Senior Incident Response Coordinator
Posted 18 days ago
zantechArlington (VA)
Command and Control Center SpecialistsComputer Systems Design Services
SENIORITY
Senior
About the role
Overview Are you looking for your next challenge? Are you ready to work with a performance-based small company? At Zantech, we are a dynamic Woman Owned Small Business focused on providing complex, mission-focused solutions with a proven track record of outstanding customer performance and high employee satisfaction. We would love to talk with you regarding the next step in your career. Come join our team!
Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the success of our upcoming Program Management and Cyber Support Services project for an Onsite role based out of Arlington, VA.
The Senior Incident Response Coordinator will play a crucial role in providing:
Incident Management and Coordination Support
Cyber incident response and coordination
Playbook development and exercise coordination
Intelligence Community and U.S. cyber command liaison
Incident communications and after-action reporting
The Senior Incident Response Coordinator serves as the lead for incident management and coordination efforts, working directly with federal agencies, Intelligence Community, U.S. Cyber Command, and private sector partners to prepare for, respond to, and recover from significant cyber incidents, vulnerabilities, and threats. This position is critical to the operational mission and requires expertise in cyber operations, threat analysis, and multi-stakeholder coordination during high-stakes cybersecurity events.
Impact: Direct support to national-level cyber incident response protecting U.S. critical infrastructure from advanced persistent threats.
Responsibilities include, but will be limited to:
Lead efforts to help the broader cybersecurity community prepare for, respond to, and recover from cyber incidents, vulnerabilities, and threats
Coordinate response activities with federal agencies, private sector partners, and state/local governments
Ensure response activities are aligned with national policies
Work closely with the incident response team to mobilize resources quickly to mitigate impact of cyber incidents
Fully leverage intelligence capabilities during incident response
Develop and refine cyber defensive playbooks providing step-by-step guidance for responding to different types of cyber incidents, vulnerabilities, and threats
Tailor playbooks to specific threat types including ransomware attacks and malicious cyber activity conducted by nation-state actors
Incorporate lessons learned from previous incidents into playbook updates
Coordinate tabletop exercises and simulations to test effectiveness of incident response strategies
Serve as trusted and knowledgeable point of contact with Intelligence Community and United States Cyber Command
Interface with key stakeholders to counter malicious cyber activities conducted by priority APT actors against U.S. critical infrastructure
Manage communications during cyber incidents ensuring stakeholders are kept informed
Draft situation reports for distribution to relevant stakeholders
Compile after-action reports documenting key observations, lessons learned, and recommendations
Help refine processes and policies for responding to incidents
Aggregate operational inputs and help align resulting actions to unify efforts with broader Cybersecurity Division operations
Required Experience or Knowledge of the following technologies/functions:
Experience responding to and coordinating responses to significant cyber incidents
Experience working with Intelligence Community and/or Department of Defense cyber operations
Experience developing incident response playbooks and procedures
Experience with advanced persistent threat (APT) actor analysis and tracking
Skills Required:
Deep understanding of cyber incident response methodologies and frameworks
Knowledge of Presidential Policy Directive 41 (U.S. Cyber Incident Coordination)
Knowledge of National Cyber Incident Response Plan
Understanding of critical infrastructure protection per Presidential Policy Directive 21
Ability to work effectively with Intelligence Community and U.S. Cyber Command
Strong understanding of APT actor tactics, techniques, and procedures
Excellent crisis communication and stakeholder coordination skills
Experience with secure communication platforms and classified information handling
Required Education/Certifications:
Education Required: None specified
Education Preferred:
Bachelor's degree in Cybersecurity, Computer Science, Information Security, or related field
Certifications Required: None specified
Certifications Preferred:
GIAC Certified Incident Handler (GCIH)
GIAC Cyber Threat Intelligence (GCTI)
Certified Information Systems Security Professional (CISSP)
SANS FOR508, FOR578, or equivalent advanced incident response training
Required Security Clearance:
US Citizenship and the ability to obtain and maintain an active TS/SCI or higher clearance, per contract requirements.
“Outstanding Performance…Always!”
Our corporate motto represents our commitment to build long-term relationships with both our clients and our employees by providing the highest quality service in everything we do. We strive for excellence for our clients and for each other. We embrace the opportunity to hire individuals with new talents and fresh perspectives. Zantech offers competitive compensation, strong benefits, and a vacation package, as well as a fast-paced and exciting work environment. Come join our team!
#J-18808-Ljbffr
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
