Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SIEM / Threat Monitoring Analysts

Blue Rose Consulting Group, Inc.

Job Description

Job Description

SIEM / Threat Monitoring Analysts About Blue Rose Consulting Group

Blue Rose Consulting Group, Inc. (Blue Rose) is a certified HUBZone and Service-Disabled Veteran-Owned Small Business supporting Federal customers with mission-focused technology, professional services, and operational support. We are building a team for the anticipated Department of State Global Mission Operations Support (GMOS) effort supporting the Bureau of Diplomatic Technology, Enterprise Applications Directorate, Office of Consular Systems and Technology.

About the Role

Monitor, analyze, correlate, and investigate security events using SIEM, log-management, threat intelligence, OSINT, and incident-response processes. This position supports the Department of State Consular Affairs global information technology environment, which includes domestic and overseas facilities, on-premises infrastructure, cloud platforms, applications, databases, and enterprise support services. This is a contingent position based on contract award and final customer requirements.

What You’ll Do

• Monitor SIEM alerts, logs, audit trails, network events, endpoint events, and other telemetry for suspicious or policy-violating activity.

• Triage, correlate, investigate, document, and escalate potential security incidents in accordance with established procedures.

• Develop and tune SIEM searches, dashboards, correlation rules, alerts, reports, and use cases to improve detection quality.

• Use open-source intelligence, threat intelligence, and digital-forensics techniques to enrich investigations and assess potential impact.

• Coordinate with security, infrastructure, network, application, and incident-response teams during investigation, containment, recovery, and lessons-learned activities.

• Maintain incident timelines, case notes, evidence, metrics, trends, and management reports.

• Identify recurring patterns, coverage gaps, false positives, and opportunities to improve monitoring and response processes.

Minimum Requirements

• 3+ years of SIEM administration, security monitoring, threat analysis, or SOC experience.

• Hands-on experience with Splunk or another enterprise SIEM/log-management platform.

• Experience triaging and investigating alerts, correlating events, and escalating potential incidents.

• Familiarity with incident response, digital forensics, OSINT, threat intelligence, and recovery procedures.

• Ability to work shift-based operations when required and communicate clearly during high-priority incidents.

• Active Secret clearance; Top Secret may be preferred or required for certain assignments.

Preferred Qualifications

• Splunk, Security+, CySA+, GCIH, GCIA, or equivalent certification.

• Experience supporting Federal or Department of State security operations.

• Experience with cloud logs, endpoint detection and response, network security monitoring, or automation.

Compensation & Benefits

Compensation will be commensurate with experience, qualifications, assigned work location, and final contract requirements. Blue Rose offers a competitive benefits package for eligible full-time employees. Specific compensation and benefit details will be provided during the recruiting process.

Application Process

Please submit a current resume that clearly demonstrates the required experience, technical qualifications, certifications, and active security clearance. Candidates selected for consideration may be asked to provide additional information to support contract staffing and clearance verification.

Blue Rose Consulting Group, Inc. is an Equal Opportunity Employer.

This position is in anticipation of contract award and is contingent upon successful contract award. Applicants will be contacted regarding employment opportunities upon award notification.

Vacancy posted 10 days ago
Similar jobs that could be interesting for youBased on the SIEM / Threat Monitoring Analysts in Washington DC vacancy
  • Blue Rose Consulting Group, Inc. is seeking candidates for a role focused on SIEM administration and threat monitoring. Applicants should have over 3 years of relevant experience and be familiar with OSINT monitoring and digital forensics. The position requires at least... 
    Suggested
    Contract work

    Blue Rose Consulting Group

    Washington DC
    1 day ago
  • $100k - $124k

     ...SkyePoint Decisions is seeking a Tier 2 Monitoring Analyst to support the Diplomatic Security...  ...against and prevent potential cyber security threats and vulnerabilities. Monitor and...  ...Security Information and Event Management (SIEM) alerts to identify security issues for... 
    Suggested
    Contract work
    Remote work

    SkyePoint Decisions

    Arlington, VA
    1 day ago
  • Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst to monitor, detect, and respond to cyber threats across program networks. The role includes SIEM monitoring, incident handling, log analysis, and coordination with stakeholders to contain and recover... 
    Suggested

    NJVC

    Arlington, VA
    4 days ago
  •  ...mentorship needed to succeed, and your creativity will be rewarded.About the PositionDexis is seeking an Assessment, Monitoring, and Evaluation (AM&E) Analyst to support anticipated programming with the Department of State (DOS). This opportunity will provide policy... 
    Suggested
    Contract work
    Work at office
    Flexible hours

    Dexis Consulting Group

    Washington DC
    3 days ago
  •  ...Effectiveness ConsultingTravel Required:Up to 10%Clearance Required:Active SecretWhat You Will Do:Guidehouse is seeking a Monitoring and Evaluation (M&E) Analyst to provide M&E technical and advisory services to the Department of State. The M&E Analyst will help strengthen... 
    Suggested
    Full time
    Work at office
    Flexible hours

    Guidehouse

    Arlington, VA
    3 days ago
  • Blue Rose Consulting Group, Inc. is looking for Enterprise Operations Center (EOC) Analysts to monitor and manage enterprise IT environments. The role requires 3+ years of relevant experience and familiarity with various monitoring platforms. This position is contingent... 
    Contract work
    Shift work

    Blue Rose Consulting Group, Inc.

    Washington DC
    1 day ago
  • TLA is seeking a meticulous Information System Security Analyst to join our IT team in McLean, VA. The role focuses on safeguarding sensitive data and systems from cyber threats, monitoring activity, identifying vulnerabilities, and ensuring regulatory compliance. The ideal... 

    TLA Inc

    Mc Lean, VA
    5 days ago
  • Dovel Technologies, Inc is seeking a Monitoring & Evaluation Analyst to provide critical technical services for security programs. The role demands expertise in M&E frameworks, strong analytical skills, and the ability to produce detailed reports that inform leadership.... 
    Flexible hours

    Dovel Technologies

    Arlington, VA
    4 days ago
  • The Securitas Security Services USA, Inc. SOC Analyst position is based in Washington, DC and is fully in-person. You will monitor security systems, detect and respond to incidents, and coordinate with responders to protect people, facilities, assets and operations. Qualified... 

    Securitas Security Services USA, Inc.

    Washington DC
    4 days ago
  •  ...performance. Come join our team! Mobius is seeking a Navy Insider Threat HUB Analyst. In this role, you will study, analyze, advise, research and...  ...Insider Threat Hub possesses an integrated capability to monitor, audit, fuse, and analyze incoming information for insider... 
    Civilian Contractor
    Flexible hours

    mobius

    Arlington, VA
    5 days ago
  • NR Labs LLC in Washington, DC, is seeking an experienced Insider Threat Analyst to join our security operations. The role focuses on developing insider threat programs, monitoring alerts, and analyzing risk activity using Microsoft Sentinel and other tools. Candidates... 

    NR Labs LLC

    Washington DC
    2 days ago
  • About the Role: We are seeking a highly skilled Insider Threat Analyst to support our security operations by identifying, analyzing, and...  ...investigations and be adept at developing insider threat programs, monitoring suspicious activity, and gathering threat intelligence to... 
    3 days per week

    NR Labs LLC

    Washington DC
    2 days ago
  • $68k - $122k

     ...Leidos is seeking multiple ConMon Analysts to be responsible for overseeing and monitoring authorized IT systems (re-authorization and new systems) throughout...  ...standards to monitor security, vulnerabilities, and threats.  Ensure ConMon-related controls are properly implemented... 
    Remote work

    Leidos

    Alexandria, VA
    more than 2 months ago
  •  ...Security Operations teams.• Integrate platforms with SIEM and SOAR for enrichment, correlation, and case...  ...regulatory frameworks.• Experience with an insider threat, user behavior analytics, or patient privacy monitoring platforms.• Certifications such as CISSP, GCIA, GCIH... 
    Work experience placement
    2 days per week

    Children's National Health System

    Silver Spring, MD
    1 day ago
  • $80k - $128k

    ResponsibilitiesPeraton is currently seeking a Cyber Monitoring Signature Analyst to become part of Peraton’s Department...  ...build and enhance the organization's threat detection and response capabilities....  ...incorporate vetted alerting into a SIEM.Author new correlational searches in... 
    Contract work
    Interim role
    Shift work

    Peraton Corporation

    Beltsville, MD
    23 hours ago
  • Computational Physics, Inc. in Washington, DC, seeks an Operations Analyst for the USNO Operations Center. The role focuses on executing and monitoring automated tasks that generate Navy timing products, with on-site responsibilities and a 24/7 watch schedule. Applicants... 

    Computational Physics, Inc.

    Washington DC
    5 days ago
  • Agile Defense is seeking an Insider Threat Analyst to support the ITDP effort, performing day‑to‑day detection, analysis, and triage of potential...  ...direction of the Senior Insider Threat Analyst. The analyst monitors and investigates alerts across multiple enterprise... 

