Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SOC Security Analyst L2

Full-time

BlueVoyant

Position: SOC Security Analyst L2
Location: Remote, US
Shift Requirement:  : Wednesday to Saturday - Swing/Night Shift. Available options: (EST): 4pm-2am, 5pm-3am, 6pm-4am, 7pm-5am, 8pm-6am.
Work Authorization:  US Citizenship Required

 

Summary: 
BlueVoyant is seeking a  Security Operations Center (SOC) Security Analyst L2to help global customers manage and improve their cybersecurity posture. You will work in a fast-paced environment focused on minimizing the impact of security incidents and ensuring critical business operations remain uninterrupted. 

As a senior analyst, you serve as the  technical expert and escalation point for junior analysts. Your deep understanding of modern attacks, intrusion data analysis, and remediation techniques ensures that threats are identified, escalated, and remediated with urgency and precision. You will mentor junior team members, support customers directly, and contribute to ongoing process and technology improvements. 

 

Key Responsibilities:
As a senior analyst, your primary responsibility is ensuring the safety and security of customer environments through expert analysis, escalation handling, and effective communication. 

  • Monitor and analyze security events and alerts from SIEM platforms, endpoint logs, network telemetry, and EDR tools 
  • Research indicators of compromise (IOCs) and malicious activity to determine reputation and risk 
  • Conduct malware analysis, attacker infrastructure investigation, and forensic analysis 
  • Execute complex investigations and declare incidents when appropriate  Perform live response and remote forensics on compromised endpoints 
  • Conduct threat hunting activities based on behavioral anomalies and curated intelligence 
  • Participate in and support incident response, investigation, and documentation 
  • Collaborate closely with BlueVoyant Incident Response teams during active intrusions 
  • Ensure events are accurately identified, analyzed, escalated, and documented 
  • Identify and tune false positives and benign detections 
  • Perform peer reviews and QA checks on junior analysts’ investigations 
  • Mentor lower-level analysts and act as the technical escalation point 
  • Communicate regularly with clients regarding incidents, findings, and remediation steps 
  • Support Customer Success teams during client engagements as required 
  • Assist in improving security policies, procedures, tooling, and automation 

 
Basic Qualifications: 
People Skills 

  • Ability to remain calm and effective in high-pressure security incident situations 
  • Ability to work directly with customers to gather requirements and provide feedback on security services 
  • Strong written and verbal communication skills with the ability to translate complex technical concepts into clear, understandable language 
  • Strong teamwork and interpersonal skills; comfortable working with a globally distributed team 
  • Willingness and ability to work a 24/7/365 rotating shift schedule 

Technical Skills 

  • Experience using SIEM solutions, Cloud App Security tools, and EDR platforms
  • Advanced understanding of network protocols and network telemetry 
  • Knowledge of Windows and Unix forensic artifacts and analysis methods 
  • Expertise in endpoint, web, and authentication log analysis 
  • Experience creating SIEM/EDR detections 
  • Experience responding to modern authentication attacks (AD, Entra, OATH, etc.) 
  • Deep knowledge of common attack paths, including LOLBins, adversary tools, BEC attacks, AiTM, and lateral movement techniques 
  • Strong knowledge of: 
  • SIEM workflows (preferably Microsoft Sentinel or Splunk) 
  • Modern authentication systems and attacks (SSO, OATH, Entra) 
  • Malware detection and analysis (dynamic and light static) 
  • Network and firewall logs, IDS/WAF, web traffic logs 
  • Email security and BEC attack methodologies 
  • Windows and Unix forensic artifacts (registry, wtmp/btmp, etc.) 
  • Windows PE and malicious document analysis 
  • Legitimate and malicious remote access methods 
  • O365 attack paths and common adversary techniques 
  • Network metadata and commonly abused protocols 
  • Credential harvesting tools and methodologies 
  • Experience countering ransomware threat actors (preferred) 


Preferred Qualifications: 

  • Experience in intrusion analysis, incident response, digital forensics, penetration testing, or similar fields 
  • 3+ years of hands-on SOC/TOC/NOC experience 
  • GIAC certification(s) strongly preferred 
  • Additional certifications such as CISSP, Security+, Network+, CEH, RHCA, RHCE, MCSA, MCP, MCSE 
  • Familiarity with tools such as Microsoft Sentinel, Splunk, Microsoft Defender suite, CrowdStrike Falcon, SentinelOne 
  • Familiarity with GPO, LANDesk, or other IT infrastructure tools 
  • Experience with one or more programming languages (JavaScript, Python, Lua, Ruby, Go, Rust) 

Education 

  • Bachelor’s degree in Information Security, Computer Science, or related IT field, or equivalent experience 

About BlueVoyant

BlueVoyant is an AI-driven cybersecurity company dedicated to standing between our customers and cyber threats. By combining human, artificial, and proprietary intelligence, we deliver a unified solution that protects every organization’s network, identities, vendors, and digital footprints as a single attack surface. The company’s award-winning Microsoft Security expertise helps organizations maximize their security investments while reducing risk and ensuring compliance. 

Led by CEO, John Hernandez, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies. 

Founded in 2017 by Fortune 500 executives, including Chairman of the Board, Jim Rosenthal, Vice Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America and is committed to building a workplace where talented people are empowered to do their best work in the fight against global cyber threats.. 

Important Information for Applicants 

BlueVoyant uses AI-assisted tools within our applicant tracking system to help identify candidates whose experience and skills best match the requirements of a role. This technology provides hiring teams with added insights to support fair and efficient hiring decisions. All applications are reviewed by a member of our hiring team, and final hiring decisions are made by humans, not AI. By submitting your application, you acknowledge that AI tools may assist in the evaluation of your resume as part of the recruitment process. 

While we embrace the use of AI within our business and recruitment process, we do not permit its use during interviews. Any suspected use of AI during an interview will be challenged, and this may include the use of detection tools. 

For more information on how we process your personal data, please review our Candidate Privacy Notice available at  . 

All employees must be authorized to work in the United States of America.  BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. 

Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status.

Interview Expectations

As part of our interview process, we assess your experience through real-time discussion, so we expect responses to be your own. While we support the use of AI in our business, it is not permitted during interviews, and any suspected use may be challenged, including through detection methods.

BlueVoyant Candidate Privacy Notice

To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the SOC Security Analyst L2 in Remote vacancy
  •  ...Position: SOC Security Analyst L2 Location: Remote, US Shift Requirement: : Wednesday to Saturday - Swing/Night Shift. Available options: (EST): 4pm-2am, 5pm-3am, 6pm-4am, 7pm-5am, 8pm-6am. Work Authorization: US Citizenship Required Summary:  BlueVoyant... 
    Suggested
    Work at office
    Local area
    Remote work
    Shift work
    Night shift
    Rotating shift
    Afternoon shift

    BlueVoyant

    United States
    2 days ago
  •  ...Senior SOC - Security/Resource Management Analyst Visual Soft, Inc is seeking qualified candidates to work on our efforts with a Prime for their end customer, a federal agency. Position: Senior SOC - Security/Resource Management Analyst - (US Citizenship is a MUST... 
    Suggested
    Full time
    For contractors
    Work experience placement
    Immediate start
    Remote work
    Shift work

    Visualsoft

    Washington DC
    2 days ago
  •  ...The Security Operations Center (SOC) Analyst I will analyze reports and make suggestions to improve partners and end customer's security posture. May participate in the creation and maintenance of policies, standards, and procedures. Acts as the administrator for security... 
    Suggested
    Work experience placement
    Remote work
    Work from home

    ADEX

    Boise, ID
    2 days ago
  •  ...Tier 2 SOC Analyst - Enterprise Security Operations Location: Remote - US Based US Citizen or Green Card Holder on US Soil Overview: We are seeking an experienced Tier 2 SOC Analyst to support enterprise-level Security Operations Centers (SOCs) by performing... 
    Suggested
    Remote work

    c1advantage.com

    United States
    4 days ago
  • $40k - $140k

    Overview We are looking for a passionate and skilled Security Operations Center (SOC) Analyst to join our team. In this role, you will be instrumental in conducting thorough investigations and proactive "hunting" activities to identify and mitigate security threats. If... 
    Suggested
    Remote job
    Full time
    Work from home
    Rotating shift

    Get It Recruit - Real Estate

    Manchaca, TX
    14 hours ago
  •  ...Job Description Job Description Salary: Position Overview: As a SOC Analyst at viLogics, you are a front-line cyber defender operating within the Total Secure Office 365 (TSO 365) frameworkour fully managed cybersecurity and IT services platform. In this MSSP... 
    Work at office
    Local area
    Remote work
    Night shift
    Weekend work

    viLogics

    Ebensburg, PA
    22 days ago
  • $100k - $125k

    Huntress Labs Incorporated is seeking a Security Operations Analyst for a remote position. In this role, you'll triage and respond to cyber threats...  ...globally. Ideal candidates will have 2+ years in SOC roles and experience with various platforms. The position offers... 
    Remote job

    Huntress Labs Incorporated

    New York, NY
    4 days ago
  • SOC Analyst About the Role The SOC Analyst is responsible for monitoring, detecting, analyzing, and responding to cybersecurity events and incidents. This role is critical to the Security Operations Center's mission to protect client environments by identifying threats,... 
    Remote job
    Local area

    Trace3

    Kansas City, KS
    2 days ago
  •  ...opportunity to be directly involved as a valued member of our Security Operations Center (SOC). Under the direction of the SOC Supervisor and SOC...  ...may be a good fit for you if: You are a security‑minded analyst that loves enabling IT/Business teams to balance security... 
    Work at office
    Remote work

    Itlearn360

    California, MO
    2 days ago
  • $110k

    OPEN JOB: SOC (security operation center) Analyst LOCATION: Montvale, New Jersey Three days in office, two days from home. Everyone works from home Fridays and employees are given an extra 40 remote work days per year. BASE SALARY: $90,000 to $110,000 DETAILS: Our client... 
    Work at office
    Remote work
    Work from home

    Intermedia Group Inc.

    Montvale, NJ
    14 hours ago
  •  ...leading staffing and consulting firm is seeking an Information Security Analyst to play a critical role in protecting company data and systems...  ...position, preferably based in Texas, involves monitoring SOC alerts, investigating incidents, and managing vulnerabilities.... 
    Remote job

    Insight Global

    Dallas, TX
    2 days ago
  •  ...L2 Security Analyst-  Full-Time, on-site  We are looking for a Senior Security Analyst (L2) to join the Lumifi Cyber SOC team. Senior Security Analysts are expected to handle customer facing investigations, mentoring, and training of fellow analysts, and to participate... 
    Full time

    Lumifi Cyber

    Scottsdale, AZ
    6 days ago
  • $85k - $95k

    System One is seeking a Security Operations Analyst to join their team in Washington, DC. This contract position offers a remote work model with a compensation range of $85,000 to $95,000. The role requires strong experience in security operations and cybersecurity, with... 
    Remote job
    Contract work
    Night shift

    System One

    Washington DC
    4 days ago
  • DecisionPoint Corporation is seeking an IT Security Operations Analyst - Mid to support the GPO Security Operations Center. This role involves leading incident triage, response coordination, and operational documentation to identify and mitigate cybersecurity threats. Candidates... 
    Remote job

    DecisionPoint Corporation

    Washington DC
    3 days ago
  • $117k - $130k

     ...on healthcare at scale. About the role: We are seeking a Security Analyst to join our Security team. This role is critical to maintaining...  ...Independently manage day-to-day security operations (SecOps/SOC), including threat monitoring and incident triage with intense... 
    Remote work
    Work visa
    Flexible hours

    Garner Health

    New York, NY
    22 days ago
  •  ...Program. · Responsible for the(CAPPS) security framework, which includes but is not...  ...· Participates as directed in an annual SOC-1 attestation audit designed to ensure that...  ...Required Experience serving in a security analyst role with responsibility overseeing a... 
    Work at office
    Remote work

    Numentica LLC

    Austin, TX
    8 days ago
  •  ...will require you to be in Cleveland, OH We are in a hybrid schedule, 2 days on campus and 3 days WFH OverDrive is hiring a Security Engineer to help build, tune, and respond to SIEM detections for our environment. You'll be responsible for connecting the dots... 
    Work from home

    OverDrive

    Cleveland, OH
    14 hours ago
  • $1,750 - $2,150 per month

     ...outputs related to threat analysis, vulnerability assessment, and security architecture recommendations. Create realistic scenarios...  ...government/defense environment. ~ Background in areas such as SOC analysis, incident response (DFIR), penetration testing, threat... 
    Hourly pay
    Contract work
    Summer work
    Remote work

    Mercor

    San Francisco, CA
    14 days ago
  •  ...Security Analyst I (SOC) At ProArch, you'll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry... 
    Work at office
    Immediate start
    Remote work
    Shift work

    ProArch

    United States
    3 days ago
  •  ...DatamanUSA LLC has an exciting opportunity for a talented Security Analyst to work with one of our direct clients to work in Columbia, SC...  ...Scope of the project: *) The position will work as an Tier 2 SOC Analyst for the Division of Information Security. *) This role... 
    Full time
    Work experience placement
    Local area
    Remote work

    Dataman Ltd

    Columbia, SC
    1 day ago
  •  ...Identity Security Analyst At Semperis, our mission is to be a Force for Good. Starting with being a great place to work. We believe that...  ...technical security or support role, such as: ~ Security Analyst/SOC Analyst ~ Security Engineer ~ Technical Support Engineer... 
    Interim role
    Work at office
    Local area
    Remote work

    Semperis

    United States
    4 days ago
  •  ...technology infrastructure complies with these standards and Department's security policies. Plan and perform IT security controls...  ...Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including mapping to key IT security and compliance... 
    Work experience placement
    Remote work

    RIT Solutions Inc/ Tech Dev IT/ Texperts Inc/ConceptsIT, Inc...

    Reston, VA
    2 days ago
  • $80k - $90k

     ...Security Analyst Imagen Technologies is building the AI-enabled teleradiology practice of the future. We operate the first vertically integrated...  ..., incident analyst, working in a Security Operations Center (SOC), or equivalent education Knowledge of working with a SIEM... 
    Local area
    Remote work

    Imagen

    United States
    1 day ago
  •  ...Position Overview  Security and compliance are vital to protecting the systems that allow...  ...families living with dementia. As our Security Analyst, you are the first line of defense. You...  ...security controls in support of SOC 2 (and future HITRUST) compliance assessments... 
    Full time
    Internship
    Remote work
    Flexible hours

    CERESTI HEALTH

    United States
    2 days ago
  •  ...Security Analyst This role requires daily onsite attendance in Houston. Remote work and visa sponsorship are not available. Join DataVox...  ...it. Why Join Us? This is the role for an early-career SOC analyst whose outgrown alert triage is ready for the next chapter... 
    Remote work
    Day shift

    Datavox

    Houston, TX
    28 days ago
  • $145k - $200k

     ...locate missing children, and more. The Role As a Defensive Security Analyst, you are responsible for the security of Palantir's people and...  ...new challenges. In this role, you'll independently manage SOC systems that are essential to our security posture, ensuring... 
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    4 days ago
  • $110k - $160k

     ...Defensive Security Analyst-Washington, DC Hybrid, Washington DC SpecterOps is looking for candidates to support Security Operations at...  ...engineering, managing, and monitoring Security Operations Center (SOC) systems. A successful candidate will have excellent technical... 
    Remote work
    Home office
    Monday to Friday
    Flexible hours
    Weekend work

    SpecterOps

    Washington DC
    4 days ago
  •  ...Security Analyst SailPoint's Cybersecurity organization is seeking a Security Analyst with a passion for cybersecurity and protecting the...  ...security objectives. This role reports directly to the Americas SOC Manager, can be remote anywhere in Mexico, and will be working... 
    Remote work
    Day shift

    SailPoint Technologies

    United States
    21 hours ago
  •  ...Security Analyst Opportunity At Serve Robotics At Serve Robotics, we're reimagining how things move in cities. Our personable sidewalk robot...  ...a hotseat or security operations rotation such as a SOC or NOC. ~ Bachelor's degree in computer science, Information... 
    Work experience placement
    Live in
    Local area
    Remote work
    Night shift

    Serve Robotics

    United States
    2 days ago
  • $122k - $184k

     ...reviews and structured vulnerability analyses in accordance with security framework/certification requirements (e.g., OCP S.A.F.E., EMVCo)...  ...systems, such as Smart Cards, Secure Elements, System-on-Chips (SoCs), Trusted Execution Environments, smart light, remote control,... 
    Remote work

    Keysight Technologies

    Santa Clara, CA
    14 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SOC Security Analyst L2. Be the first to apply!