Talent.com
Incident Manager Level III (Computer Network Defense) Requires US Security clearance
Incident Manager Level III (Computer Network Defense) Requires US Security clearanceArgo Cyber Systems • Washington, DC, US
Incident Manager Level III (Computer Network Defense) Requires US Security clearance

Incident Manager Level III (Computer Network Defense) Requires US Security clearance

Argo Cyber Systems • Washington, DC, US
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Job Description

Job Description
Cyber Incident Manager

Location: Onsite (CONUS) / Shift Work (as assigned)
Clearance: Active TS/SCI (DHS EOD Suitability required)
Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB)


About Argo Cyber Systems

Argo Cyber Systems delivers mission-critical cybersecurity and incident response services to U.S. Government agencies and critical infrastructure sectors. Our teams provide rapid onsite and remote technical support to organizations affected by cyberattacks, conducting advanced investigations, developing mitigation strategies, and restoring operational integrity.

At Argo Cyber, we don't just respond to incidents - we strengthen the nation's resilience against them. Our analysts work side by side with DHS and civilian agency partners to safeguard essential systems and data from persistent and emerging threats.


Position Overview

Argo Cyber Systems is seeking an experienced Cyber Incident Manager to lead and coordinate incident response operations for a high-profile U.S. Government customer. The Incident Manager will oversee the triage, analysis, and resolution of cybersecurity events across federal civilian networks and critical assets. This role requires a mix of technical depth, investigative skill, and the ability to synthesize complex data into actionable recommendations for both technical and executive audiences.


Key Responsibilities
  • Lead and manage incident response and cyber defense operations, ensuring timely containment, eradication, and recovery.

  • Correlate and analyze incident data to identify trends, adversary tactics, and systemic vulnerabilities.

  • Conduct Computer Network Defense (CND) triage, assessing scope, urgency, and operational impact of security events.

  • Develop and recommend Defense-in-Depth strategies, layered defense architectures, and resilience improvements.

  • Research and document resolutions and mitigations to support enterprise recovery and strengthen future defenses.

  • Apply cybersecurity and threat intelligence concepts to detect, analyze, and respond to intrusions in both small and large-scale network environments.

  • Monitor and assess external threat data sources to maintain situational awareness and anticipate potential impacts to the enterprise.

  • Lead the investigation of incident root causes, infection vectors, and attacker methodologies.

  • Receive, analyze, and validate security alerts from enterprise monitoring tools, escalating as appropriate.

  • Track and document all incident response activities from detection through closure, ensuring comprehensive reporting and lessons learned.

  • Support continuous improvement by refining processes, updating playbooks, and mentoring junior analysts.


Required Qualifications
  • U.S. Citizenship (required)

  • Active TS/SCI clearance (required)

  • Ability to obtain DHS Entry on Duty (EOD) Suitability

  • 5+ years of hands-on experience in cyber incident management or SOC/DFIR operations

  • Deep understanding of incident response methodologies, containment strategies, and recovery workflows

  • Working knowledge of NIST SP 800-61 Rev.2 (Computer Security Incident Handling Guide) and FISMA incident reporting standards

  • Strong ability to analyze, prioritize, and document incidents, including phishing, lateral movement, and privilege escalation cases

  • Comprehensive understanding of cyberattack lifecycle stages and adversary tactics, techniques, and procedures (TTPs)

  • Proficiency in identifying vulnerabilities, threat vectors, and exploitation patterns

  • Knowledge of operating system hardening, network defense, and system administration fundamentals

  • Familiarity with nation-state, criminal, and opportunistic threat actor profiles and their operational tradecraft

  • Excellent communication, coordination, and leadership skills in high-pressure, mission-driven environments


Desired Qualifications
  • Proficiency with enterprise SIEM, EDR, and incident management platforms (e.g., Splunk, SentinelOne, CrowdStrike, ServiceNow)

  • Experience leading shift-based operations or 24x7 response teams

  • Deep knowledge of malware, intrusion detection, and threat hunting techniques

  • Familiarity with log analysis, packet capture, and intrusion detection systems (IDS/IPS)

  • Strong understanding of MITRE ATT&CK framework and cyber kill chain methodology


Education
  • Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, or related discipline
    or

