Logo for Empower AI Inc.

Senior Cybersecurity Incident Response Administrator

Role overview

Qualifications

  • Cybersecurity Certification (such as CISSP, ISSEP, Security+, CEH, or equivalent)
  • Bachelor's degree in Computer Science is preferred; equivalent years of cybersecurity/incident response experience will be considered
  • Active DoD Secret Security Clearance
  • 10 or more years' experience with Cybersecurity and Incident Response or related areas

Responsibilities

  • Manage Security Information and Event Management (SIEM) systems, including deployment, installation, infrastructure management, and event monitoring
  • Create SIEM dashboards for visualization of security-related events and near real-time anomaly detection
  • Monitor SIEM dashboards to detect threats and anomalies, investigate events, and escalate as necessary
  • Develop reporting requirements to support audits and security controls

Key facts

  • Remote from: Virginia (USA)
  • Full time
  • Senior (5-10 years)
  • Incident Response Analyst
  • 87 - 135K yearly
  • English

Hard skills

Other skills

  • Analytical Skills
  • Motivational Skills
  • Verbal Communication Skills
  • Teamwork
  • Collaboration

About the company

Empower AI Inc. logo

Empower AI Inc.

Artificial Intelligence & Machine Learning Services

Empower AI (formerly NCI) helps federal agency leaders elevate their workforce productivity. We leverage deep technical expertise and decades of experience solving complex challenges in Civilian and Defense missions to ensure America’s missions are met. Our solutions give government leaders a direct path to meaningful transformation, equipping them with the insights and tools necessary to make critical decisions faster and move their missions forward.

Company details

Company typeLarge
IndustryArtificial Intelligence & Machine Learning Services
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Overview:

Empower AI is AI for government. Empower AI gives federal agency leaders the tools to elevate the potential of their workforce with a direct path for meaningful transformation. Headquartered in Reston, Va., Empower AI leverages three decades of experience solving complex challenges in Health, Defense, and Civilian missions. Our proven Empower AI Platform® provides a practical, sustainable path for clients to achieve transformation that is true to who they are, what they do, how they work, with the resources they have. The result is a government workforce that is exponentially more creative and productive. For more information, visit www.Empower.ai.

Empower AI is proud to be recognized as a 2024 Military Friendly Employer by Viqtory, the publisher of G.I. Jobs. This designation reflects the company’s commitment to hiring and supporting active-duty and veteran employees.

Responsibilities:

The Senior Cybersecurity Incident Response Administrator manages Security Information and Event Management (SIEM) systems, including deployment, installation, infrastructure management, and event monitoring in accordance with Army Business System Log Data Policy and other DoD/Army requirements. This role creates SIEM dashboards for clear, concise visualization of security-related events, enabling near real-time detection of anomalies and investigation of threats.

This is a remote-eligible position. Local candidates in the Roanoke and Radford, Virginia area are encouraged to apply, and work may be performed locally for those who prefer an on-site or hybrid arrangement. The ideal candidate will bring deep cybersecurity incident response and SIEM engineering expertise, strong DoD cybersecurity compliance knowledge, and the ability to support mission-critical Army IT services across enterprise data centers and cloud-hosted environments

Key Responsibilities

  • Deploy, install, manage infrastructure, and monitor events within SIEM systems in accordance with Army Business System Log Data Policy and other DoD/Army requirements.
  • Create SIEM dashboards for visualization of security-related events and near real-time anomaly detection.
  • Monitor SIEM dashboards to detect threats and anomalies, investigate events, and escalate as necessary.
  • Assess and develop reporting requirements to support audits and security controls.
  • Provide Public Key Infrastructure (PKI) support and monitor DoD/Army web application security standards.
  • Review Army Cyber Tasking Orders (CTOs) and coordinate with Army Cyber Security Service Providers.
  • Participate in Software Assurance reviews and evaluate Information Systems Design Plans for compliance with security regulations, policies, and best practices.
Qualifications:

Requirements:

  • Cybersecurity Certification (such as CISSP, ISSEP, Security+, CEH, or equivalent).
  • Bachelor's degree in Computer Science is preferred; equivalent years of cybersecurity and incident response experience will be considered in lieu of a degree.
  • Active DoD Secret Security Clearance.
  • 10 or more years' experience with Cybersecurity and Incident Response or related areas.
  • Extensive experience managing SIEM systems, including ingesting relevant data into the SIEM.
  • Proficiency in creating and managing SIEM dashboards for security event visualization.
  • Strong ability to monitor and investigate security events and anomalies.
  • Experience developing reporting requirements for audits and security controls.
  • Knowledge of Public Key Infrastructure (PKI) and managing SSL/TLS certificates.
  • Familiarity with DoD and Army web application security standards and best practices.
  • Ability to review and respond to Army Cyber Tasking Orders (CTOs).
  • Experience coordinating with Cyber Security Service Providers for audit logs and incident response.
  • Participation in Software Assurance reviews for application audit log validation.
  • Ability to review and evaluate Information Systems Design Plans and related documents for security compliance.

Preferred:

  • Bachelor's degree in Computer Science or equivalent years of experience.
  • Familiarity with Army enterprise monitoring tools and practices.
  • Strong analytical and problem-solving skills.
  • Excellent communication and coordination skills.
  • Experience with incident response activities.
  • Knowledge of engineering change proposals and configuration management.
  • Understanding of Continuity of Operations Plans and Communication Plans.
  • Experience with security regulations and best industry practices.
  • Ability to work effectively in a team environment and collaborate with various stakeholders.

Certifications:

CISSP, ISSEP, Security+, CEH, or equivalent Cybersecurity Certification

About Empower AI:

All hiring and promotion decisions at Empower AI are based on merit to bring the best talent available to contribute to our firm’s overall success. It is the policy of Empower AI not to discriminate against any applicant for employment, or employee because of age, color, sex, disability, national origin, race, religion, or veteran status. Empower AI is a VEVRAA Federal Contractor.

Pay Band Min: USD $87,320.00/Yr. Pay Band Max: USD $135,160.00/Yr.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Incident Response Analyst Related jobs

Other jobs at Empower AI Inc.

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.