See all roles

Principle Incident Handler

Work from home Full-time role Hiring

About ARSIEM Corporation

At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients. Weprovide support to multiple agencies across the United States Government. ARSIEMhas an experienced workforce of qualified professionals committed to providing the best possible support.

As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients.That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.

ARSIEM Corporation is seeking a highly skilled

Principal Incident Handler (IH-P) to lead cyber incident response operations in a fast-paced, mission-critical environment. As the senior-most responder on the team, you’ll provide technical oversight, mentor junior analysts, and serve as a strategic advisor to the Cyber Security Operations Center (CSOC) leadership. This position will support one of our government clients in Monterey, CA.

Responsibilities

  • Lead and guide Tier I and II analysts during active incidents, ensuring high-quality response and knowledge transfer.
  • Drive updates to incident handling SOPs and evaluate access, tools, and workflows to support full-spectrum cyber defense.
  • Oversee incident response from alert to resolution, including detection, triage, analysis, containment, and remediation.
  • Conduct root cause analysis and present findings to stakeholders, including the CSOC Manager, ISSM, and CISO.
  • Ensure digital evidence is preserved properly and in accordance with legal/operational standards.
  • Recommend enhancements to security tooling and lead technical coordination with engineering and forensics teams.
  • Minimum Qualifications

  • 7+ years in incident response, malware analysis, or cyber forensics.
  • Bachelor's degree in CS, Engineering, Cybersecurity, or related field.
  • Demonstrated experience guiding technical teams through complex cybersecurity incidents.
  • Deep familiarity with detection technologies (SIEM, IDS/IPS), network protocols, malware containment, and threat analysis.
  • Strong written and verbal communication skills, including incident reporting and executive briefings.
  • Strong understanding of network protocols (e.g., TCP/IP, DNS), security architecture, and traffic analysis
  • Strong understanding of threat actor behaviors, attack stages, and common vulnerabilities
  • Strong understanding of host/network intrusion detection, malware handling, and secure system administration
  • Strong understanding of cloud service models and how they affect response strategies
  • Strong understanding of cybersecurity frameworks, privacy principles, and risk mitigation
  • Relevant industry certifications (e.g., CISSP, GCIA, GCIH, CEH) preferred but not required.
  • The ARSIEM pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) job responsibilities, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other laws.

    Benefits:

    For an overview of our benefits, please visit our benefits tab.

    https://www.arsiem.com/careers/

    Original Posting Date:

    2025-07-08

    Additional Information

    Clearance Requirement: This position requires an active Top Secret clearance. You must be a US Citizen for consideration.

    Candidate Referral: Do you know someone who would be GREAT at this role? If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects. The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral. The bonus is paid after the referred employee reaches 6 months of employment.

    ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other federally protected class.

    Apply to this Job

    You might like

    Mortgage Loan Officer

    Work from home Full-time role

    Mortgage Loan Officer

    Work from home Full-time role

    Software Engineer (Senior) - Salesforce Developer (Remote for WA, OR, CA, ID, UT, MT, NV, CO, or AZ)

    Work from home Full-time role

    Coordinator

    Work from home Full-time role

    Sales Engineer - North America

    Work from home Full-time role

    Network Forensics Cybersecurity Analyst 4

    Work from home Full-time role

    Network Based Systems Analyst 3 (Cyber Network Defense Analyst (CNDA) 3)

    Work from home Full-time role

    Network Based Systems Analyst 2 (CNDA)

    Work from home Full-time role

    Lab Manager I (Technical Engagement Network (TEN) Help Desk Technician)

    Work from home Full-time role

    Lab Manager 3

    Work from home Full-time role

    Plant Controller in Aberdeen, WA

    Work from home Full-time role

    Java Developer

    Work from home Full-time role

    [Work From Home] ACCOUNT MANAGER | Testgorilla | €68k – €85k

    Work from home Full-time role

    Want Caregiver, CNA, Home Care Aide, In Home Care, Flexible Schedules in Port Orchard, WA

    Work from home Full-time role

    Part-Time, Data Entry Application Processor – Grant-Funded Opportunity at arenaflex

    Work from home Full-time role

    Senior UX Design Lead - REMOTE

    Work from home Full-time role

    Experienced Remote Data Entry Clerk – Part-Time Opportunity with Flexible Hours and Competitive Compensation Up To $750/Week at arenaflex

    Work from home Full-time role

    Remote Account Support Specialist

    Work from home Full-time role

    Quality Assurance Analyst I

    Work from home Full-time role

    Gifthealth Inc - Director of Operations

    Work from home Full-time role