... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... CSIH, GCIH, or GCFA preferred for incident handling. * Willingness and availability to work the day ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... CSIH, GCIH, or GCFA preferred for incident handling. * Willingness and availability to work the day ...
CSOC Tier 3 Cyber Engineer
Springfield, VA · On-site
$147K - $199K/yr
... cyber security incident response, to include but not limited to actions such as implementing ... Commander; * Develop and coordinate courses of action with various Government and contract ...
CSOC Tier 3 Cyber Engineer
Springfield, VA · On-site
$147K - $199K/yr
... cyber security incident response, to include but not limited to actions such as implementing ... Commander; * Develop and coordinate courses of action with various Government and contract ...
Cyber Incident Responder (24x7 Days)
Quantico, VA · On-site
$125K - $153K/yr
The Cyber Incident Responder is a vital role responsible for executing the full incident response ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
Cyber Incident Responder (24x7 Days)
Quantico, VA · On-site
$125K - $153K/yr
The Cyber Incident Responder is a vital role responsible for executing the full incident response ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
CSOC Tier 3 Cyber Engineer
Springfield, VA · On-site
$147K - $199K/yr
... cyber security incident response, to include but not limited to actions such as implementing ... Commander; * Develop and coordinate courses of action with various Government and contract ...
CSOC Tier 3 Cyber Engineer
Springfield, VA · On-site
$147K - $199K/yr
... cyber security incident response, to include but not limited to actions such as implementing ... Commander; * Develop and coordinate courses of action with various Government and contract ...
Cybersecurity Technician
Norfolk, VA · On-site
Ensure systems are inspection-ready for IA reviews, Command Cyber Readiness Inspections (CCRI), and ... In the event of a suspected security incident, support triage, isolation, documentation, and ...
Cybersecurity Technician
Norfolk, VA · On-site
Ensure systems are inspection-ready for IA reviews, Command Cyber Readiness Inspections (CCRI), and ... In the event of a suspected security incident, support triage, isolation, documentation, and ...
The Cyber Incident Responder is a vital role responsible for executing the full incident response ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
The Cyber Incident Responder is a vital role responsible for executing the full incident response ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
ICS Nett, Inc is hiring a Cyber Incident Responder to join our dynamic team for One swing shifts ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
ICS Nett, Inc is hiring a Cyber Incident Responder to join our dynamic team for One swing shifts ... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
Interface with external organizations (e.g., public affairs, law enforcement, Command or Component ... Supervise or manage protective or corrective measures when a cybersecurity incident or ...
Cyber Defense Incident Responder - Swing Shift
Quantico, VA · On-site
$130K - $153K/yr
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
Cyber Defense Incident Responder - Swing Shift
Quantico, VA · On-site
$130K - $153K/yr
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
Cyber Security Analyst
Hampton, VA · On-site
$143K - $165K/yr
Provides timely and actionable sanitized intelligence to cyber incident response professionals ... Commanders to expand decision space to defeat and deter adversaries. Qualifications: High School ...
Cyber Security Analyst
Hampton, VA · On-site
$143K - $165K/yr
Provides timely and actionable sanitized intelligence to cyber incident response professionals ... Commanders to expand decision space to defeat and deter adversaries. Qualifications: High School ...
Cyber Security Analyst
Hampton, VA · On-site
$143K - $165K/yr
Provides timely and actionable sanitized intelligence to cyber incident response professionals ... Commanders to expand decision space to defeat and deter adversaries. Qualifications: High School ...
Cyber Security Analyst
Hampton, VA · On-site
$143K - $165K/yr
Provides timely and actionable sanitized intelligence to cyber incident response professionals ... Commanders to expand decision space to defeat and deter adversaries. Qualifications: High School ...
Cybersecurity Analyst / ISSO
Stafford, VA · On-site
$120 - $190/hr
... Command) and DCDC (Department of Defense Cyber Defense Command) TaskOrds, Cyber Tasking Orders ... Experience drafting organizational cybersecurity policies, Incident Response Plans, and Continuous ...
Cybersecurity Analyst / ISSO
Stafford, VA · On-site
$120 - $190/hr
... Command) and DCDC (Department of Defense Cyber Defense Command) TaskOrds, Cyber Tasking Orders ... Experience drafting organizational cybersecurity policies, Incident Response Plans, and Continuous ...
Senior Cyber Security Analyst
Arlington, VA · On-site
$115K - $148K/yr
Create and distribute incident reports to customers and higher headquarters. Minimum Required ... Unix/Linux command line experience. * Scripting and programming experience. * Motivated self ...
Senior Cyber Security Analyst
Arlington, VA · On-site
$115K - $148K/yr
Create and distribute incident reports to customers and higher headquarters. Minimum Required ... Unix/Linux command line experience. * Scripting and programming experience. * Motivated self ...
Ensure systems are inspection-ready for IA reviews, Command Cyber Readiness Inspections (CCRI), and ... In the event of a suspected security incident, support triage, isolation, documentation, and ...
Ensure systems are inspection-ready for IA reviews, Command Cyber Readiness Inspections (CCRI), and ... In the event of a suspected security incident, support triage, isolation, documentation, and ...
