Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Tier 2 Security Operations Center (SOC) Analyst

$87.1k - $157.45k

Leidos

Leidos is seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC. The Tier 2 SOC Analyst will perform advanced analysis of cybersecurity events escalated from Tier 1 or identified through enterprise monitoring capabilities. This position will correlate security data, determine the scope and potential impact of suspicious activity, support incident triage and containment, preserve evidence, and coordinate with incident responders and other cybersecurity teams to protect DHRA systems and networks. Work Locations: Mark Center, Alexandria, Virginia – 3 positions Department of Defense Center – Monterey Bay, Seaside, California – 3 positions Clearance: Active Secret security clearance required at time of consideration. U.S. Citizen is a must.Mission Environment DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense’s largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data. The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS). The Tier 2 SOC Analysts operate within a 24x7 security operations environment responsible for detecting, analyzing, escalating, and supporting response to cybersecurity activity affecting DHRA systems and networks. Tier 2 analysts provide the deeper technical analysis required when events cannot be resolved through initial Tier 1 triage. Primary Responsibilities:Perform advanced analysis of cybersecurity events escalated from Tier 1 analysts or identified through endpoint, user-activity, network, and other enterprise monitoring capabilities. Correlate alerts, security telemetry, and supporting technical data to determine the nature, scope, severity, and potential impact of cybersecurity activity. Distinguish legitimate activity, false positives, policy violations, suspicious behavior, and potential cybersecurity incidents. Determine appropriate next actions based on approved SOC procedures, playbooks, and escalation criteria. Recommend or initiate authorized actions to contain or mitigate identified threats. Support cybersecurity incident triage, escalation, and containment in coordination with the incident-response team. Preserve relevant technical evidence and supporting information required for further investigation and incident response. Document investigative actions, analysis, findings, and conclusions in Government-approved systems. Maintain complete and accurate event records, tickets, timelines, and supporting evidence. Contribute to required SOC event reporting and operational status information. Perform Tier 2 troubleshooting of cybersecurity tools, alerts, security data, and related technical issues. Use approved Commercial-Off-The-Shelf (COTS) security-analysis tools to investigate cybersecurity events. Support security testing, mitigation activities, and cybersecurity compliance checking as required by SOC operations. Coordinate analysis with incident responders, network engineers, endpoint-security personnel, cybersecurity-tool teams, system administrators, and other cybersecurity stakeholders. Identify recurring false positives, detection gaps, or ineffective alerting and recommend improvements to monitoring and detection capabilities. Support tuning of cybersecurity monitoring capabilities to improve detection accuracy and analyst effectiveness. Contribute to SOC procedure, playbook, and process improvements based on operational experience and lessons learned. Support knowledge transfer across SOC analysts to improve consistent analysis and response within the 24x7 operating environment. Basic Qualifications:Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline and 5 or more years of relevant cybersecurity experience. Specific experience, education and training may be considered in lieu of degree.Experience performing cybersecurity event analysis, SOC operations, cyber defense, incident triage, or security monitoring. Experience analyzing and correlating alerts from multiple cybersecurity monitoring capabilities. Experience investigating endpoint, network, user-activity, or other cybersecurity events. Experience determining the scope, severity, and potential impact of suspicious cybersecurity activity. Experience supporting cybersecurity incident escalation, containment, mitigation, or evidence preservation. Experience using enterprise security-analysis or cybersecurity monitoring tools. Experience performing Tier 2 cybersecurity troubleshooting. Working knowledge of cybersecurity attack techniques, network-security concepts, endpoint security, event analysis, and incident-response processes. Ability to document investigations, findings, actions, and conclusions clearly and accurately. Ability to work effectively within a team-based 24x7 security operations environment. U.S. Citizenship required. Active Secret security clearance required. Preferred Qualifications:Experience supporting a Department of Defense or Federal Security Operations Center. Experience working in a 24x7 SOC or Cybersecurity Service Provider environment. Experience with Security Information and Event Management (SIEM) platforms and enterprise cybersecurity monitoring tools. Experience analyzing endpoint, network, identity, user-activity, intrusion-detection, or other cybersecurity telemetry. Experience supporting cybersecurity incident response and digital-evidence preservation. Experience tuning security alerts, detection logic, or monitoring capabilities to reduce false positives and improve detection quality. Experience developing or refining SOC procedures, playbooks, or escalation criteria. Experience with cybersecurity mitigation, compliance checking, or security testing. Familiarity with Department of Defense cybersecurity requirements and Risk Management Framework processes. Familiarity with DHRA, DMDC, or comparable Department of Defense enterprise environments. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 2, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $87,100.00 - $157,450.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Alexandria, VA; Seaside, CAType: Full time

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Tier 2 Security Operations Center (SOC) Analyst in Alexandria, VA vacancy
  • $94k - $127k

     ...Description Tier 2 SOC Analyst Xcelerate Solutions is seeking a Tier 2 SOC Analyst to support CyberPRIMES cybersecurity, privacy, records...  ..., CA Responsibilities Perform advanced analysis of security events escalated from Tier 1 or identified through endpoint,... 
    Suggested

    Xcelerate Solutions

    Alexandria, VA
    2 days ago
  • Leidos is seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the DMDC CyberPRIMES program. You will perform advanced analysis of cybersecurity events escalated from Tier 1, correlate security data, and support incident triage and containment... 
    Suggested

    Leidos Inc

    Alexandria, VA
    1 day ago
  • KnoxKnox is seeking an experienced security/ops analyst to run shifts, manage escalations, and coach junior staff. You will own shift logs, handle...  ...salary band, a non-rotating schedule, and a clear path to Tier 3 leadership. A strong focus on security, reliability, and compliance... 
    Suggested
    Shift work

    Knox Systems, Inc.

    Arlington, VA
    3 days ago
  • Chenega MIOS is hiring a Security Operations Center Analyst II (SOC) in Arlington, VA. The role focuses on monitoring, incident handling, and threat response...  ...a DoD IAT II certification, TS/SCI eligibility, and 2+ years of relevant experience (or 4+ years for substitution... 
    Suggested

    NJVC

    Arlington, VA
    3 days ago
  • $100k - $115k

    SOC Analyst Hybrid-- 2 days a week onside in Bethesda, MDThe Security Operations Center Analyst will be responsible for monitoring and analyzing security threats and implementing appropriate countermeasures to protect the organization's information assets. Key Responsibilities... 
    Suggested
    2 days per week

    Dunhill Professional Search

    Bethesda, MD
    4 days ago
  • $52.29 per hour

    Req ID: 41979 Summary Security Operations Center Analyst II (SOC) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving...  ...Bachelor's degree required. Associate's degree with 2+ years relevant experience OR 4+ years relevant... 

    NJVC

    Arlington, VA
    3 days ago
  • $80k - $128k

    Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber... 
    Interim role
    Internship
    Work at office
    Local area
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    3 days ago
  • cFocus Software seeks an Incident Response Analyst (Tier 2) to join our program supporting the AOUSC. This role is Hybrid with onsite in...  ...clearance. You will perform in-depth IR activities, analyze security incidents, and coordinate with federal teams. Candidates should... 

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • $85k - $105k

     ...days per week, Washington, DC. Execute operational cybersecurity functions.  Triage and analyze security alerts.  Support continuous monitoring activities...  ...detection workflows.  Requirements: ~2+ years of experience in in SOC operations and incident response.  ~... 
    Contract work
    Temporary work
    Flexible hours

    Gunnison Consulting Group, Inc.

    Washington DC
    8 days ago
  • Chenega MIOS is seeking a Security Operations Center Analyst II in Arlington, VA to monitor devices, manage incidents, and analyze network events. You will work with a SIEM toolkit across program networks, ensuring continuous security operations and rapid incident response... 

    Chenega Corporation

    Arlington, VA
    3 days ago
  •  ...largest Federal & DoW managed cloud, building and operating secure cloud and AI environments that support the U.S....  ...shift without supervision — you are the senior analyst on duty for most of it. Take escalations from Tier 1 and see them through to containment or handover... 
    Contract work
    Immediate start
    Shift work
    Rotating shift
    3 days per week

    Knox Systems, Inc.

    Arlington, VA
    3 days ago
  • Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery across government networks. The role requires DoD IAT Level II certification and a DoD Secret Clearance with potential TS/SCI eligibility... 

    NJVC

    Arlington, VA
    3 days ago
  •  ...About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center (SOC) Analyst to join our team. As a SOC Analyst, you will be responsible for monitoring, analyzing, and responding... 

    4 Staffing Corp

    Washington DC
    5 days ago
  •  ...Description One Federal Solution is seeking an experienced Functional Analyst / Tier 2 Helpdesk to support a Government Client in Arlington, VA....  ...within the financial management system. Administer user security roles and access requests while ensuring compliance with... 
    Work at office

    One Federal Solution

    Arlington, VA
    10 days ago
  •  ...solving our clients’ toughest security challenges. But that’s not...  ...currently seeking a skilled SOC Analyst with an active Secret or Top...  ...Provides engineering support, operations, and maintenance of security...  ....Maintains Tenable Security Center administrator... 
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    4 days ago
  • $85k - $115k

     ...Light has an opening for a CND Analyst - SOC supporting the Army National...  ...contract in support of the operation, modernization, expansion, and...  ...enterprise systems, defend against security breaches, and identify,...  ...of Openings: 1Category: CyberClearance: Tier 3 - Secret/ADP II
    Contract work
    Work experience placement
    Remote work
    Worldwide
    Relocation
    Shift work

