The following states/districts are excluded from this job ad: AK, CA, CO, CT, DC, HI, LA, MA, MN, MO, NE, NV, NH, NJ, NM, NY, ND, OR, PR, RI, VT, WA, WYFuture Need - Actively InterviewingLocation: Executive Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal agency's IT security program. This role combines hands-on cyber and incident lifecycle management.Position Description: The Cybersecurity Analyst / Incident Response Coordinator provides technical support and project and incident response lifecycle oversight.Minimum/General Experience: 3 - 10 years of cyber incident response experience Minimum Education: Bachelors' Degree in Cybersecurity, Information Technology, or a related fieldEssential Skills/Qualifications:Excellent experience providing oversight for the entire incident response lifecycle from initial detection to final remediation and incident closureExcellent experience with Security Information and Event Management (SIEM) toolsExcellent experience with Security Orchestration, Automation, and Response (SOAR) platformsAbove average experience providing final decisions on technical containment strategiesAbove average experience overseeing vulnerability management and scanning operations (e.g., Tenable)Above average experience managing daily tasking of a teamAbove average experience ensuring compliance with applicable retention policiesAbove average experience translating incident data into high-level trend analysis and status reports for leadershipExcellent verbal and written communication skillsExperience supporting a federal agency (preferred)General Physical Requirements needed to perform the essential functions of this job may vary based on the location of the assignment.Assignment Location - Executive Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311Sedentary Work - Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects.Typing, communicating, repetitive motions.Close visual acuity to prepare and analyze data, view computer monitors and read. May need to view presentation screens and other visual aids in a virtual setting.Inside environmental conditions with protection from outside elements.Security: Ability to obtain/maintain a Federal Civilian Public TrustU.S. Citizenship or Permanent Resident that has lived in the United States for at least 3 yearsFederal Civilian Public Trust Consists of a review of up to but not limited to:Covers 10 year period and in some instances lifetime eventsOPM Security Investigations Index (SII)DOD Defense Central Investigations Index (DCII)National Agency Check (NAC) recordsFBI name checkFBI fingerprint checkCredit report checkWritten inquiries to previous employers and references listed on the application for employmentPotential interviews with the subject, spouse, neighbors, supervisor, coworkersLaw enforcement checkCourt records checkEducation check- Attendance and DegreesAcceptable CredentialsTasks/activities include, but are not limited to:Verifies support staff are meeting contract deliverables and servicesIdentifies obstacles preventing support staff from performing their responsibilities and addresses themDevelops and provides monthly, weekly, and ad hoc status reports to leadershipMaintains project plans tracking risks, issues, and completed/upcoming tasksBriefs leadership monthly and attends all cyber-related meetingsDevelops and maintains an Incident Response PlanProvides incident response supportAlerts the Incident Response Team of security advisories, vulnerabilities, and new threatsAnalyzes incidents and briefs recommendations quarterly to leadershipRecords and catalogs lessons learned, maintaining a searchable repositoryConducts investigation and analysis of cybersecurity incidentsDevelops and maintains the Vulnerability Management Plan and related Standard Operating Procedures (SOPs)Conducts risk and vulnerability assessments using tools such as Tenable, IBM BigFix, and SplunkOversees creation and accurate documentation of Plan of Action and Milestones (POA&Ms)Coordinates with the cyber operations team to remediate identified vulnerabilitiesTracks and reports vulnerability trends, providing monthly, quarterly, and annual metricsIntegrates automated threat intelligence feeds into the Enterprise SIEMAnalyzes threats against the environment and provides cyber situational awarenessOversees insider threat investigations and manages the tool in accordance with ITIL-compliant Service Level Agreements (SLAs)Compensation & Benefits: The annual projected pay range for this position is $101,526 - $132,689 with consideration being given to various factors including but not limited to qualifications, experience, job responsibilities, and geographic location. Oxley Enterprises, Inc. offers a full array of benefits including:Medical, dental, vision and prescription drug coverage for you and your family.Life Insurance, short-term disability and long-term disability paid for by the Company.Supplemental coverages including Accident, Critical Illness, and Hospital.Additional Life insurance coverage for you and your dependents. 401k plan with various options to select based on your retirement goals.Oxley Enterprises®, Inc. is a certified service-disabled veteran-owned (SDVOSB), veteran-owned (VOSB), and woman-owned small business (WOSB) that has 26 years of experience building and delivering quality IT systems and programs. Oxley is ranked in the INC 5000 7 times (2016, 2017, 2018, 2021, 2023, 2024, 2025). Oxley is a 2019 - 2025 Department of Labor HIRE Vets Medallion Award Winner. Oxley is Virginia Values Veterans certified.All qualified applicants will receive consideration for employment without regard to any status protected by applicable federal, state, or local law.If you require a reasonable accommodation to apply for a position at Oxley Enterprises, Inc., please send an email to our Human Resources Department at: careers@oxleyenterprises.com with the following information:Subject Line: Accommodation RequestProvide a description of your accommodation requestInclude your contact information: Full name, Email address, Best number to reach you (optional)We participate in the E-Verify program. http://www.dhs.gov/E-Verify