JobBobsReal-time global job discoveryLive

Cybersecurity Incident Response Triage IR Analyst

Accenturefederalservices · Arlington, VA · 2026-07-15

executive
Apply on the employer's site

About this role

<div class="content-intro"><div> <div> </div> <div>At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. </div> <div> </div> <div>Join Accenture Federal Services, a technology company within global Accenture. Recognized as a Glassdoor Top 100 Best Place to Work, we offer a collaborative and caring community where you feel like you belong and are empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more. </div> <div> </div> <div>Join us to drive positive, lasting change that moves missions and the government forward!</div> <div> </div> </div></div><p>The Cybersecurity Incident Response Triage IR Analyst role will work in the CIRT team in the CISO organization. This role works under analysis and triage team lead to perform in-depth investigation and analysis on security-relevant events indicating policy violations or possible insider-threat presence. </p> <p><strong>The Work</strong></p> <ul> <li>Actively monitor and respond to cybersecurity incidents related to alerted policy violations</li> <li>Analyze and investigate incidents to determine their nature and scope.</li> <li>Coordinate with the lead and other Cybersecurity Incident Response Teams for effective incident resolution.</li> <li>Document incidents and response activities in detail.</li> <li>Stay updated with the latest cybersecurity threats and trends.</li> <li>Assist in developing and refining incident response strategies and procedures.</li> <li>Collaborate with operations teams, legal, human resources and management to investigate security issues and interview investigation subjects to determine true and false positives.<br><br></li> </ul> <p><strong>What you need</strong></p> <ul> <li>US Citizenship required</li> <li>Excellent communication skills and knowledge in incident response lifecycles, common cyber-attacks, insider-threat indicators and warnings, data loss prevention and detection mechanisms, and federal incident reporting requirements.</li> <li>Excellent communication (written and oral), attention to detail  and interpersonal skills</li> <li>Experience presenting complex technical information to decision makers and leading them through the decision making process</li> <li>Work independently to deliver timely solutions without direct supervision</li> <li>1-2 years experience in information security, or other equivalent combination of education or equivalent work experience.</li> <li>1 year(s) of experience performing event and log analysis including one or more of the following: Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools and other security tools found in large enterprise network environments; along with experience working with Security Information and Event Management (SIEM) solutions.  </li> <li>Familiarity with various network and host-based security applications and tools, such as network and host assessment/scanning tools, network and host-based intrusion detection systems, and other security software packages.  </li> <li>Familiarity with TCP/IP, common application layer protocols, and packet analysis of the same.</li> <li>Familiarity with static and dynamic malware analysis concepts.</li> <li>Experience with indicators of attack and compromise.</li> <li>Familiarity with Windows / Linux architecture and endpoint analysis of the same.</li> <li>Familiarity with basic data parsing and analysis tools, i.e., Excel, grep, sed, awk, regex, etc.<br><br></li> </ul> <p><strong>Bonus if you have</strong></p> <ul> <li>SANs GIAC Certifications including but not limited to GCED, GCLD, GCIH, GCFA, GREM;<br>CISSP</li> </ul><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p> </p> <p><span class="TextRun SCXW225111203 BCX8" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW225111203 BCX8">As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of <strong>California, Colorado, Hawaii, Illinois, Maine, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Virginia, Washington, and the District of Columbia, and the city of Cleveland</strong></span></span><span class="TextRun SCXW225111203 BCX8" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW225111203 BCX8">. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set, and level of experience. Accenture Federal Services offers a wide variety of benefits. </span></span><a class="Hyperlink SCXW225111203 BCX8" href="https://www.accenture.com/us-en/careers/your-future-rewards-benefits"…

Skills asked for

Apply on the employer's site

Your next role is already in here.

Search live openings from thousands of employers, save the ones worth a second look, and let JobBob keep watch for the rest.