1

Incident Response Analyst Jobs (NOW HIRING)

Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US ...

Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US ...

Leidos Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across ...

Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US ...

ASMGi - Cyber Incident Response Analyst General Summary: As a key member of ASMGi's Information Security Incident Response Team this individual will be responsible for various parts of the incident ...

Leidos Digital Modernization sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across ...

ITSM Incident Response Analyst Location: Remote Type: Independent Contract - Corp to Corp/1099 Start Date: ASAP Pay Rate: $30-48/hr (Independent Contract) Contract Length: through August 31 ...

Incident Response Center (Analyst) Job Title - IRC Analyst Summary The IRC (Incident Response Center) is the first layer of defense responsible for quick detection and incident response using various ...

Incident Response Center (Analyst) Job Title - IRC Analyst Summary The IRC (Incident Response Center) is the first layer of defense responsible for quick detection and incident response using various ...

next page

Showing results 1-20

Incident Response Analyst information

See salary details

$22

$46

$62

How much do incident response analyst jobs pay per hour?

As of Jun 15, 2026, the average hourly pay for incident response analyst in the United States is $46.45, according to ZipRecruiter salary data. Most workers in this role earn between $40.62 and $52.64 per hour, depending on experience, location, and employer.

What is the difference between Incident Response Analyst vs Security Analyst?

AspectIncident Response AnalystSecurity Analyst
CertificationsCompTIA Security+, GIAC certifications, CISSP (preferred)CompTIA Security+, CISSP, CEH (sometimes)
Work EnvironmentPrimarily in cybersecurity teams, focused on incident handling and responseBroader security operations, including monitoring, analysis, and policy enforcement
Employer & Industry UsageTech companies, government agencies, cybersecurity firmsFinancial institutions, healthcare, government, and corporate sectors

Incident Response Analysts specialize in identifying, managing, and mitigating cybersecurity incidents, while Security Analysts have a broader role in monitoring security systems, analyzing threats, and implementing security measures. Both roles require similar certifications and often work within the same organizations, but Incident Response Analysts focus more on reactive incident handling, whereas Security Analysts cover proactive security measures.

What are the key skills and qualifications needed to thrive as an Incident Response Analyst, and why are they important?

To thrive as an Incident Response Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident handling, often supported by a degree in information security or related fields. Familiarity with security information and event management (SIEM) tools, forensic software, and certifications like GIAC or CISSP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for coordinating response efforts and reporting findings. These skills ensure rapid detection, containment, and resolution of security incidents, protecting organizational assets and reputation.

What types of incidents does an Incident Response Analyst typically handle, and how do they prioritize them?

Incident Response Analysts commonly handle a variety of security incidents, including malware infections, phishing attacks, unauthorized access attempts, and data breaches. They prioritize incidents based on factors such as potential business impact, severity, and the sensitivity of affected data. Analysts often use established frameworks and playbooks to assess and triage incidents, ensuring the most critical threats are addressed first. Collaboration with IT, security teams, and sometimes legal or compliance departments is key to effective resolution and minimizing risk.

What does an Incident Response Analyst do?

An Incident Response Analyst is responsible for identifying, investigating, and responding to cybersecurity incidents within an organization. They monitor networks and systems for security breaches, analyze potential threats, and take action to contain and mitigate any attacks. In addition, they document findings, coordinate with other IT and security teams, and help improve the organization's overall security posture by recommending preventative measures. Their role is critical in minimizing damage from cyber incidents and ensuring business continuity.

What Does an Incident Response Analyst Do?

An incident response analyst works with an incident response team to identify and monitor security threats to an organization’s cyber systems. Your responsibilities as an incident response analyst are to prevent escalation of severe security threats, provide reports to the organization’s security team, utilize tools to minimize the effects of a security breach on the computer network, and perform an analysis to ensure that the organization’s computer network is clear of threats. Your duties also include implementing and optimizing security tools to prevent the same security issues from happening again. You may communicate with law enforcement about security threats if necessary.

What cities are hiring for Incident Response Analyst jobs? Cities with the most Incident Response Analyst job openings:
What are the most commonly searched types of Incident Response Analyst jobs? The most popular types of Incident Response Analyst jobs are:
Who are the top companies hiring for Incident Response Analyst jobs? The top employers for Incident Response Analyst jobs are:
What states have the most Incident Response Analyst jobs? States with the most job openings for Incident Response Analyst jobs include:
What are popular job titles related to Incident Response Analyst jobs? For Incident Response Analyst jobs, the most frequently searched job titles are:
Infographic showing various Incident Response Analyst job openings in the United States as of June 2026, with employment types broken down into 2% As Needed, 90% Full Time, 6% Part Time, and 2% Contract. Highlights an 81% Physical, 8% Hybrid, and 11% Remote job distribution, with an average salary of $96,618 per year, or $46.5 per hour.
Senior Incident Response Analyst

Senior Incident Response Analyst

Leidos

Arlington, VA

$131K - $237K/yr

Full-time

Posted 7 days ago


Leidos rating

8.4

Company rating: 8.4 out of 10

Based on 146 frontline employees who took The Breakroom Quiz

56th of 428 rated business services


Job description

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

If this sounds like the kind of environment where you can thrive, keep reading!

The Digital Modernization Sector brings together our digital transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.

The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a new shared DHS incident tracking system and other means of coordination and communication. Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS CISA SOC Program.

The Incident Responder will perform the following:

Coordinate investigation and response efforts throughout the Incident Response lifecycle

Correlate and and analyze events and data to determine scope of Cyber Incidents

Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts

Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response.

Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks

Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities

Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports

Create metrics and determine Key Performance Indicators to drive maturity of SOC operations

Develop security content such as scripts, signatures, and alerts

Basic Qualifications

Bachelors' degree in Computer Science, Engineering, Information Technology, Cyber Security, or related field and 12-15 years of related experience. Additional years of experience and/or cyber certifications may be considered in lieu of degree.

In-depth knowledge of each phase of the Incident Response life cycle

Expertise of Operating Systems (Windows/Linux) operations and artifacts

Expertise of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)

Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents

Expertise with Cyber Kill Chain and have utilized the ATT&CK Framework

Have scripting experience with Python, PowerShell, and/or Bash

Ability to independently prioritize and complete multiple tasks with little to no supervision

Flexible and adaptable self-starter with strong relationship-building skills

Strong problem-solving abilities with an analytic and qualitative eye for reasoning

Strong verbal and written communication skills

Ability to communicate with all levels of audiences (subordinates, peers & leadership)

* Candidate must have technical hands on experience in the areas of incident detection and response, malware analysis, or computer forensics.

All Department of Homeland Security SOC employees are required to favorably pass a 5-year (BI) Background Investigation.

Candidates will have at least one of the following certifications:

SANS GIAC: GCIH, GCIA, GCFA, GPEN GCFE, GREM

CISSP OSCP, OSCE, OSWP

Preferred Qualifications

Experience in cyber government, and/or federal law enforcement FISMA systems.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:June 9, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.


What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media