    Agile Defense

    Washington DC
    2 days ago
  • SkyePoint Decisions seeks a Threat Detection & Response Analyst to monitor enterprise systems, investigate security events, and respond to cybersecurity incidents across cloud, on-premises, and networks. The role emphasizes MITRE ATT&CK alignment and continuous monitoring... 
    Remote job

    SkyePoint Decisions

    Bethesda, MD
    2 days ago
  • $125k - $150k

     ...execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins...  ...delivering 24/7/365 continuous monitoring, intrusion detection, threat hunting,...  ...PCAP, log data, endpoint telemetry, and SIEM data; operate ahead of automated detection... 
    Full time
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    Revolutional, LLC

    Washington DC
    15 days ago
  • Position: Call for Monitoring, Evaluation, Research, and Learning (MERL) Consultants Location: Flexible Job Id: 2582 # of Openings: 1 ABOUT URC URC is a globally recognized leader in healthcare quality improvement. Since 1965, we have been committed to building and... 
    Local area
    Flexible hours

    University Research Co., LLC

    Bethesda, MD
    5 days ago
  • $131.3k - $237.35k

     ...for a Senior Incident Response Analyst to support the DHS CISA Program....  ...Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the...  ...maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives... 
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    4 days ago
  • $92k - $153k

     ...Obtain Public TrustWhat You Will Do:Monitor security alerts and events in...  ...security incidents using SIEM, endpoint, network, and other security...  ...high-risk incidents to senior analysts or incident response teams when appropriate.Support threat detection, alert tuning, and... 
    Full time
    Work experience placement
    Flexible hours
    Shift work

    Guidehouse

    Washington DC
    2 days ago
  •  ...Defense & Incident Responder (SOC Analyst) 100% work on site - no...  ...Responder is responsible for monitoring, analyzing, and responding to...  ...logs, correlation data, and threat intelligence to determine the...  ...cybersecurity incidents Review SIEM, IDS/IPS, EDR, and related... 
    Remote work

    Gormat

    Arlington, VA
    3 days ago
  • $131.3k - $237.35k

     ...for a Senior Incident Response Analyst to support the DHS CISA Program....  ...Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the...  ...maintain security tools (EDR, IDS, SIEM, etc.) to reduce false positives... 
    Flexible hours

    Leidos

    Arlington, VA
    4 days ago
  • $100k - $120k

     ...partnering with Expression to find an SOC Analyst . See details below: About The Role...  .... In this role, you will provide cyber threat monitoring, analysis, and incident response...  ...agencies. Hands-on experience with SIEM platforms, IDS/IPS, and endpoint monitoring... 
    For contractors
    Work at office
    Immediate start
    Shift work

    Hatchit Co

    Washington DC
    3 days ago
  • $94k - $127k

     ...Description Incident Response Analyst Xcelerate Solutions is seeking...  ...when assigned. Perform proactive monitoring and analysis across SIEM, endpoint, firewall, IDS/IPS, web-security...  ...attempts and support urgent threat mitigation. Minimum Qualifications... 

    Xcelerate Solutions

    Alexandria, VA
    10 hours ago
  •  ...a Mid-Level Security Operations Center Analyst to support SBA in Washington, DC. You will monitor, detect, and respond to cybersecurity threats across SBA infrastructure, collaborating...  ...You will analyze security events, refine SIEM rules, and assist in incident response,... 

    Koniag Services, Inc.

    Washington DC
    4 days ago
  •  ...seeking a Senior Incident Response Analyst to join our team in support of...  ...Center, you will help monitor, detect, investigate, and respond to cybersecurity threats affecting a large‑scale enterprise...  ...security technologies, including SIEM, EDR, IDS/IPS, and related monitoring... 
    Permanent employment

    Tetrad Digital Integrity

    Arlington, VA
    4 days ago
  •  ...vital interests. DESCRIPTION The Insider Threat Analyst supports the Insider Threat Program...  ...Senior Insider Threat Analyst. The analyst monitors and investigates alerts across multiple...  ...or more enterprise insider threat, DLP, SIEM, or UEBA/UAM tools (e.g., Splunk, DTEX,... 

    Agile Defense

    Washington DC
    2 days ago
  • $90k - $107k

     ...Decisions is seeking a CIRT Tier 2 Analyst to support the Diplomatic...  ...anomalous activity and potential threats. Protect against and prevent...  ...to events and incidents. Monitor and respond to the CIRT Security...  ...Information and Event Management (SIEM) platforms (e.g. Splunk,... 
    Contract work
    Local area
    Remote work
    Shift work

    SkyePoint Decisions

    Laurel, MD
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SIEM / Threat Monitoring Analysts. Be the first to apply!