Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Operations Center Analyst - High

Koniag Services, Inc.

Security Operations Center Analyst - High Washington, DC, USA Job Description Posted Wednesday, July 15, 2026 at 4:00 AM Koniag Data Solutions, LLC, a Koniag Government Services company , is seeking a Security Operations Center Analyst - High to support KDS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust. We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more. Koniag Data Solutions, a Koniag Government Services company, is seeking a highly skilled and experienced Senior Security Operations Center (SOC) Analyst to support the U.S. Small Business Administration (SBA). The ideal candidate is a seasoned cybersecurity professional with extensive experience in advanced security operations, threat detection, and incident response within complex federal government IT environments. This individual will serve as a senior technical resource within SBA's SOC, providing expert-level analysis, mentorship to junior analysts, and close collaboration with the Cybersecurity Operations Technical Lead to protect SBA's enterprise IT environment from sophisticated and evolving cyber threats. The Senior SOC Analyst will serve as an advanced-level cybersecurity operations professional within SBA's Security Operations Center, providing expert threat detection, in-depth security event analysis, and incident response leadership while mentoring junior and mid-level SOC staff and driving continuous improvement of SOC capabilities and processes. Principal responsibilities will include but are not limited to: Perform advanced, continuous monitoring and analysis of security alerts and events generated by SBA's SIEM platform, IDS/IPS systems, endpoint detection and response (EDR) tools, and other security monitoring technologies, applying expert-level analytical skills to accurately detect, classify, and prioritize security incidents and threats targeting SBA's enterprise environment. Lead and conduct in-depth investigation and analysis of complex security incidents, applying advanced knowledge of threat actor TTPs, attack methodologies, and the MITRE ATT&CK framework to determine incident scope, root cause, and full impact, and driving incident response activities through to successful resolution. Serve as a senior escalation point for security incidents and complex alerts escalated by junior and mid-level SOC analysts, providing expert technical guidance, mentorship, and decision support to ensure timely and effective incident triage, escalation, and response. Lead and support incident response activities for significant security incidents affecting SBA's enterprise environment, coordinating containment, eradication, recovery, and post-incident review activities in accordance with SBA's incident response policies and NIST SP 800-61 guidelines, and communicating incident status and findings to the Cybersecurity Operations Technical Lead and SBA leadership. Conduct advanced log analysis and correlation across diverse data sources, including Windows Event Logs, Syslog, cloud platform logs, firewall logs, web proxy logs, EDR telemetry, and application logs, to reconstruct attack timelines, identify malicious activity patterns, and develop actionable intelligence to support incident response and detection improvement activities. Develop, tune, and optimize SIEM detection rules, correlation logic, alert thresholds, and dashboards to improve the accuracy and effectiveness of SBA's threat detection capabilities, reduce false positive rates, and enhance SOC analyst efficiency Perform advanced threat hunting activities, proactively searching SBA's enterprise environment for hidden threats, indicators of compromise (IOCs), and adversary TTPs using the MITRE ATT&CK framework, threat intelligence feeds, and advanced analytical techniques to identify malicious activity that has evaded automated detection. Analyze and operationalize threat intelligence from government and commercial sources, including US-CERT, CISA, ISACs, and commercial threat intelligence platforms, to identify relevant threats, update detection capabilities, and prioritize SOC monitoring and response activities based on current threat landscape intelligence. Develop high-quality incident reports, after-action reviews (AARs), threat analysis reports, and technical documentation capturing incident timelines, root cause analysis, findings, and actionable remediation recommendations, tailored to both technical and non-technical SBA audiences. Support and contribute to vulnerability management activities, providing expert analysis of vulnerability scan results, assessing real-world exploitability and risk, and advising on remediation prioritization strategies to support timely and effective vulnerability remediation across SBA's system portfolio. Develop, review, and maintain SOC Standard Operating Procedures (SOPs), incident response playbooks, runbooks, and knowledge base articles, ensuring all SOC operational documentation remains current, accurate, and reflective of evolving threats and best practices. Provide active mentorship, technical guidance, and on-the-job training to junior and mid-level SOC analysts, contributing to professional development, knowledge sharing, and the overall elevation of SOC team capability and performance. Support the planning and execution of purple team exercises and tabletop scenarios, collaborating with the blue team and penetration testing staff to validate and improve SBA's detection and response capabilities against realistic attack scenarios. Coordinate with SBA IT teams, system owners, and other cybersecurity program staff to communicate SOC findings, support remediation activities, and provide technical recommendations to enhance the overall security posture of SBA's enterprise environment. Contribute to the continuous improvement of SOC processes, tools, technologies, and operational metrics, identifying opportunities to enhance detection effectiveness, response efficiency, and overall SOC performance. Education and Experience: Required: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field from an accredited college or university. 