CronJobs

security jobs

Attack Sensing & Warning Lead

Accenturefederalservices · Leesburg, VA

unknownsenior$101,700–$101,700Posted Oct 7, 2026SOCincident responseDLPCISSPMITRE ATT&CK

Apply on the employer site

About this role

**Attack Sensing & Warning (AS&W) Lead** ## Overview Accenture Federal Services is seeking an **Attack Sensing & Warning (AS&W) Lead** to direct **Tier I monitoring/reporting** and **Tier II analysis** operations within a federal agency **Security Operations Center (SOC)**. In this high-tempo leadership role, you will oversee triage of security events, draft executive-level cyber incident reports, and ensure **round-the-clock detection coverage** across the enterprise. You’ll also collaborate with **Detection Engineering** to improve SOC sensors and alerting logic. ## Key Responsibilities - Lead the AS&W team’s incident response capabilities in alignment with **DHS 4300A** and the SOC **Incident Response Plan (IRP)**. - Oversee categorization, prioritization, and reporting of security events per **SOC Standard Operating Procedures (SOPs)**. - Direct drafting of **executive-level cyber incident reports** for Government review, ensuring required checklists and playbook thresholds are met. - Collaborate with **Detection Engineering** to configure and maintain alerts across SOC monitoring tools. - Support development of **metrics and KPIs** for SOC operational status and performance. - Manage the **0600 SOC Report** and daily call cadence with government stakeholders. - Lead triage and support for **Information/Data Spillage Incident Response**, including handling and sanitization recommendations. - Lead biannual review and updates to SOC SOPs to maintain compliance with applicable federal policy. - Coach and develop **Tier I and Tier II analysts** on triage methodology, escalation criteria, and reporting standards. ## What You’ll Need - **US Citizenship required**. - **10+ years** of experience with a **BS** (or **4 additional years**), or an **MS** (or **2 additional years**). - Minimum **5 years** professional experience in **security**, **information risk management**, or **information systems risk assessment**. - Deep knowledge of: vulnerability assessments, intrusion prevention/detection, access control, policy enforcement, application security, protocol analysis, firewall management, incident response, DLP, encryption, and advanced threat protection. ## Nice to Have - Prior shift-lead or supervisory experience in a **24x7 SOC** environment. - Experience drafting incident reports for **executive or Congressional-level** review. - Familiarity with **MITRE ATT&CK-aligned** detection content development. ## Required Certification - Active **CISSP** (recommended), consistent with other Task Leads on this program. ## Pay Range (US Locations) Base pay range: **$101,700 – $204,400 USD** (varies by location and other factors).

Listing freshness

CronJobs last confirmed this listing 2h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord