Incident Response Expert - IV -IRE04

Solutions Technology, Inc / STI Health & Wellness
Arlington, VA

About the Mission
110

STI provides critical, advanced technical support to the DHS Hunt and Incident Response Team (HIRT). We act as the front-line defense for Government agencies and critical infrastructure owners, executing rapid, on/offsite incident response and proactive hunting to evict adversaries. We secure the nation's infrastructure using sophisticated host- and network-based analysis to identify compromises, characterize breach severity, and develop targeted mitigation plans.

Position Summary

As a Cyber Eviction Analyst (SME) , you will serve as a technical expert on high-level incident response teams, tackling exceptionally complex cyber security challenges. You will apply in-depth knowledge of threat actor (TA) tools, techniques, and procedures (TTPs) to proactively hunt, contain, and eradicate malicious activity. This role requires an investigative mindset, significant autonomy in determining technical objectives, and the ability to turn complex forensic findings into actionable, high-impact intelligence for stakeholders.

Key Responsibilities
  • Proactive Hunting & Response: Act as a Hunt/IR SME, conducting proactive threat hunting and rapid incident response to detect and evict adversaries from network environments.
  • Technical Analysis: Analyze host- and network-based data, forensic artifacts, and malware to characterize breach severity and determine root causes.
  • Evidence-Based Reporting: Distill complex analytical findings into executive summaries and detailed technical reports for high-level stakeholders.
  • Containment & Eradication: Support internal stakeholders and customers on containment, mitigation, and eradication missions.
  • Strategic Advising: Advise technical personnel on countermeasure implementation, security tool customization, and architecture enhancements.
  • Knowledge Management: Document investigation findings in a standardized knowledgebase to improve branch processes and procedures.
  • Technical Leadership: Guide the completion of complex hunt activities with only broad direction, exercising considerable latitude to determine technical approaches.
Required Qualifications
  • Citizenship: U.S. Citizenship (Mandatory).
  • Clearance: Active TS/SCI Clearance (Mandatory).
  • Suitability: Ability to obtain DHS Suitability.
  • Experience: 8+ years of directly relevant experience in cyber incident response, threat hunting, or forensic analysis.
  • Technical Skills: Strong understanding of network architecture, Windows/Linux operating systems, and adversarial TTPs (MITRE ATT&CK Framework).
  • Communication: Exceptional written and oral communication skills for briefing both technical and executive audiences.
  • Travel: Ability to travel domestically on short notice to support on-site incident response.
Desired Qualifications
  • Relevant certifications: GCIH, GCIA, GNFA, or similar.
  • Experience with forensic analysis tools (e.g., EnCase, FTK) and EDR platforms.
  • Experience leading or mentoring technical teams during high-stakes incidents.

Additional Qualifications:

  • Ability to think independently
  • Demonstrates superior written and oral communication skills
  • Must be able to work collaboratively across physical locations
  • Skilled in identifying different classes of attacks and attack stages
  • Understanding of system and application security threats and vulnerabilities
  • Understanding of proactive analysis of systems and networks, to include creating trust levels of critical resources
  • Proficiency with common operating systems (e,g, Linux/Unix, Windows)

Desired Skills:

  • Experience leading and mentoring technical teams
  • Knowledge of Computer Network Defense policies, procedures and regulations
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non nation-state sponsored], and third generation [nation-state sponsored])
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return- oriented attacks, and malicious code)
  • Network and System administration experience
  • Strong understanding of adversarial tactics/techniques/procedures (TTPs)
  • Experience with Identity and Access Management (IAM) tools
  • Ability to review and analyze Enterprise Architecture (EA) from a security perspective
  • Understanding of cyber defense-in-depth principles
  • Hands-on skill in host/network intrusion detection
  • Ability to perform event correlation
  • Experience with malicious activity analysis
  • Ability to collaborate with stakeholders at multiple levels within an organization

Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 10+ years of technical experience in the area of expertise.

Desired Certifications: One or more
  • DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst
  • DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder
  • DoD 8140.01 CEH, CSSP Analyst
  • SANS GIAC GNFA preferred
  • SANS GRID, GICSP, or GCIP a plus

Posted 2026-04-03

Recommended Jobs

LPN Mechanicsville - Immediate Need!

Home Health Services of Virginia
Mechanicsville, VA

Job Description Job Description Date posted: May 12, 2026 Pay: $30.00 - $35.00 per hour Job description: Full-Time Nurse – LPN Location: Mechanicsville, VA 23116 Job Type: Part-ti…

View Details
Posted 2026-05-13

Salesforce.com Engineer (Certified, Development, Admin, Java, Javascript) in Vienna, VA

DBA Web Technologies
Vienna, VA

Salesforce.com Engineer (Certified, Development, Admin, Java, Javascript) in Vienna, VA Agile, CSS, HTML, Java, JavaScript, Mobile Development, Salesforce Administration, Salesforce Configuration, Sa…

View Details
Posted 2026-04-05

Preschool Lead Teacher

Hunter Mill Country Day School
Vienna, VA

Job Description Job Description We are looking for a warm and caring person to join our team as a Lead Teacher. This is a full-time year-round position, Monday - Friday. Direct duties will includ…

View Details
Posted 2026-05-14

Tax Manager- Client Advisory, Businesses, High Net Worth

Caliber Recruiting Group
Richmond, VA

We are partnering with a top rated locally based CPA and advisory services firm (CAAS) looking for a talented Tax Manager to join their growing firm in the lovely city of Richmond, Virginia. This is…

View Details
Posted 2026-01-03

PHOTOGRAPHY

Oakwood Arts
Richmond, VA

PHOTOGRAPHY Main Supervisor: Programs Coordinator Will also serve as support for: Executive Director, Operations Director, Administrative Assistant + Development Manager Qualifications ~Oakwood Ar…

View Details
Posted 2026-01-28

Space Systems Engineer

KBR
Chantilly, Loudoun County, VA

Title: Space Systems Engineer Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the …

View Details
Posted 2026-03-30

Sr. Senior Virtualization/Storage Administrator, TS/SCI, Fort Belvoir, VA

Maania Consultancy Services
Fort Belvoir, VA

Job Role: Sr. Senior Virtualization/Storage Administrator Location: Fort Belvoir, VA Duration: Full time/Onsite Clearance Requirement: Active TS/SCI Requirements: - Candidate must, at a …

View Details
Posted 2026-05-12

Network Engineer III

Ready Support Services
Chantilly, Loudoun County, VA

Job Description Job Description RSS Network Engineer III Start Date: Immediate opening Position: Network Engineer III Requirement Description: **** Ready Support Services (RSS) is s…

View Details
Posted 2026-04-20

Lower Elementary Teacher

Blue Ridge Montessori Inc.
Lynchburg, VA

Job Description Job Description Salary: Based on experience Lower Elementary Teacher (Grades 13) Blue Ridge Montessori School, Lynchburg, VA Position: Lower Elementary Lead Guide Schedul…

View Details
Posted 2026-05-14

Housekeeper (Full-Time)

Williamsburg Landing Inc
Williamsburg, VA

Job Description Job Description Description: Williamsburg Landing, a CARF-accredited Life Plan Community, seeks a Full-Time Housekeeper to join our Housekeeping Team. The ideal candidate must …

View Details
Posted 2026-05-14