Jobs and Careers
GU

Cybersecurity Subject Matter Expert (Incident Response)

Guidehouse
GH Office: Tysons Corner, VA (Headquarters), United States, United Statesfull_timeVerifiedPosted 10 Feb 2025
💰 $216,000/yr($130,000/yr$216,000/yr)

About the role

Job Family:

Cyber Consulting


Travel Required:

Up to 10%


Clearance Required:

Active Top Secret (TS)

This posting is not for immediate hire. Seeking prospective candidate to be considered under Proposal to be award in late Q1 2025 or early Q2 2025.

What You Will Do:

We are seeking a highly skilled and experienced Cybersecurity Subject Matter Expert (SME) to join our dynamic team. The ideal candidate will have a strong background in incident response. This role requires a proactive individual who can lead and participate in incident response activities, develop response plans, and enhance our security posture through effective incident management.

Key Responsibilities include but not limited to:

Incident Response:

  • Lead and participate in incident response activities, including detection, analysis, containment, eradication, and recovery.
  • Develop and maintain incident response plans, playbooks, and procedures.
  • Conduct post-incident reviews to identify lessons learned and implement improvements.

Security Monitoring and Detection:

  • Monitor security alerts and events to identify potential security incidents.
  • Analyze security data from various sources to detect and respond to threats.
  • Collaborate with other teams to improve detection and response capabilities.

Threat Intelligence:

  • Gather and analyze threat intelligence to stay informed about the latest threats and attack techniques.
  • Use threat intelligence to enhance incident response strategies and improve overall security posture.

Training and Awareness:

  • Conduct training sessions and awareness programs to educate employees about incident response procedures and best practices.
  • Develop and deliver tabletop exercises and simulations to test and improve incident response capabilities.

Security Assessments and Audits:

  • Perform regular security assessments and audits to ensure compliance with industry standards and best practices.
  • Identify and prioritize security risks, and work with relevant teams to implement corrective actions.
  • Stay up-to-date with the latest cybersecurity threats, trends, and technologies.


What You Will Need:

  • An ACTIVE and MAINTAINED TOP SECRET DoD security clearance.
  • Bachelor's degree from an accredited university or college in Computer Science, Information Security, Cybersecurity or a related field AND FIVE (5+) plus years of experience in cybersecurity, with a focus on incident response; Or Master's degree an accredited university or college in Computer Science, Information Security, Cybersecurity or a related field AND THREE (3+) plus years of experience in cybersecurity, with a focus on incident response.
  • Relevant certifications such as GCIH, GCFA, CISSP, or similar.
  • Strong knowledge of cybersecurity frameworks, standards, and best practices (e.g., NIST, ISO 27001).
  • Proficiency with incident response tools (e.g., SIEM, EDR, forensic tools).
  • Excellent problem-solving skills and the ability to think like an attacker.
  • Strong communication and presentation skills, with the ability to convey complex technical concepts to non-technical stakeholders.
  • Ability to work independently and as part of a team in a fast-paced environment.
  • Ability to travel as required.
  • Currently reside in the contiguous United States.
  • This is a Hybrid role that requires the ability to work onsite in a core Guidehouse Office or Client Office location.

What Would Be Nice To Have:

  • An ACTIVE and MAINTAINED Department of Energy (DOE) Q-Sensitive security clearance.
  • Preference will be given to candidates within 60 miles of a core Guidehouse office or Client Office location.
  • Experience with threat hunting and threat intelligence.
  • Knowledge of scripting languages (e.g., Python, PowerShell) for automation and tool development.
  • Familiarity with cloud security (e.g., AWS, Azure) and container security (e.g., Docker, Kubernetes).

This posting is not for immediate hire. Seeking prospective candidate to be considered under Proposal to be award in late Q1 2025 or early Q2 2025.

#LI-RE1

The annual salary range for this position is $130,000.00-$216,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.


What We Offer

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Guidehouse

View company profile →