Back to all jobs

Senior Cyber Security Engineer

Work from home Full-time role Hiring

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™ ASRC Federal is looking for an experienced Senior Cyber Security Analyst (Incident Response & Threat Operations) to join our team in a government contracting (GovCon) environment. This is a full-time remote position with occasional on-site support (Beltsville, MD or Reston, VA). The Senior Cyber Security Analyst is responsible for advanced incident response, threat detection, and Tier II/Tier III Security Operations Center (SOC) support within an enterprise environment. This role focuses on investigating security events, identifying malicious activity, responding to cyber incidents, and improving detection capabilities across the organization. The ideal candidate has strong hands-on experience in intrusion detection, threat hunting, phishing investigations, endpoint and network analysis, and operational cybersecurity support.

Key Responsibilities

Serve as a Tier II/Tier III escalation point for complex SOC investigations and cybersecurity incidents. Investigate and respond to security alerts involving phishing, malicious URLs, malware activity, credential compromise, suspicious authentication activity, and endpoint threats. Conduct proactive threat hunting activities using SIEM, EDR/XDR, firewall, DNS, email security, and network telemetry data. Monitor security tools, logs, alerts, and reports to identify suspicious or malicious activity and coordinate appropriate response and remediation actions. Identify, analyze, and mitigate cybersecurity threats, vulnerabilities, and system weaknesses to reduce organizational risk exposure. Analyze security events and logs to identify indicators of compromise, attack patterns, and unauthorized activity. Perform incident response activities including triage, containment, eradication, recovery, and root cause analysis for security incidents. Support and enhance enterprise security monitoring and detection capabilities across SIEM, EDR/XDR, IDS/IPS, email security, and firewall platforms. Develop and tune detection rules, alerting logic, and threat detection use cases to improve SOC effectiveness and reduce false positives. Create scripts and automation solutions using PowerShell, Python, or similar tools to streamline investigations and response activities. Collaborate with infrastructure, networking, cloud, and endpoint teams during investigations and remediation efforts. Evaluate emerging threats, vulnerabilities, attack techniques, and security technologies to strengthen enterprise detection and response capabilities. Provide technical guidance and support for escalated cybersecurity investigations and operational issues. Document investigative findings, incident timelines, and remediation recommendations. Participate in on-call incident response support as required.

Required Qualifications

Must be a U.S. Citizen or Permanent Resident (Green Card Holder). Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience. 7+ years of hands-on experience in cybersecurity operations, incident response, or SOC environments. Experience supporting Tier II/Tier III SOC investigations and incident handling. Strong experience with: SIEM platforms EDR/XDR technologies IDS/IPS systems Email security platforms Firewall and network security tools Experience investigating phishing attacks, URL click alerts, malware infections, and account compromise activity. Strong understanding of TCP/IP, DNS, HTTP/S, VPNs, Active Directory, and enterprise networking concepts. Experience supporting Windows and Linux environments. Proficiency in PowerShell, Python, or similar scripting languages. Strong analytical, troubleshooting, and communication skills. Ability to work independently in a fast-paced operational environment.

Preferred Qualifications

Certifications such as CISSP, GCIH, GCIA, CEH, Security+, or equivalent (at least one is required). Experience with MITRE ATT&CK, threat intelligence platforms, or SOAR technologies. Familiarity with cloud security monitoring and enterprise-scale security operations. Additional Information Reports to: Cybersecurity Governance, Risk & Compliance Leadership Travel: None Clearance: Secret clearance preferred but not required; may be required based on project needs. We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary. EEO Statement ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law. Apply To This Job

Related remote jobs

Account Manager - Sales Ops

Work from home Full-time role

Project Manager

Work from home Full-time role

Account Manager - Sales Ops

Work from home Full-time role

Detailer

Work from home Full-time role

Project Manager

Work from home Full-time role

Finance Analyst

Work from home Full-time role

Epic System Analyst I

Work from home Full-time role

Epic System Analyst I

Work from home Full-time role

Project Manager

Work from home Full-time role

Epic Billing - Team Lead

Work from home Full-time role

arenaflex Remote Data Entry Engineer – Full‑Time Work‑From‑Home Position Supporting Test Development & Security Operations

Work from home Full-time role

Experienced Crisis Chat Text Counselor – 988 Crisis Intervention Services

Work from home Full-time role

Experienced Full Stack Data Entry Specialist – E-commerce Operations and Amazon Platform Management

Work from home Full-time role

Freelance Web Content Writer (Home Based) (Web)

Work from home Full-time role

Experienced Claims Customer Service Representative – Automotive Warranty and Claims Support

Work from home Full-time role

Breast Radiologist - Partnership Track (Mammo)

Work from home Full-time role

Arborist Freelancer [Part-time Remote]

Work from home Full-time role

Experienced Customer Support Representative – Work From Home Opportunity with arenaflex

Work from home Full-time role

Experienced Part-Time Remote Data Entry Clerk – Launch Your Career with arenaflex

Work from home Full-time role

Sr. Director of Global Payroll & Equity Administration: 26-00738

Work from home Full-time role