Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Operations Center Analyst

TriOptus LLC

Security Analyst (Tier 2)

Security Operations Center Analyst Location: Remote Duration of Employment: 12+ Months Number of Openings: 1 Clearance Required: Yes

Candidate Description

The Tier 2 Security Operation Center (SOC) Analysts have experience in using SIEM technologies to support in-depth investigations and threat hunting activities. Experience with Devo, Splunk, Azure Sentinel or other SIEM technology required. An understanding of ticket workflow and handling is also required.

Tier 2 SOC Analysts are also responsible for researching, responding to, and creating tickets within the ticketing system.

Tier 2 Analysts are responsible for:

  • Determining service impact of security events.
  • Alerting customers to possible malicious activity.
  • Working tickets via ticketing system.
  • Creating tickets for various needs of the SOC.
  • Research and data collection of events of interest.
  • Engaging support of Tier 3 Analysts, Network Operations Center (NOC), Network Engineers and/or the CSIRT (Computer Security Incident Response Team) when necessary.

Responsibilities

  • Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
  • Receive and analyze security alerts from various sources within the enterprise and determine possible causes of such alerts.
  • Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.
  • Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).
  • Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave.
  • Assists in developing cybersecurity recommendations to Tier 3 based on significant threats and vulnerabilities.
  • Work security tickets within established SLAs and escalate to Customer or Tier 3 as needed, establish false positive, or contact customer as needed.
  • Provide guidance and mentorship to other SOC personnel.
  • Contribute to the creation of process documentation and training materials.

Candidate Requirements

Candidate should have strong communications skills, both written and verbal. Be comfortable communicating with teammates, customer technical personnel and AT&T Leads and Managers

The preferred candidate is REQUIRED to have:

  • Three (3) to five (5) years of Security Incident Response, Security Operations Center, and/or threat analysis experience.
  • Demonstrated experience using either an Enterprise and or cloud Security SIEM technologies as an analyst.
  • Ability to support and work across multiple customer and bespoke systems.
  • Must be able to pass a CJIS background check process and other background checks to comply with customers contracts.
  • Strong Documentation (SOP/Standard Operations Procedure) development.
  • Understanding of Ticket Flow.
  • Strong Trouble Shooting Skills.
  • Understanding of how to read inbound and outbound traffic.
  • Complete basic safety and security training to meet the customer requirements.
  • Ability to work a rotating shift and on-call schedule as required.
  • CompTIA Security + certification or equivalent/higher
  • Selected candidates must be US Citizens.

Candidate Preferred Requirements

The Preferred candidate holding one or more of the industry certifications will be a plus.

  • Certified Ethic Hacker (CEH) or equivalent
  • Certified Incident Handler (GCIH or ECIH)
  • Splunk Power User Certification
  • Other Certs – such as CompTIA Networking+, any Cloud Certifications, Devo, Splunk, Azure Sentinel

Qualifying Experience and Attributes

  • Experience with one or more SEIM: Devo, McAfee ESM, Splunk, Azure Sentinel, Q-Radar, ArcSight, etc.
  • Able to use the internet to do research on events of interest.
  • Familiar with the cyber kill chain.
  • Familiar with Mitre ATT&CK and Mitre D3FEND
  • Familiar with common cybersecurity frameworks, regulations, and compliance standards
  • Working knowledge of cybersecurity and privacy principles.
  • Working knowledge of cyber threats and vulnerabilities.
  • Working knowledge of Intrusion Response in the form of day-to-day network traffic analysis and threat assessment/impact analysis.
  • Familiarity with encryption algorithms, cryptography, and cryptographic key management concepts.
  • Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists).
  • Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins).
  • Knowledge of incident response and handling methodologies.
  • Knowledge of IT security principles and methods (e.g., firewalls, demilitarized zones, encryption).
  • Knowledge of TCP/IP - addressing, routing protocols, and transport protocols (UDP and TCP), Dynamic Host Configuration, Domain Name System (DNS), and directory services.
  • Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
  • Knowledge of escalation, incident management and change management processes and procedures of a SOC.
  • Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).
  • Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
  • Familiarity with network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Proficient in performance of packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Security Operations Center Analyst in United States vacancy
  • $86k - $138k

     ...mission at the forefront of space security and mission assurance. As an Intelligence Analyst, you will deliver timely,...  ...intelligence that enables mission leaders, operators, and Intelligence Community...  ...-makers across space operations centers.Conduct research and develop... 
    Suggested
    Contract work
    Work at office
    Shift work

