1

Incident Jobs in Virginia (NOW HIRING)

ARSIEM is looking for a Cyber Incident Manager to support on-site incident response to civilian Government agencies and critical asset owners who experience cyber attacks, providing immediate ...

The Incident Support Manager will oversee day-to-day operations of the organization's technology systems and lead incident management efforts to ensure efficient resolution of incidents.

Incident Manager Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is supporting a U.S. Government customer to provide support for onsite incident response to ...

Incident Manager II

Arlington, VA · On-site

$56K - $66K/yr

Incident Manager II Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies ...

Incident Manager II

Arlington, VA · On-site

$75K - $94K/yr

Incident Manager II Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies ...

Incident Manager III

Arlington, VA · On-site

$94K - $112K/yr

Incident Manager III Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies ...

Incident Manager II

Arlington, VA · On-site

$56K - $66K/yr

Incident Manager II Description: Solutions³ LLC is supporting a U.S. Government customer to support for onsite incident response to civilian Government agencies and critical asset owners who ...

Incident Manager III

Arlington, VA · On-site

$94K - $112K/yr

Incident Manager III Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies ...

ARSIEM is looking for a Cyber Incident Manager to support on-site incident response to civilian Government agencies and critical asset owners who experience cyber attacks, providing immediate ...

Incident Manager III

Arlington, VA · On-site

$94K - $112K/yr

Incident Manager III Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies ...

Incident Manager II

Arlington, VA · On-site

$56K - $66K/yr

Incident Manager II Description: Solutions³ LLC is supporting a U.S. Government customer to support for onsite incident response to civilian Government agencies and critical asset owners who ...

Incident Support Manager

Ashburn, VA · On-site

$155K - $220K/yr

Support includes providing real-time incident monitoring, predictive and proactive analysis and reporting, incident resolution and escalation, problem management and resolution, coordinating of ...

Incident Response Analyst

Alexandria, VA · On-site

$87K - $157K/yr

The Incident Response Analyst will investigate and respond to cybersecurity events and incidents affecting DHRA systems and networks. This position supports the full incident-response lifecycle--from ...

Responsible for communicating with the CBP Incident Manager and other GSs for all Incidents. * Will act at the contract Point of Contract (POC) for all Major Incident support and coordination.

Incident Manager II

Arlington, VA · On-site

$56K - $66K/yr

Incident Manager II Description: Solutions³ LLC is supporting a U.S. Government customer to support for onsite incident response to civilian Government agencies and critical asset owners who ...

Showing results 21-40

Incident information

See Virginia salary details

$36.2K

$162K

$191.8K

How much do incident jobs pay per year?

As of Sep 6, 2026, the average yearly pay for incident in Virginia is $162,002.00, according to ZipRecruiter salary data. Most workers in this role earn between $127,900.00 and $191,300.00 per year, depending on experience, location, and employer.

What is an incident manager?

Incident managers are professionals responsible for identifying, analyzing, and resolving incidents that disrupt business operations, particularly in IT environments. They coordinate the response to incidents, communicate with stakeholders, and ensure that issues are resolved efficiently to minimize impact. Incident managers also play a key role in post-incident analysis, helping organizations improve processes and prevent future incidents.

What are some common challenges incident managers face when coordinating responses across multiple teams?

Incident Managers often need to coordinate with various technical, operations, and business teams during high-pressure situations, which can be challenging due to differing priorities and communication styles. Ensuring timely and accurate information flow, avoiding miscommunication, and keeping all stakeholders aligned are frequent hurdles. Developing strong relationships across departments and establishing clear incident response protocols can help Incident Managers overcome these challenges and ensure smooth resolution of incidents.

What are the key skills and qualifications needed to thrive as an incident manager, and why are they important?

To thrive as an Incident Manager, you need expertise in IT service management, problem resolution, and risk assessment, often supported by a degree in information technology or a related field. Familiarity with ITIL frameworks, incident management systems like ServiceNow, and relevant certifications such as ITIL Foundation are highly valuable. Strong communication, decision-making, and leadership skills set top performers apart, enabling them to coordinate teams and manage high-pressure situations. These skills are crucial for minimizing downtime, resolving incidents efficiently, and maintaining business continuity.

What is the difference between Incident vs Security Analyst?

AspectIncidentSecurity Analyst
Required credentialsTypically certifications like CompTIA Security+ or CISSPSame certifications often required, plus knowledge of security tools
Work environmentHandles security breaches, investigations, and response teamsMonitors security systems, analyzes threats, and implements security measures
Employer and industry usageUsed in cybersecurity teams across various industriesCommonly employed in IT and cybersecurity departments
Comparison focusResponding to security incidentsPreventing and analyzing security threats

While both Incident responders and Security Analysts work in cybersecurity, Incident roles focus on reacting to security breaches and managing incidents, whereas Security Analysts primarily monitor, analyze, and prevent security threats. Both roles require similar certifications and often work closely within security teams to protect organizational assets.

What are the most commonly searched types of Incident jobs in Virginia?

The most popular types of Incident jobs in Virginia are:

Infographic showing various Incident job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 11% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $162,002 per year, or $77.9 per hour.

Incident Manager III

ARSIEM

Arlington, VA • On-site

Full-time

Re-posted 16 days ago


Job description

About ARSIEM Corporation
At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients. We provide support to multiple agencies across the United States Government. ARSIEM has an experienced workforce of qualified professionals committed to providing the best possible support.
As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients. That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.
ARSIEM is looking for a Cyber Incident Manager to support on-site incident response to civilian Government agencies and critical asset owners who experience cyber attacks, providing immediate investigation and resolution. This position will support one of our Government clients in Arlington, VA.
Responsibilities
  • Correlating incident data to identify specific trends in reported incidents
  • Recommending defense in depth principles and practices (i.e. Defense in Multiple Places, layered defenses, security robustness, etc.)
  • Performing Computer Network Defense incident triage to include determining scope, urgency, and potential impact
  • Researching and compiling known resolution steps or workarounds to enable mitigation of potential Computer Network Defense incidents within the enterprise
  • Applying cybersecurity concepts to the detection and defense of intrusions into small, and large-scale IT networks, and conduct cursory analysis of log data
  • Monitoring external data sources to maintain currency of Computer Network Defense threat condition and determine which security issues may have an impact on the enterprise
  • Identifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident,
  • Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
  • Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution, and work with other components within the organization to obtain and coordinate information pertaining to ongoing incidents
  • "Limited" candidates may be hired for shift work; assigned to set schedules, triaging and researching incidents for Indicators of Compromise (IOCs), escalating to specialized analysts.

Minimum Qualifications
  • BS Incident Management, Operations Management, Cybersecurity or related degree. HS Diploma with 7-9 incident management or cyber security experience
  • 5+ years of directly relevant experience in cyber incident management or cybersecurity operations
  • Knowledge of incident response and handling methodologies
  • Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain to reporting incidents
  • Ability to prioritize incidents, investigate and describe tactics used in phishing campaigns, as well as recognize gaps in incident reporting
  • Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
  • Skill in recognizing and categorizing types of vulnerabilities and associated attacks
  • Knowledge of basic system administration and operating system hardening techniques, Computer Network Defense policies, procedures, and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and attack methods (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code)

Preferred Qualifications
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and attack methods (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code)
  • GCIH, GCFA GISP, GCED, CCFP or CISSP

Clearance Requirement: This position requires an Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.
Candidate Referral: Do you know someone who would be GREAT at this role? If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects. The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral. The bonus is paid after the referred employee reaches 6 months of employment.
ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other federally protected class.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.