Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS

Posted 4 Days Ago
Be an Early Applicant
Arlington, VA, USA
In-Office
104K-166K Annually
Senior level
Aerospace • Information Technology • Security • Cybersecurity • Defense
Do the can't be done.
The Role
Responds to cybersecurity incidents across ICS, OT, SCADA, and IT environments supporting critical infrastructure. Conducts threat hunting, digital forensics, security site assessments, network and host-based analysis, incident reporting, and procedure development. Collaborates with forensic analysts, technical teams, mission partners, and client decision-makers. Requires expertise in ICS protocols, SIEM tools, incident response, and critical-infrastructure security, along with an active Top Secret clearance and up to 40% travel.
Summary Generated by Built In
Responsibilities

Peraton is currently seeking to hire an experienced Incident Response Analyst (ICS/OT/SCADA) for its' Federal Strategic Cyber group. 


Location: On‑site in Arlington, VA

  • Travel: Approximately 40%

Peraton is seeking an experienced Incident Response Analyst with strong OT/ICS/SCADA expertise to support its Federal Strategic Cyber program. This role involves responding to cyber incidents across critical infrastructure sectors and working closely with technical teams, forensic analysts, and mission partners to safeguard national‑level systems.

 

In This Role, You Will: 

  • Respond to cybersecurity incidents across ICS, OT, and IT environments and provide recommendations to prevent recurrence within critical infrastructure sectors.
  • Apply functional knowledge to resolve incidents, conduct proactive threat hunts, and contribute to solutions for problems of moderate scope and complexity.
  • Support highly technical operations and forensic analysis while advising client decision‑makers.
  • Provide sector‑specific expertise for one or more critical infrastructure areas, including Water, Power, Critical Manufacturing, and Transportation.
  • Follow established procedures for incident response and escalation.
  • Help define and refine response procedures for industrial control system environments.
  • Apply traditional incident response and threat‑hunting tradecraft to ICS/critical‑infrastructure environments while accounting for operational constraints.
  • Collaborate with host, network, and cloud forensic analysts to meet mission requirements for incident response and threat‑hunting engagements.
  • Maintain accurate documentation of incident response activities and findings.
  • Prepare and deliver incident reports to management and stakeholders.
  • Work effectively in a team environment and contribute to mission success.
  • Stay current on cybersecurity trends to enhance hunt and response operations.
  • Demonstrate strong attention to detail, critical thinking, and customer‑service orientation.
  • Self‑teach and test new tools, methodologies, and techniques as needed.
  • Meet on‑site requirements of at least one day per week (up to three days depending on mission needs).
  • Travel up to 40%.

 


Qualifications

Required Qualifications:

  • Bachelor’s degree and 5 years of relevant experience; Master’s degree and 3 years. An additional 4 years of relevant experience will be considered in lieu of a degree.
  • Must have 1–2 years of relevant Threat Hunting or DFIR experience directly supporting Critical Infrastructure (CI) / ICS environments.
  • Experience conducting security site assessments, including analysis of network security architecture, baseline ports/protocols/services, and asset characterization.
  • Experience using SIEM tools for pattern identification, anomaly detection, and trend analysis.
  • Experience analyzing ICS network protocols such as ModBus, ENIP/CIP, BACnet, DNP3, etc.
  • Experience with common open‑source and commercial tools used in event analysis, incident response, forensics, malware analysis, or security operations.
  • Experience with host‑based and network‑based collection and detection tools (OSS/COTS).
  • U.S. citizenship required.
  • Active Top Secret security clearance.
    • Ability to obtain a TS/SCI for continued employment.
    • Ability to obtain and maintain a favorably adjudicated DHS background investigation.

 

Desired Qualifications:

  • Certifications such as GISCP, GCFA, GNFA, GRID, or OT sensor certifications.
  • 2+ years of Threat Hunting or DFIR experience.
  • Experience on DoD Cyber Protection Teams.
  • Experience performing digital forensics on laptops/desktops, PLCs, HMIs, Historians, and SCADA systems.
  • Experience with SIEM platforms (e.g., Splunk) including threat hunting, analytic development, dashboards, and reporting.
  • Familiarity with critical‑infrastructure frameworks (NIST, IEC 62443).
  • Ability to automate repeatable tasks.
  • Scripting experience in Python, Bash, PowerShell, and/or JavaScript.

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Skills Required

  • Bachelor's degree and 5 years of relevant experience, or master's degree and 3 years of relevant experience; an additional 4 years of relevant experience may substitute for a degree
  • 1–2 years of relevant threat hunting or DFIR experience directly supporting critical infrastructure or ICS environments
  • Experience conducting security site assessments, including network security architecture, baseline ports, protocols, services, and asset characterization
  • Experience using SIEM tools for pattern identification, anomaly detection, and trend analysis
  • Experience analyzing ICS network protocols such as Modbus, ENIP/CIP, BACnet, and DNP3
  • Experience with open-source and commercial tools for event analysis, incident response, forensics, malware analysis, or security operations
  • Experience with host-based and network-based collection and detection tools
  • U.S. citizenship
  • Active Top Secret security clearance
  • Ability to obtain a TS/SCI clearance for continued employment
  • Ability to obtain and maintain a favorably adjudicated DHS background investigation
  • Certifications such as GISCP, GCFA, GNFA, GRID, or OT sensor certifications
  • Two or more years of threat hunting or DFIR experience
  • Experience on DoD Cyber Protection Teams
  • Digital forensics experience on laptops, desktops, PLCs, HMIs, Historians, and SCADA systems
  • Experience with SIEM platforms such as Splunk, including threat hunting, analytic development, dashboards, and reporting
  • Familiarity with critical-infrastructure frameworks such as NIST and IEC 62443
  • Ability to automate repeatable tasks
  • Scripting experience in Python, Bash, PowerShell, and/or JavaScript

Peraton Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Peraton and has not been reviewed or approved by Peraton.

  • Healthcare Strength Healthcare offerings are described as broad, including medical, dental, vision, mental health support, and specialty programs like virtual physical therapy and surgical/cancer care navigation. Medical coverage is also characterized as a standout part of the overall package in terms of perceived quality.
  • Retirement Support Retirement support includes a 401(k) with employer matching and is repeatedly positioned as a strong component of total rewards. The 401(k) benefit is frequently singled out as one of the most valued parts of the package.
  • Leave & Time Off Breadth Time-off benefits are positioned as robust, including PTO, holidays, paid sick days, and floating holidays, with some roles offering notably generous accrual. Leave breadth is reinforced by related programs such as short/long-term disability and bereavement leave.

Peraton Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
18,000 Employees
Year Founded: 2017

What We Do

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Why Work With Us

We are fearlessly solving the world’s most complex challenges to keep people safe and secure. You can be a part of protecting and promoting that freedom around the world.

Gallery

Gallery

Similar Jobs

PwC Logo PwC

SAP Technology and D&A Director

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
56 Locations
370000 Employees
155K-410K Annually

PwC Logo PwC

PwC Internal Partnership Tax Team - Research and Planning Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
68 Locations
370000 Employees
212K-244K Annually

PwC Logo PwC

National Tax Services - Tax R&Q Technology Risk Management - Senior Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
67 Locations
370000 Employees
77K-214K Annually

PwC Logo PwC

SAP Technology and D&A Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
56 Locations
370000 Employees
124K-280K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account