    Peraton Corporation

    Fort Belvoir, VA
    3 days ago
  • $135k - $216k

    ResponsibilitiesAs the Special Technical Operations (STO) Analyst, supporting a national security program space warfighting mission, you will support a geographically...  ...activities across mission-related operations centers. A successful candidate will have subject matter... 
    Suggested
    Full time
    Contract work
    Shift work

    Peraton Corporation

    Fort Belvoir, VA
    3 days ago
  • $96.57k - $130.65k

     ...Sr. Operations Center Analyst Own your opportunity to turn data into measurable outcomes for our customers' most complex challenges. As a...  ...United States Department of State (DoS), Bureau of Diplomatic Security (DS). You will play a crucial role in ensuring the life-... 
    Suggested
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Sterling, VA
    2 days ago
  • $110k - $135k

     ...is seeking a Junior Special Technical Operations (STO) Analyst for a role in Aurora, CO or...  ...focused team supporting critical national security and space operations missions. As a Mid...  ...planning activities across operations centers. Provide feedback on operational procedures... 
    Suggested
    Full time
    Local area

    Space Systems Integration

    Aurora, CO
    23 days ago
  •  ...Systems Agency (DISA), provides, operates, and assures command and control...  ...Department of Defense (DoD) and national security organizations. Our Network Operations Center (NOC) team provides 24x7 global...  ...Operations Center Support Analysts. Consolidate list of scheduled... 
    Suggested
    Contract work
    For contractors
    Shift work
    Night shift

    Global Enterprise Services, LLC

    Belleville, IL
    more than 2 months ago
  • $135k - $216k

    Special Technical Operations (STO) Analyst - Intermediate Join a mission-focused team supporting critical national security and space operations missions. As a Mid-Level Special Technical...  ...planning activities across operations centers. Provide feedback on operational... 
    Full time
    Contract work
    Shift work

    Peraton

    Aurora, CO
    3 days ago
  •  ...-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta...  ...first line of defense for information security operationsmonitoring, investigating, and...  ...of experience in cybersecurity, SOC operations, or related IT support roleStrong understanding... 
    Shift work

    Axelon

    Boston, MA
    2 days ago
  • OverviewSecurity Operations Center Analyst II - Orlando, Florida Company Overview Statement:Working across the globe, V2X builds smart solutions...  ...bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned... 
    Remote work

    V2X

    Orlando, FL
    1 day ago
  •  ...Country USA State Ohio City Cincinnati Descriptions & requirements About the role:As a Senior Security Operations Center (SOC) Analyst at TQL, you'll help protect one of the nation's largest freight brokerage technology environments by leading the... 
    H1b

    Total Quality Logistics

    Cincinnati, OH
    6 hours ago
  •  ...polysilicon, wafers, and innovative photovoltaic modules, enabling low-cost solar energy solutionsRole PurposeThe Global Security Operations Center Analyst, under the guidance of the supervisor, is responsible for monitoring the security of Corning’s employees, facilities,... 
    Casual work
    Work at office
    Worldwide
    All shifts
    Shift work

    Corning Incorporated

    New York, NY
    4 days ago
  • $69.4k - $158k

    Security Operations Center AnalystThe Opportunity:Are you ready to take a strategic role in cyber defense for U.S Cyber Command? Do you want to...  ...identification and complex incident response, you want to be a SOC analyst. As an analyst on our SOC team, you’ll analyze logs,... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Columbia, MD
    1 day ago
  • CoreWeave is seeking an Operations Enablement Analyst, Data Center Operations to analyze how operations are performed, identify opportunities to improve...  ...materials. You will work with technicians, engineers, security, and compliance to observe and improve processes... 

    CoreWeave

    New York, NY
    1 day ago
  •  ...)Review and execute Standard Operating Procedures (SOPs), note issues...  ...to Technology Operations Analysts during each shift.Maintain accurate...  ...records within the Data Center Infrastructure Management (DCIM...  ...activities comply with enterprise security standards, audit requirements... 
    Full time
    Work experience placement
    Local area
    Shift work
    Night shift

    Lowe's

    North Carolina
    1 day ago
  •  ...The Security Operations Center (SOC) Analyst I is a frontline cyber defender responsible for monitoring security tools and dashboards to identify indicators of compromise across networks, endpoints, and cloud‑hosted systems in mission‑critical environments. The role focuses... 
    Contract work
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Saint Paul, MN
    1 day ago
  • $95.92k - $222.03k

     ...organization, apply now.We are currently seeking a Tax Operations Business Analyst to join our team in New York, New York (US-NY),...  ...unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and... 
    Temporary work
    Live in
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    New York, NY
    2 days ago
  •  ...Security Operations Analyst Franchise World Headquarters, LLC Shelton, CT Why Join Subway? At Subway, we are not standing still...  ...-to-day work, but grounded in general security operations center (SOC) practice. The Analyst runs access-governance controls... 
    Work experience placement

    Franchise World Headquarters, LLC

    Shelton, CT
    1 day ago
  •  ...Security Operations Center Analyst Austin, Texas Description Sygnia is a top-tier cyber technology and services company that partners with organizations around the world to proactively strengthen their cyber resilience and respond to advanced threats. We help... 

