Cybersecurity Incident Response & Threat Detection Analyst

Connected Logistics

Columbus (OH)

On-site

USD 100,000 - 110,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Connected Logistics seeks an experienced Cybersecurity Incident Response & Threat Detection Analyst to support the Defense Logistics Agency in safeguarding critical enterprise systems and networks.

This 24x7 mission emphasizes monitoring, rapid incident response, and root-cause analysis across SIEM tools, OSINT, and scripting in SPL, Python, and PowerShell. A TS clearance and CSSP Analyst cert are required.

Qualifications

  • Must possess a DOD TOP SECRET Clearance and be eligible for IT-1 and SCI access.
  • Active CSSP Analyst certification (e.g., CEH, CySA) and provide proof.

Responsibilities

  • Monitor SIEM platforms 24x7x365 to identify threats and indicators of compromise.
  • Detect, analyze, investigate, and respond to cybersecurity events affecting the enterprise network.
  • Perform root cause analysis to identify sources and factors; review logs and traffic for attack patterns.
  • Proactively monitor for APTs and low-and-slow attacks; use OSINT to stay aware of threats.
  • Develop scripts/tools to enhance threat detection and incident response; document findings.

Skills

SIEM monitoring
Threat analysis
Incident response
Root cause analysis
Scripting (Python, PowerShell, SPL)

Tools

Firewall
IDS/IPS
Host-based antivirus
Data Loss Prevention
Vulnerability Management
Forensics
Malware Analysis
Device Hardening

Job description

Contingent Contract Award- Potential Start Date November 30, 2026

Bring your cybersecurity expertise to a mission that matters. Connected Logistics is seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support the Defense Logistics Agency (DLA) in protecting critical enterprise systems and networks from evolving cyber threats.

As part of a 24x7x365 cybersecurity mission, you will monitor and analyze security events, investigate potential incidents, identify indicators of compromise, and respond to sophisticated threats, including Advanced Persistent Threats and "low and slow" attack activity. You will work across SIEM and other cybersecurity technologies, leverage threat intelligence and OSINT, conduct root cause analysis, and help strengthen enterprise defense-in-depth capabilities. This opportunity is ideal for a cleared cybersecurity professional who thrives in a mission-focused environment where threat detection, technical analysis, and rapid response directly contribute to protecting critical defense operations.

Key Responsibilities
  • Monitor SIEM platforms and other cybersecurity monitoring tools within a 24x7x365 operational environment to identify potential security threats, suspicious activity, and indicators of compromise.
  • Detect, analyze, investigate, and respond to cybersecurity events and incidents affecting the enterprise network environment.
  • Perform root cause analysis of cybersecurity events and incidents to identify the source, impact, and contributing factors.
  • Review and analyze security logs, alerts, and network traffic to identify trends and activity indicative of an attack or compromise.
  • Proactively monitor for Advanced Persistent Threats (APTs), "low and slow" attacks, and other sophisticated or emerging cyber threats.
  • Execute appropriate incident response actions to help contain, mitigate, and respond to unauthorized or malicious activity within the environment.
  • Leverage cybersecurity intelligence resources, including Open Source Intelligence (OSINT), to maintain awareness of current and emerging threats.
  • Analyze information from multiple security technologies, including firewalls, IDS/IPS, host-based antivirus, data loss prevention, vulnerability management, digital forensics, malware analysis, and device hardening tools.
  • Provide technical analysis and sustainment support for enterprise cybersecurity tools and applications.
  • Assist with the implementation and application of Defense-in-Depth security controls, signatures, and perimeter defenses designed to reduce network threats.
  • Develop and maintain scripts, tools, and automation that enhance threat detection and incident response capabilities, using technologies such as SPL, Python, and PowerShell.
  • Document cybersecurity events, investigative findings, analysis, and response activities in accordance with applicable operational requirements.
  • Maintain required CSSP Analyst certification and remain current on cybersecurity threats, attack techniques, and defensive practices.
Requirements
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.
  • Must have an active CSSP Analyst certification (ex, CEH, CySA) and provide proof of certification.
  • Five (5) years relevant experience.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus,
  • Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, and Device Hardening.
  • Understanding of Defense-in-Depth.
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities; (Preferably in SPL, Python, PowerShell)
Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position

is $100,000.00 to $110,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We're excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Connected-Logistics • Columbus (OH)

On-site
USD 100,000 - 110,000
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Logc2 • Columbus (OH)

On-site
USD 100,000 - 110,000
Health insurance
Dental insurance
Vision insurance
+4
Cyber Security Technology Management Analyst
Cyber Security Technology Management Analyst

Connected Logistics • Huntsville (AL)

On-site
USD 110,000 - 120,000
Health insurance
Dental insurance
Vision insurance
+4
Cyber Security Technology Management Analyst
Cyber Security Technology Management Analyst

Logc2 • Huntsville (AL), Northern (KY)

Hybrid
USD 110,000 - 120,000
Health, dental, vision insurance
401(k) plan
Paid Time Off
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Cybersecurity Jobs • Columbus (OH)

On-site
USD 100,000 - 160,000
Health insurance
Dental
Vision
+6
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected Logistics • New Cumberland

On-site
USD 140,000 - 150,000
Health, dental, vision, life insurance
401(k) plan
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected Logistics • Battle Creek (MI)

On-site
USD 140,000 - 150,000
Health coverage
401(k) plan
Paid time off
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected Logistics • Ogden (UT)

On-site
USD 140,000 - 150,000
Health benefits
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected Logistics • Philadelphia

On-site
USD 140,000 - 150,000
Health insurance
Dental insurance
Vision insurance
+4
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected Logistics • Columbus (OH)

On-site
USD 140,000 - 150,000
Health insurance
Dental insurance
Vision insurance
+4