Hiring.Camp

Incident Responder

Leidos

·

Today

Salary
$108k – $195k
Location
5019 Office of Naval Intelligence Suitland MD, United States of America
Type
Full-time
Experience
8+ years
Education
Master
Clearance
Required
Source
Workday

Description

Incident Responder

Location: Suitland, MD
Clearance: Active TS/SCI

1st Shift Work Hours: 0730 – 1530

Leidos is seeking an Incident Responder (1st Shift) to join a mission focused cybersecurity team supporting the Office of Naval Intelligence (ONI) at the Hopper Global Communications Center (HGCC) in Suitland, MD.

In this role, you will serve as a digital first responder, helping defend the Navy's critical maritime intelligence networks against cyber threats. You will respond to and investigate cybersecurity incidents, contain affected systems, limit operational impact, and collect and analyze digital artifacts to support effective response and recovery. Working across the incident response lifecycle, you will collaborate with cybersecurity, intelligence, and investigative partners to help protect highly sensitive TS/SCI environments.

Work Schedule: This is a 1st shift position with regular work hours of 0730 – 1530. Occasional floater shifts or coverage outside of these hours may be required based on program and staffing needs.

Primary Responsibilities

  • Perform all phases of the incident response lifecycle, including detection, analysis, containment, eradication, and recovery.
  • Receive and act on escalations from Tier 1 analysts, conduct spillage response and cleanup activities, and support incident response for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Receive and respond to incident notifications from customers via telephone and email.
  • Prepare and submit Electronic Spillage Assessment Forms (ESAFs) to the NNWC Electronic Spillage Center.
  • Monitor Data Loss Prevention (DLP) outputs for classified code words and potential spillage indicators.
  • Coordinate and communicate with internal and external stakeholders, including Special Security Officers (SSOs), Judge Advocate General (JAG), ONI ISSM, Hopper ISSM, CNI, NAVNETWARCOM, IC SCC, NCDOC, NCIS, and other IC and DoD SOC/DCO teams.
  • Maintain detailed and accurate incident documentation and timelines throughout the response process.
  • Participate in incident response meetings, briefings, and after action reviews.
  • Support the execution and evaluation of annual security exercises.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Extensive experience in the Computer Network Defense (CND) discipline.
  • Significant professional experience monitoring, analyzing, and investigating alerts generated by cybersecurity tools.
  • Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
  • Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.
  • Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.
  • Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
  • Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.

Required Certifications

  • Must possess one of the following certifications or obtain one within 30 days of accepting an offer: Certified Ethical Hacker (CEH), CyberSec First Responder (CFR), CompTIA Cybersecurity Analyst (CySA+), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Incident Handler (GCIH), EC Council Certified Incident Handler (ECIH), or Cisco Cybersecurity Specialist (SCYBER).

NITESONI

DABAOPP1

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

September 15, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Skills

PythonJavaScriptJavaRubyPerlCybersecurityPenetration TestingSIEMSOCSplunkLoss PreventionCompTIA

Similar Jobs

30

Incident Responder

G2IT · Suitland, Maryland, United States

1 week ago

Incident Responder

UWM · Pontiac, MI, US

3 weeks ago

Incident Responder

Referral Uwm · Pontiac, MI, US

3 weeks ago

Incident Responder

The Onset Jobs Marketplace · AU

1 month ago

Incident Responder

Oregon Job Opportunities · Warrenton | ODOT | Maintenance, United States of America

3 months ago

Incident Responder

Ibkr · Fort Lauderdale, Florida, United States +1 · Hybrid

5 months ago

Incident Responder

Ibkr · Greenwich, CT +1 · Hybrid

5 months ago

Incident Responder

Ibkr · Chicago, IL · Hybrid

7 months ago

Incident Responder (2nd Shift)

Leidos · 5019 Office of Naval Intelligence Suitland MD, United States of America

Today

Incident Responder (3rd Shift)

Leidos · 5019 Office of Naval Intelligence Suitland MD, United States of America

Today

Staff Incident Responder

Gehc · HUN02-01-Budapest-Vaci Greens C, Hungary

Yesterday

Senior Incident Responder, Global CSIRT

Salesforce · Virginia - Mclean, United States of America +1 · Onsite

1 week ago

Senior Incident Responder

Dragos · Singapore

1 week ago

Senior Cyber Incident Responder

Canopius · Sydney, Australia · Hybrid

1 week ago

Principal Product Security Incident Responder (m/f)

gevernova · Remote, United States of America +1 · Remote

1 week ago

Principal Product Security Incident Responder (m/f)

Gevernova · Remote, United States of America +1 · Remote

1 week ago

Senior Incident Responder, CSIRT

Salesforce · Ireland - Dublin · Onsite

2 weeks ago

Cybersecurity Architect & Incident Responder

Newbridge · Singapore · Hybrid

2 weeks ago

Digitial Forensic Incident Responder, Threat Intelligence & Repsonse Division

Sggovterp · IMD - Mapletree Business City, MBC BLK 10, Singapore

2 weeks ago

Security Incident Responder II

Akamai · Japan, JP · Remote

3 weeks ago

Tier 2 Cyber Incident Responder (Shift Lead)

AGR · Beltsville, MD

4 weeks ago

Senior Lead Incident Responder

Salesforce · Washington - Seattle, United States of America · Onsite

4 weeks ago

SOC Incident Responder

KBR Careers · AUS, Sydney, 201 Kent Street, Suite 13, New South Wales, Australia +1

1 month ago

Cyber Defense Incident Responder - Swing Shift

ASRC Federal · Quantico, VA 22134, USA

1 month ago

Senior Incident Responder - CSIRT

Ing · HBP (Amsterdam - Haarlerbergpark), Netherlands

1 month ago

Cyber Incident Responder (24x7 Days)

ASRC Federal · Quantico, VA 22134, USA

1 month ago

Senior Incident Responder / Threat Hunter

ShorePoint · Albuquerque, New Mexico

1 month ago

Associate Principal Incident Responder

Dragos · United States · Remote, Onsite

1 month ago

Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

Myhrhome · HQ_Baltimore MD Management Office, United States of America · Remote, Hybrid

1 month ago

Information Security Cyber Defense Incident Responder

Zillow · Bengaluru, India · Onsite

1 month ago