    Sygnia Inc

    Austin, TX
    1 day ago
  • Get notified about new Mechanical Engineering Consultant jobs in United States . 26,000+ Mechanical Engineering Consultant Jobs in United States Mechanical Design Manager (Remote) - United States Mechanical Design Engineer (Senior Technologist) Senior Mechanical Engineering...
    Remote work
    Relocation

    Atos

    Wausau, WI
    3 days ago
  • $57.69 - $67.3 per hour

     ...Job Title Security Operations Center Analyst Overview EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing... 
    Hourly pay
    Contract work
    Local area
    Remote work

    EverWatch

    United States
    17 hours ago
  •  ...Security Operations Center Analyst Remote At Ardent, we hire people who want more than a job — they want to serve a mission that matters. Our teams support the federal government's most critical national security and defense priorities, helping protect the nation... 
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    Ardent Services

    United States
    1 day ago
  •  ...Security Operations Center Analyst The Security Operations Center (SOC) Analyst is responsible for operating and continuously enhancing Sun King's Security Operations Center. This role focuses on threat detection, threat hunting, incident response, digital forensics... 
    Full time

    Sun King

    United States
    3 days ago
  •  ...Building Intelligence®. We design, build, operate, and maintain cyber-physical solutions...  ...nation’s most mission-critical facilities, secure environments, complex infrastructure, and...  ...industries.We are seeking a Operations Project Analyst to join our Security and Electronic... 
    Local area

    M.C. Dean

    Washington DC
    6 hours ago
  •  ...attack Serve as an escalation point to SOC Analysts providing support, guidance, as well as work and track security incidents through final resolution Create and...  ...colleagues and a fleet of over 13,000 vehicles, Sysco operates approximately 333 distribution facilities... 
    Work at office
    Local area
    Worldwide

    Sysco

    Houston, TX
    1 day ago
  • Principle Choice Solutions, LLC seeks a Case Processing Analyst to support the Case Processing Operations Center (CPOC). You will process personnel vetting...  ...investigations in compliance with regulations and security requirements. You will work in a remote capacity, handling... 
    Remote job

    Principle Choice Solutions, LLC

    Saint Louis, MO
    1 day ago
  • $48 - $50 per hour

     ...environment. Experience independently performing security monitoring, alert triage, threat hunting...  ...environments and the ability to discuss operational metrics, such as the size of the...  ...interview process. Role Summary The SOC Analyst is responsible for monitoring,... 
    Hourly pay
    Permanent employment
    Temporary work
    Work at office
    Remote work
    Shift work

    Top Talent Central

    Houston, TX
    5 days ago
  • Security Operations Center (SOC) Analyst Washington, District of Columbia, United States About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center (SOC) Analyst to join our team. As a... 

    10xTalents

    Washington DC
    4 days ago
  • The Global Security Operation Center (GSOC) Analyst plays a vital role within CEVA’s 24/7/365 Global Security Operations Center, responsible for monitoring global events, assessing threats, and delivering timely intelligence to protect CEVA’s people, assets, and operations... 
    Remote work

    CEVA Logistics

    Houston, TX
    3 days ago
  • We are looking for a highly skilled Security Operations Analyst to strengthen our security posture across applications, cloud platforms, and infrastructure. This role combines hands‑on security engineering with leadership responsibilities—ideal for someone who thrives in... 
    Local area

    ITC Infotech

    Dearborn, MI
    2 days ago
  • $58k - $72k

     ...a leading provider of emergency medical and security solutions for corporations and individuals. Our 24/7 Operations Centers in McLean, VA and Charlotte, NC, identify, monitor...  ...The Global Security Operations Center (GSOC) Analyst will be responsible for security operations... 
    Full time
    Worldwide
    Overseas
    Shift work
    Night shift
    Weekend work
    Weekday work

    Global Guardian

    Mc Lean, VA
    4 days ago
  • Position Overview Job Title: SOC Analyst (Security Operations Center) Location: Colorado Springs, CO Position Type: Full Time Shift: Day. The role requires a Top Secret (TS) with SCI eligibility and experience in Special Access Programs (SAP). Role Description The SOC Analyst... 
    Full time
    Remote work
    Shift work

    System High Corp

    Colorado Springs, CO
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Operations Center Analyst. Be the first to apply!