1

Cisa Incident Response Jobs (NOW HIRING)

Senior Incident Response Analyst

Arlington, VA ยท On-site

$131K - $237K/yr

Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US ...

Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US ...

... CISA, Threat Intel Sources * Demonstrated ability to evaluate events (through a triage process) and ... Expert understanding of security incident response processes * Support and participate in Threat ...

Lead Incident Responder

Washington, DC ยท On-site

$160K - $185K/yr

Responsibilities:Lead end-to-end incident response activities, including detection, triage ... CISA directives for federal complianceExperience with performance-based contracts and cross ...

Lead end-to-end incident response activities, including detection, triage, containment, eradication ... Experience with FedRAMP and CISA directives for federal compliance * Experience with performance ...

next page

Showing results 1-20

Cisa Incident Response information

See salary details

$41K

$127.2K

$199.5K

How much do cisa incident response jobs pay per year?

As of Sep 12, 2026, the average yearly pay for cisa incident response in the United States is $127,177.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,000.00 and $172,000.00 per year, depending on experience, location, and employer.

What is CISA Incident Response?

CISA Incident Response refers to the actions taken by the Cybersecurity and Infrastructure Security Agency (CISA) to help organizations detect, respond to, and recover from cybersecurity incidents. CISA provides technical assistance, threat analysis, and coordination to mitigate cyber threats affecting critical infrastructure and government agencies. Their incident response services include threat detection, vulnerability assessments, and post-incident analysis to improve an organization's security posture. Organizations can contact CISA for support when experiencing potential cyberattacks or security breaches.

What are some common challenges faced by CISA Incident Response professionals when handling cyber incidents?

CISA Incident Response professionals often encounter challenges such as rapidly evolving cyber threats, managing multiple incidents simultaneously, and coordinating with various stakeholders across government and private sectors. Balancing the need for swift action with thorough investigation and documentation can be demanding, especially when incidents have wide-reaching impacts. Additionally, incident responders must stay current with the latest attack techniques while maintaining clear communication with both technical teams and non-technical leadership.

What are the key skills and qualifications needed to thrive as a CISA Incident Response professional, and why are they important?

To thrive as a CISA Incident Response professional, you need expertise in cybersecurity principles, threat analysis, digital forensics, and a background in information technology or computer science, often supported by industry certifications such as CISSP, GIAC, or Security+. Familiarity with incident management platforms, intrusion detection systems, and malware analysis tools is typically required. Strong analytical thinking, effective communication, and the ability to remain calm under pressure are crucial soft skills for this role. These competencies are vital for quickly identifying, containing, and mitigating security incidents to protect critical infrastructure and national interests.

What is the difference between Cisa Incident Response vs Cisa Security Analyst?

AspectCisa Incident ResponseCisa Security Analyst
CertificationsCISA, GIAC certifications often preferredCISA, CISSP, or GIAC certifications common
Work EnvironmentFocus on incident handling, response teams, and crisis managementMonitoring security systems, analyzing threats, and reporting
Employer & IndustryIT security firms, government agencies, large corporationsIT departments, cybersecurity firms, financial institutions

While both roles require CISA certification and involve cybersecurity, Cisa Incident Response specialists focus on managing and mitigating security incidents, whereas Cisa Security Analysts primarily monitor and analyze security threats to prevent incidents.

What are popular job titles related to Cisa Incident Response jobs?

For Cisa Incident Response jobs, the most frequently searched job titles are:

Incident Response

Los Angeles, CA โ€ข On-site

West Advanced Technologies (WATI)
Computer and Electronic Product Manufacturingย โ€ขย 1 - 10 employees

Full-time

Re-posted 11 days ago


Job description

Incident Response
Downey, CA
12+ months
Skills Required
Managed at least two data centers, including architecting, designing, implementing, and managing security for highly available, resilient systems (physical, virtual, cloud). Analyzing information security systems and applications, including recommending and developing security controls for data integrity, to protect information against unauthorized modification and data loss prevention. Defining the requirements, principles, and models that guide technology decisions for the enterprise, and designing security systems with specifications of equipment, software, and infrastructure. Remediation of security vulnerabilities Be able to Perform security design/architecture reviews, code reviews, and penetration tests of large applications, systems, and/or networks. Assess Critical Infrastructure Protection (CIP) controls against existing network implementations (i.e., gap analysis).
1. Three (3) years as a Senior Information Technology Security Architect and two (2) years in a leadership role. 2. Three (3) years experience in the last five (5) years as an IT Security Incident Response Manager, supporting a complex enterprise security environment for large public or private organizations. 3. Three (3) years of experience in the past five (5) years as an IT Security Incident Response Manager, supporting Enterprise Multi-Tenant environment, including responding, containing, remediating, and reporting on the infrastructure connecting to a large private or public organization and Public Cloud Providers, such as AWS, Azure and/or GCP.
1. One or more of the following professional certifications Qualified Security Assessor (QSA), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professionals (CISSP), Certified Information Security Manager (CISM), Certified Information Privacy Professional (CIPP), GIAC Certified Incident Handler, (GCIH) or GIAC Network Forensic Analyst, CCIE. 2. Bachelor's degree from an accredited college in Technology related discipline (e.g. Computer Science, Engineering, Information Systems, etc.) or equivalent experience/combined education.
Regards
Sunil Damagalla
West Advanced Technologies, Inc
E: sunil.d@wati.com - D: 279-666-5837 -
Serving government agencies for 22 Years
www.wati.com 1610 R St, Suite 300, Sacramento, CA 95811