Haystack
← Back to Jobs
Full time
Other
LE

Incident Responder

LeidosSuitland, Maryland🇺🇸United StatesPosted 15 Sept 2026

Why This Role Stands Out

This hybrid Incident Responder role at Leidos offers a fantastic opportunity to grow your cybersecurity expertise by protecting critical government and commercial systems, with ample room for skill development and contributions to a mission-driven team. You'll thrive here if you're adept at analyzing alerts, containing threats, and collaborating across diverse technical environments to enhance security defenses. Apply now to join a culture of innovation and continuous learning!

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Suitland, Maryland, United States
ShellSplunkContinuous ImprovementPythonTriage

Job Description

Leidos is seeking an Incident Responder to protect mission-critical systems for government and commercial clients. You will monitor security tools, analyze alerts, contain threats, and lead response activities across complex IT and cloud environments. Responsibilities include triage, forensic analysis, root-cause investigation, documentation, and lessons-learned reviews. You'll collaborate with SOC, engineering, and business teams to improve incident processes and harden defenses, while contributing to a culture of integrity, innovation, and continuous learning in a highly collaborative, mission-driven environment.

Responsibilities

  • Monitor and analyze security alerts across networks, endpoints, and cloud environments.
  • Triage, investigate, and contain cyber incidents to minimize business and mission impact.
  • Perform basic forensics and root-cause analysis to understand attack vectors and scope.
  • Document incidents, actions taken, and lessons learned in clear, detailed reports.
  • Coordinate with SOC analysts, engineers, and stakeholders during incident handling.
  • Develop and refine incident response playbooks, runbooks, and standard procedures.
  • Contribute to threat hunting and continuous improvement of detection capabilities.
  • Support security awareness and readiness activities across technical teams.

Required Skills

  • Incident response
  • Security monitoring
  • SIEM tools (e.g., Splunk, QRadar)
  • Network security analysis
  • Endpoint detection and response (EDR)
  • Digital forensics
  • Malware analysis basics
  • Threat intelligence
  • Scripting/automation (Python, Power
  • Shell)
  • Security documentation and reporting

Similar jobs