Tier II-III Incident Response Analyst

Boston Government Services, LLCOak Ridge, TN
$131,316 - $154,489Hybrid

About The Position

Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Tier II, III Incident Response Analyst to support our clients in various locations across the US. BGS is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex projects. We support clients at every stage, from strategic planning and program management to the execution of engineering and technical activities. We work to attract and retain the best talent because the best talent delivers the best results for our clients. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our experience and capabilities to provide mission-driven solutions tuned to our client's mission needs and strategic direction. Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability—where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees’ well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection. If you align with BGS’ company values and culture, we would love for you to explore opportunities to join our growing team by checking out the job description below!

Requirements

  • Bachelor’s degree or equivalent.
  • Experience in incident response, SOC operations, threat analysis, vulnerability analysis, or forensic support.
  • Familiarity with SIEM, EDR, IDS/IPS, endpoint telemetry, logging platforms, ticketing systems, malware analysis processes, and evidence handling.
  • Knowledge of NIST SP 800-61, NIST SP 800-86, US-CERT/Federal incident notification expectations, and common attack techniques.
  • Ability to work under time-sensitive conditions and produce clear incident documentation.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.

Nice To Haves

  • GCIH, GCIA, GCFA, GCFE, Security+, CySA+, CISSP, CEH, or equivalent.

Responsibilities

  • Provides hands-on support for incident escalation, advanced analysis, cyber threat investigation, forensic support, containment coordination, remediation tracking, and after-action reporting across the client’s managed environment.
  • Support escalations from Tier 1, requiring deeper analysis, investigation, or response coordination.
  • Conduct triage, event analysis, evidence review, threat correlation, and incident documentation.
  • Analyze suspicious emails, websites, web downloads, endpoint alerts, network activity, and SIEM/EDR data.
  • Support malware analysis, forensic analysis, artifact collection, and digital evidence preservation under established procedures.
  • Coordinate with stakeholders during incident response activities and support containment, eradication, recovery, and lessons learned.
  • Develop incident response tickets, after-action reports, daily remediation activity reports, chain-of-custody forms, and monthly forensic activity summaries.
  • Collect and disseminate indicators of compromise and support cyber threat intelligence analysis.

Benefits

  • Health
  • Dental
  • Vision
  • Life Insurance
  • Paid Vacation
  • 401K
  • Long and Short-Term Disability
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service