Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
SIEM Analyst image - Rise Careers
Job details

SIEM Analyst

Description

Contingent Contract Award


Connected Logistics is looking for a Security Information and Event Management (SIEM) Analyst to assist GPO in the development, maintenance, and maturing of the current GPO IT Zero Trust Architecture.


The SIEM Support Analyst shall perform MDE support activities to include preparation of Task Order Management Plans, cost analyses, activity and project tracking schedules, risk registers, and risk and issue mitigation strategies for all GPO SOC activities. This task consists of the following subtasks:


Log Management

  1. Review of ingestion and normalization of logs
  2. Ability to ingest and analyze all common log formats
  3. Consulting on log storage method and pricing tier 
  4. Consulting on cost management recommendations for log pricing 


Sentinel 

  1. Sentinel management with regularly updated baseline 
  2. Continuous deployment of updated rules 


Threat Intelligence

  1. Disburse threat intelligence to key employees
  2. Ability to share hardening recommendations and update baseline from lessons learned across full client base 


Staff support

  1. Educational development – ability to leverage Microsoft partnership and team’s technical knowledge to hold workshops and training on Azure and M365 Cloud Services 
  2. Continuous Improvement
  3. Review of Architecture to look for gaps in cybersecurity solution
  4. iDrive efficiencies in logging and log storage

Program Management Support

  1. Recurring operational touchpoints
  2. Quarterly Executive Management reviews


Automated Response


Utilize an expert system designed to enhance security investigations by leveraging comprehensive data analysis capabilities. It seamlessly integrates both external and internal data sources to gather, correlate, and analyze entity-related information, ensuring a holistic view of each security case. The expert system employs sophisticated algorithms to cross-reference and validate data, making precise determinations or enriching cases with substantial evidence. This process not only aids analysts in making informed decisions but also accelerates the incident response time by providing actionable insights and detailed context. By automating the investigation workflow, our expert system significantly reduces the manual effort required, allowing security teams to focus on more complex threats and strategic initiatives.


24x7x365 monitoring of security events

  1. Desktop Advanced End Point Detection and Response threat detection and threat response services related to an advanced end point detection and response technology such as Microsoft Defender, 365 Defender, Defender for Office, Trellix, etc.
  2. Server Security Detection and Response – threat detection and threat hunting services to quickly detect and investigate endpoint attacks related to Server Endpoints
  3. Firewall Security Monitoring Service – Monitor and Management of security and system health-related alarms. Alerting and Notification of validated attack threats on primary Firewall, Network Devices
  4. AD User Monitoring - Monitoring, Logging and Reporting of active directory security user’s behavior security alarms. Alerting and Notification of validated attack threats according to applicable user activity.
  5. Monitoring Microsoft Sentinel instances
  6. Ability to analyze syslog and CEF 
  7. Custom alerting capabilities based on business requirements.


Incident Handling support

  1. Incident management support for SOC 
  2. Recurring operational reviews with designated SOC Lead
  3. Provide recommended best business practices when responding to events

Requirements

  • 3 yr. working knowledge of GCC-H/GCC required.
  • All approved candidates will be required to pass a GPO public trust background check ahead of onboarding.
  • Knowledge of one or more below technologies: Microsoft Sentinel, Microsoft Azure, Microsoft DfE, Xacta 360/IO, Zscaler, FedRamp, Cloudflare, Netwitness, Tenable IO, Nexpose, Armis, Trellix HX/CM, ServiceNow.


 

Connected Logistics respects the need for confidentiality for all applicants.


Connected Logistics offers an excellent benefits package that includes health, dental, vision, life and disability insurance, a great 401(k) package, and generous Paid Time Off.


EQUAL OPPORTUNITY EMPLOYER. It is our policy to abide by all federal, state and local laws prohibiting employment discrimination solely on the basis of a person’s race, religious creed, color, national origin, ancestry, physical disability, mental condition (including, but not limited to, cancer related or HIV related), marital status, sex, gender (including sex stereotyping), age, sexual orientation, military status, or any other protected status except where a reasonable, bona fide occupational qualification exists

Similar Jobs
Connected Logistics Hybrid Washington, District of Columbia, United States
Posted 6 days ago

Experienced RMF A&A Analyst needed to assist GPO with IT security measures and compliance in a critical contract role.

Connected Logistics Hybrid Washington, District of Columbia, United States
Posted 6 days ago

A Microsoft Defender for Endpoint Support Analyst role at Connected Logistics to assist in GPO IT security advancements and endpoint agent deployments.

EXPANSIA Hybrid Hybrid with SCIF access in San Antonio TX, Rome NY, Arlington VA.
Posted 11 days ago

A veteran-owned tech company seeks a Collaboration Services Engineer II to support cloud and collaboration systems in a hybrid role with SCIF access.

D-ploy seeks an experienced IT Onsite Support Engineer to deliver hardware and software support at their Basel site within a regulated pharmaceutical setting.

Posted 13 days ago

Experienced O365 Cloud Administrator needed to manage secure Office 365 services for a key defense agency in Oklahoma City.

Photo of the Rise User
Seneca Holdings Hybrid Chantilly, Virginia, United States
Posted 4 hours ago

Lead the Enterprise Architecture team at Seneca Holdings to drive IT strategy and implement secure, scalable systems aligning with business goals.

Photo of the Rise User
Posted 4 days ago

Intradiem is looking for a remote Manager, DevSecOps to lead and enhance secure cloud-based DevOps practices for their automation platform.

Photo of the Rise User
Ramp Hybrid San Fransisco
Posted 5 days ago
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Transparent & Candid
Mission Driven
Diversity of Opinions
Empathetic
Fast-Paced
Rise from Within
Work/Life Harmony
Take Risks
Startup Mindset
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Employee Resource Groups
401K Matching
Paid Holidays
Paid Sick Days

Ramp is looking for a proactive IT Site Lead to oversee and enhance onsite IT operations at their San Francisco office.

Lead BIW's IT Network team onsite in Bath to maintain secure, efficient network operations supporting defense contracting.

BETSOL is looking for an experienced SOC Level 3 Analyst & Incident Response Lead to take charge of managing complex security events and incident response operations in a hybrid work environment.

Photo of the Rise User
Posted 4 days ago
Inclusive & Diverse
Growth & Learning
Customer-Centric
Collaboration over Competition
Medical Insurance
Maternity Leave
Flex-Friendly
401K Matching

Support Vanta's security-driven mission by ensuring seamless IT operations and employee support as an IT Operations Engineer in a hybrid work setting.

Photo of the Rise User
Posted 7 days ago

Cyber Incident Manager role at Node. Digital to lead federal cyber incident response and mitigation efforts.

Photo of the Rise User
Posted 4 days ago
Dental Insurance
Disability Insurance
Vision Insurance
Performance Bonus
Family Medical Leave
Paid Holidays
Sabbatical

LogicGate is seeking a Sr. IT Operations Engineer to lead secure cloud-based IT operations and automation in a fully remote environment.

Photo of the Rise User
ENTEK International Hybrid Henderson, Nevada, United States
Posted 7 days ago

Experienced Systems Engineer needed at ENTEK in Henderson, NV to oversee IT infrastructure, ensure system reliability, and lead technical projects in an on-site senior role.

Posted 11 days ago

PowerSchool is hiring a Senior Security Engineer to enhance and maintain enterprise security through Azure Active Directory, CrowdStrike, and other systems in a remote capacity.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Contract, unknown
DATE POSTED
July 17, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!