is committed to being a place where talented people do their best work. You’ll join a collaborative, high‑performing team that values curiosity, knowledge‑sharing, and continuous improvement. We support your growth through competitive pay, meaningful professional development opportunities, and a comprehensive benefits package designed to help you thrive both at work and beyond.
Pay Range: $140,800-$174,600Pay rates listed for this position serve as a general guideline and are not a guarantee of compensation. Compensation rates vary dependent upon factors including but not limited to: government contract rates; education; relevant prior work experience, knowledge, skills, and competencies; and certifications. Pay rates reflect the pre‑benefit gross wage amounts.
We offer comprehensive benefits for full‑time…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).