Security Operations Center Analyst
IBM
Introduction
The Office of the CISO is responsible for protecting IBM's systems, data, and global operations from cybersecurity threats. Our organization encompasses the full spectrum of cyber defense capabilities, including Threat Detection, Security Operations, Incident Response, Vulnerability Management, Endpoint Security, Product Security, Cloud Security, and Security Engineering.
As a SOC Analyst, you will serve as a first responder to cybersecurity threats, helping protect IBM's global enterprise by identifying, investigating, and containing malicious activity before it becomes a significant incident. You will work closely with threat detection engineers, incident responders, security operations teams, and business stakeholders to assess security alerts, determine risk and impact, and take appropriate response actions. This role requires strong investigative instincts, technical troubleshooting skills, and the ability to communicate findings clearly to both technical and non-technical audiences. Key Responsibilities
- Monitor and investigate security alerts generated from SIEM, EDR, email security, cloud security, and network security platforms
- Perform triage and analysis of security events to determine legitimacy, severity, scope, and impact
- Execute approved containment actions, including host isolation, account restrictions, malicious email remediation, and blocking indicators of compromise
- Escalate confirmed or high-risk incidents while providing complete investigative context and supporting evidence
- Analyze endpoint, network, identity, cloud, and application telemetry to identify malicious activity
- Correlate data from multiple security technologies to investigate complex security events
- Document investigations, containment actions, and recommendations in accordance with operational procedures
- Participate in incident response activities and support post-incident reviews as needed
- Continuously improve detection and triage processes through operational feedback and collaboration with engineering teams
- Maintain awareness of emerging threats, attacker tactics, techniques, and procedures (TTPs), and industry trends
- Contribute to operational readiness by assisting with playbook development, process improvement, and knowledge sharing
Associate's Degree/College Diploma
Preferred education
Bachelor's Degree
Required technical and professional expertise
- Experience in a Security Operations Center (SOC), Cybersecurity Operations, Incident Response, or related cybersecurity role
- Experience investigating and triaging security alerts in a large enterprise environment
- Experience using EDR platforms
- Experience working with SIEM platforms and log analysis technologies
- Understanding of common cyber threats, attacker methodologies, and MITRE ATT&CK techniques
- Experience performing threat containment actions and supporting incident response activities
- Strong analytical and problem-solving skills with attention to detail
- Experience analyzing endpoint, identity, email, network, and cloud-based security events
- Knowledge of Windows, Linux, macOS, Active Directory, Entra ID, and enterprise authentication technologies
- Working knowledge of networking fundamentals including DNS, TCP/IP, firewalls, proxies, VPNs, and IDS/IPS technologies
- Ability to assess risk and prioritize multiple investigations simultaneously in a fast-paced operational environment
- Strong verbal communication, technical writing, and incident documentation skills
- Ability to work independently while collaborating effectively across global teams
- Security Alert Triage and Investigation
- Event Correlation and Threat Analysis
- Endpoint Detection and Response (EDR)
- Security Information and Event Management (SIEM)
- Account Compromise Investigation
- Phishing and Business Email Compromise Analysis
- Threat Containment and Remediation
- Log Analysis and Query Development
- Threat Intelligence Utilization
- Incident Documentation and Case Management
- Experience working within an enterprise SOC supporting global operations
- Experience using QRadar, Splunk, Sentinel, Elastic, or similar SIEM platforms
- Experience with CrowdStrike Falcon and/or Microsoft Defender XDR
- Familiarity with cloud security monitoring in AWS, Azure, IBM Cloud, or GCP environments
- Experience performing threat hunting activities
- Knowledge of identity-based attacks and Entra ID / Active Directory investigations
- Understanding of malware behavior and attacker TTPs
- Experience developing detections, use cases, or automation workflows
- Basic scripting skills using Python, PowerShell, KQL, or similar technologies
- Experience supporting incident response engagements or working closely with a CSIRT organization
- Cybersecurity certifications such as Security+, CySA+, GCIH, GCIA, GCED, SC-200, SC-300, or equivalent experience
ABOUT BUSINESS UNIT IBM Systems helps IT leaders think differently about their infrastructure. IBM servers and storage are no longer inanimate - they can understand, reason, and learn so our clients can innovate while avoiding IT issues. Our systems power the world's most important industries and our clients are the architects of the future. Join us to help build our leading-edge technology portfolio designed for cognitive business and optimized for cloud computing.
YOUR LIFE @ IBM In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background. Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do. Are you ready to be an IBMer? ABOUT IBM IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world. Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world. IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status. OTHER RELEVANT JOB DETAILS IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to: - Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
- Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
- Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
- Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals
- Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences We consider qualified applicants with criminal histories, consistent with applicable law. This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.
IBM will not be providing visa sponsorship for this position now or in the future. Therefore, in order to be considered for this position, you must have the ability to work without a need for current or future visa sponsorship. The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Security Operations Center Analyst in Austin, TX vacancy
- ...Security Operations Center Analyst Austin, Texas Description Sygnia is a top-tier cyber technology and services company that partners with organizations around the world to proactively strengthen their cyber resilience and respond to advanced threats. We help...Suggested
$30 - $35 per hour
...00/hr - $35.00/hr Skills & Experience 3-5 years of Security Incident Response, Security Operations Center, and/or threat analysis experience Experience with... ...enterprise and/or cloud Security SIEM technologies as an analyst Ability to support and work across multiple...SuggestedContract workShift workNight shiftWeekend work- Category: Cybersecurity City/Suburb: Austin, TX Job Title: Security Operations Center (SOC) Analyst - Tier II About the Employer We’re recruiting for a U.S. cybersecurity services company that provides managed detection and response for mid-market and enterprise clients...SuggestedFlexible hours
$85k
Job Description The Senior Security Operations Center Analyst will be responsible for planning and implementing security measures to protect computer systems, networks, and data. This person will handle higher level security investigations and incidents. The Senior Security...SuggestedFull timeWork at office$67.7k - $90.27k
...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads... ..., expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact,...SuggestedContract workTemporary workRemote workWork from home$150 per hour
...long-term sustainable growth and energy security.About the RoleThe SeniorAssociate, Acquisitions... ...also supports Lightsource bp’s data center business development activities.You will... ...is driven by our core values. From operating safely to ensuring our solar projects are...Contract workWork at officeLocal areaMonday to Friday1 day per week$7,000 - $8,999 per month
Career Opportunities: Cybersecurity Operations Center Analyst (20371) Posting ID 20371 -Posted 08/21/2026 - Health & Human Services Comm - CHIEF INFO SECURITY OFFICE - Computer and Mathematical - Additional Shifts available (1) - d. $7000 - $8999 per month Join the Texas...Permanent employmentFull timeTemporary workPart timeWork at officeRemote workShift work- ...the-art solutions that enhance maritime operations through autonomous and intelligent platforms... ...operations for defense and national security. We're looking for a hands-on Security Engineer... ...response playbooks, runbooks, and analyst workflow documentation ~ Run...Permanent employmentTemporary workInternshipWork at office
- ...-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. Job Overview As a Senior SecOps Analyst at Saronic, you'll be on the front line of... ...operations, triaging and investigating security alerts across endpoint, cloud, identity,...Permanent employmentTemporary workWork at office
- Saronic Technologies is seeking a hands-on Security Engineer to join our Security Operations team in Austin. You will triage security alerts, perform root-cause analysis, and own initial response for scoped incidents across endpoints, cloud, and identity. You will tune...
- Genuine Parts Company is seeking a Computer Operator II to monitor and modify programs across Data Center infrastructure, mainframes, AS400s, and related systems. The role requires strong time-management and the ability to escalate issues promptly to keep critical workflows...Remote job
- Norton Rose Fulbright US LLP is seeking a Senior Information Security Analyst to join its global Security Operations team. The role focuses on 24x7 monitoring, detection and response, threat hunting and analytics to strengthen threat detection and incident response across...
- Texas Health and Human Services Commission (HHSC) seeks a Systems Analyst IV to support security operations, vulnerability management, and lifecycle activities across Texas HHSC agencies. The role focuses on server maintenance, incidents, and forensic data collection, with...
- Texas Health and Human Services seeks an experienced Systems Analyst IV in Austin to support digital information services. You will collaborate with Legal, Program, and IT teams, handling security operations, vulnerability management, and server lifecycle activities. The...
- ...accelerate business transformation with simple, powerful, and secure solutions.The ideal candidate thrives in an innovative,... ...Join SolarWinds and grow with us!SolarWinds is seeking an GTM Operations Senior Analyst to join our GTM Business Operations organization. In this...
