Security Operations Center Analyst
IBM Computing
Introduction The Office of the CISO is responsible for protecting IBM's systems, data, and global operations from cybersecurity threats. Our organization encompasses the full spectrum of cyber defense capabilities, including Threat Detection, Security Operations, Incident Response, Vulnerability Management, Endpoint Security, Product Security, Cloud Security, and Security Engineering. The Security Operations Center (SOC) serves as the front line of IBM's cyber defense mission. Operating 24x7 across a global environment, the SOC detects, analyzes, and responds to security events affecting IBM's users, devices, applications, and infrastructure. We are seeking a highly motivated Security Operations Center Analyst to join our SOC Team. This team is responsible for validating alerts, investigating suspicious activity, performing initial threat containment, and escalating confirmed security incidents. Successful candidates will possess a strong security operations mindset, excellent analytical skills, and the ability to make sound decisions in fast-paced operational environments. Your role and responsibilities As a SOC Analyst, you will serve as a first responder to cybersecurity threats, helping protect IBM's global enterprise by identifying, investigating, and containing malicious activity before it becomes a significant incident. You will work closely with threat detection engineers, incident responders, security operations teams, and business stakeholders to assess security alerts, determine risk and impact, and take appropriate response actions. This role requires strong investigative instincts, technical troubleshooting skills, and the ability to communicate findings clearly to both technical and non-technical audiences. Key Responsibilities Monitor and investigate security alerts generated from SIEM, EDR, email security, cloud security, and network security platforms Perform triage and analysis of security events to determine legitimacy, severity, scope, and impact Execute approved containment actions, including host isolation, account restrictions, malicious email remediation, and blocking indicators of compromise Escalate confirmed or high-risk incidents while providing complete investigative context and supporting evidence Analyze endpoint, network, identity, cloud, and application telemetry to identify malicious activity Correlate data from multiple security technologies to investigate complex security events Document investigations, containment actions, and recommendations in accordance with operational procedures Participate in incident response activities and support post-incident reviews as needed Continuously improve detection and triage processes through operational feedback and collaboration with engineering teams Maintain awareness of emerging threats, attacker tactics, techniques, and procedures (TTPs), and industry trends Contribute to operational readiness by assisting with playbook development, process improvement, and knowledge sharing Key Technical Skills Security Alert Triage and Investigation Event Correlation and Threat Analysis Endpoint Detection and Response (EDR) Security Information and Event Management (SIEM) Account Compromise Investigation Phishing and Business Email Compromise Analysis Threat Containment and Remediation Log Analysis and Query Development Threat Intelligence Utilization Incident Documentation and Case Management Required technical and professional expertise Experience in a Security Operations Center (SOC), Cybersecurity Operations, Incident Response, or related cybersecurity role Experience investigating and triaging security alerts in a large enterprise environment Experience using EDR platforms Experience working with SIEM platforms and log analysis technologies Understanding of common cyber threats, attacker methodologies, and MITRE ATT&CK techniques Experience performing threat containment actions and supporting incident response activities Strong analytical and problem-solving skills with attention to detail Experience analyzing endpoint, identity, email, network, and cloud-based security events Knowledge of Windows, Linux, macOS, Active Directory, Entra ID, and enterprise authentication technologies Working knowledge of networking fundamentals including DNS, TCP/IP, firewalls, proxies, VPNs, and IDS/IPS technologies Ability to assess risk and prioritize multiple investigations simultaneously in a fast-paced operational environment Strong verbal communication, technical writing, and incident documentation skills Ability to work independently while collaborating effectively across global teams Preferred technical and professional experience Experience working within an enterprise SOC supporting global operations Experience using QRadar, Splunk, Sentinel, Elastic, or