    By Light Professional IT Services

    Falls Church, VA
    2 days ago
  • $131.3k - $237.35k

     ...contribute to our communities, and operate sustainable. Everything we do is built...  ...need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government... 
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    3 days ago
  •  ...insightful market intelligence has secured long‑term partnerships with...  ...Title: Information Security Operations Center - Incident Handler III...  ..., Ethernet, OSI model, layer 2 and layer 3 concepts Understanding...  ...with CERT/CSIRT/CIRT/SOC Certification Requirements:... 
    Shift work
    Rotating shift
    Weekend work

    Artech Information System LLC

    Washington DC
    1 day ago
  • $120k - $135k

     ...is seeking a Senior Incident Response Analyst to join our team in support of a mission...  ...government program. As part of the Security Operations Center, you will help monitor, detect, investigate...  ...and automation scripts to strengthen SOC monitoring capabilities. Document... 
    Permanent employment
    Contract work
    Remote work
    2 days per week

    Tetrad Digital Integrity

    Arlington, VA
    1 day ago
  • $94.49k - $131.16k

     ...Together.SummaryThe Senior Information Security Analyst is responsible for identifying,...  ...managing relationships with our security operations vendors and providing technical...  ...and prevention strategies, and SOC (Security Operations Center) operations. Cloud Security: Knowledge... 
    Full time
    Work at office
    Remote work
    Relocation
    Visa sponsorship
    Relocation package

    DLA Piper

    Reston, VA
    2 days ago
  • Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join the Department of State (DOS) Diplomatic Security Cyber Mission program in Beltsville, Maryland. The role operates on an evening shift (1400-2200 EST, Tue-Sat) and focuses on detecting... 
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    3 days ago
  • $131.3k - $237.35k

     ...contribute to our communities, and operate sustainably. Everything we do is built...  ...need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department of Homeland Security (DHS), Security Operations Center (SOC) Support Services is a US Government... 
    Flexible hours

    Leidos

    Arlington, VA
    1 day ago
  •  ...partnering with Expression to find an SOC Analyst . See details below: About The...  ...federal networks. You will support Tier 1 and Tier 2 SOC operations, contribute to SOC playbook development...  ..., Department of State, and national security community. Expression’s “Perpetual... 
    For contractors
    Work at office
    Immediate start
    Shift work

    Hatch IT

    Washington DC
    19 days ago
  •  ...Business Operations Analyst 2 The Business Operations Analyst provides comprehensive administrative, operational, and program support to the Defense Counterintelligence and Security Agency (DCSA) Regional Headquarters, Field Offices, and Directorates. This role ensures... 
    Work experience placement
    Work at office

    Provato HR

    Alexandria, VA
    1 day ago
  • $87.1k - $157.45k

     ...opportunities available for SOC Analysts to join our team in Alexandria...  ...obtain SCI, and have at least 2 years of incident handling/...  ...certification (such as CompTIA Security+ CE, ISC2 SSCP, SANS GSEC, etc...  ..., engineering, and operations of at least one enterprise SIEM... 
    Full time
    Work experience placement
    All shifts
    Shift work

    Leidos

    Alexandria, VA
    3 days ago
  •  ...subject to change).Who are you?Security-cleared Professional: You...  ...developing, and maintaining SOC oriented services and systems...  ...organization from engineering, operations, and managementTechnologies:...  ...and actions taken by the SOC analyst teamPrepare, provide, and discuss... 
    Temporary work
    Work at office
    Remote work

    Fusion Technology

    Washington DC
    2 days ago
  • $80k - $128k

     ...currently seeking to hire a Watch Analyst for its' Federal Strategic Cyber group...  ...DHS Cybersecurity Infrastructure Security Agency’s (CISA) 24/7 SCIF/Operations Center, which is the hub for staying on...  ...:Bachelor’s degree and 2 years of relevant experience. An... 
    Contract work
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work

    Peraton Corporation

    Washington DC
    3 days ago
  • $99k - $225k

    Incident Response Analyst, SeniorThe Opportunity: Cyber threats...  ...answer is you—an information security risk specialist who will break...  ...of a 24x7x365 Security Operations Center and Incident Response team,...  ...Security Operations Center (SOC) performing incident response... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    3 days ago
  • $70.8k - $172.4k

    ERP Business Systems Analyst II — Functional Analyst (Tier-1/2 & Testing) Position Description Are you...  ...the efficiency of financial system operations? Can you apply your functional analyst...  ...and/or level of US government security clearance held. Dependent upon role... 
    Local area
    Springfield, VA
    a month ago
  • $70.3k - $114.4k

     ...Overview The Enterprise Security Analyst II is a hands-on Security Operations Center (SOC) role responsible for monitoring alerts, investigating security events,...  ...or response improvements Requirements ~2+ years of cybersecurity experience with hands-on... 
    Monday to Friday

    Esri

    Vienna, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Tier 2 Security Operations Center (SOC) Analyst. Be the first to apply!