- Role OverviewThe Sr. Analyst Operations is a critical driver of Channel Operations excellence, enabling the organization to make smarter, faster, and more data-driven commercial decisions. This role sits at the intersection of Sales, Channel, Finance, and Operations, supporting...Work at officeWorldwide
$125k - $140k
...competitive bids and offers in over 19,000 securities, at over 235 venues, in 36 countries worldwide.THE ROLEOur Trading Operations team is a multi-faceted group whose roles and... ...best-in-class. We are looking to hire an Analyst who will be responsible for managing the clearance...Work experience placementWorldwide$25 - $27 per hour
...ensure it is accurate before completing it.DescriptionResponsibilities:The Information Security Analyst will support the Information Security Identity and Access Management Operations department in executing the provisioning and de-provisioning of user access to company...Contract workTemporary workWork experience placementRemote work- ...Gallatin, we are rebuilding logistics infrastructure for the national security missions of the United States and allied partners. We build AI... ...— not just how they're executed. From factory to foxhole, we operate at the layer where data becomes decisions, and decisions make...Full timeLocal area
- ...has sustained 42% month-over-month growth, building a $98M ARR sales pipeline. What We Need We're looking for a Business Operations Analyst who loves solving ambiguous problems with data, improving internal systems, and partnering closely with engineering to keep...For contractorsWork at officeRelocation package
- Who is Forcepoint?Forcepoint simplifies security for global businesses and governments. Forcepoint’s all-in-one, truly cloud-native... ...curious, detail-oriented, and technically proficient Legal Operations Analyst to join our Legal Department. This is a hybrid, strategic...Full timeWork at officeRemote workFlexible hours
$55 - $75 per hour
...professional services firm offering financial, operational, and technology consulting and... ...SAP Procure-to-Pay (P2P) Operations Analyst Duration: starting immediately for one... ...SolomonEdwards, you can trust a respectful, secure experience from verified contacts. Copy/...Hourly payContract workImmediate startRemote work- ...autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. Job Summary: The Security Operations Associate supports daily physical security operations while delivering a high level...Permanent employmentFull timeTemporary workFor contractorsWork at office
- ...What to Expect We are seeking a skilled Payment Operations Analyst to join our Finance Team at Tesla, focusing on accounts payable & T&E processes. This role involves analyzing payment activity, invoice data and expense information, ensuring accuracy and integrity...Hourly payDaily paidFull timeTemporary workFlexible hours
$30 per hour
...and services on time, while ensuring efficiency and cost-effectiveness throughout the supply chain. Role Overview The Operations Analyst intern will assist with supporting customer projects, internal team projects, working with suppliers/vendors, creation of part...Hourly payTemporary workInternshipFlexible hours$52k - $74.4k
...on-demand training courses to advance further in your career Job Description Overview We are seeking a high-performing Operations Analyst to support a large, complex client program to ensure smooth delivery of projects and programs, both internally and externally...Contract workLocal area$31.02 per hour
...workflows within the Epic environment. The analyst communicates with system end-users and... .... Supports the business, technical, and operational needs of the Revenue Cycle departments.... ...Policies and Procedures as well as all data security guidelines established within the...For contractorsLocal area- Valid8 Financial, Inc. in Austin, TX is seeking an entry-level Wealth Management Analyst I to build a foundation across advisory, operations, and investment functions. You will support day-to-day client service and help deliver an organized, responsive experience. The role...
- ...extraordinary things.We are seeking a highly motivated Senior Analyst to join the Americas (AMR) Business Operations Team. In this role, you will be part of Apple Store... ...improvements at vendor and Apple contact center sites. Description In this role, you will be the analytical...
- ...Join Civitech If you're interested in joining Civitech in an internal operations or customer-facing role but do not see a position that matches your skillset, please apply here . We'll keep your information on file and will reach out if we find a suitable match. About...Work at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Operations Center Analyst. Be the first to apply!
Related searches
- IT security analyst Austin, TX
- senior security analyst Austin, TX
- application security analyst Austin, TX
- entry level security analyst Austin, TX
- work from home security analyst Austin, TX
- rate analyst Austin, TX
- information security compliance analyst Austin, TX
- security analyst Austin, TX
- network security analyst Austin, TX
- senior information security analyst Austin, TX


