SIEM / Threat Monitoring Analysts
Blue Rose Consulting Group, Inc.
Job Description
Job Description
SIEM / Threat Monitoring Analysts About Blue Rose Consulting Group
Blue Rose Consulting Group, Inc. (Blue Rose) is a certified HUBZone and Service-Disabled Veteran-Owned Small Business supporting Federal customers with mission-focused technology, professional services, and operational support. We are building a team for the anticipated Department of State Global Mission Operations Support (GMOS) effort supporting the Bureau of Diplomatic Technology, Enterprise Applications Directorate, Office of Consular Systems and Technology.
About the RoleMonitor, analyze, correlate, and investigate security events using SIEM, log-management, threat intelligence, OSINT, and incident-response processes. This position supports the Department of State Consular Affairs global information technology environment, which includes domestic and overseas facilities, on-premises infrastructure, cloud platforms, applications, databases, and enterprise support services. This is a contingent position based on contract award and final customer requirements.
What You’ll Do• Monitor SIEM alerts, logs, audit trails, network events, endpoint events, and other telemetry for suspicious or policy-violating activity.
• Triage, correlate, investigate, document, and escalate potential security incidents in accordance with established procedures.
• Develop and tune SIEM searches, dashboards, correlation rules, alerts, reports, and use cases to improve detection quality.
• Use open-source intelligence, threat intelligence, and digital-forensics techniques to enrich investigations and assess potential impact.
• Coordinate with security, infrastructure, network, application, and incident-response teams during investigation, containment, recovery, and lessons-learned activities.
• Maintain incident timelines, case notes, evidence, metrics, trends, and management reports.
• Identify recurring patterns, coverage gaps, false positives, and opportunities to improve monitoring and response processes.
Minimum Requirements• 3+ years of SIEM administration, security monitoring, threat analysis, or SOC experience.
• Hands-on experience with Splunk or another enterprise SIEM/log-management platform.
• Experience triaging and investigating alerts, correlating events, and escalating potential incidents.
• Familiarity with incident response, digital forensics, OSINT, threat intelligence, and recovery procedures.
• Ability to work shift-based operations when required and communicate clearly during high-priority incidents.
• Active Secret clearance; Top Secret may be preferred or required for certain assignments.
Preferred Qualifications• Splunk, Security+, CySA+, GCIH, GCIA, or equivalent certification.
• Experience supporting Federal or Department of State security operations.
• Experience with cloud logs, endpoint detection and response, network security monitoring, or automation.
Compensation & BenefitsCompensation will be commensurate with experience, qualifications, assigned work location, and final contract requirements. Blue Rose offers a competitive benefits package for eligible full-time employees. Specific compensation and benefit details will be provided during the recruiting process.
Application ProcessPlease submit a current resume that clearly demonstrates the required experience, technical qualifications, certifications, and active security clearance. Candidates selected for consideration may be asked to provide additional information to support contract staffing and clearance verification.
Blue Rose Consulting Group, Inc. is an Equal Opportunity Employer.
This position is in anticipation of contract award and is contingent upon successful contract award. Applicants will be contacted regarding employment opportunities upon award notification.
- Blue Rose Consulting Group, Inc. is seeking candidates for a role focused on SIEM administration and threat monitoring. Applicants should have over 3 years of relevant experience and be familiar with OSINT monitoring and digital forensics. The position requires at least...SuggestedContract work
$100k - $124k
...SkyePoint Decisions is seeking a Tier 2 Monitoring Analyst to support the Diplomatic Security... ...against and prevent potential cyber security threats and vulnerabilities. Monitor and... ...Security Information and Event Management (SIEM) alerts to identify security issues for...SuggestedContract workRemote work- Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst to monitor, detect, and respond to cyber threats across program networks. The role includes SIEM monitoring, incident handling, log analysis, and coordination with stakeholders to contain and recover...Suggested
- ...mentorship needed to succeed, and your creativity will be rewarded.About the PositionDexis is seeking an Assessment, Monitoring, and Evaluation (AM&E) Analyst to support anticipated programming with the Department of State (DOS). This opportunity will provide policy...SuggestedContract workWork at officeFlexible hours
- ...Effectiveness ConsultingTravel Required:Up to 10%Clearance Required:Active SecretWhat You Will Do:Guidehouse is seeking a Monitoring and Evaluation (M&E) Analyst to provide M&E technical and advisory services to the Department of State. The M&E Analyst will help strengthen...SuggestedFull timeWork at officeFlexible hours
- Blue Rose Consulting Group, Inc. is looking for Enterprise Operations Center (EOC) Analysts to monitor and manage enterprise IT environments. The role requires 3+ years of relevant experience and familiarity with various monitoring platforms. This position is contingent...Contract workShift work
- TLA is seeking a meticulous Information System Security Analyst to join our IT team in McLean, VA. The role focuses on safeguarding sensitive data and systems from cyber threats, monitoring activity, identifying vulnerabilities, and ensuring regulatory compliance. The ideal...
- Dovel Technologies, Inc is seeking a Monitoring & Evaluation Analyst to provide critical technical services for security programs. The role demands expertise in M&E frameworks, strong analytical skills, and the ability to produce detailed reports that inform leadership....Flexible hours
- The Securitas Security Services USA, Inc. SOC Analyst position is based in Washington, DC and is fully in-person. You will monitor security systems, detect and respond to incidents, and coordinate with responders to protect people, facilities, assets and operations. Qualified...
- ...performance. Come join our team! Mobius is seeking a Navy Insider Threat HUB Analyst. In this role, you will study, analyze, advise, research and... ...Insider Threat Hub possesses an integrated capability to monitor, audit, fuse, and analyze incoming information for insider...Civilian ContractorFlexible hours
- NR Labs LLC in Washington, DC, is seeking an experienced Insider Threat Analyst to join our security operations. The role focuses on developing insider threat programs, monitoring alerts, and analyzing risk activity using Microsoft Sentinel and other tools. Candidates...
- About the Role: We are seeking a highly skilled Insider Threat Analyst to support our security operations by identifying, analyzing, and... ...investigations and be adept at developing insider threat programs, monitoring suspicious activity, and gathering threat intelligence to...3 days per week
$68k - $122k
...Leidos is seeking multiple ConMon Analysts to be responsible for overseeing and monitoring authorized IT systems (re-authorization and new systems) throughout... ...standards to monitor security, vulnerabilities, and threats. Ensure ConMon-related controls are properly implemented...Remote work- ...Security Operations teams.• Integrate platforms with SIEM and SOAR for enrichment, correlation, and case... ...regulatory frameworks.• Experience with an insider threat, user behavior analytics, or patient privacy monitoring platforms.• Certifications such as CISSP, GCIA, GCIH...Work experience placement2 days per week
$80k - $128k
ResponsibilitiesPeraton is currently seeking a Cyber Monitoring Signature Analyst to become part of Peraton’s Department... ...build and enhance the organization's threat detection and response capabilities.... ...incorporate vetted alerting into a SIEM.Author new correlational searches in...Contract workInterim roleShift work- Computational Physics, Inc. in Washington, DC, seeks an Operations Analyst for the USNO Operations Center. The role focuses on executing and monitoring automated tasks that generate Navy timing products, with on-site responsibilities and a 24/7 watch schedule. Applicants...
- Agile Defense is seeking an Insider Threat Analyst to support the ITDP effort, performing day‑to‑day detection, analysis, and triage of potential... ...direction of the Senior Insider Threat Analyst. The analyst monitors and investigates alerts across multiple enterprise...
- SkyePoint Decisions seeks a Threat Detection & Response Analyst to monitor enterprise systems, investigate security events, and respond to cybersecurity incidents across cloud, on-premises, and networks. The role emphasizes MITRE ATT&CK alignment and continuous monitoring...Remote job
$125k - $150k
...execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins... ...delivering 24/7/365 continuous monitoring, intrusion detection, threat hunting,... ...PCAP, log data, endpoint telemetry, and SIEM data; operate ahead of automated detection...Full timeWork experience placementLocal areaRemote workFlexible hoursShift work- Position: Call for Monitoring, Evaluation, Research, and Learning (MERL) Consultants Location: Flexible Job Id: 2582 # of Openings: 1 ABOUT URC URC is a globally recognized leader in healthcare quality improvement. Since 1965, we have been committed to building and...Local areaFlexible hours
$131.3k - $237.35k
...for a Senior Incident Response Analyst to support the DHS CISA Program.... ...Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the... ...maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives...Full timeFlexible hours$92k - $153k
...Obtain Public TrustWhat You Will Do:Monitor security alerts and events in... ...security incidents using SIEM, endpoint, network, and other security... ...high-risk incidents to senior analysts or incident response teams when appropriate.Support threat detection, alert tuning, and...Full timeWork experience placementFlexible hoursShift work- ...Defense & Incident Responder (SOC Analyst) 100% work on site - no... ...Responder is responsible for monitoring, analyzing, and responding to... ...logs, correlation data, and threat intelligence to determine the... ...cybersecurity incidents Review SIEM, IDS/IPS, EDR, and related...Remote work
$131.3k - $237.35k
...for a Senior Incident Response Analyst to support the DHS CISA Program.... ...Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the... ...maintain security tools (EDR, IDS, SIEM, etc.) to reduce false positives...Flexible hours$100k - $120k
...partnering with Expression to find an SOC Analyst . See details below: About The Role... .... In this role, you will provide cyber threat monitoring, analysis, and incident response... ...agencies. Hands-on experience with SIEM platforms, IDS/IPS, and endpoint monitoring...For contractorsWork at officeImmediate startShift work$94k - $127k
...Description Incident Response Analyst Xcelerate Solutions is seeking... ...when assigned. Perform proactive monitoring and analysis across SIEM, endpoint, firewall, IDS/IPS, web-security... ...attempts and support urgent threat mitigation. Minimum Qualifications...- ...a Mid-Level Security Operations Center Analyst to support SBA in Washington, DC. You will monitor, detect, and respond to cybersecurity threats across SBA infrastructure, collaborating... ...You will analyze security events, refine SIEM rules, and assist in incident response,...
- ...seeking a Senior Incident Response Analyst to join our team in support of... ...Center, you will help monitor, detect, investigate, and respond to cybersecurity threats affecting a large‑scale enterprise... ...security technologies, including SIEM, EDR, IDS/IPS, and related monitoring...Permanent employment
- ...vital interests. DESCRIPTION The Insider Threat Analyst supports the Insider Threat Program... ...Senior Insider Threat Analyst. The analyst monitors and investigates alerts across multiple... ...or more enterprise insider threat, DLP, SIEM, or UEBA/UAM tools (e.g., Splunk, DTEX,...
$90k - $107k
...Decisions is seeking a CIRT Tier 2 Analyst to support the Diplomatic... ...anomalous activity and potential threats. Protect against and prevent... ...to events and incidents. Monitor and respond to the CIRT Security... ...Information and Event Management (SIEM) platforms (e.g. Splunk,...Contract workLocal areaRemote workShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SIEM / Threat Monitoring Analysts. Be the first to apply!
- clinical research monitor Washington DC
- monitor tech Washington DC
- patient safety monitor Washington DC
- quality assurance monitor Washington DC
- program monitor Washington DC
- computer lab monitor Washington DC
- pool monitor Washington DC
- monitor Washington DC
- community monitor Washington DC
- security monitor Washington DC

