Senior Cybersecurity Incident Response Administrator

Empower AIRoanoke, VA
Remote

About The Position

Empower AI is seeking a Senior Cybersecurity Incident Response Administrator to manage Security Information and Event Management (SIEM) systems for Army Business Systems. This role involves deployment, installation, infrastructure management, and event monitoring in accordance with DoD/Army requirements. The administrator will create SIEM dashboards for clear visualization of security events, enabling real-time detection and investigation of threats. This is a remote-eligible position, with opportunities for on-site or hybrid work for local candidates in the Roanoke and Radford, Virginia area. The ideal candidate will possess deep expertise in cybersecurity incident response, SIEM engineering, and DoD cybersecurity compliance, with the ability to support mission-critical Army IT services across enterprise data centers and cloud environments.

Requirements

  • Cybersecurity Certification (such as CISSP, ISSEP, Security+, CEH, or equivalent).
  • Bachelor's degree in Computer Science is preferred; equivalent years of cybersecurity and incident response experience will be considered in lieu of a degree.
  • Active DoD Secret Security Clearance.
  • 10 or more years' experience with Cybersecurity and Incident Response or related areas.
  • Extensive experience managing SIEM systems, including ingesting relevant data into the SIEM.
  • Proficiency in creating and managing SIEM dashboards for security event visualization.
  • Strong ability to monitor and investigate security events and anomalies.
  • Experience developing reporting requirements for audits and security controls.
  • Knowledge of Public Key Infrastructure (PKI) and managing SSL/TLS certificates.
  • Familiarity with DoD and Army web application security standards and best practices.
  • Ability to review and respond to Army Cyber Tasking Orders (CTOs).
  • Experience coordinating with Cyber Security Service Providers for audit logs and incident response.
  • Participation in Software Assurance reviews for application audit log validation.
  • Ability to review and evaluate Information Systems Design Plans and related documents for security compliance.

Nice To Haves

  • Bachelor's degree in Computer Science or equivalent years of experience.
  • Familiarity with Army enterprise monitoring tools and practices.
  • Strong analytical and problem-solving skills.
  • Excellent communication and coordination skills.
  • Experience with incident response activities.
  • Knowledge of engineering change proposals and configuration management.
  • Understanding of Continuity of Operations Plans and Communication Plans.
  • Experience with security regulations and best industry practices.
  • Ability to work effectively in a team environment and collaborate with various stakeholders.

Responsibilities

  • Deploy, install, manage infrastructure, and monitor events within SIEM systems in accordance with Army Business System Log Data Policy and other DoD/Army requirements.
  • Create SIEM dashboards for visualization of security-related events and near real-time anomaly detection.
  • Monitor SIEM dashboards to detect threats and anomalies, investigate events, and escalate as necessary.
  • Assess and develop reporting requirements to support audits and security controls.
  • Provide Public Key Infrastructure (PKI) support and monitor DoD/Army web application security standards.
  • Review Army Cyber Tasking Orders (CTOs) and coordinate with Army Cyber Security Service Providers.
  • Participate in Software Assurance reviews and evaluate Information Systems Design Plans for compliance with security regulations, policies, and best practices.

Benefits

  • Recognized as a 2024 Military Friendly Employer by Viqtory
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service