Job Closed

This listing is no longer active.

General Dynamics logo
General Dynamics

A business unit of General Dynamics, General Dynamics Information Technology (GDIT) supports some of the United States' most complex government, defense, and in

Cybersecurity Incident Response Team Coordinator

Location

United States

Posted

87 days ago

Salary

$164.4K - $201.3K / year

Seniority

Senior

Bachelor Degree5 yrs expEnglishOracle Database

Job Description

Cybersecurity Incident Response Team Coordinator

General Dynamics

• Act as the primary coordinator for cybersecurity incidents across all product and engineering teams • Lead real-time incident bridges and war rooms during active security events • Drive structured execution of the incident response lifecycle (detection, analysis, containment, eradication, recovery, post-incident review) • Maintain accurate incident documentation, timelines, and impact assessments • Serve as the security liaison between product teams, engineering, infrastructure, legal, compliance, and executive leadership • Coordinate directly with cloud and enterprise technology providers, including Oracle environments where applicable • Align response efforts across multiple products to ensure consistency and minimize business impact • Participate in a 24/7 on-call rotation for high-severity cybersecurity incidents • Provide real-time status updates to leadership and stakeholders • Escalate incidents appropriately based on severity and business impact • Ensure SLA adherence and timely stakeholder notifications • Conduct post-incident reviews (PIRs) and drive root cause analysis efforts • Identify process gaps and recommend improvements to incident response playbooks • Develop and maintain runbooks for cloud-related and cross-product incidents • Partner with Security Operations to improve detection, response readiness, and automation • Support regulatory and customer reporting requirements related to security incidents • Ensure incident handling aligns with company security policies, industry standards, and audit requirements • Contribute to audit readiness and documentation efforts

Job Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience)
  • 5+ years of experience in cybersecurity, incident response, or security operations
  • 2+ years coordinating major security incidents in complex enterprise environments
  • Must have experience working with Indian Health Service (IHS)
  • Strong understanding of the incident response lifecycle and best practices
  • Knowledge of cloud security concepts, including Oracle cloud environments
  • Experience with threat detection, containment, and mitigation practices
  • Experience working across multiple product or engineering teams in large-scale environments
  • Experience participating in 24/7 on-call rotations
  • Ability to travel up to 25%

Benefits

  • Health insurance
  • 401(k) plan
  • Paid time off including vacation, sick time, and holidays
  • Paid parental leave
  • Military leave
  • Bereavement leave
  • Jury duty leave
  • Flex work weeks where possible

Related Categories

Related Job Pages

More Security Operations Jobs

Zscaler logo

Cyber Incident Response/Customer Security Operations - SkillBridge Intern

Zscaler

Zscaler helps leading organizations in 180+ countries securely transform their networks and applications for a mobile and cloud-first world. Founded in 2008, the company operates o

