Cyber Analyst (Tier 2) / Incident Commander

mid
OtherIncident Commander
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Supports/develops reports during and after incidents, which include all actions taken to properly mitigate, recover and return operations to normal operations.

Technical Tools
OtherIncident Commander

Valiant Solutions is seeking a Cyber Analyst (Tier 2) / Incident Commander to join our rapidly growing and innovative cybersecurity team!

 

As a Cyber Analyst (Tier 2) / Incident Commander, you and your team will man a 24x7x365 cybersecurity operations and coordination center. You will manage escalated alerts, notifications, and communications while executing core incident response activities, including tracking the lifecycle of events, managing stakeholder communication, and driving remediation and recovery actions. Additionally, you will ensure all reports are accurately documented in the incident tracking system and coordinate directly with reporting entities to gain a full understanding of each event while strictly following established SOPs for the escalation and notification of Federal Leadership.

 

The ideal candidate must possess deep knowledge of cybersecurity incidents, anomaly analysis, log analysis, digital forensics, and common threat vectors to effectively determine the required actions to resolve an incident. You must demonstrate a strong understanding of Splunk SIEM, Microsoft Defender EDR, XSOAR, and support forensic tools to effectively analyze data and guide response activities. This role requires a blend of technical expertise and compliance-minded discipline to maintain operational readiness and meet stringent federal reporting procedures.

 

Named one of the Best Places to Work in the Washington DC area for 12 consecutive years, Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more about Valiant and this opportunity, we invite you to apply now!

 

Must be able to obtain and maintain a Public Trust.

 

This position allows for 100% remote work. Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below. 

 

  •       MUST HAVE one of the following ACTIVE certifications: CISSP, GCIH, Security X, CSAE, or CSIE.
  •       7+ years of relevant work experience or a Bachelor’s Degree with 2+ years of relevant experience
  •       US Citizenship and must be able to pass a background investigation (Public Trust – High Risk)
  •       Excellent organizational, verbal, presentation/facilitation, and written communication skills. Comfortable presenting briefings to the client.
  •       Demonstrate proficiency in the Incident Response Process and SOC operations, and a good understanding of threat hunting
  •       Good understanding of system log information and where to collect specific data/attributes as required for the Incident Event
  •       Operational understanding of enterprise networking and security tools (firewalls, Antivirus, HIDS, IDS/IPS, proxy, WAF), Windows and Unix/Linux systems’ operations
  •       Experience performing log analysis and reporting
  •       Experience creating and tracking investigations to resolution
  •       Experience with Endpoint security solutions, including but not limited to: Windows Defender, Antivirus Solutions, and EDR Tools
  •       Understanding of compliance or regulatory frameworks (i.e., FISMA, NIST, ISO)
  •       Solid understanding of application, authentication, network security principles, and operating system hardening techniques
  •       General knowledge of cyber-attack frameworks (MITRE ATT&CK and Lockheed Cyber Kill Chain)
  •       Understanding of Computer Network Defense (CND) policies, procedures, and regulations
  •       SIEM monitoring and analysis, analyzing network traffic, log analysis, prioritizing and differentiating between potential intrusion attempts and false alarms
  •       Ability to work with or support senior leaders to understand risk factors and communicate effective mitigation strategies
  •       Ability to work independently to address and resolve a security incident with minimal supervision.

Responsibilities

~2 min read
  • →       Supports/develops reports during and after incidents, which include all actions taken to properly mitigate, recover and return operations to normal operations.
  • →       Lead and actively participate in security-related meetings and discussions with the client.
  • →       Perform incident response analysis based on investigation requirements.
  • →       Participate in the remediation of incidents and responses that are generated from live threats against the enterprise.
  • →       Record and report all incidents per Federal and department policy.
  • →       Create and track network incidents and investigations through closure.
  • →       Serve as key personnel for Incident Management; provide coordination, task assignment, and process guidance for incident response events.
  • →       Monitor and investigate security events received through the SIEM or other security tools.
  • →       Carry out Level 2 triage of incoming Incidents (initial IR assessment of the priority of the event, initial determination of incident nature to determine risk and damage, or appropriate routing of security or privacy data request).
  • →       Work directly with the Tier 3 Incident Commander and manage assigned investigations to ensure they are being actively worked on and assist Tier 1 and Tier 2 analysts as needed to resolve investigations.
  • →       Review, revise, and recommend technical, process, and physical controls.
  • →       Develop and implement defensive cyber best practice tactics, techniques, and procedures.

 

Remote work necessitates a high level of trust in our employees. To ensure that employee performance does not suffer in a remote work environment, all employees who telecommute are expected to have a quiet and distraction-free workspace with adequate internet, dedicate their full attention and availability to their job duties during working hours, and maintain a schedule during core business hours that align with those of their coworkers and Valiant's clients. In alignment with Valiant's inclusive and engaging environment, cameras are encouraged and can be required to be on during virtual video conferences. Additionally, in alignment with the Office of the Inspector General’s effort to eliminate conflicting employment, all Valiant employees are required to disclose any current or future outside employment engagements. During onboarding and throughout employment, employees must disclose any current activities or intent to engage in outside employment or other professional activities and obtain written approval.  Employees may not solicit or conduct any outside business during core business hours for Valiant Solutions and our clients.

 

Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. Named one of the fastest growing privately held companies by Inc. 5000, Washington Technology’s Fast 50, and Washington Business Journal’s Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you’ll learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect – and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, then we invite you to apply online today.

 

Valiant Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, marital status, or veteran status, in accordance with applicable law.

 

Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchanging of accurate information via electronic communication, phones, and in person. Occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job.

 

By submitting your resume for this position, you authorize Valiant Solutions to share your resume, as well as, personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should Valiant Solutions or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.

Location & Eligibility

Where is the job
—
Location terms not specified

Listing Details

Posted
October 9, 2024
First seen
October 9, 2026
Last seen
October 9, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
17%
Scored at
October 9, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust

4 other jobs at

View all →

Explore open roles at .

Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Cyber Analyst (Tier 2) / Incident Commander