Incident Response Analyst Senior
accenturefederalservices · Leesburg, VA ·
- Seniority
- Senior
- Category
- Security
- Experience
- 5+ years
- Visa sponsorship
- No
- Company size
- 1000+
- Salary
- USD 94,000 – 178,700 / year
A Senior Incident Response Analyst on a federal agency's Cyber Incident Response Team: manages complex security incidents end-to-end, performs root-cause analysis using file system, memory, and network artifacts, mentors junior analysts, and acts as incident commander when needed. Requires US citizenship, 10 years' experience, and DFIR expertise.
Who you'll be:
We are seeking a Senior Incident Response Analyst to provide advanced investigative leadership on a federal agency's Cyber Incident Response Team. In this role, you will manage the most complex incidents end-to-end, using the agency's toolset to identify root causes and deliver defensible documentation for security investigators. You will also be a go-to technical resource for the rest of the CIRT team, frequently stepping in on the toughest cases and helping shape how the team responds to novel or fast-evolving threats.
What you'll do:
- Respond to and manage complex information system security incidents using the government-furnished toolset.
- Identify and determine root causes of incidents and provide required documentation and evidence to security investigators.
- Direct advanced analysis of file system artifacts, memory, and network logs during high-priority incidents.
- Mentor junior and mid-level analysts on incident response methodology.
- Collaborate with government analysts to develop post-incident recommendations for improving the agency's security posture.
- Serve as acting incident commander for significant events in the CIRT Lead's absence.
- Lead after-action reviews for complex incidents, capturing lessons learned and driving playbook updates.
- Provide technical quality review of junior and mid-level analysts' case documentation prior to closure.
What you need:
- US Citizenship
- 10 years of experience; BS degree; MS degree preferred.
- 5 years of professional experience responding to information system security incidents.
- Ability to use the government-furnished toolset to identify and determine root causes of incidents and provide required documentation and possible evidence to security investigators.
Nice to have:
- Prior experience acting as incident commander or deputy incident commander for major events.
- Advanced memory forensics or malware triage skills.
- Experience developing or refining incident response playbooks.
Required Certifications:
- 50-100% (per tier) of analysts across the CIRT team must hold at least one tier-appropriate certification.
As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Connecticut, Hawaii, Illinois, Maine, Maryland, Massachusetts, Minnesota, New Jersey, New York, Ohio, Vermont, Virginia, Washington, and the District of Columbia. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set, and level of experience. Accenture Federal Services offers a wide variety of benefits. You can find more information on benefits here. We accept applications on an on-going basis and there is no fixed deadline to apply.