×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Defense Cloud Incident Responder with Security Clearance

Job in Fort Meade, Anne Arundel County, Maryland, USA
Listing for: ASRC Federal
Full Time position
Listed on 2026-08-22
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Security Management & Operations, Network Security
Job Description & How to Apply Below
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™ ASRC Federal is seeking a Cyber Defense Incident Responder with cloud experience to support a mission-critical DCSA cybersecurity program.

This role is responsible for detecting, analyzing, and responding to security incidents affecting cloud-hosted and hybrid environments supporting national security systems. Remote flexibility available! Telework offered with a requirement to be onsite up to one (1) day a week de, MD. Position

Description:

As the Cyber Defense Analyst, your primary duty is to safeguard our national security systems through proactive threat hunting and advanced threat detection activities. You will continuously monitor and analyze threat intelligence sources to stay informed about emerging threats, searching for signs of malicious activity across our network infrastructure, endpoints, and systems that evade traditional security solutions. A key part of your role involves developing and implementing new and innovative threat detection techniques and strategies, analyzing large datasets to identify patterns and anomalies indicative of malicious activities, and mapping adversary tactics to the MITRE ATT&CK framework.

You will collaborate with other CSOC team members and stakeholders to respond to and investigate security incidents, perform in-depth forensic analysis to understand the nature and impact of threats, and provide detailed reports and briefings on threat hunting activities and findings to senior management.

Minimum Requirements:

* Five (5) years' hands-on cybersecurity experience in one or more of the following:
* Incident Response or Threat Hunting within a mid-to-large enterprise
* SOC operations supporting cloud or hybrid environments
* Enterprise vulnerability management or endpoint/cloud security operations
* Active Top Secret (TS) Clearance REQUIRED, eligible to be upgraded to TS/SCI
* DoD 8570 Information Assurance (IA) Program / DoD 8140 Cyber Workforce Qualification Program (CWQP):
Must meet DoD 8570.01-M / IAT Level II or IAM Level II requirements at a minimum. At least one active qualifying certification required, including but not limited to:
* CompTIA Security+ CE, CompTIA CySA+, CompTIA SecX CE, SSCP, GCIH, GCED, GCIA, GSEC, CEH, Pentest+, Cloud+, GICSP, CISSP (or Associate)
* Bachelor's Degree, in Cybersecurity, and/or Information Systems Management or equivalent combination of education, experience and military service

Key Responsibilities:

* Cloud Security Operations & Monitoring
* Monitor AWS, Azure, and/or Google Cloud environments for malicious or anomalous activity using SIEM, SOAR, and cloud-native security tooling.
* Analyze logs, telemetry, alerts, and cloud audit data to identify indicators of compromise (IOCs) and attack patterns.
* Tune detection logic and alerting to reduce false positives and improve response fidelity.
* Incident Response
* Lead and support incident response activities across the full lifecycle: identification, containment, eradication, recovery, and lessons learned.
* Perform root cause analysis and impact assessments for cloud-related security incidents.
* Coordinate response actions with SOC analysts, engineering teams, system owners, and government stakeholders.
* Document incidents, response actions, and remediation recommendations in accordance with government reporting requirements.
* Threat Intelligence & Analysis
* Leverage threat intelligence sources to identify emerging threats targeting cloud platforms and federal environments.
* Map adversary activity to MITRE ATT&CK and cloud-specific threat models.
* Recommend defensive improvements based on observed tactics, techniques, and procedures (TTPs).
* Vulnerability & Risk Management
* Identify cloud misconfigurations, exposed services, and security gaps.
* Support vulnerability assessments and remediation prioritization for cloud-hosted systems.
* Advise on security controls aligned to NIST and DoD requirements.
* Compliance & Audit Support
* Support compliance activities aligned to NIST 800-53, RMF, and DoD cybersecurity requirements.
* Assist with security documentation, evidence collection, and audit response.
* Validate cloud security configurations against established baselines and policies. Required Technical

Skills:

* Cloud Platform experience:
Practical experience securing AWS, Azure, and/or Google Cloud environments
* Security Tooling:

Experience with SIEM/SOAR platforms such as Splunk, Elastic, Swimlane, or equivalent
* Incident Response:
Proven experience executing IR playbooks and responding to real-world security incidents
* Networking & Systems:
Strong understanding of TCP/IP, DNS, authentication mechanisms, operating systems, log analysis, and cloud architecture
*…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary