1

Detection Response Analyst Jobs in Ranson, WV (NOW HIRING)

SADOM Analyst

Leesburg, VA · Remote

$105K - $120K/yr

SADOM Analyst Location: Remote Employment Type: Full‑Time Salary Range: $105,000 - $120,000 Work ... Minimum three (3) years of experience in incident detection and response and * Minimum three (3) ...

BA/BS or minimum of three (3) years of experience in forensics and incident response * Minimum two ... Provide 12x5 operational coverage and after‑hours on‑call support to detect, analyze, and ...

... detection/prevention systems, endpoint protection, and data encryption solutions. * Conduct ... monitoring, alert analysis, and incident response. * Design and implement secure network ...

Systems Engineer Senior

Winchester, VA · On-site

$103.70K - $141.90K/yr

... analysis, recommendation, configuration, installation, and testing of new network hardware and ... response time and primary support for detection and correction of operational problems.

... analysis, recommendation, configuration, installation, and testing of new network hardware and ... response time and primary support for detection and correction of operational problems.

Evaluate emerging technologies (AI-driven detection, threat intelligence platforms) and develop a ... Demonstrated expertise in incident response frameworks, escalation workflows, and regulatory ...

INSTRUCTOR

Summit Point, WV · On-site

$56.60K - $74.40K/yr

Ensuring that training objectives have been met by analyzing trainees, feedback from instructors ... detection, attack recognition, and motorcade operations. * May serve as lead instructor for ...

INSTRUCTOR

Summit Point, WV · On-site

$17.75 - $22.25/hr

Ensuring that training objectives have been met by analyzing trainees, feedback from instructors ... detection, attack recognition, and motorcade operations. * May serve as lead instructor for ...

Our teams provide rapid incident response, digital forensics, proactive hunt operations, and ... We combine mission experience with innovation-empowering our customers to detect, disrupt, and ...

Monitoring and Incident Response: Oversee the monitoring of network activity and respond promptly ... Strong analytical and problem-solving skills, with a proactive approach to identifying and ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment, security protocols, firewalls, intrusion detection systems, incident response, ethical hacking, and ...

next page

Showing results 1-20

Detection Response Analyst information

What are the key skills and qualifications needed to thrive as a Detection Response Analyst, and why are they important?

To thrive as a Detection Response Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often supported by a degree in computer science or cybersecurity and relevant certifications like CompTIA Security+ or GIAC. Familiarity with Security Information and Event Management (SIEM) tools, intrusion detection systems (IDS), and scripting languages such as Python or PowerShell is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively investigate threats and coordinate with teams. These skills are essential for timely threat detection, minimizing risks, and safeguarding organizational assets.

How does a Detection Response Analyst typically collaborate with other teams within an organization?

Detection Response Analysts work closely with various departments, including IT, network operations, and incident response teams, to ensure timely identification and mitigation of security threats. Collaboration often involves sharing threat intelligence, participating in incident response drills, and coordinating on investigations to minimize the impact of security incidents. Regular communication with other security professionals helps analysts stay updated on emerging threats and implement best practices across the organization. This teamwork is essential for maintaining a robust and proactive cybersecurity posture.

What is a Detection Response Analyst?

A Detection Response Analyst is a cybersecurity professional responsible for monitoring, detecting, and responding to security threats within an organization’s IT environment. They analyze security alerts, investigate potential incidents, and coordinate responses to mitigate risks. Their work helps protect sensitive data and maintain the overall security posture of a company. Detection Response Analysts often use various security tools, such as Security Information and Event Management (SIEM) systems, to identify suspicious activities and ensure timely incident resolution.

What is the difference between Detection Response Analyst vs Security Analyst?

AspectDetection Response AnalystSecurity Analyst
CertificationsCompTIA Security+, GIAC certificationsCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, incident response teamsIT departments, security teams, consulting firms
Employer & Industry UsageCybersecurity firms, large enterprises, government agenciesOrganizations across various industries, including finance, healthcare, and tech
Primary FocusDetecting and responding to security incidents in real-timeMonitoring, analyzing, and improving security posture

The Detection Response Analyst primarily focuses on identifying and responding to security threats as they occur, often working within security operations centers. Security Analysts have a broader role in monitoring, analyzing, and enhancing overall security measures across an organization. While both roles require similar certifications and work in cybersecurity environments, Detection Response Analysts are more incident-response oriented, whereas Security Analysts focus on ongoing security management.

Infographic showing various Detection Response Analyst job openings in Ranson, WV as of May 2026, with employment types broken down into 4% As Needed, 71% Full Time, 21% Part Time, and 4% Contract. Highlights an 79% Physical, 1% Hybrid, and 20% Remote job distribution.
Incident Manager Level III (Computer Network Defense) *****Requires US Security clearance******

Incident Manager Level III (Computer Network Defense) *****Requires US Security clearance******

Argo Cyber Systems

Loudoun, VA • On-site

$95K - $115K/yr

Full-time

Posted 25 days ago


Job description

Cyber Incident Manager
Location: Onsite (CONUS) / Shift Work (as assigned)
Clearance: Active TS/SCI (DHS EOD Suitability required)
Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB)
About Argo Cyber Systems
Argo Cyber Systems delivers mission-critical cybersecurity and incident response services to U.S. Government agencies and critical infrastructure sectors. Our teams provide rapid onsite and remote technical support to organizations affected by cyberattacks, conducting advanced investigations, developing mitigation strategies, and restoring operational integrity.
At Argo Cyber, we don't just respond to incidents - we strengthen the nation's resilience against them. Our analysts work side by side with DHS and civilian agency partners to safeguard essential systems and data from persistent and emerging threats.
Position Overview
Argo Cyber Systems is seeking an experienced Cyber Incident Manager to lead and coordinate incident response operations for a high-profile U.S. Government customer. The Incident Manager will oversee the triage, analysis, and resolution of cybersecurity events across federal civilian networks and critical assets. This role requires a mix of technical depth, investigative skill, and the ability to synthesize complex data into actionable recommendations for both technical and executive audiences.
Key Responsibilities
  • Lead and manage incident response and cyber defense operations, ensuring timely containment, eradication, and recovery.
  • Correlate and analyze incident data to identify trends, adversary tactics, and systemic vulnerabilities.
  • Conduct Computer Network Defense (CND) triage, assessing scope, urgency, and operational impact of security events.
  • Develop and recommend Defense-in-Depth strategies, layered defense architectures, and resilience improvements.
  • Research and document resolutions and mitigations to support enterprise recovery and strengthen future defenses.
  • Apply cybersecurity and threat intelligence concepts to detect, analyze, and respond to intrusions in both small and large-scale network environments.
  • Monitor and assess external threat data sources to maintain situational awareness and anticipate potential impacts to the enterprise.
  • Lead the investigation of incident root causes, infection vectors, and attacker methodologies.
  • Receive, analyze, and validate security alerts from enterprise monitoring tools, escalating as appropriate.
  • Track and document all incident response activities from detection through closure, ensuring comprehensive reporting and lessons learned.
  • Support continuous improvement by refining processes, updating playbooks, and mentoring junior analysts.
Required Qualifications
  • U.S. Citizenship (required)
  • Active TS/SCI clearance (required)
  • Ability to obtain DHS Entry on Duty (EOD) Suitability
  • 5+ years of hands-on experience in cyber incident management or SOC/DFIR operations
  • Deep understanding of incident response methodologies, containment strategies, and recovery workflows
  • Working knowledge of NIST SP 800-61 Rev.2 (Computer Security Incident Handling Guide) and FISMA incident reporting standards
  • Strong ability to analyze, prioritize, and document incidents, including phishing, lateral movement, and privilege escalation cases
  • Comprehensive understanding of cyberattack lifecycle stages and adversary tactics, techniques, and procedures (TTPs)
  • Proficiency in identifying vulnerabilities, threat vectors, and exploitation patterns
  • Knowledge of operating system hardening, network defense, and system administration fundamentals
  • Familiarity with nation-state, criminal, and opportunistic threat actor profiles and their operational tradecraft
  • Excellent communication, coordination, and leadership skills in high-pressure, mission-driven environments
Desired Qualifications
  • Proficiency with enterprise SIEM, EDR, and incident management platforms (e.g., Splunk, SentinelOne, CrowdStrike, ServiceNow)
  • Experience leading shift-based operations or 24x7 response teams
  • Deep knowledge of malware, intrusion detection, and threat hunting techniques
  • Familiarity with log analysis, packet capture, and intrusion detection systems (IDS/IPS)
  • Strong understanding of MITRE ATT&CK framework and cyber kill chain methodology
Education
  • Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, or related discipline
    or
  • High School Diploma with 7-9 years of directly relevant experience in cyber incident response or network defense
Preferred Certifications
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Intrusion Analyst (GCIA/GCED)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Cyber Forensics Professional (CCFP) or equivalent
Why Join Argo Cyber Systems
At Argo Cyber Systems, you will operate at the front lines of national cybersecurity defense - protecting civilian agencies and critical infrastructure from sophisticated cyber threats. You'll join a mission-driven, veteran-founded team dedicated to excellence, integrity, and impact in every engagement.
Background & Drug Screening Disclaimer
© Argo Cyber Systems, LLC - All Rights Reserved
Argo Cyber Systems, LLC is committed to maintaining a safe, secure, and trusted workplace for all employees and our federal clients. Employment with Argo Cyber Systems is contingent upon successful completion of all required background investigations and pre-employment screenings, which may include, but are not limited to:
  • Criminal background checks (federal, state, and local)
  • Employment and education verification
  • Reference checks
  • Drug screening (in compliance with federal and state law)
  • Security clearance verification (as applicable for classified positions)

Candidates selected for employment in positions requiring access to sensitive or classified information may also be subject to additional U.S. Government background investigations and security adjudication processes, including DHS Entry on Duty (EOD) suitability or equivalent federal clearance requirements.
Argo Cyber Systems reserves the right to disqualify or rescind an offer of employment based on the results of any background or screening process that, in the company's judgment, may impact an individual's ability to perform essential job functions or meet contractual obligations.
All background investigations and screenings are conducted in accordance with applicable federal, state, and local laws, including the Fair Credit Reporting Act (FCRA). Candidates will be notified of their rights and provided an opportunity to review and dispute any adverse findings before final employment determinations are made.