Security Operations Center (SOC) Analyst II
ASM Research, An Accenture Federal Services Company
The Security Operations Center (SOC) Analyst II serves as a mid-level cyber defender responsible for continuous monitoring, investigation, and response to security events across enterprise networks, endpoints, and cloud environments in a highly regulated government setting. This Tier 2 role handles alerts escalated from Tier 1, performing deeper analysis, driving containment and mitigation recommendations, and supporting coordinated remediation for mission-critical systems. The analyst helps operate and tune SOC technologies such as SIEM, EDR/XDR, IDS/IPS, and threat intelligence platforms while improving playbooks, use cases, and procedures to enhance detection fidelity and reduce false positives.
Key Responsibilities
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Conduct in-depth analysis of security alerts escalated from Tier 1, correlating logs, network traffic, endpoint telemetry, and threat intelligence to determine incident scope, impact, and root cause.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Operate and tune SIEM, EDR/XDR, IDS/IPS, and related SOC tooling to improve detection fidelity, reduce false positives, and enhance visibility across on-premises and cloud environments.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Execute Tier 2 incident response activities, including containment and mitigation recommendations, coordination with infrastructure and application teams, and support for digital evidence collection and documentation.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Review and apply emerging cyber threat intelligence, including indicators of compromise and adversary TTPs, to update rules, playbooks, and monitoring use cases aligned to frameworks such as MITRE ATT&CK.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Maintain accurate and detailed case records in ticketing and case-management systems, supporting 24x7 operations with clear handoffs, status reporting, and after-action inputs.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Support compliance-driven operations in a highly regulated government environment by following established SOPs, incident handling processes, and security control requirements for mission-critical systems.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Collaborate with and mentor Tier 1 analysts by providing guidance on triage techniques, escalation criteria, and best practices for investigating suspicious activity.
Required Qualifications
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Bachelor's Degree in Computer Science, Information Assurance, Cybersecurity, or a closely related field, or equivalent relevant experience (aligned to Operations Security Planner II standard). Standard-Job-Titles-SharePoint-2-11.xlsx
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Typically 3-5 years of prior experience in a SOC, cyber incident response, or closely related security operations role handling Tier 1/Tier 2 investigations.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Demonstrated hands-on experience operating and tuning SIEM, endpoint security (EDR/XDR), IDS/IPS, and related SOC tools in enterprise environments.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Strong analytical skills in log analysis, network traffic review, and endpoint telemetry, with the ability to determine incident scope, impact, and probable root cause.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Familiarity with cyber threat intelligence concepts, indicators of compromise, and adversary TTPs, and experience applying these within monitoring and detection use cases.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> U.S. Citizenship required, with ability to satisfy background investigation requirements appropriate to a federal IT environment.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Ability to work effectively as part of a 24x7 SOC operation, including clear written and verbal communication for case documentation and handoffs.
Preferred Qualifications
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Experience with leading SIEM and endpoint security platforms such as Splunk, Microsoft Sentinel, Microsoft Defender, or similar tools.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Industry certifications such as Security+, CySA+, GCIH, or equivalent SOC/incident response credentials.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Prior experience supporting federal or other highly regulated environments requiring U.S. citizenship and eligibility for a clearance or public trust.
p]:pt-0 [&> p]:mb-2 [&> p]:my-0"> Familiarity with frameworks such as MITRE ATT&CK and NIST 800-series as they relate to SOC use cases, detection engineering, and incident handling.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
87,000-109,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
- ...The Security Operations Center (SOC) Analyst I is a frontline cyber defender responsible for monitoring security tools and dashboards to identify indicators... ..., evidence preservation, and effective handoff to Tier II or incident response teams. p]:pt-0 [& p]:mb-2 [& p]:...SuggestedContract workWork at officeShift work
- ...advancement Training & development | POSITION SUMMARY –Security Analyst II (Compliance) Under the general supervision of the GRC... ...guidance to other IT staff and non-IT areas on how to align IT operational and technology processes based on information technology...SuggestedWork at officeRemote workWork from homeRelocationFlexible hours
- ...Title: Security Analyst II *Local to WI Job Descripiton: Under general supervision of the Security & Accounts Management Manager,... ...support responsibilities require expertise of multiple platforms, operating systems and various security software systems. This...SuggestedLocal area
$124.2k - $186.2k
...About the team: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives... ...information. About the role: Rubrik's Security Operations Center (SOC) plays a strategic role in protecting customer and internal...SuggestedLocal areaRemote work$40k
...mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government... ...processes. Experience working in NOC, SOC, or Command Center environments. Exposure to cloud...SuggestedContract workRemote workShift workNight shift$130k - $135k
...Minimum of 3–5 years of experience in an operational security program. Bachelor’s in computer... ...security initiatives. Background in SOC operations, detection engineering, threat... ...Dental, and Vision Care, Onsite Health Centers (MO & IL), Employee Assistance Program,...Full timeRemote workFlexible hoursShift workWeekend workAfternoon shift$30 per hour
...the Oracle Government, Defense & Intelligence team supporting Federal Compliance and Federal Sales Teams. The Information Security Compliance Analyst is expected to work with the GDI Performance Management team to ensure documentation, processes and policies up to date...Hourly payTemporary workInternshipFlexible hours- ...bring new therapies to patients in need. The Position We’re seeking an Information Security Analyst with a foundational background in IT support, system administration, or security operations and an interest in growing their career in information security. This role will...
