SOC Investigation Specialist Talent Network
Mercor Alabaster
Mercor is hiring SOC Investigation Specialist on behalf of high-growth technology and enterprise partners building next-generation SOC automation and AI-driven investigation systems. This role is ideal for experienced SOC analysts who can apply real-world investigative judgment to review, validate, and construct high-quality security investigations across SIEM, endpoint, cloud, and identity environments. Responsibilities - Review, monitor, and evaluate SOC alerts and investigation outputs based on predefined scenarios and criteria.
- Distinguish true positives from false positives by validating investigative evidence and alert context.
- Perform end-to-end security investigations when required, including log analysis, entity pivoting, timeline reconstruction, and evidence correlation.
- Assess the correctness, completeness, and quality of SOC investigations produced by automated or human workflows.
- Apply consistent investigative judgment while recognizing that multiple valid investigation paths may exist for the same alert.
- Make clear binary determinations (e.g., ACCEPT / PASS) while also producing detailed ground-truth investigations when required.
- Use Splunk extensively to pivot across logs, entities, and timelines, including reading and reasoning about SPL queries.
- Maintain clear and accurate documentation of investigative steps, assumptions, evidence, and conclusions.
- Collaborate with program leads and other expert annotators to uphold high-quality investigation and annotation standards.
- Mentor or support other analysts where applicable, particularly in long-term or lead annotator roles. Requirements - 3+ years of hands-on experience as a SOC analyst in a production SOC environment (Tier 2 or above strongly preferred).
- Strong understanding of alert triage, incident investigation workflows, and evidence-based decision-making under time constraints.
- Mandatory hands-on experience with Splunk , including:
- Conducting investigations using Splunk
- Reading, understanding, and reasoning about SPL queries
- Pivoting between logs, entities, and timelines
- Proven ability to evaluate SOC investigations and determine whether conclusions are valid, incomplete, or incorrect.
- Strong investigative judgment and comfort making decisive evaluations.
- Fluent English (written and spoken) with strong documentation and communication skills. Nice to Have - Experience with Endpoint Detection & Response (EDR) tools such as CrowdStrike Falcon, Microsoft Defender for Endpoint, or SentinelOne.
- Experience analyzing cloud security logs and signals:
- AWS (CloudTrail, GuardDuty)
- Azure (Activity Log, Defender for Cloud)
- GCP (Cloud Audit Logs)
- Familiarity with Identity & Access Management platforms such as Okta Identity Cloud or Microsoft Entra ID (Azure AD).
- Experience with email security tools like Proofpoint or Mimecast.
- SOC leadership or mentoring experience.
- Basic scripting experience (Python or similar).
- Security certifications (optional): GCIA, GCIH, GCED, Splunk certifications, Security+, CCNA, or cloud security certifications. Why Join - Work on cutting-edge SOC automation and AI-driven investigation systems.
- Apply real-world SOC expertise to shape how future security teams investigate and respond to threats.
- Take ownership of high-impact investigative evaluations and ground-truth security cases.
- Collaborate with experienced SOC practitioners, security engineers, and AI teams.
- Join Mercor's global network of vetted security professionals.
- Distinguish true positives from false positives by validating investigative evidence and alert context.
- Perform end-to-end security investigations when required, including log analysis, entity pivoting, timeline reconstruction, and evidence correlation.
- Assess the correctness, completeness, and quality of SOC investigations produced by automated or human workflows.
- Apply consistent investigative judgment while recognizing that multiple valid investigation paths may exist for the same alert.
- Make clear binary determinations (e.g., ACCEPT / PASS) while also producing detailed ground-truth investigations when required.
- Use Splunk extensively to pivot across logs, entities, and timelines, including reading and reasoning about SPL queries.
- Maintain clear and accurate documentation of investigative steps, assumptions, evidence, and conclusions.
- Collaborate with program leads and other expert annotators to uphold high-quality investigation and annotation standards.
- Mentor or support other analysts where applicable, particularly in long-term or lead annotator roles. Requirements - 3+ years of hands-on experience as a SOC analyst in a production SOC environment (Tier 2 or above strongly preferred).
- Strong understanding of alert triage, incident investigation workflows, and evidence-based decision-making under time constraints.
- Mandatory hands-on experience with Splunk , including:
- Conducting investigations using Splunk
- Reading, understanding, and reasoning about SPL queries
- Pivoting between logs, entities, and timelines
- Proven ability to evaluate SOC investigations and determine whether conclusions are valid, incomplete, or incorrect.
- Strong investigative judgment and comfort making decisive evaluations.
- Fluent English (written and spoken) with strong documentation and communication skills. Nice to Have - Experience with Endpoint Detection & Response (EDR) tools such as CrowdStrike Falcon, Microsoft Defender for Endpoint, or SentinelOne.
- Experience analyzing cloud security logs and signals:
- AWS (CloudTrail, GuardDuty)
- Azure (Activity Log, Defender for Cloud)
- GCP (Cloud Audit Logs)
- Familiarity with Identity & Access Management platforms such as Okta Identity Cloud or Microsoft Entra ID (Azure AD).
- Experience with email security tools like Proofpoint or Mimecast.
- SOC leadership or mentoring experience.
- Basic scripting experience (Python or similar).
- Security certifications (optional): GCIA, GCIH, GCED, Splunk certifications, Security+, CCNA, or cloud security certifications. Why Join - Work on cutting-edge SOC automation and AI-driven investigation systems.
- Apply real-world SOC expertise to shape how future security teams investigate and respond to threats.
- Take ownership of high-impact investigative evaluations and ground-truth security cases.
- Collaborate with experienced SOC practitioners, security engineers, and AI teams.
- Join Mercor's global network of vetted security professionals.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the SOC Investigation Specialist Talent Network in United States vacancy
- ...Advisory. KPMG is currently seeking a Specialist, SOC to join our Managed Services practice.... ...determine the appropriate response Investigate security incidents, identify potential... ...and incident investigations Analyze network traffic, system logs, and other data sources...NetworkH1bLocal area
- A leading insurance firm is looking for a Claims Investigator to support the loss investigation process. The role includes conducting... ...working variable hours, including on-call duties. Join a growing talent network for future opportunities! #J-18808-Ljbffr Crawford & CompanyNetwork
- ...together! We’re excited to connect with talented professionals who want to make an... ...you to be part of it! ✅ Join Our Talent Network Now Submit Your Resume Your next big... ...supervision, this position will support the loss investigation process and report obtained information...NetworkWork at officeShift work
$95.86k - $208.27k
...KPMG is currently seeking a Senior Specialist, SOC Analyst Level II to join our Advisory... ...Responsibilities: Lead advanced security event investigation and incident triage, including IOC... ...Security, System Administration, or Network Engineering, including experience in...NetworkH1bLocal areaShift workNight shiftWeekend work- ...grow your career and work with an energetic fast-growing development company? If so, you should apply to our Leasing Up Specialist Talent Network! LV Collective is continuously growing and always looking for leasing rockstars to add to our portfolio! The right...NetworkWork at office
- ...member for the role of Quality Control, SAR Investigations to join our Financial Crimes... ...Reviews FinCEN (Financial Crimes Enforcement Network) SAR fields to ensure correct data entry... ...of Certified Anti-Money Laundering Specialists) certification is preferred....NetworkWork experience placementLocal area
- ...Job Title SAR Investigator (Senior Specialist, SAR Investigations) Job Description We're seeking a future team member for the role of SAR... ...to be filed by BNY with the Financial Crimes Enforcement Network (FinCEN), and document decisions not to file SARs. Conduct...NetworkFull timeWork experience placementShift work
- ...Description: This posting is part of Avanti Residential’s Talent Network. We use it to connect with individuals interested in leasing... ...for you at Avanti Residential. Join us today! The Leasing Specialist role will manage and lead in-person tours for prospective residents...NetworkHourly payLocal area
- ...applicants who can be considered to fill current and future Victim Specialist opportunities. The position advertised has been... ...found on OPM.gov. JOB SUMMARY The Federal Bureau of Investigation (FBI) is seeking to hire Victim Specialists. You may be...NetworkPermanent employmentFull timeWork experience placementWork at officeLocal areaImmediate startRelocationLong distanceWeekend work
- ...evergreen posting to join our freelance network of onsite event professionals. Whether you... ...– Secures and manages venues Speaker / Talent Management – Supports speakers and... ...Level (3–5 years): Coordinators, Leads, Specialists Senior-Level (5+ years): Managers, Leads...NetworkFreelanceFlexible hours
- ...Cyber Threat Management Specialist. The Tier 2... ...mitigating controls Analyze network traffic to identify... ...which require further investigation to other members of the... ...of AI/ML to enhance SOC capabilities. Collaborate... ...to work alongside talented individuals who are...NetworkWork at office
- ...Mercor is seeking a SOC Investigation Specialist to work on advanced SOC automation and AI-driven investigation systems. Ideal candidates will have... ...to impact how security teams investigate threats and work with a global network of experts in the field.J-18808-Ljbffr...NetworkRemote work
- ...Role: Onsite Ideal Start Date: Feb 1 2026 Position Overview The Talent, Event & LIVE Security (TELSec) team delivers proactive,... ...federal law enforcement, emergency response, and trusted security networks. Provide immediate stabilization and management of incidents impacting...NetworkLocal areaImmediate startRemote workWorldwideFlexible hoursAfternoon shift
- ...AGS by searching #LifeAtAGS on any social network. Job Description Don’t see the perfect role open right now? That’s okay! Our Talent Pool is your way to raise your hand and... ...when new opportunities like the Program Specialist, open up. Why Join? You’re letting us know...NetworkPermanent employmentContract workTemporary work
- ...Mercor is seeking a SOC Investigation Specialist to enhance SOC automation and AI-driven investigation systems. This role is tailored for experienced... ...to make decisive evaluations. Join Mercor’s global network and contribute to future security standards! #J-18808-LjbffrNetworkRemote work
- Mercor is hiring a SOC Investigation Specialist in California to enhance next-generation SOC automation and AI-driven investigation systems. Ideal... .... Join Mercor to work with cutting-edge technology and a network of security professionals, shaping future investigative response...NetworkRemote work
$198k - $273k
A leading cybersecurity firm is seeking a Domain Consultant for SOC Transformation to help define technical solutions for customers... ...strong problem-solving skills. Competitive salary is offered in the range of $198,000 to $273,000 per year. #J-18808-Ljbffr Palo Alto NetworksNetworkRemote job- ...AGS by searching #LifeAtAGS on any social network. Job Description Don’t see the... ...perfect role open right now? That’s okay! Our Talent Pool is your way to raise your hand and... ...when new opportunities like the Program Specialist, open up. Why Join? You’re letting...NetworkPermanent employmentContract workTemporary work
$198k - $273k
...leading cybersecurity company is seeking a Domain Consultant for SOC Transformation to enhance their Cortex portfolio. This hybrid... ...SOAR. Compensation ranges from $198,000 to $273,000 per year, depending on qualifications and experience. #J-18808-Ljbffr Palo Alto NetworksNetworkRemote job$198k - $273k
...leading cybersecurity firm is seeking a Domain Consultant to drive SOC transformation remotely. This role involves collaborating with... ...98,000 to $273,000 annually, highlighting our commitment to innovation and diversity in the workplace. #J-18808-Ljbffr Palo Alto NetworksNetworkRemote job$198k - $273k
A leading cybersecurity firm is seeking a Domain Consultant for SOC Transformation in Boise, Idaho. This role involves collaborating... ...offers a competitive salary ranging from $198,000 to $273,000 per year and supports a hybrid work model. #J-18808-Ljbffr Palo Alto NetworksNetworkRemote job- A leading cybersecurity firm is seeking a Domain Consultant for SOC Transformation in San Francisco. This role involves collaborating... .../hybrid, offers a competitive salary range, and emphasizes diversity and inclusion in the workplace. #J-18808-Ljbffr Palo Alto NetworksNetworkRemote job
- ...Job Title Senior-Level CI Specialist (Cyber Crime Investigator - TAB/CVE) Location Reston, VA 20170 US (Primary) Category Intelligence... ...on-the-job training, tuition reimbursement, and networking. A positive work environment where employees are respected...NetworkFull time
- ...INVESTIGATION SPECIALIST II - 79000484 This position is located within the Bureau of Compliance of the Division of Condominiums, Timeshares... ...related hearings or proceedings. Develops and maintains a network of contacts among members and representatives of regulated...NetworkWork at office
- ...Job Title Mid. CI Investigations Desk Officer (Intelligence Management Specialist) Location Fort Meade, MD 20755 US (Primary) Category Intelligence... ...on-the-job training, tuition reimbursement, and networking. A positive work environment where employees...NetworkFull timeContract work
- ...to INNIO! Position Overview The Lead Electrical & Warranty Investigation Specialist is responsible for leading the technical and warranty investigation... ...topics within INNIO’s global engineering and service network Support the investigation team with third-level technical...NetworkWork at officeRemote workShift work
- ...Remote Healthcare Recruiting Specialist Dynamic Talent Connector Imagine a career that isn't just a job, but an adventure you navigate with... .... Leverage our exclusive platform and your professional network to source prospective healthcare talent. Engage with potential...NetworkRemote jobExtra income
$82.5k - $97k
About Uncommon Schools Uncommon Schools is a nonprofit network of high‑performing public charter schools dedicated to providing... ...Join us to work hard, do good, and make a lasting difference! Specialist, Talent Recruitment - Home Office Outreach You understand that the...NetworkSummer holidayWork at officeLocal areaHome officeFlexible hours3 days per week$92.5k - $171.5k
...developing high-performing talent who are passionate... .... Job Title: Senior Specialist, Electrical Engineering... ...designing 10G Ethernet based Network Interface Designs... ...UDP Experience with SoC (Kintex UltraScale/UltraScale... ...government security investigation(s) and must meet...NetworkLocal areaImmediate startFlexible hours$45k
...Oregon. The role involves extensive training in recruiting top IT talent, building relationships, and utilizing AI tools for sourcing... ...s Degree or equivalent experience and strong communication and networking skills. The position offers a base salary starting at $45,000,...NetworkTraineeship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC Investigation Specialist Talent Network. Be the first to apply!
Related searches
- bank reconciliation specialist United States
- remote outreach specialist United States
- deployment specialist United States
- retina specialist United States
- member experience specialist United States
- strategic sourcing specialist United States
- demo specialist United States
- cash reconciliation specialist United States
- invoice specialist United States
- privacy specialist United States