6+ years of progressive experience in cybersecurity operations, with at least 3 years in a senior SOC analyst, lead analyst, or equivalent advanced-level role within a SOC or cyber defense environment. Demonstrated experience supporting security operations and incident response within a federal government or large enterprise IT environment. One or more of the following certifications: GIAC Security Operations Certified (GSOC) GIAC Certified Incident Handler (GCIH) GIAC Certified Intrusion Analyst (GCIA) Certified SOC Analyst (CSA) Certified Information Systems Security Professional (CISSP) CompTIA Cybersecurity Analyst (CySA+) Master's degree in Cybersecurity, Information Assurance, or a related field. 8+ years of cybersecurity operations experience, with a strong background supporting federal government or defense contracting SOC programs. Prior experience supporting SBA or other federal civilian agency SOC programs. Required Skills and Competencies: Exceptional communication skills in English – both written and oral – with the ability to clearly articulate complex security findings, incident details, threat analysis results, and technical recommendations to both technical and non-technical audiences, including senior SBA leadership and government stakeholders. Advanced expertise in security event monitoring, threat detection, and incident response operations within a SOC environment, with demonstrated ability to independently manage complex security incidents from initial detection through post-incident review. Advanced proficiency with SIEM platforms, including Splunk, Microsoft Sentinel, ArcSight, or equivalent, with demonstrated experience developing and tuning detection rules, correlation logic, dashboards, and advanced queries to support threat detection and investigation activities. Expert-level log analysis skills, with the ability to analyze and correlate security-relevant data across diverse log sources, including Windows Event Logs, Syslog, cloud platform logs, network device logs, and application logs, to reconstruct attack timelines and identify malicious activity. Advanced knowledge of network security concepts and protocols, including TCP/IP, DNS, and demonstrated ability to analyze network traffic and packet captures using tools such as Wireshark, Zeek, or equivalent to support incident investigation and threat hunting activities. Deep proficiency with endpoint detection and response (EDR) platforms, with demonstrated ability to leverage EDR telemetry for advanced threat detection, incident investigation, and threat hunting activities across Windows and Linux endpoint environments. Demonstrated expertise in applying the MITRE ATT&CK framework to threat detection, threat hunting, incident analysis, and detection engineering activities, with the ability to map observed adversary behaviors to ATT&CK techniques and inform detection improvement efforts. Strong experience operationalizing threat intelligence from multiple government and commercial sources to enhance SOC detection capabilities, prioritise monitoring activities, and support incident response efforts. Experience developing high-quality incident reports, after-action reviews, SOC operational reports, and technical briefings, with the ability to communicate complex findings and recommendations clearly and effectively. Demonstrated ability to mentor and provide technical guidance to junior and mid-level SOC analysts, contributing to team capability development and knowledge sharing within a SOC environment. Knowledge of federal cybersecurity frameworks and compliance requirements, including NIST SP 800-53, NIST SP 800-61, FISMA, and applicable CISA guidance, and their implications for SOC operations within a federal civilian agency environment. Ability to obtain and maintain a Public Trust Clearance. Desired Skills and Competencies: Prior experience supporting SBA or other federal civilian agency SOC programs, with demonstrated knowledge of SBA's mission, IT environment and cybersecurity monitoring requirements. Advanced experience with cloud security monitoring and operations in AWS, Azure, or GCP environments, including deep familiarity with cloud-native security tools, logging capabilities, and threat detection methodologies for cloud-hosted workloads and services. Experience with Security Orchestration, Automation, and Response (SOAR) platforms and proficiency in scripting languages such as Python, PowerShell, or Bash to develop automated detection, triage, and response workflows that enhance SOC efficiency and effectiveness. Experience conducting digital forensics and malware analysis activities to support incident response investigations, including memory forensics, disk forensics and basic static and dynamic malware analysis techniques. Knowledge of Zero Trust Architecture (ZTA) principles and their implications for SOC monitoring strategies, detection engineering, and incident response within a federal IT environment. Familiarity with the CDM (Continuous Diagnostics and Mitigation) program tools, data requirements, and their application in supporting continuous monitoring and threat detection activities within federal civilian agency SOC environments. Experience with deception technologies, including honeypots and deception platforms, and their application in enhancing SOC threat detection capabilities and supporting adversary attribution efforts. Experience supporting or leading purple team exercises and collaborative red team/blue team activities to validate and improve detection and response capabilities against realistic adversary TTPs. GIAC Certified Forensic Analyst (GCFA) or GIAC Network Forensic Analyst (GNFA) certification. Experience supporting FedRAMP authorized cloud environments and familiarity with FedRAMP continuous monitoring requirements and their implications for SOC monitoring and incident response activities. Familiarity with threat intelligence platforms (TIPs) such as MISP, ThreatConnect, or Anomali. Our Equal Employment Opportunity Policy The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment. The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at View email address on click.appcast.io or by calling View phone number on click.appcast.io to request accommodations. Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit Equal Opportunity Employer/Veterans/Disabled.Shareholder Preference in accordance with Public Law 88-352 #J-18808-Ljbffr Koniag Services, Inc.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Operations Center Analyst - High in Washington DC vacancy
  •  ...Intelligence®. We design, build, operate, and maintain cyber-physical...  ...mission-critical facilities, secure environments, complex infrastructure...  ...seeking a Operations Project Analyst to join our Security and...  ...and commercial customers across high-growth markets.... 
    Suggested
    Local area