  • High School Diploma with 7-9 years of directly relevant experience in cyber incident response or network defense


Preferred Certifications
  • GIAC Certified Incident Handler (GCIH)

  • GIAC Certified Forensic Analyst (GCFA)

  • GIAC Certified Intrusion Analyst (GCIA/GCED)

  • Certified Information Systems Security Professional (CISSP)

  • Certified Cyber Forensics Professional (CCFP) or equivalent


Why Join Argo Cyber Systems

At Argo Cyber Systems, you will operate at the front lines of national cybersecurity defense - protecting civilian agencies and critical infrastructure from sophisticated cyber threats. You'll join a mission-driven, veteran-founded team dedicated to excellence, integrity, and impact in every engagement.


Background & Drug Screening Disclaimer

© Argo Cyber Systems, LLC - All Rights Reserved

Argo Cyber Systems, LLC is committed to maintaining a safe, secure, and trusted workplace for all employees and our federal clients. Employment with Argo Cyber Systems is contingent upon successful completion of all required background investigations and pre-employment screenings, which may include, but are not limited to:

  • Criminal background checks (federal, state, and local)

  • Employment and education verification

  • Reference checks

  • Drug screening (in compliance with federal and state law)

  • Security clearance verification (as applicable for classified positions)

Candidates selected for employment in positions requiring access to sensitive or classified information may also be subject to additional U.S. Government background investigations and security adjudication processes, including DHS Entry on Duty (EOD) suitability or equivalent federal clearance requirements.

Argo Cyber Systems reserves the right to disqualify or rescind an offer of employment based on the results of any background or screening process that, in the company's judgment, may impact an individual's ability to perform essential job functions or meet contractual obligations.

All background investigations and screenings are conducted in accordance with applicable federal, state, and local laws, including the Fair Credit Reporting Act (FCRA). Candidates will be notified of their rights and provided an opportunity to review and dispute any adverse findings before final employment determinations are made.



Job Posted by ApplicantPro
[job_alerts.create_a_job]

Incident Manager Level III (Computer Network Defense) Requires US Security clearance • Washington, DC, US

[internal_linking.similar_jobs]
Security Operations SME

Security Operations SME

Marathon TS • Arlington, VA, United States
[job_card.full_time]
Marathon TS is searching for an Industrial Security Subject Matter Expert (SME) to support to the Counterintelligence, Law Enforcement & Security (CL&S) Directorate within the Office of the Under S...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Engineering Manager Enterprise Security

Engineering Manager Enterprise Security

Harnham • Washington, DC, United States
[job_card.full_time]
Engineering Manager, Enterprise Security.My client is expanding their Enterprise Security product line and are looking for a technical leader to build and scale the engineering team behind it.This ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cyber Case Manager II

Cyber Case Manager II

BCMC • Arlington, VA, US
[job_card.full_time]
[filters_job_card.quick_apply]
Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and res...[show_more]
[last_updated.last_updated_30]
Epic Applications Security Manager

Epic Applications Security Manager

Virginia Hospital Center • Alexandria, VA, United States
[job_card.full_time]
Epic Applications Security Manager.The Epic Applications Security Manager provides strategic leadership and operational oversight for all Epic-related application security functions.This role manag...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Manager, Security Operations

Senior Manager, Security Operations

Pew Charitable Trusts • Washington, DC, United States
[job_card.full_time]
Senior Manager, Security Operations (Hybrid).Senior Manager, Security Operations.The Senior Manager, Security Operations, is responsible for ensuring the protection of the organization’s informatio...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Remote Cyber Threat Watch Lead - Incident Response

Remote Cyber Threat Watch Lead - Incident Response

Amtrak • Washington, DC, United States
[filters.remote]
[job_card.full_time]
A leading transportation company is seeking a Lead Cyber Watch Ops Analyst to enhance cybersecurity operations.The role involves supporting day-to-day functions of the Cyber Threat Command Center, ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Remote Network Architect - Cloud & Security Leader

Remote Network Architect - Cloud & Security Leader

Cognizant • Washington, DC, United States
[filters.remote]
[job_card.full_time]
A leading global IT services provider is looking for a Network Architect to enhance enterprise and cloud network infrastructure.This remote position requires expertise in Cisco technologies, Palo A...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Manager Information Security

