More jobs:
Cyber Defense Incident Responder (Advanced Security Clearance
Job in
Arlington, Arlington County, Virginia, 22201, USA
Listed on 2026-06-16
Listing for:
Chenega Corporation
Full Time
position Listed on 2026-06-16
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
Summary Cyber Defense Incident Responder (Advanced) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer's core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting-edge technology and take your career to the next level!
The Cyber Defense Incident Responder (Advanced) position requires a highly experienced, analytical professional who performs hands-on technical work while guiding and directing senior and mid-level analysts. This role involves advanced threat detection, threat intelligence research, practical application of threat intelligence to operations, developing custom scripts, and understanding complex threat actor techniques used to compromise systems and evade detections. The ideal candidate will have extensive operational experience defending highly secure enclaves, specifically navigating Top Secret/Sensitive Compartmented Information (TS/SCI) and Special Access Program (SAP) networks.
Responsibilities
* Lead a small team of advanced and mid-level security analysts to provide Incident Defense () services for government clients, specifically tailored to the unique security constraints of TS/SCI and SAP environments.
* Serve as the primary technical point of contact for complex threat hunting issues, and mentor new members to grow their skills and operational abilities.
* Engineer advanced detection alerting rules for events reported by endpoints, cloud services, network devices, and other relevant event sources across classified enclaves. This includes utilizing Splunk SPL, Microsoft Kusto Query Language (KQL), Elastic Kibana Query Language, Carbon Black, Snort rules, or other pattern-matching detection tools.
* Proactively research new malware using hunting capabilities on malware repository services (such as Virus Total) and through established partnerships with other security researchers, ensuring all malware handling adheres to strict classified network protocols.
* Lead targeted phishing campaigns to help educate the workforce on the risks of social engineering and malicious attachments.
* Lead purple and red teaming efforts as directed, conducting adversary emulation relevant to the architecture of highly classified networks.
* Provide critical support to the NOSC and coordinate team schedules to ensure on-call coverage for after-hours, weekends, and holidays.
* Maintain the toolkit utilized by the . Conduct research analysis on the latest cybersecurity tools, provide rationale to renew or deprecate current tools, and make recommendations for employing new technologies within the enterprise.
* Perform comprehensive research and investigations with little to no oversight to locate information relevant to government requests, communicating findings effectively to clients (typically interfacing with government information security professionals).
* Ensure that all written communication (reports, briefings, and alerts) is professional, high-quality, free of errors, and clearly delivers actionable intelligence.
* Other duties as assigned Qualifications
* High school diploma or GED equivalent required
* Bachelor's degree in computer science, Digital Forensics, or related major with an emphasis on Security preferred
* 6+ years' experience in Threat Hunting, Security Research, or Incident Response
* Demonstrated leadership skills, preferably in a formal leadership role
* Scripting experience
* IAT Level II Certification required
* TS/SCI clearance required
Preferred Qualifications:
* Successfully pass background and drug screening Knowledge, Skills, and Abilities:
* Advanced technical expertise in threat hunting, deep-dive malware analysis, and the operational application of threat intelligence within highly classified (TS/SCI and SAP) network enclaves.
* Demonstrated leadership and industry contribution, recognized as a subject matter expert within the defense or broader information security community for advancing incident response methodologies.
* Proven track record of excellence in leadership, specifically in guiding, mentoring, and directing mid-level and senior information security professionals during active cyber operations and crisis response.
* Government/Client Service
Experience:
Extensive experience serving as a primary technical liaison, providing Incident Defense () and threat resolution services directly to government stakeholders and technical clients.
* Security Engineering & Architecture:
Knowledge of planning, designing, and implementing robust security controls, detection rules, and defensive systems tailored to secure network architectures.
* Adversary Emulation:
Skill in executing red team or purple team adversary simulations to test and validate defensive postures against Advanced…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×