DecisionPoint Corporation Logo

DecisionPoint Corporation

Security Monitoring / SIEM Analyst

Posted 4 Hours Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Monitors SIEM dashboards, correlates logs across security and cloud sources, investigates alerts, assesses threats, performs preliminary incident triage, tunes detection rules, documents findings, and escalates high-risk events. The analyst supports continuous monitoring, SOC playbooks, detection use cases, reporting, and coordination with incident response and engineering teams in a DoD-aligned environment.
The summary above was generated by AI
Overview

DecisionPoint seeks a Security Monitoring / SIEM Analyst to support enterprise cybersecurity operations within a federal and DoD-aligned mission environment. This role provides continuous monitoring of security events, log analysis, threat detection, and incident escalation in order to protect mission-critical systems. The analyst will review SIEM alerts, correlate data across multiple log sources, assess anomalous behavior, and support the investigative process for potential threats. 

The Security Monitoring / SIEM Analyst plays a critical role in maintaining situational awareness, enhancing detection capabilities, and strengthening cyber defense through proactive log analysis and coordination with incident response and engineering teams. 

This position is fully remote. 

Duties & Responsibilities

The Security Monitoring / SIEM Analyst will: 

  • Monitor SIEM dashboards and event queues for suspicious or anomalous cybersecurity activity. 
  • Correlate logs from multiple security data sources, including firewalls, endpoints, cloud services, and authentication platforms. 
  • Investigate events and alerts to determine severity, threat likelihood, and required escalation paths. 
  • Support information gathering and preliminary triage for cybersecurity incidents. 
  • Analyze user activity, authentication logs, and system behavior for potential compromise indicators. 
  • Assist with tuning SIEM rules, correlation logic, thresholds, and suppression patterns to improve detection accuracy. 
  • Document security event details, timelines, and investigative findings. 
  • Escalate confirmed or high-risk events to the incident response team with detailed analysis. 
  • Maintain daily and weekly reporting on events, trends, and identified threats. 
  • Participate in continuous monitoring and security operations cycles aligned with DoD RMF requirements. 
  • Contribute to the creation and refinement of SOC playbooks, detection use cases, and monitoring procedures. 
Qualifications

Clearance Requirement 

Must hold an active Top Secret clearance, supported by a Tier 5 background investigation. 


Education (Required) 

Bachelor’s degree in Information Security, Information Technology, Digital Forensics, or a related field. 


Experience (Required) 

  • Minimum 5 years of experience in security monitoring, SOC operations, threat analysis, or cybersecurity investigation. 
  • Experience analyzing logs and events from SIEM platforms. 
  • Experience identifying suspicious activity, anomalous behavior, or indicators of compromise (IOCs). 
  • Experience correlating data from multiple systems to assess potential threats. 
  • Experience documenting findings and escalating incidents to senior cybersecurity staff. 

Technical Knowledge (Required) 

  • Strong understanding of SIEM platforms, log aggregation tools, and event correlation. 
  • Knowledge of common attack vectors, threat behaviors, and MITRE ATT&CK techniques. 
  • Familiarity with DoD cybersecurity monitoring, continuous monitoring principles, and incident escalation. 
  • Knowledge of logs produced by operating systems, firewalls, authentication systems, and cloud platforms. 

Technical Knowledge (Preferred) 

  • Experience tuning SIEM correlation rules or creating new detection logic. 
  • Experience with endpoint detection tools, threat intelligence platforms, or security orchestration workflows. 
  • Familiarity with cloud log monitoring (AWS CloudTrail, GuardDuty, or equivalent). 

Certifications 

Required: 

  • Security+ 

Preferred: 

  • CySA+ 
  • Additional DoD 8570/8140 cyber operations certifications 

Skills 

  • Strong analytical, investigative, and problem-solving abilities for assessing security events. 
  • Excellent written and verbal communication skills for summarizing findings and documenting incidents. 
  • Ability to operate in a fast-paced SOC environment and manage multiple active investigations. 
  • High attention to detail for reviewing logs, identifying anomalies, and escalating confirmed threats. 
  • Ability to collaborate effectively with other cybersecurity, engineering, and incident response teams. 
Our Equal Employment Opportunity Policy
  • EEO and Affirmative Action Policy: DecisionPoint Corporation is an Equal Employment Opportunity and Affirmative Action employer. It is the policy of DecisionPoint Corporation to provide equal employment opportunity in accordance with all applicable Equal Employment Opportunity/Affirmative Action laws, directives and regulations to all employees and qualified applicants without regard to race, ethnicity, color, religion, national origin, sex, age, disability status, pregnancy, sexual orientation, gender identity, genetic information, protected veteran status, or any other protected status under Federal, State or Local laws.
  • Pay Transparency Policy: In accordance with Presidential Executive Order 13665, DecisionPoint Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
  • Authorization to Share Resume and Personal Information: By expressing your interest and submitting your resume for this position, you authorize DecisionPoint Corporation to share your resume, as well as personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should DecisionPoint Corporation. or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.

Similar Jobs

3 Minutes Ago
Easy Apply
Remote
USA
Easy Apply
186K-219K Annually
Senior level
186K-219K Annually
Senior level
Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
Build and operate secure, scalable multi-cloud infrastructure across AWS, GCP, and networking platforms. Develop self-service tooling, infrastructure-as-code defaults, cloud guardrails, and standardized platform patterns. Lead cross-team infrastructure initiatives, technical investigations, and operational improvements while partnering with security, compute, routing, and other infrastructure teams.
Top Skills: AWSCloud NetworkingDnsGCPGenerative AiGoLoad BalancersPulumiPythonTerraformTransit GatewaysVpcs
4 Minutes Ago
Easy Apply
Remote or Hybrid
Denver, CO, USA
Easy Apply
120K-182K Annually
Senior level
120K-182K Annually
Senior level
Fintech • HR Tech
Manage and grow a portfolio of strategic accounting firm partners for Gusto Pro. Responsibilities include account planning, QBRs, partner acquisition, renewals, upsells, contract negotiation, enablement, product adoption, executive relationship management, pipeline reporting, and cross-functional product feedback. The role requires frequent partner engagement, AI-enabled workflows, CRM and sales software experience, and travel to partner meetings and industry events.
Top Skills: Ai ToolsSalesforceTableauZoominfo
10 Minutes Ago
Remote or Hybrid
OH, USA
Senior level
Senior level
Financial Services
Leads reliability engineering for mission-critical network services, including resiliency reviews, incident response, root-cause analysis, automation, observability, and durable remediation. Architects self-healing and guarded remediation workflows using Python, Shell, and Ansible. Provides technical leadership across SD-WAN, SDN, routing, switching, security, and traffic services while embedding SRE practices, resilience testing, AI-assisted workflows, and security controls. Mentors engineers and drives service-level objectives, error budgets, and operational readiness.
Top Skills: .NetAnsibleCi/CdContainer OrchestrationContainersFirewallsJavaLoad BalancersObservabilityProxiesPythonRoutingSd-WanSdaSdnShellSpring BootSwitching

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account