    M.C. Dean

    Washington DC
    17 hours ago
  • Security Operations Center (SOC) Analyst Washington, District of Columbia, United States About the job Security Operations Center (SOC) Analyst Job Description...  ...Security+, or Certified Ethical Hacker (CEH) are highly desirable. Experience with scripting languages (e.g.,... 
    Suggested

    10xTalents

    Washington DC
    4 days ago
  • $52 per hour

    Overview Security Operations Center Analyst (SOC) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business...  ...'s degree with 2+ years of relevant experience OR High school diploma or GED equivalent with 4+ years of relevant... 
    Suggested

    Chenega MIOS SBU

    Arlington, VA
    4 days ago
  • Security Operations Center, Analyst- Costa Rica As a SOC Analyst, you will play a pivotal role in supporting the Senior Program Manager in the day-to-...  ...Your primary responsibility will be ensuring the timely and high-quality delivery of all project deliverables. This is a... 
    Suggested
    Permanent employment
    Full time
    Contract work
    For contractors
    Interim role
    Immediate start
    Relocation

    CRDF Global

    Arlington, VA
    4 days ago
  •  ...Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise...  ...of experienced military, technical, and operations research analysts is skilled in evaluating military problems,... 
    Suggested
    For subcontractor
    Work at office
    Immediate start
    Flexible hours

    Systems Planning and Analysis

    Alexandria, VA
    3 days ago
  •  ...Analysis, Inc. (SPA) delivers high-impact, technical...  ...to complex national security issues. With over 50 years...  ...Force Nuclear Weapons Center, and the Department of...  ...programs for high consequence operations. SPG delivers industry-...  ...a Military Operations Analyst at SPA HQ in Alexandria... 
    Full time
    Contract work
    Flexible hours

    MCR

    Alexandria, VA
    4 days ago
  • OverviewSystems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business...  ...team!SPA has a need for a Submarine Military Operations Analyst. This full-time position is based in Alexandria... 
    Full time
    Contract work
    Flexible hours

    MCR

    Alexandria, VA
    2 days ago
  •  ...Gate Group is seeking an Information Operations (IO) Policy & Strategy Analyst to support the Office of...  ...3+ years of experience in national security, defense policy, Information Operations...  ...technology integration. RGG delivers high-quality, customer-centric solutions... 
    For contractors
    Work at office
    Local area
    Immediate start
    Flexible hours

    Red Gate

    Arlington, VA
    1 day ago
  • $76.39k - $130.61k

    OverviewLMI is seeking a skilled Logistics Operations Center Analyst to support Army logistics current...  ...position requires an active Top Secret security clearance. Applicants must be U.S....  ...SummaryJob ID: 2026-14286# of Openings: 1Benefit Type: Salaried High Fringe/Full-Time
    Full time
    Work at office

    LMI

    Arlington, VA
    17 hours ago
  • $87.1k - $157.45k

     ...is seeking Defensive Cyber Operations Analysts to support a Defensive Cyber...  ...threats impacting national security. We hire for these roles on...  ...Detailed Documentation: Maintain high-quality technical writing...  ...CND) or Security Operations Center (SOC) environment.Framework... 
    Full time
    Remote work
    Flexible hours
    Shift work
    Day shift
    Weekday work

    Leidos

    Washington DC
    3 days ago
  • $99k - $144k

     ...ANSER enhances national and homeland security by strengthening public institutions....  ...Position Overview ANSER is seeking an Operations Management Analyst to support the Office of the...  ...senior Department of War leadership in a high-visibility operational environment. Excellent... 
    Full time
    Contract work
    Work at office
    Local area
    Monday to Friday

    Analytic Services Inc

    Alexandria, VA
    3 days ago
  • $58k - $72k

     ...provider of emergency medical and security solutions for corporations and individuals. Our 24/7 Operations Centers in McLean, VA and Charlotte,...  ...is an investor-backed, high-growth company that offers employees...  ...Operations Center (GSOC) Analyst will be responsible for... 
    Full time
    Worldwide
    Overseas
    Shift work
    Night shift
    Weekend work
    Weekday work

    Global Guardian

    McLean, VA
    13 days ago
  •  ...complexity of Microsoft M365. Through robust security and precise governance, we help ensure...  ...proactive and detail‑oriented Revenue Operations Analyst to join our team. In this role, you...  ...multiple hats and jumping into support high‑value/priority projects as needed. Proficiency... 
    Contract work
    Local area
    Worldwide

    CoreView

    Washington DC
    3 days ago
  • Systems Planning and Analysis, Inc. (SPA) in Alexandria, VA, seeks a Military Operations Analyst to support high-priority DoD programs and risk-informed decision making. The role requires U.S. citizenship and a DoW Top Secret clearance, 3-5 years of military experience... 

    Arena Technologies LLC

    Alexandria, VA
    4 days ago
  • $90k - $110k

     ...quo, we decided to fix it. National security professionals, journalists, parents,...  ...possible in telecommunications. We operate on a foundation of high trust and high expectations. As a member...  ...looking for a Government Operations Analyst to support our Product Operations... 
    Odd job

    cape

    Arlington, VA
    2 days ago
  • $110k - $130k

    While the rest of the security industry obsesses over locking data down to prevent it from...  ...0/year Team & Position Details: As an Operations Analyst, you will be reporting to the VP of...  ...contribution to your retirement account A high degree of flexibility — Have an... 
    Local area
    Flexible hours
    Shift work

    Virtru

    Washington DC
    2 days ago
  • $105k

     ...an opportunity to apply your operations analysis background in an engaging...  ...with the U.S. military. Our analysts support the acquisition,...  ...Ground warfare domain(s) Are highly skilled in learning new and challenging...  ...obtain Interim Secret level security clearance by your start date... 
    Temporary work
    Work experience placement
    Interim role
    Relocation package
    Flexible hours

    The Johns Hopkins University Applied Physics Laboratory

    Laurel, MD
    1 day ago
  •  ...Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years...  ...experienced military, technical, and operations research analysts is skilled in evaluating...  ...onsite at the Mark Center in Alexandria, VA. ResponsibilitiesThe... 
    Work at office
    Flexible hours

    Systems Planning and Analysis

    Alexandria, VA
    2 days ago
  • $82.76k - $125k

     ...STINGRAI Strategic Planner (Military Operations Analyst 3) - 29230 Location: Fort Washington, MD...  ...Anticipated Salary Range:$82,757.00-$125,000.00 Security Clearance:Top Secret Level of...  ...or Juris Doctorate in related field; or High School Diploma or equivalent and 9... 
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work
    Worldwide

    Huntington Ingalls Industries

    Fort Washington, MD
    3 days ago
  •  ...Overview Lead Cyber Security Operations Center (CSOC) Analyst - USDS Responsibilities As a Lead SOC Analyst, you’ll play a critical role at the...  ...elevate the SOC’s analytical and operational rigor. Lead high-fidelity investigations from triage to root cause,... 
    Temporary work

    TikTok

    Washington DC
    1 day ago
  •  ...Business Process Analyst Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise...  ...experienced military, technical, and operations research analysts is skilled in... 
    Work at office

    Spa

    Arlington, VA
    3 days ago
  •  ...Senior Operations Analyst - Position Description Join a team that is shaping the future of Navy support. ICI Services is a 100% employee...  ...matters and your contributions make a difference. Security Clearance: ~ Applicant must hold or be able to obtain... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    ICI Services

    Washington DC
    17 hours ago
  •  ...Business Operations Analyst 2 The Business Operations Analyst provides comprehensive administrative, operational, and program support to the Defense Counterintelligence and Security Agency (DCSA) Regional Headquarters, Field Offices, and Directorates. This role ensures... 
    Work experience placement
    Work at office

    PROVATOHR INC

    Alexandria, VA
    24 days ago
  • Business Process Analyst - Executive Support Red Gate is seeking a highly organized and detail-oriented Business Process...  ...level administrative and business operations support to the Directorate for...  ...Required Qualifications Active Secret Security Clearance. Minimum of 5 years... 
    Work at office
    Local area
    Immediate start
    Flexible hours

    Red Gate Group

    Arlington, VA
    2 days ago
  •  ...consulting firm helping homeland security organizations solve some of...  ...Requirements & Process Analyst to support a DHS client. This...  ...validate, and track business and operational requirements. Translate broad...  ...ability to take ambiguous or high-level direction and translate... 
    2 days per week

    Partner Forces LLC

    Arlington, VA
    1 day ago
  • $62k - $141k

    Deployment Support Operations Planner and AnalystThe Opportunity: As...  ...Support Operations Planner and Analyst, you’ll bring your...  ...operations, Combat Training Center(CTC) rotations, Deployment Readiness...  ...selected will be subject to a security investigation and may need to... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    17 hours ago
  • $151.05k - $166.95k

     ...Digital Finance is expanding its Information Security function, and this is the team's first dedicated monitoring and response hire — a high-visibility role with immediate, measurable impact. As Senior Security Operations Analyst (Detection & Response), you will be the... 
    Full time
    Temporary work
    Work experience placement
    Local area
    Immediate start
    Remote work
    Home office
    Flexible hours
    2 days per week
    3 days per week

    Point Digital Finance, Inc.

    Washington DC
    3 days ago
  •  ...Description Business Process Analyst III – IT Requirements...  ...Facility (Onsite)Security Clearance: Active...  ...Manager to support a high-profile DHS cybersecurity...  ...technology modernization, operational capability integration...  ...operations centers (SOCs)Experience supporting... 
    Local area

    Argo Cyber Systems

    Arlington, VA
    13 days ago
  •  ...Job Description Job Description Enterprise Operations Center (EOC) AnalystsAbout Blue Rose Consulting Group Blue Rose Consulting Group...  ...by monitoring infrastructure, applications, capacity, security events, and critical incidents across the global consular environment... 
    Full time
    Contract work
    Work at office
    Overseas
    Shift work
    Night shift

    Blue Rose Consulting Group, Inc.

    Washington DC
    5 days ago
  • $77.7k - $116.2k

     ...action as required. The analyst conducts diagnostic...  ...The Enterprise Command Center (ECC) also monitors the...  ...surveillance, and manages security/access to the building...  ...and computer room. An IT Operations Analyst plays a...  ...Corporation, which has high visibility in the technology... 
    Temporary work
    Flexible hours
    Shift work
    Night shift

    PACCAR

    Washington DC
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Operations Center Analyst - High. Be the first to apply!