Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
Your primary responsibilities will include:
Onsite Fort Meade, MD 5 days a week
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
I
IBM
Senior Cyberspace Planner TS/SCI
Career Insights for Incident Analyst / Responder
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Virginia data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
An Incident Analyst or Responder investigates an IT-related incident: an unplanned interruption to a service, a reduction in the quality of a service, or an event that has not yet impacted the service to the customer. Works to restore a normal service operation as quickly as possible and to minimize the impact on business operations.
$121,633 / year median in Virginia
+7% projected growth
Job Description
- Introduction
- A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide.
- Your role and responsibilities
- As a
Technical Consultant:
Threat Detection Response & Intelligence, you play a vital role in safeguarding an organization's digital infrastructure by identifying, analyzing, and mitigating cyber threats. This position involves leveraging industry frameworks and a range of cybersecurity tools to monitor, prioritize, investigate, and respond to security incidents.Your primary responsibilities will include:
Conduct Events Investigation:
Investigate security incidents using various cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to identify and analyze potential threats. Apply industry frameworks like MITRE ATT&CK and the Cyber Kill Chain to understand and counter adversary tactics effectively.Manage Incident Reports:
Develop and manage incident reports, providing actionable recommendations and responses to strengthen clients' security posture. Collaborate with clients to implement measures that prevent future incidents.Analyze Network and Endpoint Events:
Interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats. Develop a deep understanding of network and endpoint events to inform incident response strategies.- Engage in
Vulnerability Management:
Participate in vulnerability management activities to identify and address potential security vulnerabilities. Stay up-to-date with emerging threats and evolving technologies to anticipate potential threats.Provide Cyber Threat Intelligence:
Gather and analyze cyber threat intelligence to inform incident response strategies and improve clients' overall security posture.Onsite Fort Meade, MD 5 days a week
- Required technical and professional expertise
- Experience with
Cybersecurity Tools:
Proficiency in using various cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to monitor, prioritize, investigate, and respond to security incidents.Industry Frameworks Application:
Experience with industry frameworks like MITRE ATT&CK and the Cyber Kill Chain to understand and counter adversary tactics effectively.Network and Endpoint Analysis:
Ability to interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats.Vulnerability Management:
Experience with vulnerability management activities to identify and address potential security vulnerabilities.Cyber Threat Intelligence:
Knowledge of gathering and analyzing cyber threat intelligence to inform incident response strategies and improve clients' overall security posture.- Prior Government Cyber Operational Planning Experience- Experience working in a high OPTEMO environment within the government with demonstrated expertise planning full spectrum cyber operations and mission effects.
- Preferred technical and professional experience
Deep Understanding of Emerging Threats:
Experience with staying up-to-date with emerging threats and evolving technologies to anticipate potential threats and improve clients' overall security posture.
Advanced Cybersecurity Tool Expertise:
Exposure to a wide range of cybersecurity tools and technologies, enabling the development of innovative solutions to complex security challenges.Continuous Learning and Adaptation:
Experience with continuous learning and adaptation in the field of cybersecurity, allowing for effective response to new threats and technologies.IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.