SOC Security Analyst L2
BlueVoyant
Position: SOC Security Analyst L2
Location: Remote, US
Shift Requirement: : Wednesday to Saturday - Swing/Night Shift. Available options: (EST): 4pm-2am, 5pm-3am, 6pm-4am, 7pm-5am, 8pm-6am.
Work Authorization: US Citizenship Required
Summary:
BlueVoyant is seeking a Security Operations Center (SOC) Security Analyst L2to help global customers manage and improve their cybersecurity posture. You will work in a fast-paced environment focused on minimizing the impact of security incidents and ensuring critical business operations remain uninterrupted.
As a senior analyst, you serve as the technical expert and escalation point for junior analysts. Your deep understanding of modern attacks, intrusion data analysis, and remediation techniques ensures that threats are identified, escalated, and remediated with urgency and precision. You will mentor junior team members, support customers directly, and contribute to ongoing process and technology improvements.
Key Responsibilities:
As a senior analyst, your primary responsibility is ensuring the safety and security of customer environments through expert analysis, escalation handling, and effective communication.
- Monitor and analyze security events and alerts from SIEM platforms, endpoint logs, network telemetry, and EDR tools
- Research indicators of compromise (IOCs) and malicious activity to determine reputation and risk
- Conduct malware analysis, attacker infrastructure investigation, and forensic analysis
- Execute complex investigations and declare incidents when appropriate Perform live response and remote forensics on compromised endpoints
- Conduct threat hunting activities based on behavioral anomalies and curated intelligence
- Participate in and support incident response, investigation, and documentation
- Collaborate closely with BlueVoyant Incident Response teams during active intrusions
- Ensure events are accurately identified, analyzed, escalated, and documented
- Identify and tune false positives and benign detections
- Perform peer reviews and QA checks on junior analysts’ investigations
- Mentor lower-level analysts and act as the technical escalation point
- Communicate regularly with clients regarding incidents, findings, and remediation steps
- Support Customer Success teams during client engagements as required
- Assist in improving security policies, procedures, tooling, and automation
Basic Qualifications:
People Skills
- Ability to remain calm and effective in high-pressure security incident situations
- Ability to work directly with customers to gather requirements and provide feedback on security services
- Strong written and verbal communication skills with the ability to translate complex technical concepts into clear, understandable language
- Strong teamwork and interpersonal skills; comfortable working with a globally distributed team
- Willingness and ability to work a 24/7/365 rotating shift schedule
Technical Skills
- Experience using SIEM solutions, Cloud App Security tools, and EDR platforms
- Advanced understanding of network protocols and network telemetry
- Knowledge of Windows and Unix forensic artifacts and analysis methods
- Expertise in endpoint, web, and authentication log analysis
- Experience creating SIEM/EDR detections
- Experience responding to modern authentication attacks (AD, Entra, OATH, etc.)
- Deep knowledge of common attack paths, including LOLBins, adversary tools, BEC attacks, AiTM, and lateral movement techniques
- Strong knowledge of:
- SIEM workflows (preferably Microsoft Sentinel or Splunk)
- Modern authentication systems and attacks (SSO, OATH, Entra)
- Malware detection and analysis (dynamic and light static)
- Network and firewall logs, IDS/WAF, web traffic logs
- Email security and BEC attack methodologies
- Windows and Unix forensic artifacts (registry, wtmp/btmp, etc.)
- Windows PE and malicious document analysis
- Legitimate and malicious remote access methods
- O365 attack paths and common adversary techniques
- Network metadata and commonly abused protocols
- Credential harvesting tools and methodologies
- Experience countering ransomware threat actors (preferred)
Preferred Qualifications:
- Experience in intrusion analysis, incident response, digital forensics, penetration testing, or similar fields
- 3+ years of hands-on SOC/TOC/NOC experience
- GIAC certification(s) strongly preferred
- Additional certifications such as CISSP, Security+, Network+, CEH, RHCA, RHCE, MCSA, MCP, MCSE
- Familiarity with tools such as Microsoft Sentinel, Splunk, Microsoft Defender suite, CrowdStrike Falcon, SentinelOne
- Familiarity with GPO, LANDesk, or other IT infrastructure tools
- Experience with one or more programming languages (JavaScript, Python, Lua, Ruby, Go, Rust)
Education
Bachelor’s degree in Information Security, Computer Science, or related IT field, or equivalent experience
About BlueVoyant
BlueVoyant is an AI-driven cybersecurity company dedicated to standing between our customers and cyber threats. By combining human, artificial, and proprietary intelligence, we deliver a unified solution that protects every organization’s network, identities, vendors, and digital footprints as a single attack surface. The company’s award-winning Microsoft Security expertise helps organizations maximize their security investments while reducing risk and ensuring compliance.
Led by CEO, John Hernandez, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.
Founded in 2017 by Fortune 500 executives, including Chairman of the Board, Jim Rosenthal, Vice Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America and is committed to building a workplace where talented people are empowered to do their best work in the fight against global cyber threats..
Important Information for Applicants
BlueVoyant uses AI-assisted tools within our applicant tracking system to help identify candidates whose experience and skills best match the requirements of a role. This technology provides hiring teams with added insights to support fair and efficient hiring decisions. All applications are reviewed by a member of our hiring team, and final hiring decisions are made by humans, not AI. By submitting your application, you acknowledge that AI tools may assist in the evaluation of your resume as part of the recruitment process.
While we embrace the use of AI within our business and recruitment process, we do not permit its use during interviews. Any suspected use of AI during an interview will be challenged, and this may include the use of detection tools.
For more information on how we process your personal data, please review our Candidate Privacy Notice available at .
All employees must be authorized to work in the United States of America. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.
Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status.
Interview Expectations
As part of our interview process, we assess your experience through real-time discussion, so we expect responses to be your own. While we support the use of AI in our business, it is not permitted during interviews, and any suspected use may be challenged, including through detection methods.
BlueVoyant Candidate Privacy Notice
To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice
- ...Position: SOC Security Analyst L2 Location: Remote, US Shift Requirement: : Wednesday to Saturday - Swing/Night Shift. Available options: (EST): 4pm-2am, 5pm-3am, 6pm-4am, 7pm-5am, 8pm-6am. Work Authorization: US Citizenship Required Summary: BlueVoyant...SuggestedWork at officeLocal areaRemote workShift workNight shiftRotating shiftAfternoon shift
- ...Senior SOC - Security/Resource Management Analyst Visual Soft, Inc is seeking qualified candidates to work on our efforts with a Prime for their end customer, a federal agency. Position: Senior SOC - Security/Resource Management Analyst - (US Citizenship is a MUST...SuggestedFull timeFor contractorsWork experience placementImmediate startRemote workShift work
- ...The Security Operations Center (SOC) Analyst I will analyze reports and make suggestions to improve partners and end customer's security posture. May participate in the creation and maintenance of policies, standards, and procedures. Acts as the administrator for security...SuggestedWork experience placementRemote workWork from home
- ...Tier 2 SOC Analyst - Enterprise Security Operations Location: Remote - US Based US Citizen or Green Card Holder on US Soil Overview: We are seeking an experienced Tier 2 SOC Analyst to support enterprise-level Security Operations Centers (SOCs) by performing...SuggestedRemote work
$40k - $140k
Overview We are looking for a passionate and skilled Security Operations Center (SOC) Analyst to join our team. In this role, you will be instrumental in conducting thorough investigations and proactive "hunting" activities to identify and mitigate security threats. If...SuggestedRemote jobFull timeWork from homeRotating shift- ...Job Description Job Description Salary: Position Overview: As a SOC Analyst at viLogics, you are a front-line cyber defender operating within the Total Secure Office 365 (TSO 365) frameworkour fully managed cybersecurity and IT services platform. In this MSSP...Work at officeLocal areaRemote workNight shiftWeekend work
$100k - $125k
Huntress Labs Incorporated is seeking a Security Operations Analyst for a remote position. In this role, you'll triage and respond to cyber threats... ...globally. Ideal candidates will have 2+ years in SOC roles and experience with various platforms. The position offers...Remote job- SOC Analyst About the Role The SOC Analyst is responsible for monitoring, detecting, analyzing, and responding to cybersecurity events and incidents. This role is critical to the Security Operations Center's mission to protect client environments by identifying threats,...Remote jobLocal area
- ...opportunity to be directly involved as a valued member of our Security Operations Center (SOC). Under the direction of the SOC Supervisor and SOC... ...may be a good fit for you if: You are a security‑minded analyst that loves enabling IT/Business teams to balance security...Work at officeRemote work
$110k
OPEN JOB: SOC (security operation center) Analyst LOCATION: Montvale, New Jersey Three days in office, two days from home. Everyone works from home Fridays and employees are given an extra 40 remote work days per year. BASE SALARY: $90,000 to $110,000 DETAILS: Our client...Work at officeRemote workWork from home- ...leading staffing and consulting firm is seeking an Information Security Analyst to play a critical role in protecting company data and systems... ...position, preferably based in Texas, involves monitoring SOC alerts, investigating incidents, and managing vulnerabilities....Remote job
- ...L2 Security Analyst- Full-Time, on-site We are looking for a Senior Security Analyst (L2) to join the Lumifi Cyber SOC team. Senior Security Analysts are expected to handle customer facing investigations, mentoring, and training of fellow analysts, and to participate...Full time
$85k - $95k
System One is seeking a Security Operations Analyst to join their team in Washington, DC. This contract position offers a remote work model with a compensation range of $85,000 to $95,000. The role requires strong experience in security operations and cybersecurity, with...Remote jobContract workNight shift- DecisionPoint Corporation is seeking an IT Security Operations Analyst - Mid to support the GPO Security Operations Center. This role involves leading incident triage, response coordination, and operational documentation to identify and mitigate cybersecurity threats. Candidates...Remote job
$117k - $130k
...on healthcare at scale. About the role: We are seeking a Security Analyst to join our Security team. This role is critical to maintaining... ...Independently manage day-to-day security operations (SecOps/SOC), including threat monitoring and incident triage with intense...Remote workWork visaFlexible hours- ...Program. · Responsible for the(CAPPS) security framework, which includes but is not... ...· Participates as directed in an annual SOC-1 attestation audit designed to ensure that... ...Required Experience serving in a security analyst role with responsibility overseeing a...Work at officeRemote work
- ...will require you to be in Cleveland, OH We are in a hybrid schedule, 2 days on campus and 3 days WFH OverDrive is hiring a Security Engineer to help build, tune, and respond to SIEM detections for our environment. You'll be responsible for connecting the dots...Work from home
$1,750 - $2,150 per month
...outputs related to threat analysis, vulnerability assessment, and security architecture recommendations. Create realistic scenarios... ...government/defense environment. ~ Background in areas such as SOC analysis, incident response (DFIR), penetration testing, threat...Hourly payContract workSummer workRemote work- ...Security Analyst I (SOC) At ProArch, you'll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry...Work at officeImmediate startRemote workShift work
- ...DatamanUSA LLC has an exciting opportunity for a talented Security Analyst to work with one of our direct clients to work in Columbia, SC... ...Scope of the project: *) The position will work as an Tier 2 SOC Analyst for the Division of Information Security. *) This role...Full timeWork experience placementLocal areaRemote work
- ...Identity Security Analyst At Semperis, our mission is to be a Force for Good. Starting with being a great place to work. We believe that... ...technical security or support role, such as: ~ Security Analyst/SOC Analyst ~ Security Engineer ~ Technical Support Engineer...Interim roleWork at officeLocal areaRemote work
- ...technology infrastructure complies with these standards and Department's security policies. Plan and perform IT security controls... ...Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including mapping to key IT security and compliance...Work experience placementRemote work
$80k - $90k
...Security Analyst Imagen Technologies is building the AI-enabled teleradiology practice of the future. We operate the first vertically integrated... ..., incident analyst, working in a Security Operations Center (SOC), or equivalent education Knowledge of working with a SIEM...Local areaRemote work- ...Position Overview Security and compliance are vital to protecting the systems that allow... ...families living with dementia. As our Security Analyst, you are the first line of defense. You... ...security controls in support of SOC 2 (and future HITRUST) compliance assessments...Full timeInternshipRemote workFlexible hours
- ...Security Analyst This role requires daily onsite attendance in Houston. Remote work and visa sponsorship are not available. Join DataVox... ...it. Why Join Us? This is the role for an early-career SOC analyst whose outgrown alert triage is ready for the next chapter...Remote workDay shift
$145k - $200k
...locate missing children, and more. The Role As a Defensive Security Analyst, you are responsible for the security of Palantir's people and... ...new challenges. In this role, you'll independently manage SOC systems that are essential to our security posture, ensuring...Work experience placementWork at officeRemote workWork from homeRelocation package$110k - $160k
...Defensive Security Analyst-Washington, DC Hybrid, Washington DC SpecterOps is looking for candidates to support Security Operations at... ...engineering, managing, and monitoring Security Operations Center (SOC) systems. A successful candidate will have excellent technical...Remote workHome officeMonday to FridayFlexible hoursWeekend work- ...Security Analyst SailPoint's Cybersecurity organization is seeking a Security Analyst with a passion for cybersecurity and protecting the... ...security objectives. This role reports directly to the Americas SOC Manager, can be remote anywhere in Mexico, and will be working...Remote workDay shift
- ...Security Analyst Opportunity At Serve Robotics At Serve Robotics, we're reimagining how things move in cities. Our personable sidewalk robot... ...a hotseat or security operations rotation such as a SOC or NOC. ~ Bachelor's degree in computer science, Information...Work experience placementLive inLocal areaRemote workNight shift
$122k - $184k
...reviews and structured vulnerability analyses in accordance with security framework/certification requirements (e.g., OCP S.A.F.E., EMVCo)... ...systems, such as Smart Cards, Secure Elements, System-on-Chips (SoCs), Trusted Execution Environments, smart light, remote control,...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC Security Analyst L2. Be the first to apply!
- entry level security analyst Remote
- security analyst Remote
- junior security analyst Remote
- security analyst remote Remote
- bond analyst Remote
- entry level information security analyst Remote
- security operations analyst Remote
- work from home security analyst Remote
- senior information security analyst Remote
- information security compliance analyst Remote