similar SIEM platforms Experience with CrowdStrike Falcon and/or Microsoft Defender XDR Familiarity with cloud security monitoring in AWS, Azure, IBM Cloud, or GCP environments Experience performing threat hunting activities Knowledge of identity-based attacks and Entra ID / Active Directory investigations Understanding of malware behavior and attacker TTPs Experience developing detections, use cases, or automation workflows Basic scripting skills using Python, PowerShell, KQL, or similar technologies Experience supporting incident response engagements or working closely with a CSIRT organization Cybersecurity certifications such as Security+, CySA+, GCIH, GCIA, GCED, SC-200, SC-300, or equivalent experience IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status. #J-18808-Ljbffr IBM Computing
- ...Security Operations Center AnalystAustin, TexasDescriptionSygnia is a top-tier cyber technology and services company that partners with organizations... ...is looking for a Security Operations Center (SOC) Analyst to join our growing U.S. Managed Detection and Response team...Suggested
$30 - $35 per hour
.../hr - $35.00/hr Skills & Experience 3-5 years of Security Incident Response, Security Operations Center, and/or threat analysis experience Experience with... ...enterprise and/or cloud Security SIEM technologies as an analyst Ability to support and work across multiple...SuggestedContract workShift workNight shiftWeekend work- Category: Cybersecurity City/Suburb: Austin, TX Job Title: Security Operations Center (SOC) Analyst - Tier II About the Employer We’re recruiting for a U.S. cybersecurity services company that provides managed detection and response for mid-market and enterprise clients...SuggestedFlexible hours
$85k
Job Description The Senior Security Operations Center Analyst will be responsible for planning and implementing security measures to protect computer systems, networks, and data. This person will handle higher level security investigations and incidents. The Senior Security...SuggestedFull timeWork at office$7,015.16 per month
...Benefits of Working at HHS webpage. Functional Title: Cybersecurity Operations Center Analyst Job Title: Cybersecurity Analyst III Agency: Health & Human Services Comm Department: CHIEF INFO SECURITY OFFICE Posting Number: 20371 Closing Date: 10/20/2026 Posting Audience...SuggestedPermanent employmentFull timeTemporary workPart timeSecond jobWork at officeRemote workShift workDay shift$150 per hour
...long-term sustainable growth and energy security.About the RoleThe SeniorAssociate, Acquisitions... ...also supports Lightsource bp’s data center business development activities.You will... ...is driven by our core values. From operating safely to ensuring our solar projects are...Contract workWork at officeLocal areaMonday to Friday1 day per week- ...-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. Job Overview As a Senior SecOps Analyst at Saronic, you'll be on the front line of... ...operations, triaging and investigating security alerts across endpoint, cloud, identity,...Permanent employmentTemporary workWork at office
- ...Job Overview As a SecOps Analyst at Saronic, you'll be on the front line of our detection and response operations, triaging and investigating security alerts across endpoint, cloud, identity, network, and SaaS telemetry using our SIEM and XDR platforms. You'll run root...Permanent employmentTemporary workWork at office
- Saronic Technologies is seeking a hands-on Security Engineer to join our Security Operations team in Austin. You will triage security alerts, perform root-cause analysis, and own initial response for scoped incidents across endpoints, cloud, and identity. You will tune...
- Norton Rose Fulbright US LLP is seeking a Senior Information Security Analyst to join its global Security Operations team. The role focuses on 24x7 monitoring, detection and response, threat hunting and analytics to strengthen threat detection and incident response across...
- Texas Health and Human Services Commission (HHSC) seeks a Systems Analyst IV to support security operations, vulnerability management, and lifecycle activities across Texas HHSC agencies. The role focuses on server maintenance, incidents, and forensic data collection, with...
- Texas Health and Human Services seeks an experienced Systems Analyst IV in Austin to support digital information services. You will collaborate with Legal, Program, and IT teams, handling security operations, vulnerability management, and server lifecycle activities. The...
- ...accelerate business transformation with simple, powerful, and secure solutions.The ideal candidate thrives in an innovative,... ...Join SolarWinds and grow with us!SolarWinds is seeking an GTM Operations Senior Analyst to join our GTM Business Operations organization. In this...
