Hiring.Camp

Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS

Peraton

·

Feb 5, 2026

Salary
$104k – $166k
Location
Arlington, VA, US
Type
Full-time
Department
Human Resources
Experience
5+ years
Visa
Not sponsored
Clearance
Required
Closing date
Today
Source
iCIMS

Description

Responsibilities

Peraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. 

 

Location: On‑site in Arlington, VA

  • Travel: Approximately 40%

 

Peraton is seeking an experienced Incident Response Analyst with strong OT/ICS/SCADA expertise to support its Federal Strategic Cyber program. This role involves responding to cyber incidents across critical infrastructure sectors and working closely with technical teams, forensic analysts, and mission partners to safeguard national‑level systems.

 

In This Role, You Will: 

  • Respond to cybersecurity incidents across ICS, OT, and IT environments and provide recommendations to prevent recurrence within critical infrastructure sectors.
  • Apply functional knowledge to resolve incidents, conduct proactive threat hunts, and contribute to solutions for problems of moderate scope and complexity.
  • Support highly technical operations and forensic analysis while advising client decision‑makers.
  • Provide sector‑specific expertise for one or more critical infrastructure areas, including Water, Power, Critical Manufacturing, and Transportation.
  • Follow established procedures for incident response and escalation.
  • Help define and refine response procedures for industrial control system environments.
  • Apply traditional incident response and threat‑hunting tradecraft to ICS/critical‑infrastructure environments while accounting for operational constraints.
  • Collaborate with host, network, and cloud forensic analysts to meet mission requirements for incident response and threat‑hunting engagements.
  • Maintain accurate documentation of incident response activities and findings.
  • Prepare and deliver incident reports to management and stakeholders.
  • Work effectively in a team environment and contribute to mission success.
  • Stay current on cybersecurity trends to enhance hunt and response operations.
  • Demonstrate strong attention to detail, critical thinking, and customer‑service orientation.
  • Self‑teach and test new tools, methodologies, and techniques as needed.
  • Meet on‑site requirements of at least one day per week (up to three days depending on mission needs).
  • Travel up to 40%.

 

 

Qualifications

Required Qualifications:

  • Bachelor’s degree and 5 years of relevant experience; Master’s degree and 3 years. An additional 4 years of relevant experience will be considered in lieu of a degree.
  • Must have 1–2 years of relevant Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / ICS environments.
  • Experience conducting security site assessments, including analysis of network security architecture, baseline ports/protocols/services, and asset characterization.
  • Experience using SIEM tools for pattern identification, anomaly detection, and trend analysis.
  • Experience analyzing ICS network protocols such as ModBus, ENIP/CIP, BACnet, DNP3, etc.
  • Experience with common open‑source and commercial tools used in event analysis, incident response, forensics, malware analysis, or security operations.
  • Experience with host‑based and network‑based collection and detection tools (OSS/COTS).
  • U.S. citizenship required.
  • Active Top Secret security clearance.
    • Ability to obtain a TS/SCI for continued employment.
    • Ability to obtain and maintain a favorably adjudicated DHS background investigation.

 

Desired Qualifications:

  • Certifications such as GISCP, GCFA, GNFA, GRID, or OT sensor certifications.
  • 2+ years of Threat Hunting or DFIR experience.
  • Experience on DoD Cyber Protection Teams.
  • Experience performing digital forensics on laptops/desktops, PLCs, HMIs, Historians, and SCADA systems.
  • Experience with SIEM platforms (e.g., Splunk) including threat hunting, analytic development, dashboards, and reporting.
  • Familiarity with critical‑infrastructure frameworks (NIST, IEC 62443).
  • Ability to automate repeatable tasks.
  • Scripting experience in Python, Bash, PowerShell, and/or JavaScript.

 

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Skills

PythonJavaScriptCybersecuritySIEMSplunkSCADA

Similar Jobs

30

Cyber Incident Response Specialist (Associate)

Depository Trust Company · Tampa, FL, United States, US

3 days ago

Client Engagement Mgr Cyber Incident Response

Cognicion · Multiple Locations +1

1 week ago

Cyber Incident Response Analyst

Feverup · Argentina

1 week ago

Senior Consultant Cyber Incident Response (m/f/d)

Freseniusglobal · Bad Homburg (EK1), Germany

3 weeks ago

Senior Consultant Cyber Incident Response (m/f/d)

Freseniusglobal · Bad Homburg (EK1), Germany

3 weeks ago

Lead Analyst – Cyber Incident Response

Raymond James · FL - Saint Petersburg - 800 Carillon Pkwy, United States of America

1 month ago

Cyber Incident Response Associate Attorney

Wilsonelserattorneys · Washington, DC +1 · Hybrid

1 month ago

Cyber Incident Response Associate Attorney

Wilsonelserattorneys · Boston, Massachusetts +1 · Hybrid

1 month ago

FINEX Cyber Incident Response Leader

LON3 London - 51 Lime Street · London, London, United Kingdom, GB

1 month ago

Staff Cyber Incident Response Engineer

Adobe · San Jose, United States of America +2

1 month ago

Cyber Incident Response Business Development Senior Manager

Booz Allen Hamilton · USA, VA, McLean (8283 Greensboro Dr, Hamilton), United States of America +17

2 months ago

Cybersecurity, Privacy and Forensics - Cyber Incident Response - Manager

Pwc · Austin - 835 West 6th Street, United States of America +6

2 months ago

Senior Cyber Incident Response Analyst

Integrity360 · Dublin, Dublin, Ireland

2 months ago

Cyber Incident Response Senior Analyst

Bbh · Jersey City, United States of America

2 months ago

Senior Manager, Cyber Incident Response Team

Adobe · Lehi, United States of America +2

2 months ago

Senior Cyber Incident Response Analyst

Integrity360

2 months ago

Senior Cyber Incident Response Analyst

Integrity360

2 months ago

Senior Cyber Incident Response Analyst

Integrity360

2 months ago

Senior Cyber Incident Response Analyst (Cape Town or Johannesburg)

Integrity360 · Cape Town, Western Cape, South Africa

2 months ago

Senior Associate, Cyber Incident Response

Richemont · Office RIC - NEW YORK 645 Fifth Avenue 5-9F (USNE0009), United States of America

4 months ago

Document Reviewer (Cyber Incident Response)

Integreon Smart Solutions to Process Driven Needs · , US · Onsite

5 months ago

Cyber Incident Response Associate Attorney

Wilsonelserattorneys · Miami, Florida +1 · Hybrid

5 months ago

Cyber Incident Response Associate Attorney

Wilsonelserattorneys · New York, New York +1 · Hybrid

5 months ago

Cyber Incident Response Associate Attorney

Wilsonelserattorneys · Los Angeles, California +1 · Hybrid

5 months ago

Cyber Incident Response Attorney position

Wilsonelserattorneys · Chicago, Illinois · Hybrid

5 months ago

Cyber Incident & Response Team Analyst

Euroclear · Poland, PL

5 months ago

Engineer II - Cyber Incident Response

AmerisourceBergen is now Cencora! Explore our careers. · USA > PA > Conshohocken > West First, United States of America +1

6 months ago

Cyber Incident Response Team Analyst (Tier 2)

AGR · Beltsville, MD

9 months ago

Cyber Incident Response Manager

Bbh · Boston, United States of America +1

9 months ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · New York, New York +1

1+ year ago