SonicJobs Logo
Left arrow iconBack to search

Incident Manager II

Solutions³ LLC
Posted a day ago, valid for 12 days
Location

Arlington, VA, US

Salary

$56,000 - $66,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Solutions³ LLC is seeking an Incident Manager II to support onsite incident response for U.S. Government customers experiencing cyber-attacks.
  • The position requires a Bachelor’s degree in Incident Management, Operations Management, Cybersecurity, or a related field, along with 2+ years of relevant experience in cyber incident management or cybersecurity operations.
  • Applicants must be U.S. citizens with an active TS/SCI clearance and the ability to obtain DHS Suitability prior to employment.
  • The salary range for this position is between $56,000 and $66,000, and the role involves monitoring threats, analyzing incidents, and coordinating responses.
  • Candidates should possess knowledge of incident response methodologies, cybersecurity concepts, and various operational threat environments.
Title: Incident Manager II

SALARY RANGE:
$56,000-$66,000
Onsite

Description: 
Solutions³ LLC is supporting a U.S. Government customer to support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution.  Solutions³ LLC is seeking an experienced and technically proficient Cyber Case Manager to support this critical customer mission.  

Eligibility: 
  • Must be a US Citizen 
  • Must have an active TS/SCIclearance
  • Must be able to obtain DHS Suitability prior to starting employment  
  • 2+ years of directly relevant experience in cyber incident management or cybersecurity operations
Responsibilities Include: 
  • Researching and compiling known resolution steps or workarounds to enable mitigation of potential Computer Network Defense incidents within the enterprise
  • Applying knowledge of the tactics, techniques, and procedures of various criminal, insider, hacktivist, and nation-state threat actors to identify and validate threats
  • Applying cybersecurity concepts to the detection and defense of intrusions into small, and large-scale IT networks, and conduct cursory analysis of log data
  • Conducting cursory analysis of log data
  • Monitoring external data sources (e.g., Computer Network Defense vendor sites, Computer Emergency Response Teams [CERTs], SANS, Security Focus) to maintain currency of Computer Network Defense threat conditions and determine which security issues may have an impact on the enterprise
  • Identifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident
  • Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
  • Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution
  • Working with other components within the organization to obtain and coordinate information pertaining to ongoing incidents.
  • Providing support during assigned shifts
Required Skills: 
  • Knowledge of incident response and handling methodologies
  • Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incidents
  • Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
  • Skill in recognizing and categorizing types of vulnerabilities and associated attacks
  • Knowledge of basic system administration and operating system hardening techniques
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non-nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code)
  • Must be able to work collaboratively across physical locations
Desired Skills:  
  • Knowledge of basic system administration and operating system hardening techniques
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non-nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code)
Required Education: Bachelor’s of Science in Incident Management, Operations Management, Cybersecurity or related degree. High School Diploma with 4-6 years of incident management or cybersecurity experience
 



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.