SOC Incident Response Analyst I Job at General Dynamics Information Technology, Lanham, MD

d1lxSTRNMmZXMmVVVXRFenNzTkZ4cjJIRFE9PQ==
  • General Dynamics Information Technology
  • Lanham, MD

Job Description

Public Trust: MBI (T2)
Requisition Type: Regular
Your Impact

Own your opportunity to work alongside federal civilian agencies. Make an impact by providing services that help the government ensure the well being of U.S. citizens.

Job Description

We are seeking a motivated Incident Response SOC Analyst I to join our SOC team. In this entry-to-mid-level role, you will work under the guidance of senior analysts to monitor security telemetry, triage alerts, perform initial investigations, and assist with containment and remediation activities. This is an excellent opportunity to grow your skills in incident response, threat hunting, forensics, and security tooling.

***This is a hybrid position, candidates must reside in the DC metropolitan area and be open to working either day or evening shifts***

Key Responsibilities
Monitor and triage security alerts from SIEM, EDR, IDS/IPS, and other security telemetry sources.
Conduct initial incident validation, categorize incidents, and determine severity levels.
Perform basic to intermediate incident response activities, including containment, eradication, and recovery steps under supervision.
Gather and preserve digital evidence following standard operating procedures and chain-of-custody requirements.
Collaborate with IT and security teams to apply mitigations, patches, and configuration changes.
Document investigation steps, findings, and remediation actions in incident tickets.
Participate in post-incident reviews (PIR) and help develop lessons learned.
Respond to on-call rotations as required.
Expand knowledge of MITRE ATT&CK, common attack techniques, and security best practices.
Assist with monitoring and improving SOC processes, playbooks, and runbooks.

Required Qualifications

Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field

Minimum 1 year of professional experience in cyber incident response
Foundational knowledge of cyber security concepts, such as incident handling lifecycle, threat intelligence, and basic forensics.
Familiarity with security tools (SIEM, EDR, SOAR, threat intel feeds) and basic incident response workflows.

Hands-on experience with SIEM (e.g., Splunk, QRadar, ArcSight), EDR (e.g., CrowdStrike, Defender, SentinelOne), and basic SOAR concepts.
Experience with incident response tooling, digital forensics, and evidence handling.
Understanding of networking fundamentals (TCP/IP, DNS, VPNs, firewalls).
Strong analytical and problem-solving skills with a structured, methodical approach.
Excellent written and verbal communication; ability to produce clear incident reports and documentation.
Ability to work in a fast-paced environment and participate in on-call rotations (as needed).
Commitment to continuous learning and professional growth in cybersecurity.

Preferred Qualifications

Relevant certifications (e.g., CompTIA Security+, CEH, SANS GCIH, GIAC GCIA, or equivalent).
Knowledge of MITRE ATT&CK framework and common attacker techniques.
Familiarity with cloud security concepts (AWS/Azure/GCP) and cloud incident response considerations.
Scripting or automation skills (PowerShell, Python, Bash) a plus.

GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
● Growth: AI-powered career tool that identifies career steps and learning opportunities
● Support: An internal mobility team focused on helping you achieve your career goals
● Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

● Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

Work Requirements

Years of Experience

1 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

Travel Required

Less than 10%

Citizenship

U.S. Citizenship Required

Job Tags

Day shift, Afternoon shift,

Similar Jobs

Accentuate Staffing

Treasury Manager Job at Accentuate Staffing

Accentuate Staffing is currently recruiting for a Treasury Manager of Cash Management for a global manufacturer in Morrisville, NC. This position will play a critical role in ensuring the companys liquidity, optimizing cash flow, and managing financial risks related to... 

LG Trucking,Inc

Class A DEDICATED TEAM DRIVERS-1300 WEEKLY AVG Job Job at LG Trucking,Inc

Class A DEDICATED TEAM DRIVERS-1300 WEEKLY AVG JobRegional Team Dedicated Lanes terminal to terminal, 100% drop and hook pulling doubles. Monday through Friday or Tuesday to Saturday Schedules. Trucks are 2016 & 2017 Volvo Sleeper 670's with tandem axle,I-shift automatic... 

Toyota Boshoku Automotive India Pvt Ltd

Welding Engineer Job at Toyota Boshoku Automotive India Pvt Ltd

 ...equipment (e.g. HVAC units, motors, and injection molding machines, welding processes, etc.) to reduce energy consumption. Develop,...  ...management, environmental coordinators, utility companies, maintenance, engineers, and contractors in the resolution of complex energy reduction... 

Solve IMG

Manufacturing Engineer Job at Solve IMG

 ...Industrial Motion Group strives to be the trusted source for engineered bearings and power transmission solutions. Supported by a diverse...  ...: Reporting to the Director of Engineering, the Manufacturing Engineer will be responsible for developing, implementing and... 

West Central Planning & Development District

Business Teacher Job at West Central Planning & Development District

 ...Job Description: This position is for a licensed teacher certified in business and marketing. The certification code(s) must include one or more of the following 031, 032, 037, 040, 222. This position is governed by state and federal laws and agency/institution policy...