Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Tier 2 Security Operations Center (SOC) Analyst

$69.55k - $125.73k

Leidos

Leidos is seeking an experienced

Tier 2 Security Operations Center (SOC) Analyst

to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC.

The Tier 2 SOC Analyst will perform advanced analysis of cybersecurity events escalated from Tier 1 or identified through enterprise monitoring capabilities. This position will correlate security data, determine the scope and potential impact of suspicious activity, support incident triage and containment, preserve evidence, and coordinate with incident responders and other cybersecurity teams to protect DHRA systems and networks. Work Locations: Mark Center, Alexandria, Virginia - 1 position

Department of Defense Center – Monterey Bay, Seaside, California – 1 positions

Clearance: Active Secret security clearance required at time of consideration. U.S. Citizen is a must. Mission Environment DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense’s largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data. The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS). The Tier 2 SOC Analysts operate within a 24x7 security operations environment responsible for detecting, analyzing, escalating, and supporting response to cybersecurity activity affecting DHRA systems and networks. Tier 2 analysts provide the deeper technical analysis required when events cannot be resolved through initial Tier 1 triage. Primary Responsibilities: Perform advanced analysis of cybersecurity events escalated from Tier 1 analysts or identified through endpoint, user-activity, network, and other enterprise monitoring capabilities.

Correlate alerts, security telemetry, and supporting technical data to determine the nature, scope, severity, and potential impact of cybersecurity activity.

Distinguish legitimate activity, false positives, policy violations, suspicious behavior, and potential cybersecurity incidents.

Determine appropriate next actions based on approved SOC procedures, playbooks, and escalation criteria.

Recommend or initiate authorized actions to contain or mitigate identified threats.

Support cybersecurity incident triage, escalation, and containment in coordination with the incident-response team.

Preserve relevant technical evidence and supporting information required for further investigation and incident response.

Document investigative actions, analysis, findings, and conclusions in Government-approved systems.

Maintain complete and accurate event records, tickets, timelines, and supporting evidence.

Contribute to required SOC event reporting and operational status information.

Perform Tier 2 troubleshooting of cybersecurity tools, alerts, security data, and related technical issues.

Use approved Commercial-Off-The-Shelf (COTS) security-analysis tools to investigate cybersecurity events.

Support security testing, mitigation activities, and cybersecurity compliance checking as required by SOC operations.

Coordinate analysis with incident responders, network engineers, endpoint-security personnel, cybersecurity-tool teams, system administrators, and other cybersecurity stakeholders.

Identify recurring false positives, detection gaps, or ineffective alerting and recommend improvements to monitoring and detection capabilities.

Support tuning of cybersecurity monitoring capabilities to improve detection accuracy and analyst effectiveness.

Contribute to SOC procedure, playbook, and process improvements based on operational experience and lessons learned.

Support knowledge transfer across SOC analysts to improve consistent analysis and response within the 24x7 operating environment.

Basic Qualifications: Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline and 2-4 years of relevant cybersecurity experience or a Masters with less than 2 years. Specific experience, education and training may be considered in lieu of degree.

Experience performing cybersecurity event analysis, SOC operations, cyber defense, incident triage, or security monitoring.

Experience analyzing and correlating alerts from multiple cybersecurity monitoring capabilities.

Experience investigating endpoint, network, user-activity, or other cybersecurity events.

Experience determining the scope, severity, and potential impact of suspicious cybersecurity activity.

Experience supporting cybersecurity incident escalation, containment, mitigation, or evidence preservation.

Experience using enterprise security-analysis or cybersecurity monitoring tools.

Experience performing Tier 2 cybersecurity troubleshooting.

Working knowledge of cybersecurity attack techniques, network-security concepts, endpoint security, event analysis, and incident-response processes.

Ability to document investigations, findings, actions, and conclusions clearly and accurately.

Ability to work effectively within a team-based 24x7 security operations environment.

U.S. Citizenship required.

Active Secret security clearance required at time of consideration.

Preferred Qualifications: Experience supporting a Department of Defense or Federal Security Operations Center.

Experience working in a 24x7 SOC or Cybersecurity Service Provider environment.

Experience with Security Information and Event Management (SIEM) platforms and enterprise cybersecurity monitoring tools.

Experience analyzing endpoint, network, identity, user-activity, intrusion-detection, or other cybersecurity telemetry.

Experience supporting cybersecurity incident response and digital-evidence preservation.

Experience tuning security alerts, detection logic, or monitoring capabilities to reduce false positives and improve detection quality.

Experience developing or refining SOC procedures, playbooks, or escalation criteria.

Experience with cybersecurity mitigation, compliance checking, or security testing.

Familiarity with Department of Defense cybersecurity requirements and Risk Management Framework processes.

Familiarity with DHRA, DMDC, or comparable Department of Defense enterprise environments.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares. Original Posting:

September 10, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range:

Pay Range $69,550.00 - $125,725.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Vacancy posted 9 hours ago
Similar jobs that could be interesting for youBased on the Tier 2 Security Operations Center (SOC) Analyst in Alexandria, VA vacancy
  • $100k - $125k

    SOC Analyst Hybrid-- 2 days a week onside in Bethesda, MDThe Security Operations Center Analyst will be responsible for monitoring and analyzing security threats and implementing appropriate countermeasures to protect the organization's information assets. Key Responsibilities... 
    Suggested
    2 days per week

    Dunhill Professional Search

    Bethesda, MD
    2 days ago
  • $45k - $60k

     ...seeking a customer-focused Customer Service Analyst, Tier 2 to provide onsite IT support for a...  ...and coverage to the Tier 1 Call Center when needed Required Qualifications Excellent...  ...relationship between computer hardware, operating systems, and software applications... 
    Suggested
    For contractors
    Remote work
    Monday to Friday
    Shift work

    Humantouch-LLC

    Arlington, VA
    2 days ago
  •  ...insightful market intelligence has secured long‑term partnerships with...  ...Title: Information Security Operations Center - Incident Handler III...  ..., Ethernet, OSI model, layer 2 and layer 3 concepts Understanding...  ...with CERT/CSIRT/CIRT/SOC Certification Requirements:... 
    Suggested
    Shift work
    Rotating shift
    Weekend work

    Artech Information System LLC

    Washington DC
    3 days ago
  •  ...Description One Federal Solution is seeking an experienced Functional Analyst / Tier 2 Helpdesk to support a Government Client in Arlington, VA....  ...within the financial management system. Administer user security roles and access requests while ensuring compliance with... 
    Suggested
    Work at office

    One Federal Solution

    Arlington, VA
    27 days ago
  • $131.3k - $237.35k

     ...contribute to our communities, and operate sustainable. Everything we do is built...  ...need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government... 
    Suggested
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  •  ...solving our clients’ toughest security challenges. But that’s not...  ...currently seeking a skilled SOC Analyst with an active Secret or Top...  ...Provides engineering support, operations, and maintenance of security...  ....Maintains Tenable Security Center administrator... 
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    2 days ago
  • $85k - $115k

     ...Light has an opening for a CND Analyst - SOC supporting the Army National...  ...contract in support of the operation, modernization, expansion, and...  ...enterprise systems, defend against security breaches, and identify,...  ...of Openings: 1Category: CyberClearance: Tier 3 - Secret/ADP II
    Contract work
    Work experience placement
    Remote work
    Worldwide
    Relocation
    Shift work

    By Light Professional IT Services

    Falls Church, VA
    5 days ago
  • Security Operations Center (SOC) Analyst Washington, District of Columbia, United States About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center (SOC) Analyst to join our team. As a... 

    10xTalents

    Washington DC
    3 days ago
  • $131.3k - $237.35k

     ...contribute to our communities, and operate sustainably. Everything we do is built...  ...need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government... 
    Flexible hours

    Leidos Inc

    Arlington, VA
    3 days ago
  •  ...sector customers who demand experience and proven security models to protect their data. ShorePoint...  ...Who we’re looking for: We are seeking a  Tier 2 Analyst for a potential opportunity to support enterprise SOC operations by reviewing and responding to escalated... 
    Contract work

    ShorePoint

    Washington DC
    6 days ago
  •  ...demand experience and proven security models to protect their data...  ...for: We are seeking a SOC Analyst Tier 1 (Secret Clearance) to support enterprise Security Operations Center (SOC) operations. This role...  ...Escalate issues to Tier 2 analysts when appropriate.... 

    ShorePoint

    Washington DC
    2 days ago
  • $94.49k - $131.16k

     ...Together.SummaryThe Senior Information Security Analyst is responsible for identifying,...  ...managing relationships with our security operations vendors and providing technical...  ...and prevention strategies, and SOC (Security Operations Center) operations. Cloud Security: Knowledge... 
    Full time
    Work at office
    Remote work
    Relocation
    Visa sponsorship
    Relocation package

    DLA Piper

    Reston, VA
    5 days ago
  •  ...partnering with Expression to find an SOC Analyst . See details below: About The...  ...federal networks. You will support Tier 1 and Tier 2 SOC operations, contribute to SOC playbook development...  ..., Department of State, and national security community. Expression’s “Perpetual... 
    For contractors
    Work at office
    Immediate start
    Shift work

    Hatch IT

    Washington DC
    6 days ago
  •  ...Business Operations Analyst 2 The Business Operations Analyst provides comprehensive administrative, operational, and program support to the Defense Counterintelligence and Security Agency (DCSA) Regional Headquarters, Field Offices, and Directorates. This role ensures... 
    Work experience placement
    Work at office

    Provato HR

    Alexandria, VA
    3 days ago
  • $104k - $166k

     ...VulnerabilityAnalyst.Location: Chandler, AZ or Washington DCRole and Responsibilities: The Senior Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying, analyzing, and prioritizing vulnerabilities and security risks across enterprise, cloud,... 
    Contract work
    Shift work

    Peraton

    Washington DC
    2 days ago
  •  ...subject to change).Who are you?Security-cleared Professional: You...  ...developing, and maintaining SOC oriented services and systems...  ...organization from engineering, operations, and managementTechnologies:...  ...and actions taken by the SOC analyst teamPrepare, provide, and discuss... 
    Temporary work
    Work at office
    Remote work

    Fusion Technology

    Washington DC
    4 days ago
  • $80k - $128k

     ...currently seeking to hire a Watch Analyst for its' Federal Strategic Cyber group...  ...DHS Cybersecurity Infrastructure Security Agency’s (CISA) 24/7 SCIF/Operations Center, which is the hub for staying on...  ...:Bachelor’s degree and 2 years of relevant experience. An... 
    Contract work
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work

    Peraton Corporation

    Washington DC
    5 days ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7x365 Security Operations Center and Incident Response team, responsible for continuous monitoring...  ...in a Security Operations Center (SOC) performing incident response activities... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    1 day ago
  •  ...Network Security Analyst LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly...  ...Information Security Analyst, Security Operations Center (SOC) Analyst, Network Defense Analyst,...  ...Bachelor's Degree. Some contracts give 2 years experience credit for a Master'... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Vienna, VA
    4 days ago
  • $140k - $220k

     ...Description Investigative Analyst At B&A, we foster and...  ...qualifications, certifications, security clearance, and contract...  ...Experience Entry Level: 0-2 years of specialized experience...  ...Account (HSA) option as well as two tiers of dental coverage, vision,... 
    Full time
    Contract work
    Work at office
    Local area

