About Peraton
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
About The Role
Peraton seeks a Cyberspace Incident Manager to support ARCYBER G3. Location: Fort Gordon, GA.
Tasks include:
- Manage the lifecycle of suspected and confirmed cyberspace incidents across the Army's portion of the DoD/DoW enterprise automation environments (unclassified and classified) within the Army's Incident Management program of record — including intake, categorization, prioritization, escalation, task order generation, and closure tracking — ensuring all incidents are properly documented and routed in accordance with CJCSM 6510.01B, AR 25-2, DA PAM 25-2, and other applicable directives; track response actions to resolution and verify timely reporting to all appropriate and responsible parties within required timelines.
- Receive and process threat intelligence products and Indicators of Attack/Indicators of Compromise notifications; translate them into actionable Task Orders for dissemination to appropriate mission owners; track remediation actions to completion across the enterprise.
- Conduct Quality Assurance/Quality Control across all records within the Army's Incident Management program of record in support of ARCYBER G3 reporting standards.
- Coordinate and route suspected and confirmed cyberspace incidents and relevant findings to superior, lateral, and subordinate organizations for incident response, to the Army Criminal Investigation Division, and to the Army's intelligence warfighting function as appropriate.
- Produce and deliver incident management reporting — including verbal briefings, technical write-ups, and data visualizations — in accordance with Army reporting requirements; leverage appropriate technologies such as Microsoft Power BI, Power Automate, and Power Apps to develop leadership-facing dashboards and automate recurring incident management tasks and reporting workflows.
- Develop and maintain team and directorate continuity documents and CSSP accreditation artifacts; facilitate incident management working groups and coordinate with internal and external mission partners in support of government-defined enterprise incident management outcomes; support directorate and ARCYBER-level Military Decision Making Process (MDMP) efforts for incident management-relevant functions.
Qualifications
Required Qualifications:
- Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD. Will consider HS+12 or Associates +10 years of experience
- Demonstrated expertise in cyberspace incident management at enterprise scale, including incident lifecycle governance, reporting standards enforcement, cross-organizational coordination, and process standardization across a large DoD network environment
- Deep familiarity with CJCSM 6510.01B, AR 25-2, DA PAM 25-2, and DoD incident handling and escalation procedures.
- Must possess DoD 8570 certification for IAT Level II (CCNA, CySA+, GICSP, GSEC, Security+, CND, or SSCP)
- Must possess DoD 8570 certification for CSSP-Analyst (CEH, CFR, CCNA, CySA+, GCIA, GCIH, GICSP, Cloud+, SCYBER, PenTest+).
- Able to support 8x5 operations with on-call surge support as mission requires
- U.S. Citizenship is required
- Active TS with the ability to obtain and maintain a Polygraph and MEAD clearance
Preferred Qualifications:
- Hands-on experience with the Army's Incident Management program of record (unclassified and/or classified automation environments).
- Experience with USCYBERCOM reporting tools or DoD CSSP reporting pipelines
- Familiarity with the Microsoft Defender suite of applications at a dashboard/reporting level for operational situational awareness.
- Experience developing or contributing to Microsoft Power Platform dashboards or equivalent operational metrics reporting
- Experience with ServiceNow or comparable ITSM platforms used in an incident management workflow
- Experience with API-based data integration between enterprise security platforms
- Experience with IT and OT cyberspace incident management or coordination within Army/DoD enterprise environments
- Familiarity with networking protocols and experience triaging network traffic to identify anomalous or potentially malicious activity
Details
Target Salary Range: $135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
Benefits Statement:
Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at <a href="https://www.careers.peraton.com/benefits?" target="_blank" rel="noopener">https://www.careers.peraton.com/benefits.
Application Statements:
The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity. Use of artificial intelligence (AI) tools of any kind during Peraton interviews is strictly prohibited unless the candidate has obtained prior written authorization. All interview responses must be the candidate’s own.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.