This site uses cookies. To find out more, see our Cookies Policy

Cyber Incident Handler in McLean, VA at Booz Allen Hamilton Inc.

Date Posted: 3/13/2019

Job Snapshot

Job Description

Job Number: R0048145

Cyber Incident Handler

Key Role:

Interface with the users of Booz Allen to assist them with their reports of suspicious or malicious activity, including serving as a first line of the firm’s Cyber defense and maintain responsibility for identifying and responding to security threats. Display excellent customer service skills while performing daily duties, including communicating and corresponding with users of all levels within the firm. Operate in a 12/5 operations center environment responsible for incident confirmation, response, data collection, investigation, and analysis. Leverage knowledge of computer and network architecture to provide analysis during investigations identifying adversarial activity and methods for future detection and prevention. Use a combination of open source research, network and host forensic analysis, log review and correlation, and pcap analysis to complete investigations. Compose and present reports on findings to leadership for intrusion incidents. Manage incident life cycle ensuring that all investigations are kept current and are completed.

Basic Qualifications:

-Experience with system administration, network engineering, and security engineering

-Experience with performing host or network incident response, malware analysis, or forensics

-Knowledge of host and network log sources to apply to investigations, IR methodology in investigations, and the groups behind targeted attacks and their tactics, techniques, and procedures (TTPs)

-Ability to lead and serve a team to complete the mission and work under pressure to rapidly scope and investigate incidents

-Ability to obtain a security clearance

-BA or BS degree in Engineering, CS, Information Security, or Information Systems

Additional Qualifications:

-Experience with network forensics and intrusion analysis

-Ability to perform independent research and report on findings

-Ability to pay close attention to detail

-Ability to learn and adapt quickly

-Ability to communicate effectively under normal and stressful situations

-Ability to think critically, logically, and be solutions-oriented

-Possession of excellent oral and written communication skills

-Possession of excellent critical-thinking and analytical skills

-Secret clearance

-Information Security Certifications, including CISSP, Security+, and SANS


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

We’re an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.


Your Career is Waiting.

Get job alerts. Learn about new work and upcoming events. Share open roles with friends and colleagues.
Our Talent Network is your opportunity hub.

Get Answers and Access.

Need more information? Find it in our FAQs.

Application already in-process? Log in to keep going.