OtherRemoteTeam 8,697Since 2007

About Zscaler Zscaler is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across more than 160 data centers globally, the Zscaler Zero Trust Exchange platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity. Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability. We champion an “AI Forward, People First” philosophy to help us accelerate and innovate, empowering our people to embrace their potential. If you’re driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler to help shape the future of cybersecurity. Role We are looking for a Detection Engineering - SkillBridge Intern to join our Red Canary Customer Service Operations team. This is a remote role reporting to the Manager, Detection Engineering. The security landscape is always shifting and introducing new adversaries. Red Canary operates 24/7 to track down threats using the entirety of our customer’s data and deliver fast and practical detections to our customers. Together, we create a customer-centric culture that fosters success, adoption, and continuous growth. What you’ll do (Role Expectations) - Use Red Canary’s detection platform to analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud/SaaS. - Publish threats for customers using concisely-written communication while effectively conveying key and important indicators. - Research coverage opportunities to create new detectors and tune existing ones through detector development. - Improve the Detection Engineering workflow through orchestration and automation. Who You Are (Success Profile) - You thrive in ambiguity and are comfortable building the path as you walk it. - You act like an owner with a passion for the mission that fuels your bias for action and integrity. - You are a problem-solver who is energized by finding solutions to the hardest challenges to deliver the biggest impact. - You are customer-obsessed, building deep empathy for the customer to anchor your decisions in solving real-world problems. - You operate with urgency, maintaining a relentless focus on execution and delivering high-impact results quickly. What We’re Looking for (Minimum Qualifications) - Cybersecurity operational experience with a focus in Detection and Response. - Must be located in the United States during the SkillBridge program. - Must be a current Active Duty United States military member or a member of the United States Guard/Reserve component on active duty orders for at least the last 180 days with 180 days or fewer remaining prior to your date of discharge. - Approval from your unit commander. - MOU must be approved and submitted before start. What Will Make You Stand Out (Preferred Qualifications) - Experience with EDR tools. - Experience conducting Incident Response activities. - Malware/Threat Analysis and Detection Engineering experience. #LI-TJ1 #LI-remote At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: - Various health plans - Time off plans for vacation and sick time - Parental leave options - Retirement options - Education reimbursement - In-office perks, and more! Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here. By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines. Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link. Pay Transparency Zscaler complies with all applicable federal, state, and local pay transparency rules. Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Maryland
Job Closed

Cybersecurity Operations Intern

American Systems

Headquartered in Chantilly, Virginia, American Systems is a government contractor that provides professional, technical, and Information Technology services. Established in 1975, A

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are looking for an entry-level Cybersecurity Operations summer intern to perform the day-to-day operations of the security solutions and use these solutions to identify, investigate and resolve security incidents on the network. This is a great opportunity for someone who likes to dig in and understand the intricacies of cyber defense, has a technical hands-on mindset, and exhibits good work ethic and a positive attitude to learning the ins and outs of information security operations for an enterprise environment. - Maintain in-place security tools and processes - Evaluate, test and implement new security tools & technologies - Respond to computer security incidents - Research system and network logs and alerts as they relate to incidents - Identify gaps in cyber operations capabilities and assist in developing those capabilities - Develop technical summary information for presentation to management - Work collaboratively with a small team - Communicate in writing or orally to supervisors and management on task planning, status, and results Qualifications - High School diploma and 2 years of college or related work experience - Some exposure to IT tools Benefits AMERICAN SYSTEMS provides for the welfare of its employees and their dependents through a comprehensive benefits program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and education and training assistance. Company Description

United States
Job Closed
Binary Defense logo

Cybersecurity Incident Response Analyst

Binary Defense

Real people detecting real threats in real time.

OtherRemoteTeam 51-200Since 2014H1B No Sponsor

• Serve as an Incident Response (IR) Analyst supporting the Analysis on Demand (AoD) team. • Drive client meetings to discuss incident scope, investigative findings, and response updates while producing clear and detailed technical reports. • Conduct incident triage and verification, determine scope of compromise, perform threat hunting, and provide containment and remediation recommendations to customers. • Serve as a primary responder and point of contact during incident response engagements, supporting forensic investigation, analysis, and resolution of security incidents. • Work directly with clients to perform investigations, forensically analyze systems, and identify attacker activity across enterprise environments. • Analyze compromised systems to determine attack vectors, persistence mechanisms, lateral movement, and attacker techniques. • Identify attacker tools, tactics, and procedures (TTPs) and understand evolving threat actor behaviors. • Follow industry incident response best practices for containment, eradication, and recovery. • This position focuses on hands-on investigation and incident response, not alert monitoring or tier-1 SOC duties. • Must be familiar with incident response best practices and procedures. • Must have Windows-based incident response and computer forensics experience. • Must be familiar with network analysis, memory analysis, and digital forensics investigations. • Must possess excellent verbal and written communication skills, including the ability to present findings and recommendations to technical teams and leadership.

Texas
Job Closed
Crisis24 logo

GSOC Analyst

Crisis24

Crisis24 is a global, AI-enhanced provider of travel risk management, mass communications, critical event management, crisis-security consulting, personal protection solutions and global medical concierge capabilities. We operate at the intersection of precision, discretion, and elite readiness. Delivering world-class security solutions to high-profile clients, executives, and organizations across the globe. Our Threat Assessment and Management Division provides consultation and training. We deliver our services with discretion and care, allowing our clients to make informed decisions with confidence.

