Battle Watch Captain

Resource Management Concepts, Inc., North Charleston, United States

What our tracking knows about this posting

Published on 21 September 2026 · first appeared in our records on 22 September 2026.

Stable posting: first seen on 22 September 2026, with no abnormal reposting.

This posting shows no salary, while 40% of open postings in the same sector in this country (United States) do.

View the posting at the employer Have my resume reviewed for this job
Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America. RMC is hiring for an experienced Battle Watch Captain, which serves as the focal point for 24/7/365 network monitoring and cyber defense coordination within a cybersecurity operations environment. This leadership role oversees a team of Tier 2 analysts, guiding and mentoring them to ensure continuous and effective monitoring of subscriber networks and swift response to cyber threats. Position Overview The Battle Watch Captain is responsible for maintaining operational effectiveness by assigning tasks, monitoring performance, and ensuring adherence to established analytical frameworks, organizational policies, and industry standards. This role also acts as a crucial liaison for external communications, facilitating coordination between internal teams, subscribers, United States Cyber Command (USCYBERCOM), Joint Force Headquarters–Department of Defense Information Networks (JFHQ-DODIN), and peer cybersecurity operations teams. The Battle Watch Captain plays a pivotal role in protecting subscriber networks and maintaining the security posture of organizational infrastructure. Key Responsibilities • Lead and guide incident response (IR) and investigation processes during campaigns, ensuring tasks are completed, properly documented, and vetted. • Coordinate with reporting agencies and subscriber sites to ensure timely and accurate incident reporting. • Analyze and respond to validated security incidents, determining severity and impact per Chairman of the Joint Chiefs of Staff Manual (CJCSM) 6510.01B. • Conduct log correlation analysis using applicable tools to identify patterns in network and system activity. • Perform network and host-based digital forensics on Windows and other operating systems as needed. • Support Intrusion Detection/Prevention Systems (IDS/IPS) signature development and implementation under guidance. • Maintain an in-depth understanding of security concepts, protocols, processes, architectures, and tools. • Conduct ticket reviews and indicator/analysis quality control. • Ensure proper turnover of tasks and findings within verbal turnover and shift roll-up documentation. • Compile and maintain internal Standard Operating Procedure (SOP) documentation, ensuring compliance with CJCSM 6510.01B and other directives. • Provide mentorship to Tier 2 analysts to improve triage efficacy. • Conduct operations 24/7/365 across three Regional Operation Centers (ROCs). Required Education and/or Experience • Bachelor’s Degree in a relevant discipline with 5 years of experience, or at least 8 years of experience in a cybersecurity operations environment, Security Operations Center (SOC), or similar environment. Required Certification(s) per PWS • Department of Defense (DoD) Information Assurance Technical (IAT) Level III (IAT-III) certification • Certified Network Defender (CND) certification Minimum Qualifications • 2+ years of experience leading or managing incident response cases Travel • Up to 10% travel may be required • Overtime may be required to support incident response actions (surge) Preferred Qualifications • Comprehensive knowledge of CJCSM 6510.01B • Expert knowledge of incident response procedures and coordination • Expertise in IDS/IPS solutions, including signature development and optimization • Experience with digital forensics across multiple operating systems • Advanced proficiency with host-based tools and operating system logging Highly Desired • Deep expertise in log aggregation tools (e.g., Splunk, Elastic, Microsoft Sentinel) for complex correlation analysis • Exceptional logical thinking and analytical ability • Superior verbal and written communication skills • Proven ability to solve complex problems independently

Other recent postings in the same sector