Hiring.Camp

Incident Responder – Weekday 2nd and 3rd Shifts

Leidos

·

Yesterday

Salary
$108k – $195k
Location
5019 Office of Naval Intelligence Suitland MD, United States of America
Workplace
Onsite
Type
Full-time
Experience
8+ years
Education
Master
Clearance
Required
Source
Workday

Description

Incident Responder – Weekday 2nd and 3rd Shifts

Location: Suitland, MD
Clearance: Active TS/SCI
Schedule: Full Time, Monday through Friday

 

Leidos is hiring two Incident Responder to join a mission focused team supporting the Navy's cybersecurity environment at the Office of Naval Intelligence (ONI) Hopper Global Communications Center (HGCC) in Suitland, MD.

 

We have one opening for each of the following Monday through Friday shifts:

Weekdays 2nd Shift
Monday through Friday: 1530 to 2330

Weekdays 3rd Shift
Monday through Friday: 2330 to 0730

 

Work Location and Hours

These are full-time, onsite positions supporting a 24 hour cybersecurity operation.

 

Training Schedule: For up to the first two months of employment, all selected candidates will be required to complete training during the day shift, Monday through Friday. Candidates must be available to work the day shift throughout the initial training period, regardless of their regular shift schedule.

 

Regular Work Schedule: Upon completion of training, each Incident Responder will transition to the 2nd or 3rd shift schedule for which they were hired. Occasional additional or alternate shift coverage may be required to support team coverage, employee leave, or other program and staffing needs.

 

In this role, you will serve as a digital first responder, helping defend the Navy's critical maritime intelligence networks against cyber threats. You will investigate and respond to cybersecurity incidents, contain affected systems, limit operational impact, and collect and analyze digital artifacts to support effective response and recovery. Working across the incident response lifecycle, you will collaborate with cybersecurity, intelligence, and investigative partners to help protect highly sensitive TS/SCI environments.

 

Primary Responsibilities

  • Perform all phases of the incident response lifecycle, including detection, analysis, containment, eradication, and recovery.
  • Receive and act on escalations from Tier 1 analysts, conduct spillage response and cleanup activities, and support incident response for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Receive and respond to incident notifications from customers via telephone and email.
  • Prepare and submit Electronic Spillage Assessment Forms (ESAFs) to the NNWC Electronic Spillage Center.
  • Monitor Data Loss Prevention (DLP) outputs for classified code words and potential spillage indicators.
  • Coordinate and communicate with internal and external stakeholders, including Special Security Officers (SSOs), Judge Advocate General (JAG), ONI ISSM, Hopper ISSM, CNI, NAVNETWARCOM, IC SCC, NCDOC, NCIS, and other IC and DoD SOC/DCO teams.
  • Maintain detailed and accurate incident documentation and timelines throughout the response process.
  • Participate in incident response meetings, briefings, and after action reviews.
  • Support the execution and evaluation of annual security exercises.

 

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • Active TS/SCI security clearance in DISS.
  • Extensive experience in the Computer Network Defense (CND) discipline.
  • Significant professional experience monitoring, analyzing, and investigating alerts generated by cybersecurity tools.
  • Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
  • Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.
  • Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.
  • Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
  • Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.

 

Required Certifications

  • Must possess one of the following active certifications: CompTIA Security+, CompTIA CySA+, CompTIA PenTest+, CompTIA Cloud+, CEH, FITSP O, GIAC GMON, GIAC GRID, GIAC GCIA, GIAC GCIH, GIAC GICSP, GIAC GCED, GIAC GDSA, GIAC GSEC, CFR, or Cisco CyberOps.

 

NITESONI

DABAOPP1

 

 

 


If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

October 5, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Skills

PythonJavaScriptJavaRubyPerlCybersecurityPenetration TestingSIEMSOCSplunkLoss PreventionCompTIA

Similar Jobs

30

Incident Responder

Salesforce·Virginia - Mclean, US +1·Onsite

1w ago

Incident Responder

G2IT·Suitland, Maryland

3w ago

Incident Responder

The Onset Jobs Marketplace·AU

2mo ago

Incident Responder

Oregon Job Opportunities·Warrenton, ODOT

3mo ago

Incident Responder

Ibkr·Fort Lauderdale, Florida +1·Hybrid

6mo ago

Incident Responder

Ibkr·Greenwich, CT +1·Hybrid

6mo ago

Incident Responder

Ibkr·Chicago, IL·Hybrid

8mo ago

Incident Responder - Tier 2

Athletes Global Corporation·Fort Meade, MD·Onsite

2d ago

Critical Incident Responder, Licensed Mental Health Professional - SC - 100

R3 Continuum·Halifax, SC·Onsite

1w ago

Critical Incident Responder, Licensed Mental Health Professional - NC - 100

R3 Continuum·Halifax, NC·Onsite

1w ago

Critical Incident Responder, Licensed Mental Health Professional - AL - 100

R3 Continuum·Montgomery, AL·Onsite

1w ago

Senior Incident Responder (m/w/d)

Hvs Consulting·Deutschland·Hybrid

1w ago

Senior Security Incident Responder

Wpp·Chennai, India +1

1w ago

Traffic Incident Responder

Fultonhogan·WGN Transport Alliance WTA, New Zealand

1w ago

Traffic Incident Responder

Fultonhogan·WGN Transport Alliance WTA, New Zealand

1w ago

Senior Security Monitoring and Response Analyst (Incident Responder)

Mastercard·Pune, India

2w ago

Information Technology Specialist (Incident Responder)

Zendesk is on·Mexico - Mexico City - Fully Flexible·Onsite

2w ago

SITEC - Cyber Defense Incident Responder - MacDill AFB

Peraton·MacDill AFB, FL·Hybrid

2w ago

SITEC - Cyber Defense Incident Responder - MacDill AFB

Peraton·MacDill AFB, FL·Hybrid

2w ago

Senior II Security Incident Responder

Akamai·Costa Rica, CR·Remote

2w ago

Senior Security Incident Responder

Akamai·Costa Rica, CR·Remote

2w ago

Critical Incident Responder, Licensed Mental Health Professional - SC - 100

R3 Continuum·Halifax, NC·Onsite

2w ago

Critical Incident Responder, Licensed Mental Health Professional - NC - 100

R3 Continuum·Halifax, NC·Onsite

2w ago

Critical Incident Responder, Licensed Mental Health Professional - AL - 100

R3 Continuum·Montgomery, AL·Onsite

2w ago

Staff Incident Responder

Gehc·HUN02-01-Budapest-Vaci Greens C, Hungary

3w ago

Senior Incident Responder, Global CSIRT

Salesforce·Virginia - Mclean, US +1·Onsite

1mo ago

Senior Incident Responder

Dragos·Singapore

1mo ago

Principal Product Security Incident Responder (m/f)

gevernova·Remote, US +1·Remote

1mo ago

Principal Product Security Incident Responder (m/f)

Gevernova·Remote, US +1·Remote

1mo ago

Cybersecurity Architect & Incident Responder

Newbridge·Singapore·Hybrid

1mo ago