... cyber security incident response, to include but not limited to actions such as implementing ... Commander. * Develop and coordinate courses of action with various Government and contract ...
... cyber security incident response, to include but not limited to actions such as implementing ... Commander. * Develop and coordinate courses of action with various Government and contract ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
... Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense ... Incident Detection & Triage: Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewall ...
Cybersecurity Incident Commander information
What is a Cybersecurity Incident Commander?
What are the main challenges a Cybersecurity Incident Commander faces during a major security incident?
What are the key skills and qualifications needed to thrive as a Cybersecurity Incident Commander, and why are they important?
What is the difference between Cybersecurity Incident Commander vs Cybersecurity Analyst?
| Aspect | Cybersecurity Incident Commander | Cybersecurity Analyst |
|---|---|---|
| Certifications | GCIH, CISSP, CISM | CompTIA Security+, GIAC certifications |
| Work Environment | Incident response teams, security operations centers | Monitoring networks, analyzing threats |
| Responsibilities | Lead incident response, coordinate teams, communicate with stakeholders | Detect threats, analyze security data, recommend fixes |
The Cybersecurity Incident Commander focuses on leading and coordinating incident response efforts during security breaches, while the Cybersecurity Analyst primarily monitors systems, analyzes threats, and supports security measures. Both roles require relevant certifications and work in security operations environments, but their responsibilities differ in scope and leadership level.
What are popular job titles related to Cybersecurity Incident Commander jobs in Virginia?
For Cybersecurity Incident Commander jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Incident Commander jobs in Virginia look for?
The top searched job categories for Cybersecurity Incident Commander jobs in Virginia are:
What cities in Virginia are hiring for Cybersecurity Incident Commander jobs?
Cities in Virginia with the most Cybersecurity Incident Commander job openings:

ASRC Federal rating
7.8
Based on 28 frontline employees who took The Breakroom Quiz
244th of 453 rated engineering
Job description
ASRC Federal is seeking a highly skilled and experienced Cyber Incident Responder to join our dynamic team on the day shift (0600 – 1600), providing extended-hours coverage that includes weekend and holiday rotations. This is a fully on-site position at Quantico Marine Corps Base, VA — no telework is available for this role.
The successful candidate will serve as a front-line defender, rapidly detecting, triaging, containing, and eradicating cyber threats across our enterprise infrastructure. This role is critical for minimizing the impact of security incidents, coordinating response actions, and preserving forensic evidence in support of Department of Defense (DoD) missions.
Position Description:
The Cyber Incident Responder is a vital role responsible for executing the full incident response lifecycle during day shift, weekend, and holiday coverage windows. This position focuses on detecting and responding to security incidents in real time, performing containment and eradication actions, and coordinating recovery efforts using enterprise tools such as SIEM, SOAR, CrowdStrike, CyberArk, and Endpoint Security Suite (ESS).
The Incident Responder will collaborate with cross-functional IT and security teams to:
- Execute incident response procedures in accordance with NIST SP 800-61 and DoD guidelines
- Coordinate with JFHQ-DODIN on cyber incident reporting and remediation
- Support insider threat response and investigations
- Contain and remediate compromised systems, accounts, and endpoints
- Preserve and document forensic evidence for incident case management
- Maintain incident response playbooks and ensure high operational readiness during all covered hours
Minimum Requirements:
- At least Five (5) years of hands-on technical cybersecurity experience and knowledge of incident response concepts, Computer Network Defense, DISA Security Technical Implementation Guides (STIGs), DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01B, United States Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense policies.
- Active Top-Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI.
- Bachelor’s degree in Information Technology, Information Systems Management, Cyber Security, or equivalent experience.
- Must meet DoD 8570 certification requirements at time of hire — IAT Level II (e.g., CCNA Security, CySA+, GICSP, GSEC, Security+, SSCP); CSIH, GCIH, or GCFA preferred for incident handling.
- Willingness and availability to work the day shift (0600 – 1600), including weekend and holiday rotations, fully on-site at Quantico, VA.
Required Skills:
- Knowledge of computer network defense concepts, DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cybersecurity and Computer Network Defense Policies Cybersecurity and Computer Network Defense policies
- Develop, maintain, and provide a weekly brief that captures all the cyber events including metrics and trends.
- Ability to provide continuous monitoring, data to include but not limited to network and host vulnerability scanning IDS, firewall, network sensor tuning, net flow/packet capture (PCAP). Collect and keep audit data in order to conduct a technical analysis relating to misuse, penetration, or other incidents.
- Document incidents, response actions, and remediation recommendations in accordance with government reporting requirements.
- Monitor multiple environments for malicious or anomalous activity using SIEM, SOAR, and on-prem security tooling.
- Analyze logs, telemetry, alerts, and audit data to identify indicators of compromise (IOCs) and attack patterns.
Work Environment and Physical Demands:
- This is a fully on-site position at DCSA facilities, Quantico Marine Corps Base, VA. Telework is not offered for this shift.
- Must work the assigned day shift (0600 – 1600) and support weekend and holiday coverage as scheduled.
- Must be able to communicate complex technical ideas to a diverse customer base, both verbally and in written form.
What ASRC Federal employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom