FTK, Encase, Axiom, Xways, Mandiant HX, FireEye, SOF-ELK, Moloch, Wireshark, Network Miner, NetWitness, CyberChef, Corelightm, Security Onion, ArcSight, Zeek/Bro, Gigamon or other packet brokers ...
FTK, Encase, Axiom, Xways, Mandiant HX, FireEye, SOF-ELK, Moloch, Wireshark, Network Miner, NetWitness, CyberChef, Corelightm, Security Onion, ArcSight, Zeek/Bro, Gigamon or other packet brokers ...
Deep hands-on experience with Google SecOps (Chronicle SIEM/Siemplify SOAR), Google Threat Intelligence, or the Mandiant Advantage platform. * Specialized Knowledge: Experience with AI model security ...
Quick apply
Deep hands-on experience with Google SecOps (Chronicle SIEM/Siemplify SOAR), Google Threat Intelligence, or the Mandiant Advantage platform. * Specialized Knowledge: Experience with AI model security ...
Senior Engineering Manager, Core Product
New York, NY · On-site
$138.40K - $182.70K/yr
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. The Impact You'll Have The Core ...
Senior Engineering Manager, Core Product
New York, NY · On-site
$138.40K - $182.70K/yr
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. The Impact You'll Have The Core ...
Develop and operationalize a threat intelligence capability drawing from MSTIC, Mandiant, ISACs, etc. * Lead or coordinate threat hunting, adversary emulation, and advanced TTP analysis initiatives.
Develop and operationalize a threat intelligence capability drawing from MSTIC, Mandiant, ISACs, etc. * Lead or coordinate threat hunting, adversary emulation, and advanced TTP analysis initiatives.
Senior Product Manager (AI Security)
Palo Alto, CA · Remote
$180K - $200K/yr
... Mandiant), and many others. About the role: As a Senior Product Manager at Nightfall you'll lead the development and evolution of our latest AI security product with coverage across SaaS, AI apps ...
Quick apply
Senior Product Manager (AI Security)
Palo Alto, CA · Remote
$180K - $200K/yr
... Mandiant), and many others. About the role: As a Senior Product Manager at Nightfall you'll lead the development and evolution of our latest AI security product with coverage across SaaS, AI apps ...
Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike). * Forensics: Solid understandingof deep-system forensics (Memory, Disk ...
Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike). * Forensics: Solid understandingof deep-system forensics (Memory, Disk ...
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. The Impact You'll Have The Platform ...
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. The Impact You'll Have The Platform ...
Senior Machine Learning Engineer
New York, NY · On-site +1
$150K - $273K/yr
Prophet Security's founding team has over 30 years of experience in cybersecurity at leading companies including Abnormal Security, Expel, Mandiant, McAfee, Oracle, Red Canary, Red Hat, Riverbed, and ...
Senior Machine Learning Engineer
New York, NY · On-site +1
$150K - $273K/yr
Prophet Security's founding team has over 30 years of experience in cybersecurity at leading companies including Abnormal Security, Expel, Mandiant, McAfee, Oracle, Red Canary, Red Hat, Riverbed, and ...
Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike). * Forensics: Solid understanding of deep-system forensics (Memory, Disk ...
Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike). * Forensics: Solid understanding of deep-system forensics (Memory, Disk ...
Software Engineer, Full Stack
New York, NY · On-site
$150K - $273K/yr
Prophet Security's founding team brings over 30 years of cybersecurity experience from leading companies including Abnormal Security, Expel, Mandiant, McAfee, Oracle, Red Canary, Red Hat, Riverbed ...
Software Engineer, Full Stack
New York, NY · On-site
$150K - $273K/yr
Prophet Security's founding team brings over 30 years of cybersecurity experience from leading companies including Abnormal Security, Expel, Mandiant, McAfee, Oracle, Red Canary, Red Hat, Riverbed ...
Growth Marketing Manager
$120K - $140K/yr
... of Mandiant), and many others. About the role: We're hiring a Growth Marketing Manager to own pipeline creation at Nightfall - someone who can understand how modern security buyers think, where ...
Growth Marketing Manager
$120K - $140K/yr
... of Mandiant), and many others. About the role: We're hiring a Growth Marketing Manager to own pipeline creation at Nightfall - someone who can understand how modern security buyers think, where ...
Google Cloud Executive Delivery Architect
Chicago, IL · On-site
$67 - $85.25/hr
Develop automated response workflows and leverage threat intelligence by using tools such as Google Chronicle Security Operations (SIEM/SOAR), Mandiant, and Security Command Center. * Marketing ...
Google Cloud Executive Delivery Architect
Chicago, IL · On-site
$67 - $85.25/hr
Develop automated response workflows and leverage threat intelligence by using tools such as Google Chronicle Security Operations (SIEM/SOAR), Mandiant, and Security Command Center. * Marketing ...
... Mandiant brand recognition value that continuously enriches Google Public sector (GPS) products and strengthens GPS's credibility as the premier public sector experts for front line against ...
... Mandiant brand recognition value that continuously enriches Google Public sector (GPS) products and strengthens GPS's credibility as the premier public sector experts for front line against ...
Director, Product Management, Data Compute, Google Cloud Security
Sunnyvale, CA · On-site
$273.50K - $286.40K/yr
The team directs the strategy and development for our security portfolio, including Chronicle, Mandiant, and native cloud services. Our mission is to transform extensive security expertise and threat ...
Director, Product Management, Data Compute, Google Cloud Security
Sunnyvale, CA · On-site
$273.50K - $286.40K/yr
The team directs the strategy and development for our security portfolio, including Chronicle, Mandiant, and native cloud services. Our mission is to transform extensive security expertise and threat ...
Lead AI/ML Scientist
Palo Alto, CA · Remote
... Mandiant), and many others. About the role: We are looking for an exceptional technical leader to join our growing team at Nightfall. As a Lead Applied Scientist joining the AI Engineering ...
Quick apply
Lead AI/ML Scientist
Palo Alto, CA · Remote
... Mandiant), and many others. About the role: We are looking for an exceptional technical leader to join our growing team at Nightfall. As a Lead Applied Scientist joining the AI Engineering ...
Software Engineer, Agent Engineering
New York, NY · On-site +1
$150K - $273K/yr
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. Why This Role Exists Security ...
Software Engineer, Agent Engineering
New York, NY · On-site +1
$150K - $273K/yr
As an early team, you'll work alongside veterans from Abnormal Security, Expel, Mandiant, and McAfee, and help shape what we build as we scale customer outcomes. Why This Role Exists Security ...
Cyber Threat Hunter
Washington, DC · On-site
Mandiant Threat intel feeds * Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: * One of the following certifications: * GIAC ...
Quick apply
Cyber Threat Hunter
Washington, DC · On-site
Mandiant Threat intel feeds * Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: * One of the following certifications: * GIAC ...
Cyber Threat Hunter
Washington, DC · On-site
Mandiant Threat intel feeds * Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: * One of the following certifications: * GIAC ...
Cyber Threat Hunter
Washington, DC · On-site
Mandiant Threat intel feeds * Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: * One of the following certifications: * GIAC ...
Cyber Threat Hunter Senior with Security Clearance
$112.80K - $145.60K/yr
SPUR.us enrichment of addresses Mandiant Threat intel feeds Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: One of the ...
Cyber Threat Hunter Senior with Security Clearance
$112.80K - $145.60K/yr
SPUR.us enrichment of addresses Mandiant Threat intel feeds Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC Desired Qualifications include: One of the ...
Direct experience selling or partnering within the Google Cloud Security ecosystem (Chronicle, Mandiant, SCC). * Service Knowledge: Experience selling managed security services (MDR, MSSP) or GRC ...
Quick apply
Direct experience selling or partnering within the Google Cloud Security ecosystem (Chronicle, Mandiant, SCC). * Service Knowledge: Experience selling managed security services (MDR, MSSP) or GRC ...
Mandiant information
See salary details
$28.70 is the 25th percentile. Wages below this are outliers.
$23.56 - $35.23
57% of jobs
$35.23 - $46.90
14% of jobs
$46.90 - $58.57
0% of jobs
$58.57 - $70.24
0% of jobs
$70.24 - $81.91
0% of jobs
$81.91 - $93.58
0% of jobs
$93.58 - $105.24
0% of jobs
$105.24 - $116.91
0% of jobs
$124.21 is the 75th percentile. Wages above this are outliers.
$116.91 - $128.58
6% of jobs
$128.58 - $140.25
8% of jobs
$140.25 - $151.92
14% of jobs
$23
$69
$151
How much do mandiant jobs pay per hour?
What is a Mandiant job?
What are the key skills and qualifications needed to thrive in the Mandiant position, and why are they important?
What are the typical day-to-day activities for someone working in a cybersecurity role at Mandiant?
- What are the key skills and qualifications needed to thrive in the Mandiant position and why are they important?
- What are the typical day to day activities for someone working in a cybersecurity role at Mandiant?
- What is a Mandiant job?
- The 6 Best Types of Mandiant in 2026
- The 10 Top Types Of Mandiant Jobs

Job description
The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front line response for cyber incidents and proactively hunting for malicious cyber activity. MicroSys performs HIRT investigations to develop a preliminary diagnosis of the severity of breaches. MicroSys provides HIRT remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis capabilities. JOB DESCRIPTION:
Cyber Incident Manager (IMG)
Responsibilities:
• Researching and compiling known resolution steps or workarounds to enable mitigation of potential Computer Network Defense incidents within the enterprise
• Applying knowledge of the tactics, techniques, and procedures of various criminal, insider, hacktivist, and nation state threat actors to identify and validate threats
• Applying cybersecurity concepts to the detection and defense of intrusions into small, and large-scale IT networks, and conduct cursory analysis of log data
• Conducting cursory analysis of log data
• Monitoring external data sources (e.g., Computer Network Defense vendor sites, Computer Emergency Response Teams [CERTs], SANS, Security Focus) to maintain currency of Computer Network Defense threat condition and determine which security issues may have an impact on the enterprise
• Identifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident
• Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
• Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution
• Working with other components within the organization to obtain and coordinate information pertaining to ongoing incidents.
• Providing support during assigned shifts (2:00 PM - 10:30 PM ET or 10:00 PM - 6:30 AM ET and 12 hour weekend shifts) Required Skills:
• U.S. Citizenship
• Must have an active TS/SCI clearance
• Must be able to obtain DHS Suitability
• Must have 5 years of professional experience
• 2+ years of directly relevant experience in cyber incident management or cybersecurity operations
• Knowledge of incident response and handling methodologies
• Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incident
• Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
• Basic understanding of host & network forensics; understanding log review(s); differentiate between malign & malicious activities; experience with firewalls; incident response; windows event managers; firewalls; windows event IDs; MITRE ATT&CK processes; understanding of legal requirements; attack vectors; tactics, techniques, and protocols (TTPs), etc.
• Skill in recognizing and categorizing types of vulnerabilities and associated attacks
• Knowledge of basic system administration and operating system hardening techniques
• Knowledge of Computer Network Defense policies, procedures, and regulations
• Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
• Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)
• Must be able to work collaboratively across physical locations Desired Skills:
• Knowledge of basic system administration and operating system hardening techniques
• Knowledge of Computer Network Defense policies, procedures, and regulations
• Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
• Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code) Operational Tools:
• Splunk use is a must, splunk certs are great, operational use is key. • Intermediary proficiency & understanding of the following applications: FTK, Encase, Axiom, Xways, Mandiant HX, FireEye, SOF-ELK, Moloch, Wireshark, Network Miner, NetWitness, CyberChef, Corelightm, Security Onion, ArcSight, Zeek/Bro, Gigamon or other packet brokers, ELKStack, SourceFire, Tanium, Palo Alto, TCPDump, Tshark, Nagios, Suricata, Corelight, various firewalls (F/Ws) & router set-up/admin, Domain Tools (IRIS), AWS Cloud, Azure, Google Cloud Required Education:
• BS Computer Science, Operations Management, Cybersecurity or related degree. Two years of related work experience may be substituted for each year of degree level education. Desired Certifications:
GCIH, GCFA GISP, GCED, CCFP or CISSP OPPORTUNITY
Join an ELITE Cyber Team protecting our nation’s critical infrastructure! This is a tremendous opportunity for experienced Cyber Security Engineers to further their hands on technical skills in full life cycle security engineering in a highly technical environment using excellent state of the art technologies. This program is of significant size, scope, and complexity that will allow the selected individual to expand and grow their career.
About MicroSys
Sourced by ZipRecruiter
Industry
It services
Company size
11 - 50 Employees
Headquarters location
Gainesville, VA, US
Year founded
2002