Security Operations Center Analyst
TriOptus LLC
Security Analyst (Tier 2)
Security Operations Center Analyst Location: Remote Duration of Employment: 12+ Months Number of Openings: 1 Clearance Required: Yes
Candidate Description
The Tier 2 Security Operation Center (SOC) Analysts have experience in using SIEM technologies to support in-depth investigations and threat hunting activities. Experience with Devo, Splunk, Azure Sentinel or other SIEM technology required. An understanding of ticket workflow and handling is also required.
Tier 2 SOC Analysts are also responsible for researching, responding to, and creating tickets within the ticketing system.
Tier 2 Analysts are responsible for:
- Determining service impact of security events.
- Alerting customers to possible malicious activity.
- Working tickets via ticketing system.
- Creating tickets for various needs of the SOC.
- Research and data collection of events of interest.
- Engaging support of Tier 3 Analysts, Network Operations Center (NOC), Network Engineers and/or the CSIRT (Computer Security Incident Response Team) when necessary.
Responsibilities
- Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
- Receive and analyze security alerts from various sources within the enterprise and determine possible causes of such alerts.
- Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.
- Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).
- Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave.
- Assists in developing cybersecurity recommendations to Tier 3 based on significant threats and vulnerabilities.
- Work security tickets within established SLAs and escalate to Customer or Tier 3 as needed, establish false positive, or contact customer as needed.
- Provide guidance and mentorship to other SOC personnel.
- Contribute to the creation of process documentation and training materials.
Candidate Requirements
Candidate should have strong communications skills, both written and verbal. Be comfortable communicating with teammates, customer technical personnel and AT&T Leads and Managers
The preferred candidate is REQUIRED to have:
- Three (3) to five (5) years of Security Incident Response, Security Operations Center, and/or threat analysis experience.
- Demonstrated experience using either an Enterprise and or cloud Security SIEM technologies as an analyst.
- Ability to support and work across multiple customer and bespoke systems.
- Must be able to pass a CJIS background check process and other background checks to comply with customers contracts.
- Strong Documentation (SOP/Standard Operations Procedure) development.
- Understanding of Ticket Flow.
- Strong Trouble Shooting Skills.
- Understanding of how to read inbound and outbound traffic.
- Complete basic safety and security training to meet the customer requirements.
- Ability to work a rotating shift and on-call schedule as required.
- CompTIA Security + certification or equivalent/higher
- Selected candidates must be US Citizens.
Candidate Preferred Requirements
The Preferred candidate holding one or more of the industry certifications will be a plus.
- Certified Ethic Hacker (CEH) or equivalent
- Certified Incident Handler (GCIH or ECIH)
- Splunk Power User Certification
- Other Certs – such as CompTIA Networking+, any Cloud Certifications, Devo, Splunk, Azure Sentinel
Qualifying Experience and Attributes
- Experience with one or more SEIM: Devo, McAfee ESM, Splunk, Azure Sentinel, Q-Radar, ArcSight, etc.
- Able to use the internet to do research on events of interest.
- Familiar with the cyber kill chain.
- Familiar with Mitre ATT&CK and Mitre D3FEND
- Familiar with common cybersecurity frameworks, regulations, and compliance standards
- Working knowledge of cybersecurity and privacy principles.
- Working knowledge of cyber threats and vulnerabilities.
- Working knowledge of Intrusion Response in the form of day-to-day network traffic analysis and threat assessment/impact analysis.
- Familiarity with encryption algorithms, cryptography, and cryptographic key management concepts.
- Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists).
- Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins).
- Knowledge of incident response and handling methodologies.
- Knowledge of IT security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- Knowledge of TCP/IP - addressing, routing protocols, and transport protocols (UDP and TCP), Dynamic Host Configuration, Domain Name System (DNS), and directory services.
- Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
- Knowledge of escalation, incident management and change management processes and procedures of a SOC.
- Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).
- Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
- Familiarity with network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- Proficient in performance of packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).
$86k - $138k
...mission at the forefront of space security and mission assurance. As an Intelligence Analyst, you will deliver timely,... ...intelligence that enables mission leaders, operators, and Intelligence Community... ...-makers across space operations centers.Conduct research and develop...SuggestedContract workWork at officeShift work$135k - $216k
ResponsibilitiesAs the Special Technical Operations (STO) Analyst, supporting a national security program space warfighting mission, you will support a geographically... ...activities across mission-related operations centers. A successful candidate will have subject matter...SuggestedFull timeContract workShift work$96.57k - $130.65k
...Sr. Operations Center Analyst Own your opportunity to turn data into measurable outcomes for our customers' most complex challenges. As a... ...United States Department of State (DoS), Bureau of Diplomatic Security (DS). You will play a crucial role in ensuring the life-...SuggestedTemporary workWork at officeLocal areaImmediate startRemote workWorldwideFlexible hours$110k - $135k
...is seeking a Junior Special Technical Operations (STO) Analyst for a role in Aurora, CO or... ...focused team supporting critical national security and space operations missions. As a Mid... ...planning activities across operations centers. Provide feedback on operational procedures...SuggestedFull timeLocal area- ...Systems Agency (DISA), provides, operates, and assures command and control... ...Department of Defense (DoD) and national security organizations. Our Network Operations Center (NOC) team provides 24x7 global... ...Operations Center Support Analysts. Consolidate list of scheduled...SuggestedContract workFor contractorsShift workNight shift
$135k - $216k
Special Technical Operations (STO) Analyst - Intermediate Join a mission-focused team supporting critical national security and space operations missions. As a Mid-Level Special Technical... ...planning activities across operations centers. Provide feedback on operational...Full timeContract workShift work- ...-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta... ...first line of defense for information security operationsmonitoring, investigating, and... ...of experience in cybersecurity, SOC operations, or related IT support roleStrong understanding...Shift work
- OverviewSecurity Operations Center Analyst II - Orlando, Florida Company Overview Statement:Working across the globe, V2X builds smart solutions... ...bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned...Remote work
- ...Country USA State Ohio City Cincinnati Descriptions & requirements About the role:As a Senior Security Operations Center (SOC) Analyst at TQL, you'll help protect one of the nation's largest freight brokerage technology environments by leading the...H1b
- ...polysilicon, wafers, and innovative photovoltaic modules, enabling low-cost solar energy solutionsRole PurposeThe Global Security Operations Center Analyst, under the guidance of the supervisor, is responsible for monitoring the security of Corning’s employees, facilities,...Casual workWork at officeWorldwideAll shiftsShift work
$69.4k - $158k
Security Operations Center AnalystThe Opportunity:Are you ready to take a strategic role in cyber defense for U.S Cyber Command? Do you want to... ...identification and complex incident response, you want to be a SOC analyst. As an analyst on our SOC team, you’ll analyze logs,...Full timeContract workPart timeWork at officeLocal areaRemote work- CoreWeave is seeking an Operations Enablement Analyst, Data Center Operations to analyze how operations are performed, identify opportunities to improve... ...materials. You will work with technicians, engineers, security, and compliance to observe and improve processes...
- ...)Review and execute Standard Operating Procedures (SOPs), note issues... ...to Technology Operations Analysts during each shift.Maintain accurate... ...records within the Data Center Infrastructure Management (DCIM... ...activities comply with enterprise security standards, audit requirements...Full timeWork experience placementLocal areaShift workNight shift
- ...The Security Operations Center (SOC) Analyst I is a frontline cyber defender responsible for monitoring security tools and dashboards to identify indicators of compromise across networks, endpoints, and cloud‑hosted systems in mission‑critical environments. The role focuses...Contract workWork at officeShift work
$95.92k - $222.03k
...organization, apply now.We are currently seeking a Tax Operations Business Analyst to join our team in New York, New York (US-NY),... ...unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and...Temporary workLive inWork at officeRemote workFlexible hours- ...Security Operations Analyst Franchise World Headquarters, LLC Shelton, CT Why Join Subway? At Subway, we are not standing still... ...-to-day work, but grounded in general security operations center (SOC) practice. The Analyst runs access-governance controls...Work experience placement
- ...Security Operations Center Analyst Austin, Texas Description Sygnia is a top-tier cyber technology and services company that partners with organizations around the world to proactively strengthen their cyber resilience and respond to advanced threats. We help...
- Get notified about new Mechanical Engineering Consultant jobs in United States . 26,000+ Mechanical Engineering Consultant Jobs in United States Mechanical Design Manager (Remote) - United States Mechanical Design Engineer (Senior Technologist) Senior Mechanical Engineering...Remote workRelocation
$57.69 - $67.3 per hour
...Job Title Security Operations Center Analyst Overview EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing...Hourly payContract workLocal areaRemote work- ...Security Operations Center Analyst Remote At Ardent, we hire people who want more than a job — they want to serve a mission that matters. Our teams support the federal government's most critical national security and defense priorities, helping protect the nation...Work experience placementLocal areaRemote workFlexible hoursShift work
- ...Security Operations Center Analyst The Security Operations Center (SOC) Analyst is responsible for operating and continuously enhancing Sun King's Security Operations Center. This role focuses on threat detection, threat hunting, incident response, digital forensics...Full time
- ...Building Intelligence®. We design, build, operate, and maintain cyber-physical solutions... ...nation’s most mission-critical facilities, secure environments, complex infrastructure, and... ...industries.We are seeking a Operations Project Analyst to join our Security and Electronic...Local area
- ...attack Serve as an escalation point to SOC Analysts providing support, guidance, as well as work and track security incidents through final resolution Create and... ...colleagues and a fleet of over 13,000 vehicles, Sysco operates approximately 333 distribution facilities...Work at officeLocal areaWorldwide
- Principle Choice Solutions, LLC seeks a Case Processing Analyst to support the Case Processing Operations Center (CPOC). You will process personnel vetting... ...investigations in compliance with regulations and security requirements. You will work in a remote capacity, handling...Remote job
$48 - $50 per hour
...environment. Experience independently performing security monitoring, alert triage, threat hunting... ...environments and the ability to discuss operational metrics, such as the size of the... ...interview process. Role Summary The SOC Analyst is responsible for monitoring,...Hourly payPermanent employmentTemporary workWork at officeRemote workShift work- Security Operations Center (SOC) Analyst Washington, District of Columbia, United States About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center (SOC) Analyst to join our team. As a...
- The Global Security Operation Center (GSOC) Analyst plays a vital role within CEVA’s 24/7/365 Global Security Operations Center, responsible for monitoring global events, assessing threats, and delivering timely intelligence to protect CEVA’s people, assets, and operations...Remote work
- We are looking for a highly skilled Security Operations Analyst to strengthen our security posture across applications, cloud platforms, and infrastructure. This role combines hands‑on security engineering with leadership responsibilities—ideal for someone who thrives in...Local area
$58k - $72k
...a leading provider of emergency medical and security solutions for corporations and individuals. Our 24/7 Operations Centers in McLean, VA and Charlotte, NC, identify, monitor... ...The Global Security Operations Center (GSOC) Analyst will be responsible for security operations...Full timeWorldwideOverseasShift workNight shiftWeekend workWeekday work- Position Overview Job Title: SOC Analyst (Security Operations Center) Location: Colorado Springs, CO Position Type: Full Time Shift: Day. The role requires a Top Secret (TS) with SCI eligibility and experience in Special Access Programs (SAP). Role Description The SOC Analyst...Full timeRemote workShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Operations Center Analyst. Be the first to apply!
- application security analyst United States
- entry level information security analyst United States
- entry level security analyst United States
- information security analyst United States
- senior security analyst United States
- rate analyst United States
- IT security analyst United States
- national security analyst United States
- work from home security analyst United States
- physical security analyst United States


