NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Monitoring & Evaluation Specialist in United States of America
3 days ago
Apply with autofill
Apply with autofill
Ardentmc·3 days ago
3 days ago

Detection & Monitoring Analyst

RemoteRemoteMid · 4+ yearsMonitoring & Evaluation Specialist

Sign up free to see how well your resume matches this role.

Boost your chances at ardentmc

How you compare FREE

?
Your scoreYour score: not yet known
→
17
Top 10%Top 10%: 17 out of 100

Top 10% of NextRaise users matched against Monitoring & Evaluation Specialist roles in United States.

Must-have skills for this role

  • siem
  • edr
  • detection engineering
  • incident response

PDF or DOCX · no account needed

Apply faster with autofill FREEardentmc uses Greenhouse - autofill it instead of retyping.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Monitor approved testing activity across SIEM, EDR/XDR, identity, endpoint, network, cloud, and ticketing systems.
  • Validate whether expected signals are generated, correlated, enriched, prioritized, and represented accurately in alerts.
  • Trace analyst triage, escalation, communications, and handling timelines against OCIG-approved criteria and documented agency expectations.
  • Perform alert investigation, packet and network traffic analysis, log correlation, IOC review, malware or phishing analysis when in approved scope, and event-timeline reconstruction.
  • Develop or recommend detection logic improvements, use cases, correlation rules, dashboards, and tuning actions while clearly separating recommendations from factual test results.
  • Preserve screenshots, alerts, queries, logs, timestamps, ticket records, analyst actions, and annotations in controlled evidence packages.
  • Identify telemetry gaps, blind spots, false negatives, inaccurate severity, weak correlation, and broken escalation paths.
  • Support vulnerability, remediation, and incident-specific reviews requested through OCIG.
  • Help deliver knowledge-transfer sessions on detection validation and evidence interpretation.

What they're looking for

  • Bachelor’s degree in cybersecurity, information assurance, computer science, or related field, or equivalent SOC experience.
  • Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
  • 4 years of hands-on SOC, detection engineering, intrusion analysis, continuous monitoring, incident response, network security, or threat-hunting experience.
  • Experience with SIEM and EDR/XDR platforms, log query languages, network telemetry, MITRE ATT&CK mapping, case management, and incident escalation.
  • Ability to document expected versus observed results precisely and maintain evidence integrity.
  • Knowledge of NIST CSF Detect outcomes and access-control telemetry.

Nice to have

  • SIEM content development, detection-as-code, or security analytics experience.
  • Experience with cloud-native logging, identity telemetry, SOAR, packet capture, threat intelligence, and forensic investigation.
  • Zero Trust monitoring or FedRAMP continuous-monitoring experience.
  • Government SOC or regulated-sector experience.

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

Ardent is seeking a Detection & Monitoring Analyst to join our team.  

This is a remote position with expected travel to Tallahassee, FL. 

Position Description:

Ardent is seeking a Detection & Monitoring Analyst that validates whether authorized test activity generates accurate security telemetry and whether agency detection processes identify, triage, escalate, and document events according to approved criteria. The analyst serves as the defender-side specialist connecting simulated activity to SIEM, EDR, network, identity, and ticketing evidence across a potentially broad multi-agency environment.

Responsibilities and Duties:

  • Monitor approved testing activity across SIEM, EDR/XDR, identity, endpoint, network, cloud, and ticketing systems.
  • Validate whether expected signals are generated, correlated, enriched, prioritized, and represented accurately in alerts.
  • Trace analyst triage, escalation, communications, and handling timelines against OCIG-approved criteria and documented agency expectations.
  • Perform alert investigation, packet and network traffic analysis, log correlation, IOC review, malware or phishing analysis when in approved scope, and event-timeline reconstruction.
  • Develop or recommend detection logic improvements, use cases, correlation rules, dashboards, and tuning actions while clearly separating recommendations from factual test results.
  • Preserve screenshots, alerts, queries, logs, timestamps, ticket records, analyst actions, and annotations in controlled evidence packages.
  • Identify telemetry gaps, blind spots, false negatives, inaccurate severity, weak correlation, and broken escalation paths.
  • Support vulnerability, remediation, and incident-specific reviews requested through OCIG.
  • Help deliver knowledge-transfer sessions on detection validation and evidence interpretation.

Requirements:

  • Bachelor’s degree in cybersecurity, information assurance, computer science, or related field, or equivalent SOC experience.
  • Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
  • 4 years of hands-on SOC, detection engineering, intrusion analysis, continuous monitoring, incident response, network security, or threat-hunting experience.
  • Experience with SIEM and EDR/XDR platforms, log query languages, network telemetry, MITRE ATT&CK mapping, case management, and incident escalation.
  • Ability to document expected versus observed results precisely and maintain evidence integrity.
  • Knowledge of NIST CSF Detect outcomes and access-control telemetry.

Preferred Qualifications:

  • SIEM content development, detection-as-code, or security analytics experience.
  • Experience with cloud-native logging, identity telemetry, SOAR, packet capture, threat intelligence, and forensic investigation.
  • Zero Trust monitoring or FedRAMP continuous-monitoring experience.
  • Government SOC or regulated-sector experience.

Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process.


Ardent is an equal opportunity employer. We will not discriminate in employment, recruitment, advertisements for employment, compensation, termination, upgrading, promotions, and other conditions of employment against any employee or job applicant on the bases of race, color, gender, national origin, age, religion, creed, disability, veteran's status, sexual orientation, gender identity, gender expression, or any other basis protected by state, local, or federal law.

Company

Ardentmc
Remote

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Ardentmc's careers site·first seen 18 Sept 2026·last verified 18 Sept 2026·How we source jobs

Similar jobs

  • Software Engineers: Paid Interview on AI Evaluation Tasks at teracUnited States–match not yet calculated
  • Quality Lead, Agentic AI Workflow Evaluation at innodataincIn Office, United States of America–match not yet calculated
  • Evaluation Associate at cityofphiladelphiaPhiladelphia, United States of America–match not yet calculated
  • Manager II, Engineering - Database Monitoring (AI) at DatadogNew York, United States of America–match not yet calculated
  • Management Consultants: Paid AI Output Evaluation at teracUnited States–match not yet calculated

Browse more jobs

  • Monitoring & Evaluation Specialist jobs in United States
  • Community Health Worker jobs in United States
  • Public Health Officer jobs in United States
  • Field Officer jobs in United States
  • Monitoring & Evaluation Specialist jobs in India
  • Monitoring & Evaluation Specialist jobs in France