Cybersecurity Incident Response & Threat Detection Analyst

Posted 3 Days Ago
Be an Early Applicant
Columbus, OH, USA
In-Office
100K-110K Annually
Senior level
Information Technology • Logistics • Professional Services • Defense
The Role
Monitor and investigate security events in a 24x7x365 environment, detect threats and indicators of compromise, perform root cause analysis, and execute incident response actions. Analyze logs, network traffic, threat intelligence, and security tools to identify sophisticated attacks. Support cybersecurity tool sustainment, Defense-in-Depth controls, documentation, automation, and enterprise defense capabilities using SPL, Python, and PowerShell.
Summary Generated by Built In

Description

Contingent Contract Award- Potential Start Date November 30, 2026

Bring your cybersecurity expertise to a mission that matters. Connected Logistics is seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support the Defense Logistics Agency (DLA) in protecting critical enterprise systems and networks from evolving cyber threats.

As part of a 24x7x365 cybersecurity mission, you will monitor and analyze security events, investigate potential incidents, identify indicators of compromise, and respond to sophisticated threats, including Advanced Persistent Threats and "low and slow" attack activity. You will work across SIEM and other cybersecurity technologies, leverage threat intelligence and OSINT, conduct root cause analysis, and help strengthen enterprise defense-in-depth capabilities. This opportunity is ideal for a cleared cybersecurity professional who thrives in a mission-focused environment where threat detection, technical analysis, and rapid response directly contribute to protecting critical defense operations.

Key Responsiblities

  • Monitor SIEM platforms and other cybersecurity monitoring tools within a 24x7x365 operational environment to identify potential security threats, suspicious activity, and indicators of compromise.
  • Detect, analyze, investigate, and respond to cybersecurity events and incidents affecting the enterprise network environment.
  • Perform root cause analysis of cybersecurity events and incidents to identify the source, impact, and contributing factors.
  • Review and analyze security logs, alerts, and network traffic to identify trends and activity indicative of an attack or compromise.
  • Proactively monitor for Advanced Persistent Threats (APTs), "low and slow" attacks, and other sophisticated or emerging cyber threats.
  • Execute appropriate incident response actions to help contain, mitigate, and respond to unauthorized or malicious activity within the environment.
  • Leverage cybersecurity intelligence resources, including Open Source Intelligence (OSINT), to maintain awareness of current and emerging threats.
  • Analyze information from multiple security technologies, including firewalls, IDS/IPS, host-based antivirus, data loss prevention, vulnerability management, digital forensics, malware analysis, and device hardening tools.
  • Provide technical analysis and sustainment support for enterprise cybersecurity tools and applications.
  • Assist with the implementation and application of Defense-in-Depth security controls, signatures, and perimeter defenses designed to reduce network threats.
  • Develop and maintain scripts, tools, and automation that enhance threat detection and incident response capabilities, using technologies such as SPL, Python, and PowerShell.
  • Document cybersecurity events, investigative findings, analysis, and response activities in accordance with applicable operational requirements.
  • Maintain required CSSP Analyst certification and remain current on cybersecurity threats, attack techniques, and defensive practices.

Requirements


  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.
  • Must have an active CSSP Analyst certification (ex, CEH, CySA) and provide proof of certification.
  • Five (5) years relevant experience.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus,
  • Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, and Device Hardening.
  • Understanding of Defense-in-Depth.
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities; (Preferably in SPL, Python, PowerShell)

Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position 

is $100,000.00 to $110,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

EOE/Disability/Veterans

Skills Required

  • DOD Top Secret clearance and eligibility for IT-1 and SCI access
  • Active CSSP Analyst certification, such as CEH or CySA, with proof of certification
  • Five years of relevant cybersecurity experience
  • Two years performing root cause analysis of cybersecurity events and incidents
  • Working knowledge of at least two security tool types, including firewalls, IDS/IPS, host-based antivirus, data loss prevention, vulnerability management, forensics, malware analysis, or device hardening
  • Understanding of Defense-in-Depth
  • Ability to build scripts and tools to enhance threat detection and incident response
  • Experience with SPL, Python, or PowerShell
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Huntsville, AL
Year Founded: 2007

What We Do

Connected Logistics is a defense and health company specializing in network-enabled logistics, program management, and information system engineering for the Department of Defense and Army Business Mission Areas.

Similar Jobs

Horizon Industries Logo Horizon Industries

Cybersecurity Incident Response & Threat Detection Analyst

Information Technology • Security • Business Intelligence • Consulting
In-Office
Columbus, OH, USA
127 Employees

Sentar Inc. Logo Sentar Inc.

Cybersecurity Incident Response & Threat Detection Analyst

Information Technology • Analytics • Cybersecurity • Defense
In-Office
Columbus, OH, USA
In-Office
Columbus, OH, USA
529 Employees
100K-160K Annually

AGE Solutions LLC Logo AGE Solutions LLC

Cybersecurity Incident Response & Threat Detection Analyst

Information Technology • Business Intelligence • Consulting
In-Office
Columbus, OH, USA
103 Employees
110K-110K Annually

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
Los Angeles, California
38 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account