Demo

Cyber Incident Detection and Response Analyst

ManTech
Stennis Space Center, MS Full Time
POSTED ON 2/4/2025
AVAILABLE BEFORE 4/3/2025

Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.

We are seeking a highly skilled and motivated Cyber Incident Detection and Response Analyst to join our Network Operations Security Center (NOSC). You will report to the Lead Cyber Security Incident Response Analyst and be responsible for identifying, analyzing, and responding to cybersecurity threats and incidents to protect DHS infrastructure and data. This role requires expertise in threat detection, incident response, and cybersecurity best practices.

Responsibilities:

  • Provide 24/7 support for incident data flow and response, content, and remediation, and interfaces with other incident response centers in maintaining an understanding of threats, vulnerabilities, and exploits that could impact networks and assets.
  • Monitor network traffic and system logs for signs of cyber threats and suspicious activity.
  • Perform the role of Incident Coordinator for IT Security events requiring focused response, containment, investigation, and remediation.
  • Perform real-time proactive event investigation on various security enforcement systems, such as SIEM, Anti-virus, Internet content filtering/reporting, malcode prevention, Firewalls, IDS & IPS, Web security, antispam, etc.
  • Assist with forensic analysis on hosts supporting investigations.
  • Conduct malware analysis in out of-band environment (static and dynamic), including complex malware.
  • Analyze operational anomalies, network behavior and perform mitigation actions derived from cyber threat monitoring and anomaly analysis, and actively monitor the networks for cybersecurity threats and vulnerabilities.
  • Perform quality assurance on Incident Closures.
  • Assist with Knowledge Management - Standard Operating Procedures and procedural support data.
  • Develop and implement detection use cases and signatures to enhance threat identification capabilities.
  • Respond promptly to security incidents, conducting thorough investigations and mitigating threats.
  • Stay current with emerging threats and vulnerabilities, updating detection and response strategies accordingly.
  • Produce comprehensive incident reports, including root cause analysis and recommendations for future prevention.
  • Work closely with other cybersecurity teams, including threat intelligence, vulnerability management, and risk assessment.
  • Communicate findings and provide actionable recommendations to management and other relevant parties.
  • Participate in cybersecurity exercises and incident response training to maintain a high state of readiness.
  • Continuously assess and improve incident detection and response processes.
  • Provide training and guidance to junior analysts and other team members, support and report to the Cyber Security Incident Response Lead.

Basic Qualifications:

  • An 8570 compliant certification
  • One of the following relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH)
  • A bachelor’s degree in computer science, information technology, cybersecurity, or a related field of study (or equivalent experience).
  • A minimum of (7) seven years of experience in cybersecurity, with a focus on incident detection and response.
  • Proficiency with SIEM tools (e.g., Splunk, ArcSight).
  • Experience with intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and firewalls.
  • Strong understanding of network protocols, operating systems, and security architectures.
  • Familiarity with digital forensics tools and techniques.

Preferred Qualifications:

  • Experience working in a government or defense environment.
  • Familiarity with DHS policies and procedures.
  • Knowledge of broader cybersecurity frameworks (e.g., NIST, ISO 27001).

Clearance Requirements:

  • A Secret security clearance
  • Must be able to pass DHS Suitability
  • Must be able to obtain and maintain a TS/SCI clearance.

Physical Requirements:

  • Must be able to remain in a stationary position for extended periods of time.

  • Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.

  • The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Incident Detection and Response Analyst?

Sign up to receive alerts about other jobs on the Cyber Incident Detection and Response Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$152,958 - $200,151
Income Estimation: 
$186,685 - $265,377
Income Estimation: 
$71,440 - $92,105
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$142,618 - $183,267
Income Estimation: 
$115,647 - $153,495
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at ManTech

ManTech
Hired Organization Address Clarksburg, WV Full Time
ManTech is seeking a motivated, career and customer oriented, Network Specialist to join our team. This position is an o...
ManTech
Hired Organization Address Stennis Space Center, MS Full Time
ManTech is seeking a motivated, career and customer-oriented Tier 2 NOSC Analyst with responsibility to provide daily ma...
ManTech
Hired Organization Address Stennis Space Center, MS Full Time
Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come fi...
ManTech
Hired Organization Address Stennis Space Center, MS Full Time
Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come fi...

Not the job you're looking for? Here are some other Cyber Incident Detection and Response Analyst jobs in the Stennis Space Center, MS area that may be a better fit.

Cyber Security Forensics Analyst

ManTech, Stennis Space Center, MS

Cyber Network Defense Analyst

Leidos, Stennis Space Center, MS

AI Assistant is available now!

Feel free to start your new journey!