OtherRemoteTeam 1,001-5,000

About Crisis24 Crisis24 is a global, AI-enhanced provider of travel risk management, mass communications, critical event management, crisis-security consulting, personal protection solutions and global medical concierge capabilities, allowing prominent organizations, disruptive brands and influential people to operate with confidence in an uncertain world. At Crisis24, we go beyond mere employment; we pave the way to a realm where your skills become instrumental in shaping global security, guiding clients through a multifaceted and challenging landscape. Your journey with us will be deeply fulfilling, driven by a powerful sense of purpose and accomplishment. Within our thriving environment, you'll discover abundant chances for both personal and career advancement. Seize this moment to push your limits, broaden your expertise, and elevate your professional journey to unprecedented levels. Join the Crisis24 team today and be a part of something extraordinary where growth and impact converge. More information is available at www.crisis24.garda.com This position is remote. This is not a Cybersecurity position Summary The GSOC Analyst must be detail-oriented, have a strong aptitude in communication and analytical thinking when responding to events, as well as having a team first mentality. Daily responsibilities will focus on the monitoring of global events, camera and alarm monitoring, internal and external communications, and responding to alerts from a variety of security systems and tools. Analysts must be able to effectively comprehend data and compose clear and effective communications that will have a global audience. Essential Functions - Provide emergency and non-emergency security system monitoring, security dispatch, and emergency notification services. - Write security incident investigation reports to provide situational awareness and communicate risks to management. - Collect, evaluate, and disseminate intelligence to support action plans based on credibility and likelihood. - Assist in planning and execution of risk assessment and situational reports. - Contribute to procedures and processes to standardize and enhance risk management. - Work closely with various onsite, offsite, internal, and external security teams. - Process and maintain a wide variety of files, logs, reports, and forms. - Prepare written reports of incidents in the proper format, grammar, and spelling. - Analyze information using multiple external sources to identify and prevent potential threats or risks affecting company assets. - This Job Description is not a comprehensive list of all required activities, duties, or responsibilities. Duties, responsibilities, and activities may change at the discretion of the leadership at any time with or without notice. - Required And Preferred Experience And Qualifications - 3 + years of experience in intelligence analysis, threat assessment, incident response and management, or a GSOC environment required. - Bachelor’s degree in a related field is strongly preferred. Either bachelor's degree or equivalent military or work experience is acceptable. - Must have experience writing intelligence products such as situation reports and risk assessments. - Strong writing and analytical skills; experience monitoring open sources to proactively identify physical security threats that could impact the organization’s employees, assets or reputation. - Have an interest or direct experience in the following: Executive Protection, Intelligence, Operations, Critical Incident Management or Corporate Security. - Must be well-versed in current technologies and open-source search methodologies. - Experience working on a remote based team. - Must be willing to sign an NDA and maintain strict confidentiality. - Must be able to communicate effectively, both verbally and in writing. - Must be a competent user of Microsoft Suite and Google Suite. - Ability to maintain a professional demeanor during stressful situations. - Must be able to quickly adapt and excel in dynamic situations. - Demonstrated organizational and time management skills. - Maintain composure in dealing with authorities, executives, clients, staff, and the public occasionally under conditions of urgency and in pressure situations. - Ability to work 8 to 12-hour shifts both days and nights. Information Security Protect the data and systems of Crisis24 and its stakeholders by adhering to policies, reporting incidents and potential problems, completing regular training, and identifying opportunities for improvement. Crisis24, A GardaWorld Company is dedicated to equal opportunity in employment. We are committed to a work environment that celebrates diversity. We do not discriminate against any individual based on race, color, sex, national origin, age, religion, marital or parental status, sexual orientation, gender identity, gender expression, military or veteran status, disability, or any factors protected by applicable laws.

United States