Cyber Incident Response & Digital Forensics Lead
ManTechAbout the role
General information
Requisition # R58649 Locations USA-DC-Washington Posting Date 02/26/2025 Security Clearance Required Top Secret Remote Type Onsite Time Type Full timeDescription & Requirements
Transform the future of federal services with ManTech! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we’ve partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity, IT, Data Analytics and more. Ignite your career and drive change. Your journey starts now—innovate and excel with ManTech!ManTech seeks a highly skilled and knowledgeable Cyber Incident Response & Digital Forensics Lead who will lead a team of incident responders and forensic analysts. This position is located on customer site in Washington, D.C.
Responsibilities include but are not limited to:
Assist in analyzing alerts, identifying true positives, and prioritizing incidents and incident response based on severity and impact.
Leading the analysis and identification of mobile threats, including malware, vulnerabilities, and other malicious activities targeting mobile devices and applications. Working with the SOC/watch floor to develop and refine incident response plans and SOPs.
Gathering and analyzing extensive datasets to bridge informational gaps associated with cyber-attacks. This involves identifying perpetrators, understanding their intrusion methods, and meticulously documenting the precise sequence of actions that compromise system integrity.
Gathering evidence, analyzing artifacts, and reconstructing events to understand the scope and impact of incidents, determine how the compromise occurred, and identify root causes.
Conducting forensic analysis on systems and networks to determine the scope and impact of security incidents. Conducting regular joint training exercises and tabletop simulations help strengthen coordination between teams and ensure compliance with security policies.
Analyzing threat intelligence feeds, indicators of compromise (IOCs), and TTPs to identify and conduct incident response
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s