- Role OverviewThe Sr. Analyst Operations is a critical driver of Channel Operations excellence, enabling the organization to make smarter, faster, and more data-driven commercial decisions. This role sits at the intersection of Sales, Channel, Finance, and Operations, supporting...Work at officeWorldwide
- ...Drillbit has sustained 42% month-over-month growth, building a $98M ARR sales pipeline.What We NeedWe're looking for a Business Operations Analyst who loves solving ambiguous problems with data, improving internal systems, and partnering closely with engineering to keep...For contractorsWork at officeRelocation package
$98.7k - $153.2k
...to you, to your community, and to the world. Progress starts with you.Job DescriptionVisa is seeking an experienced Web Operations & Production Analyst to join the Value-Added Services (VAS) Marketing organization. This individual will play a critical role in supporting,...Full timeWork experience placementWork at officeLocal area$125k - $140k
...competitive bids and offers in over 19,000 securities, at over 235 venues, in 36 countries worldwide.THE ROLEOur Trading Operations team is a multi-faceted group whose roles and... ...best-in-class. We are looking to hire an Analyst who will be responsible for managing the clearance...Work experience placementWorldwide- ...Gallatin, we are rebuilding logistics infrastructure for the national security missions of the United States and allied partners. We build AI... ...— not just how they're executed. From factory to foxhole, we operate at the layer where data becomes decisions, and decisions make...Full timeLocal area
- ...Overview The Identity & Access Management Analyst supports the enterprise identity and... ...provisioned, modified, reviewed, and removed in a secure, timely, compliant, and well‑documented... ..., and compliance teams to support IAM operations, user access reviews, role‑based access...Local areaImmediate startFlexible hours
$125k - $180k
...stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native... ...CrowdStrike is seeking a Senior Business Systems Analyst - ServiceNow to join its IT Service... ...areas such as CMDB, CSDM, Employee Center Pro, Virtual Agent, Asset & Configuration...Full timeWork experience placementWork at officeLocal areaRemote work$1,000 - $2,500 per month
...management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the... ...is Tier 1 - $2,500.00.Thales is looking for a Business Analyst, Sales Operations Data Analytics to support the Cyber Security Products (CSP...Full timeLocal areaRemote work- ...Senior Operations AnalystEasy Street Capital is a private real estate lender headquartered in Austin, Texas serving real estate investors... ..., we have a solution to fit those needs.The Senior Operations Analyst role is focused on the legal documentation and processes with...Temporary workWork at office
- Who is Forcepoint?Forcepoint simplifies security for global businesses and governments. Forcepoint’s all-in-one, truly cloud-native... ...curious, detail-oriented, and technically proficient Legal Operations Analyst to join our Legal Department. This is a hybrid, strategic...Full timeWork at officeRemote workFlexible hours
- ...nominate gas in pipeline and utility systems.Support traders by urgently responding to information requests and actively monitoring operational constraints.Clearly and proactively communicate with counterparties, customers, and representatives to foster goodwill and...Flexible hoursNight shift
- ...Accruent is seeking a Sr. Analyst Operations to drive channel and revenue analytics across Sales, Channel, Finance and Operations. You will enable smarter decisions, forecasting, and performance management with rigorous reporting and scalable processes. The role blends...
$30 per hour
Oracle Veteran Internship Program (OVIP)Veterans and Military Spouses belong at Oracle. This is a place where your military experience and talent will help you thrive. Our culture of inclusion values the skills that veterans bring to our workforce and empowers you to use...Hourly payInternship- ...autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. Job Summary: The Security Operations Associate supports daily physical security operations while delivering a high level...Permanent employmentFull timeTemporary workFor contractorsWork at office
- ...extraordinary things.We are seeking a highly motivated Senior Analyst to join the Americas (AMR) Business Operations Team. In this role, you will be part of Apple Store... ...improvements at vendor and Apple contact center sites. Description In this role, you will be the analytical...
$124.3k - $210.3k
...with you.Job DescriptionThe Senior Risk Operations Analyst is a high visibility and demanding role... ...alerts actioned by the Risk Operations Center team within the Payment Fraud... ...of networks, risk management, network security, digital forensics, and security operationsPrior...Full timeWork experience placementWork at officeLocal areaShift workWeekend work- ...continue to make Cirrus Logic an exceptional place to grow your career! We're looking for a highly analytical, AI-fluent Sales Operations Analyst to own the end-to-end health of our revenue engine. This person will dig into billings, bookings, forecast, and pipeline/...Full timeWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Operations Center Analyst. Be the first to apply!
- entry level security analyst Austin, TX
- network security analyst Austin, TX
- IT security analyst Austin, TX
- entry level information security analyst Austin, TX
- security analyst Austin, TX
- security analyst intern Austin, TX
- senior information security analyst Austin, TX
- information security compliance analyst Austin, TX
- security operations analyst Austin, TX
- work from home security analyst Austin, TX