    Bart & Associates

    Alexandria, VA
    1 day ago
  • $18.77 per hour

     ...corporation, our work helps secure an enduring future for our shareholders...  ...Continuous Vetting (CV) Analyst The Continuous Vetting (CV...  ...supports the Case Processing Operations Center (CPOC) contract within the...  .... Minimum of two (2) years of experience in government... 
    Hourly pay
    Contract work
    For contractors
    Work at office
    Remote work
    Flexible hours
    Afternoon shift

    ASRC Federal Holding Company

    Reston, VA
    5 days ago
  • $70.8k - $172.4k

    ERP Business Systems Analyst II — Functional Analyst (Tier-1/2 & Testing) Position Description Are you...  ...the efficiency of financial system operations? Can you apply your functional analyst...  ...and/or level of US government security clearance held. Dependent upon role... 
    Local area
    Springfield, VA
    a month ago
  •  ...leading platform-enabled unified security operations company providing a...  ...seeking a Senior Security (SOC) Analyst who will monitor and analyze...  ...working in a Security Operations Center (SOC) or Network Operations...  ...contributed and 50% of the next 2% contributed   ~ Medical,... 
    Temporary work
    Night shift
    Rotating shift

    UltraViolet Cyber

    Herndon, VA
    29 days ago
  • $158k - $178k

     ...solutions to complex national security issues. With over 50 years of...  ...The Group brings technical and operational expertise in fields such as countering...  ...for an Operations Research Analyst to assist with systems...  ...DAWIA T&E Practitioner Level 2/3, and/or CTEP (Certified Test... 
    Temporary work
    Work at office
    Flexible hours

    MCR

    Alexandria, VA
    2 days ago
  • $70.3k - $114.4k

    Overview The Enterprise Security Analyst II is a hands-on Security Operations Center (SOC) role responsible for monitoring alerts, investigating security events, supporting...  ..., or response improvements Requirements ~2+ years of cybersecurity experience with hands-on... 
    Monday to Friday

    Esri

    Vienna, VA
    20 days ago
  • Security Operations Center, Analyst- Costa Rica As a SOC Analyst, you will play a pivotal role in supporting the Senior Program Manager in the day-to-day oversight of program performance. This dynamic position involves contributing to the technical delivery essential for... 
    Permanent employment
    Full time
    Contract work
    For contractors
    Interim role
    Immediate start
    Relocation

    CRDF Global

    Arlington, VA
    2 days ago
  • $120k - $135k

     ...is seeking a Senior Incident Response Analyst to join our team in support of a mission...  ...government program. As part of the Security Operations Center, you will help monitor, detect, investigate...  ...and automation scripts to strengthen SOC monitoring capabilities. Document... 
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity LLC

    Arlington, VA
    15 days ago
  •  ...DescriptionProSidian is a Management And Operations Consulting Services firm that focuses on...  ...Seeks a Information Security Analyst (FISMA/NIST) | Human Capital Programmatic...  ...Competencies [1 - Personal Effectiveness | 2 - Continuous Learning | 3 - Leadership... 
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    Prosidian Consultng

    Alexandria, VA
    4 days ago
  • $90.64k - $113.3k

     ...Building Intelligence®. We design, build, operate, and maintain cyber-physical solutions...  ...’s most mission-critical facilities, secure environments, complex infrastructure,...  ...a Organizational Transformation Analyst (Tech Analyst 2) to join our Security and Electronic... 
    Work at office
    Local area

    M.C. Dean, Inc.

    Mc Lean, VA
    3 days ago
  • $117.2k - $176.7k

     ...GCC team is a division within the Product Security Organization, and you'll play a pivotal...  ...27001, Service Organization Controls (SOC) 1/2, and other regulatory frameworks.Partner...  ...document detailed process playbooks, and drive operational efficiency and continuous improvement.... 
    Full time

    Salesforce

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Tier 2 Security Operations Center (SOC) Analyst. Be the first to apply!