Cybersecurity Incident Response & Threat Detection Analyst

Logc2

Columbus (OH)

On-site

USD 100,000 - 110,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
Life insurance
Disability insurance
401(k)
Paid Time Off

Job summary

Connected Logistics seeks a Cybersecurity Incident Response & Threat Detection Analyst to monitor, analyze, and respond to security events within a 24x7x365 environment protecting DLA networks.

The role requires a DOD Top Secret clearance and CSSP Analyst certification, plus five years of relevant experience. You will develop scripts in SPL/Python/PowerShell to strengthen defense-in-depth and reduce threats.

Qualifications

  • Active CSSP Analyst certification (e.g., CEH, CySA) and proof.

Responsibilities

  • Monitor SIEM platforms 24x7x365 to identify threats and indicators of compromise.
  • Detect, analyze, investigate, and respond to cybersecurity events and incidents affecting the enterprise network.
  • Perform root cause analysis to identify source, impact and contributing factors.
  • Review logs and traffic to identify trends indicating attack or compromise.
  • Proactively monitor for APTs and low-and-slow attacks and other emerging threats.
  • Execute incident response actions to contain, mitigate, and respond to incidents.
  • Leverage OSINT to stay aware of current and emerging threats.
  • Analyze information from multiple security technologies (firewalls, IDS/IPS, antivirus, DLP, etc.).
  • Provide technical analysis and sustainment support for cybersecurity tools and applications.
  • Assist with Defense-in-Depth security controls, signatures, and perimeter defenses.
  • Develop scripts/tools to enhance threat detection and response (SPL, Python, PowerShell).
  • Document events, findings and responses per operational requirements.
  • Maintain CSSP Analyst certification and stay current on threats and defense practices.

Skills

SIEM monitoring
Threat intelligence
OSINT
Incident response
Scripting
PowerShell

Tools

Firewall
IDS/IPS
Host-based antivirus
DLP
Vulnerability Mgmt
Forensics
Malware analysis
Device hardening

Job description

Description

Contingent Contract Award- Potential Start Date November 30, 2026

Bring your cybersecurity expertise to a mission that matters. Connected Logistics is seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support the Defense Logistics Agency (DLA) in protecting critical enterprise systems and networks from evolving cyber threats.

As part of a 24x7x365 cybersecurity mission, you will monitor and analyze security events, investigate potential incidents, identify indicators of compromise, and respond to sophisticated threats, including Advanced Persistent Threats and "low and slow" attack activity. You will work across SIEM and other cybersecurity technologies, leverage threat intelligence and OSINT, conduct root cause analysis, and help strengthen enterprise defense-in-depth capabilities. This opportunity is ideal for a cleared cybersecurity professional who thrives in a mission-focused environment where threat detection, technical analysis, and rapid response directly contribute to protecting critical defense operations.

Key Responsiblities
  • Monitor SIEM platforms and other cybersecurity monitoring tools within a 24x7x365 operational environment to identify potential security threats, suspicious activity, and indicators of compromise.
  • Detect, analyze, investigate, and respond to cybersecurity events and incidents affecting the enterprise network environment.
  • Perform root cause analysis of cybersecurity events and incidents to identify the source, impact, and contributing factors.
  • Review and analyze security logs, alerts, and network traffic to identify trends and activity indicative of an attack or compromise.
  • Proactively monitor for Advanced Persistent Threats (APTs), "low and slow" attacks, and other sophisticated or emerging cyber threats.
  • Execute appropriate incident response actions to help contain, mitigate, and respond to unauthorized or malicious activity within the environment.
  • Leverage cybersecurity intelligence resources, including Open Source Intelligence (OSINT), to maintain awareness of current and emerging threats.
  • Analyze information from multiple security technologies, including firewalls, IDS/IPS, host-based antivirus, data loss prevention, vulnerability management, digital forensics, malware analysis, and device hardening tools.
  • Provide technical analysis and sustainment support for enterprise cybersecurity tools and applications.
  • Assist with the implementation and application of Defense-in-Depth security controls, signatures, and perimeter defenses designed to reduce network threats.
  • Develop and maintain scripts, tools, and automation that enhance threat detection and incident response capabilities, using technologies such as SPL, Python, and PowerShell.
  • Document cybersecurity events, investigative findings, analysis, and response activities in accordance with applicable operational requirements.
  • Maintain required CSSP Analyst certification and remain current on cybersecurity threats, attack techniques, and defensive practices.
Requirements
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.
  • Must have an active CSSP Analyst certification (ex, CEH, CySA) and provide proof of certification.
  • Five (5) years relevant experience.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus,
  • Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, and Device Hardening.
  • Understanding of Defense-in-Depth.
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities; (Preferably in SPL, Python, PowerShell)
Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position

is $100,000.00 to $110,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

EOE/Disability/Veterans
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Connected-Logistics • Columbus (OH)

On-site
USD 100,000 - 110,000
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Connected Logistics • Columbus (OH)

On-site
USD 100,000 - 110,000
Cybersecurity Incident Response & Threat Detection Pro
Cybersecurity Incident Response & Threat Detection Pro

Connected-Logistics • Columbus (OH)

On-site
USD 100,000 - 110,000
Cyber Incident Response & Threat Detection Specialist
Cyber Incident Response & Threat Detection Specialist

Logc2 • Columbus (OH)

On-site
USD 100,000 - 110,000
Health insurance
Dental insurance
Vision insurance
+4
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Cybersecurity Jobs • Columbus (OH)

On-site
USD 100,000 - 160,000
Health insurance
Dental
Vision
+6
Cyber Security Technology Management Analyst
Cyber Security Technology Management Analyst

Connected Logistics • Huntsville (AL)

On-site
USD 110,000 - 120,000
Health insurance
Dental insurance
Vision insurance
+4
Cyber Incident Response & Threat Detection Specialist
Cyber Incident Response & Threat Detection Specialist

Connected Logistics • Columbus (OH)

On-site
USD 100,000 - 110,000
Cyber Security Technology Management Analyst
Cyber Security Technology Management Analyst

Logc2 • Huntsville (AL), Northern (KY)

Hybrid
USD 110,000 - 120,000
Health, dental, vision insurance
401(k) plan
Paid Time Off
Cyber Security Analyst
Cyber Security Analyst

Leidos • Adelphi (MD)

On-site
USD 87,000 - 157,000
Health and Wellness programs
Paid Leave
Retirement plan
Compliance SME, Intermediate
Compliance SME, Intermediate

Connected-Logistics • Huntsville (AL)

On-site
USD 140,000 - 150,000