$99k - $117k
...Employment Type: Regular Job Profile: Info Sec Analyst III (Inst) The Risk Management and... ...risk analyst to address the internal security review requests from UW‑Madison campus partners... ...and Compliance, Cybersecurity Operations, Business Systems Security and Cybersecurity...Work at officeImmediate startRemote workWork from homeFlexible hours$99k - $117k
...The Risk Management and Compliance (RMC) team within the Office of Cybersecurity is looking for an experienced risk analyst to address internal security review requests from UW‑Madison campus partners. This includes reviewing new tools, services, platforms or departmental...Work at office- ...Our client, a government agency in the public sector, is seeking a Security Analyst II to join their team. As a Security Analyst, you will be part of the Information Security Department supporting security administration and compliance initiatives. The ideal candidate...Remote work
$78.9k - $123.3k
...Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring... ...the documentation necessary to support Authorization to Operate (ATO) decisions. The ideal candidate will have experience working...Permanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work- ...Wealthspire is seeking a seasoned HRIS & Reporting Specialist to own the Workday platform configuration, reporting, security, and data governance across HR operations. You will partner with HR, Finance, Payroll, and IT to deliver scalable Workday solutions that enable...
- The University of Wisconsin-Madison is seeking an experienced risk analyst within the Risk Management and Compliance (RMC) team under the Office of Cybersecurity to address internal security review requests across campus. You will assess risk, review tools, services, and...Work at office
$30 per hour
...Description The Security Analyst 2 Contractor provides operational support for Identity and Access Management (IAM) services by processing security requests, resolving incidents, and ensuring compliance with established security policies and procedures. Responsibilities...Contract workTemporary workFor contractors$24.5 - $26 per hour
...amazing team and work remote from home! The Default FHA Claims QA Analyst II will work under moderate supervision, responsible for... ...US state and federal laws and regulations wherein the company operates. The target pay for this position is $24.50/hr - $26.00/hr....Remote workWork from home$80.2k - $111.3k
...scalable countermeasures, enhances SOC tooling and integrations, and implements... ...governance, and influences broader security architecture and operations based on emerging threats and... ...coaching to incident handlers and SOC analysts, elevating investigative techniques,...Contract workWork experience placementWork at office$40k
...mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems... ...authorization to proceed. The IT Business Analyst supports the contract team by updating and...Contract workRemote work$85k - $105k
Overview Cadmus is hiring a Business Analyst for an ongoing directorate-wide financial,... ...stakeholders within the Department of Homeland Security Science & Technology Directorate. You... ...new development, enhancements, and Operations & Maintenance support. What You’ll Be Doing...Permanent employmentWork experience placementLocal areaWorldwide$81.07k - $129.71k
Job Description The IT Governance Analyst assists in the identification, assessment,... ...stakeholders, procurement teams, information security, legal, and compliance functions to... ...Professional certifications such as HITRUST, NIST, SOC 2, and ISO standards preferred *...Work at officeLocal areaRemote workFlexible hours2 days per week$60k
...mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems... ...remote. The Risk, Quality, and Performance Analyst serves as the Risk, Quality, and...Contract workRemote work$65k - $80k
...therapies to patients in need. The Position We're seeking an Information Security Analyst with a foundational background in IT support, system administration, or security operations and an interest in growing their career in information security. This role will...- A staffing agency is seeking an experienced Security Analyst for a remote role within Wisconsin. The position primarily involves leading complex security assessments, developing incident response plans, and improving vulnerability management programs. Candidates should...Contract workRemote work
$40 per hour
...for experienced cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats...Hourly payFull timePart timeRemote work- ...Company Mission – Our mission is to help secure as many companies as possible, by using the best way of doing so: penetration testing. Sprocket Security prioritizes offensive security for enterprises, empowering them to build robust defense strategies based on individual...Hourly payImmediate startFlexible hours
- ...Information Security Contract Support Specialist The Department of Health Services (DHS... ..., liaisons, and other security analysts performing comprehensive assessment.... ...reviews. Establish and documents standard operations for job-related activities. Establish and...Contract workWork at office
$79.3k
...bodies including NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, JCAHO, NCQA, the BCBSA, etc.... ..., and e) disruption to the daily operations of the Company is minimized. Standardize... ...Policies and Procedures as well as all data security guidelines established within the Company...For contractorsWork at officeLocal area$18 per hour
...AP) teams function to keep our guests, team and brand safe and secure and lead through crisis events. They protect profitable sales by... ...Ability to communicate on multiple frequency devices and operate handheld scanners, and other technology equipment as directed...Hourly payLocal areaWorldwideMonday to FridayFlexible hoursShift workNight shiftWeekend work$40 per hour
...is seeking experienced cybersecurity professionals to join their team. In this fully remote role, you will evaluate AI-generated security content and address technical problems while contributing to advanced AI models for the cybersecurity industry. The ideal candidate...Remote jobHourly pay$20 per hour
...of client engagements focused on payroll operations, compliance, and process improvem... $... ...next level.Every day you'll be at the center of it all.Your goal? Create meaningful connections... ...is a leading provider of integrated security, fire, life safety, and technology...Hourly payFull timeSummer workWork at officeRemote workWork from home
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Operations Center (SOC) Analyst II. Be the first to apply!
- entry level information security analyst Madison, WI
- security analyst Madison, WI
- security operations analyst Madison, WI
- IT security analyst Madison, WI
- bond analyst Madison, WI
- junior security analyst Madison, WI
- cloud security analyst Madison, WI
- rate analyst Madison, WI
- information security analyst Madison, WI
- security analyst intern Madison, WI