Senior Manager Information Security

Children's National Hospital • Silver Spring, MD, United States
[job_card.full_time]
Your north star: build and oversee a team of information security experts dedicated to protecting Children's National and our patients, families, and staff.The Senior Manager Information Security s...[show_more]
[last_updated.last_updated_30] • [promoted]
Defense Threat Reduction Agency (DTRA)

Defense Threat Reduction Agency (DTRA)

TekSynap • Fort Belvoir, VA, United States
[job_card.full_time]
Responsibilities & Qualifications.The TekSynap DTRA employees current support roles as:.Information Assurance Specialists.Information System Security Officers.Many of the roles will require a gover...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Specialist - CyberSecurity

Senior Specialist - CyberSecurity

ClifyX • Washington, DC, United States
[job_card.full_time]
Lead Security Engineer with entire Microsoft suite Azure.Expertise in Entra, Purview, Priva, and having additional knowledge in ADF / DataBricks.This key resource will conduct an assessment, develo...[show_more]
[last_updated.last_updated_30] • [promoted]
Manager Security Compliance, Amazon Leo Security Assurance

Manager Security Compliance, Amazon Leo Security Assurance

Amazon • Arlington, VA, United States
[job_card.full_time]
Project Kuiper is an Amazon initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites.Its mission is to bring fast, affordable broadband ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Control Assessor

Security Control Assessor

G-Force Solutions • Arlington, VA, United States
[job_card.full_time]
The Security Control Assessor must fulfill a variety of cybersecurity functions, to include: System Administrator, Enterprise Oversight, certification and accreditation, SAP and SCI assessment and ...[show_more]
[last_updated.last_updated_30] • [promoted]
Pass & ID Specialist (2)*

Pass & ID Specialist (2)*

FGS • Suitland, MD, United States
[job_card.full_time]
Pass & ID Specialist (2)*National Maritime Intelligence Center, MD.The Pass & ID Specialist provides front line credentialing and access control services at the NMIC, ensuring compliance with ONI, ...[show_more]
[last_updated.last_updated_30] • [promoted]
Incident Response Engagement Lead Cyber security New York, Washington DC

Incident Response Engagement Lead Cyber security New York, Washington DC

S-RM Intelligence and Risk Consulting • Washington, DC, United States
[job_card.full_time]
We have a new and exciting role available within our Cyber Security division for an Incident Response Engagement Lead in the United States.S-RM is a global intelligence and cybersecurity consultanc...[show_more]
[last_updated.last_updated_30] • [promoted]
Incident Manager Level III (Computer Network Defense) Requires US Security clearance

Incident Manager Level III (Computer Network Defense) Requires US Security clearance

Argo Cyber Systems • Arlington, VA, USA
[job_card.full_time]
[filters_job_card.quick_apply]
Onsite (CONUS) / Shift Work (as assigned).Active TS/SCI (DHS EOD Suitability required).Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB).Argo Cyber Systems delivers m...[show_more]
[last_updated.last_updated_30]
Information System Security Manager SME

Information System Security Manager SME

Leidos Inc • Alexandria, Virginia, United States
[job_card.full_time]
This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted...[show_more]
[last_updated.last_updated_variable_hours] • [promoted] • [new]
Senior ISSM: DoD RMF Security Lead for Classified IS

Senior ISSM: DoD RMF Security Lead for Classified IS

Technology Service Corporation • Silver Spring, MD, United States
[job_card.full_time]
A leading technology service provider is seeking an Information System Security Manager (ISSM) in Silver Spring, MD.The ISSM will enforce security policies on classified information systems and ens...[show_more]
[last_updated.last_updated_30] • [promoted]
25-6033: Incident & Problem (I&P) Manager - DC Metro

25-6033: Incident & Problem (I&P) Manager - DC Metro

Navitas • Washington, DC, US
[job_card.full_time]
[filters_job_card.quick_apply]
Incident & Problem (I&P) Manager Job ID:.Clearance: Minimum Secret clearance with ability to obtain TS/SCI Location: DC Metro Who We Are : Since our inception back in 2006, Navitas has grown to be ...[show_more]
[last_updated.last_updated_30]