CSIRT Lead; Data Analyst IV
Listed on 2025-12-05
-
IT/Tech
Cybersecurity, Security Manager
Location: Kiln
Join to apply for the CSIRT Lead (Data Analyst IV) role at Aretec, Inc.
2 days ago Be among the first 25 applicants
Join to apply for the CSIRT Lead (Data Analyst IV) role at Aretec, Inc.
Us
At Aretec, Inc., we are catalysts for change within the federal government landscape. Specializing in advanced analytics, machine learning, data analysis, cybersecurity, and business optimization, we empower federal agencies to achieve their most critical missions. As a premier partner and prime vendor, we deliver innovative, high-impact solutions that address complex challenges and drive national progress. Our commitment to excellence and innovation positions us at the forefront of transforming governmental operations, enhancing efficiency, and making a lasting difference in the lives of citizens.
Us
At Aretec, Inc., we are catalysts for change within the federal government landscape. Specializing in advanced analytics, machine learning, data analysis, cybersecurity, and business optimization, we empower federal agencies to achieve their most critical missions. As a premier partner and prime vendor, we deliver innovative, high-impact solutions that address complex challenges and drive national progress.
Our commitment to excellence and innovation positions us at the forefront of transforming governmental operations, enhancing efficiency, and making a lasting difference in the lives of citizens.
You
You are a decisive and experienced cybersecurity professional who thrives in high-stakes environments. You excel at leading incident response operations, coordinating response teams, and guiding investigations that protect mission-critical systems. You have a strong understanding of security operations center (SOC) workflows, event analysis, and cyber defense coordination. With a calm and analytical mindset, you drive clarity and control during security incidents, ensuring the confidentiality, integrity, and availability of federal systems.
What We're Looking For
We are seeking a CSIRT Lead (Data Analyst IV) who will play a pivotal role in enhancing our organization's capabilities and advancing the missions of our federal partners. In this role, you will lead the Cyber Security Incident Response Team (CSIRT), which serves as the heart of the Security Operations Center (SOC). You will be responsible for overseeing 24x7x365 monitoring, incident recording, and reporting of cybersecurity events, guiding the team in minimizing and controlling damage from incidents, coordinating recovery, and preventing future occurrences.
Your responsibilities will include:
- Leading Innovative Projects:
Lead a team providing 24x7x365 on-site coverage for monitoring and responding to security alerts, ensuring rapid response to incidents and alignment with USCIS SOC operations. - Collaborative Solution Development:
Oversee the tracking of all security incidents through platforms such as Swimlane, Service Now, and DHS Enterprise Case Management, ensuring complete visibility and accountability. - Strategic Impact:
Coordinate and advise on incident response actions, providing clear and effective guidance to ensure containment and remediation. - Stakeholder Engagement:
Work in partnership with the SOC Government Watch Officer (GWO) and Program Manager (PM) to manage incident workflows, reporting, and communications. - Process and Policy Development:
Develop and maintain formal Standard Operating Procedures (SOPs) and ensure compliance with the USCIS SOC Concept of Operations (CONOPS) and automated playbooks. - Operational Excellence:
Oversee investigations of anomalous events detected by security tools and ensure high-quality documentation and recommendations. - Continuous Improvement:
Provide comprehensive reports, remedial recommendations, and process enhancements that strengthen incident response capabilities and operational efficiency.
The Skills We're Looking For
- Technical Expertise:
Proficient in security operations, incident response, event…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).