Incident Response SME
Quantico, Virginia, United States
Full Time Mid-level / Intermediate Clearance required USD 52K - 123K *
Resource Management Concepts, Inc.
Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.
RMC is hiring an Incident Response SME to support our customer in Quantico, VA. The Incident Response SME will lead major investigations, oversee and quality-assure cyber investigation activities, and be responsible for incident response activities throughout the network.
The selected applicant will perform a variety of activities including but not limited to:
- Collecting and analyzing network and/or host artifacts from various sources, including logs, system images, and packet captures, to characterize activity, determine root cause and operational impact, and enable rapid remediation and/or mitigation of cyber threats within the network through the investigation process.
- Performing cyber incident triage, including determining scope, urgency, and potential impact; identifying the specific vulnerability; and making recommendations that enable expeditious remediation.
- Providing expert technical support and performing real-time cyber defense incident handling tasks to support subordinate organizations and system owners.
- Managing and documenting cyber defense incidents from initial detection through final resolution methods.
- Demonstrating effectiveness by successfully investigating and responding to Red Team activity.
- Updating the Incident Response tactics, techniques, procedures, training, and education documentation.
- Preparing and presenting a course covering specific tactics, techniques, processes, and procedures related to this task at least four times per calendar year.
- Providing support required to maintain the customer's CSSP accreditation per the standards, including documentation and technical writing support as needed.
Requirements
- Active TS/SCI (DoD TOP SECRET clearance with SCI eligibility) is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information.
- College degree in a technical or managerial-related discipline AND five (5) years of practical experience in a Cybersecurity, Engineering, T&E, or A&A-related field; OR
- H.S. diploma or H.S. equivalency certificate AND seven (7) years of experience in Cybersecurity, Engineering, T&E, or A&A.
- Must hold a current valid IAT Level III certification. Certification Requirements: This position will require DoD 8140.03 IAT Level III compliance.
- Experience should also have included working with Information Assurance tools such as DISA Enterprise Mission Assurance Support Service and Assured Compliance Assessment Solution and may be required to hold a Full Security Control Assessor qualification.
This position is considered essential and will be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.
Benefits
At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.
RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. We offer Monday to Friday full-time day shift work, and can assist in paid relocation. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.
#IND123
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: ACAS Clearance Compliance Cyber defense DISA DoD DoDD 8140 eMASS Incident response Red team Top Secret Top Secret Clearance TS/SCI
Perks/benefits: Relocation support Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.