✦ Luna Orbit — Cybersecurity

HUD - Sr. Incident Response Analyst

at cFocus Software Incorporated

📍 Remote, US Remote Posted April 03, 2026
Type Full-Time
Experience senior
Exp. Years 7+ years
Education Bachelor’s degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
Category Cybersecurity

Senior incident response role supporting HUD, focusing on monitoring with SIEM/EDR and 24/7 operations, performing triage, and documenting incidents in a ServiceNow/SOC environment.

  • Monitor security events and alerts using SIEM, SOAR, EDR, and other SOC tools in a 24/7/365 environment
  • Perform initial triage and analysis of security alerts to determine severity, impact, and validity
  • Identify and respond to potential security incidents including malware, phishing, unauthorized access, and anomalous behavior
  • Escalate confirmed or high-risk incidents to Tier 2/3 analysts and incident response teams
  • Document incidents, actions taken, and findings in ticketing systems (e.g., ServiceNow)

Tools include Splunk SIEM, EDR solutions, and SOAR; responsibilities include log analysis, threat detection, and security monitoring across network, endpoint, and cloud; requires strong incident response practices.

The ideal candidate is a senior SOC/incident response professional with 7+ years, proficient in SIEM (Splunk), EDR, and log analysis, and familiar with incident response. They should have strong networking knowledge and a public trust clearance in a HUD/government setting.

Bachelor’s degree in CybersecurityInformation Technologyor related field (or equivalent experience)7+ years of experience in a SOCcybersecurity operationsor IT security roleExperience with SIEM tools (e.g.Splunk)EDR solutionsand log analysisUnderstanding of networking conceptsoperating systemsand cybersecurity principlesFamiliarity with incident response processes and security monitoring tools
SplunkEDRSOARServiceNow
Bachelor’s degree in CybersecurityInformation Technologyor related field (or equivalent experience); 7+ years of SOC/cybersecurity experience; SIEM (Splunk); EDR; log analysis; networking concepts; incident response processes
SIEM tools (Splunk)EDR solutionslog analysisNetworking conceptsOperating systemsSecurity monitoring toolsServiceNow24/7/365 monitoring
CommunicationTeamworkDocumentationSituational awarenessAnalytical thinking
Industry Government/Public Sector
Job Function Monitor, triage, and respond to security incidents in HUD environments using SIEM/EDR/SOC tools.
Role Subtype Incident Responder
Tech Domains Amazon Web Services, Linux, Windows Server, Networking / TCP-IP, Cybersecurity
Threat ResponderSOC analystincident responseSIEMSplunkEDRlog analysisSOARServiceNow24/7/365MTTDMTTRPublic Trustremotesecurity monitoringnetworking conceptsSOC

Public Trust clearance required, Bachelor's degree required

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile