1

Cyber Soc Analyst Jobs (NOW HIRING)

SOC Analyst

Alexandria, VA ยท On-site

$150K - $165K/yr

The SOC Analyst will be responsible for monitoring, analyzing, investigating, and responding to ... This role requires experience in incident response, cyber defense operations, threat detection, and ...

SOC Analyst

Alexandria, VA ยท On-site

$150K - $165K/yr

The SOC Analyst will be responsible for monitoring, analyzing, investigating, and responding to ... This role requires experience in incident response, cyber defense operations, threat detection, and ...

SOC Analyst

Alexandria, VA ยท On-site

$150K - $165K/yr

The SOC Analyst will be responsible for monitoring, analyzing, investigating, and responding to ... This role requires experience in incident response, cyber defense operations, threat detection, and ...

SOC Analyst

Plano, TX ยท On-site

We are now looking for a SOC analyst in our global Cyber Defense Center (CDC). We detect and respond to cyber attacks originating from external threat actors and ensure we are one step ahead of ...

Senior SOC Analyst

Marlborough, MA ยท On-site

$99K - $130K/yr

Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability ... Senior SOC Analyst Location: Client site Boston, MA Position Overview The Senior SOC Analyst is ...

Senior SOC Analyst

Phoenix, AZ ยท On-site

$99K - $128K/yr

Cyber Command - Analyst - Senior Posting ID: 10835 Location: Phoenix, AZ (100% Onsite - North ... SOC (AZSOC). This role supports enterprise-wide cyber defense operations and requires strong ...

Senior SOC Analyst

Marlborough, MA ยท On-site

$99K - $130K/yr

Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability ... Senior SOC Analyst Location: Client site Boston, MA Position Overview The Senior SOC Analyst is ...

The SOC Analyst 1 supports the organization's security operations by monitoring security events ... Stay current with common cyber threats, phishing techniques, malware trends, vulnerabilities, user ...

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CFR * CCNA Cyber Ops * CCNA-Security * GCIA * GCIH * GICSP * Cloud+ * SCYBER * PenTest+

SOC Analyst

Orlando, FL ยท On-site

As a SOC I Analyst, you will be responsible for monitoring,analyzing, and responding to security alerts to help protect theorganization from cyber threats. You will support the day-to-daysecurity ...

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CFR * CCNA Cyber Ops * CCNA-Security * GCIA * GCIH * GICSP * Cloud+ * SCYBER * PenTest+

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CFR * CCNA Cyber Ops * CCNA-Security * GCIA * GCIH * GICSP * Cloud+ * SCYBER * PenTest+

SOC Analyst II

Monterey, CA ยท On-site

$39 - $44/hr

Daily responsibilities of the SOC are ever changing, however, you can expect to regularly conduct vulnerability assessments, analyze cyber threats, monitor the email gateway and create reports on all ...

Understanding of common cyber threats, malware behavior basics, and alert triage concepts. * Strong analytical skills and willingness to learn in a fast paced SOC environment. * Ability to obtain or ...

SOC Analyst

Orlando, FL ยท On-site

As a SOC I Analyst, you will be responsible for monitoring, analyzing, and responding to security alerts to help protect the organization from cyber threats. You will support the day-to-day security ...

SOC Analyst II

Monterey, CA ยท On-site

$39 - $44/hr

Daily responsibilities of the SOC are ever changing, however, you can expect to regularly conduct vulnerability assessments, analyze cyber threats, monitor the email gateway and create reports on all ...

next page

Showing results 1-20

Cyber Soc Analyst information

See salary details

$44.5K

$107.5K

$151K

How much do cyber soc analyst jobs pay per year?

As of Jul 22, 2026, the average yearly pay for cyber soc analyst in the United States is $107,522.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cyber SOC Analyst, and why are they important?

To thrive as a Cyber SOC Analyst, you need a solid understanding of network security, threat analysis, incident response, and often a degree in cybersecurity or a related field. Familiarity with SIEM tools (like Splunk or QRadar), intrusion detection systems, and certifications such as CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication stand out as vital soft skills for this position. These skills and qualities are essential for detecting, analyzing, and mitigating cyber threats to protect organizational assets.

What are Cyber SOC Analysts?

Cyber SOC Analysts, or Security Operations Center Analysts, are cybersecurity professionals responsible for monitoring, detecting, and responding to security incidents within an organization's IT environment. They use specialized tools to analyze network traffic, identify potential threats, and investigate suspicious activities. SOC Analysts play a critical role in protecting sensitive data and ensuring the organization's systems remain secure against cyberattacks. Their work often includes incident response, threat intelligence, and maintaining security protocols.

What is the difference between Cyber Soc Analyst vs Security Analyst?

AspectCyber Soc AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA
Work EnvironmentSecurity Operations Center (SOC), monitoring security alertsIT departments, security teams, risk management
Employer & Industry UsageFinancial, healthcare, government, tech sectorsBroadly across industries, including corporate and government
Primary FocusReal-time threat detection and incident responseVulnerability assessment, risk management, policy development

While both roles focus on cybersecurity, a Cyber Soc Analyst primarily monitors security alerts in a SOC environment, responding to threats in real-time. A Security Analyst often has a broader scope, including vulnerability assessments and security policy development. The roles overlap in certifications and industry usage, but their day-to-day responsibilities differ based on focus and work setting.

What are some common challenges faced by Cyber SOC Analysts, and how can they effectively manage them?

Cyber SOC Analysts often face the challenge of handling large volumes of security alerts, some of which may be false positives. Prioritizing incidents, maintaining situational awareness, and avoiding alert fatigue are key skills in this role. Working closely with other IT and security team members helps ensure timely responses to real threats. Regular training, automation tools, and effective communication can help analysts manage these challenges and maintain a high level of performance.
More about Cyber Soc Analyst jobs
What cities are hiring for Cyber Soc Analyst jobs? Cities with the most Cyber Soc Analyst job openings:
What states have the most Cyber Soc Analyst jobs? States with the most job openings for Cyber Soc Analyst jobs include:
What job categories do people searching Cyber Soc Analyst jobs look for? The top searched job categories for Cyber Soc Analyst jobs are:
Infographic showing various Cyber Soc Analyst job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 83% Physical, 7% Hybrid, and 10% Remote job distribution, with an average salary of $107,522 per year, or $51.7 per hour.

$150K - $165K/yr

Other

Posted 18 days ago


Job description

Description


Position Summaryย 

Northern Technologies Group (NTG) is seeking a highly motivated Security Operations Center (SOC) Analyst to support a mission-critical cybersecurity operations environment. The SOC Analyst will be responsible for monitoring, analyzing, investigating, and responding to cybersecurity events and incidents across enterprise networks and systems. This role requires experience in incident response, cyber defense operations, threat detection, and security monitoring within a Security Operations Center (SOC).


The ideal candidate will possess strong analytical skills, experience working with enterprise security tools, and a deep understanding of cyber threat actor tactics, techniques, and procedures (TTPs).


Essential Duties and Responsibilities
  • Monitor and analyze security alerts generated from endpoints, IDS/IPS systems, NetFlow data, SIEM platforms, EDR solutions, and other enterprise security monitoring tools.ย 
  • Identify, investigate, and respond to cybersecurity incidents and suspected system compromises across customer networks, endpoints, cloud environments, and enterprise infrastructure.ย 
  • Perform detailed analysis of large-scale log data and correlate information from multiple security sources to determine attack scope, root cause, and operational impact.ย 
  • Conduct complex investigations involving malware, phishing, insider threats, credential compromise, lateral movement, persistence mechanisms, and other advanced cyber threats.ย 
  • Independently investigate novel or complex cybersecurity incidents that fall outside established playbooks by applying sound technical judgment and analytical problem-solving.ย 
  • Recommend appropriate containment, eradication, recovery, and post-incident response actions for suspected or confirmed compromised systems based on investigative findings and operational risk.ย 
  • Escalate validated threats and incidents to senior SOC personnel while providing comprehensive technical analysis, supporting evidence, and recommended courses of action.ย 
  • Document investigative findings, response actions, root cause analyses, and recommendations within case management and knowledge management systems.ย 
  • Create, maintain, and distribute incident reports, after-action reports, and executive summaries to customers, stakeholders, and leadership.ย 
  • Support Cyber Network Defense (CND) operations through protection, detection, response, threat hunting, and sustainment activities.ย 
  • Develop, update, and improve incident response playbooks, standard operating procedures (SOPs), and investigative workflows based on lessons learned, emerging threats, and evolving adversary tactics.ย 
  • Contribute to the development and tuning of detection logic, SIEM correlation rules, and response procedures to improve SOC effectiveness and reduce false positives.ย 
  • Maintain awareness of emerging cyber threats, attack vectors, adversary tactics, techniques, and procedures (TTPs), and apply threat intelligence to ongoing investigations.ย 
  • Participate in shift operations supporting a 24x7 mission-essential environment.ย 
  • Contribute to knowledge sharing, mentoring, analyst training, and continuous improvement initiatives to strengthen SOC capabilities and operational readiness.
Minimum Qualifications (Knowledge, Skills, and Abilities)
  • Must be a U.S. Citizen.ย 
  • Must possess an active DoD Top Secret/SCI security clearance.ย 
  • Bachelor's degree and 8+ years of relevant experience. Additional military service and relevant experience may substitute for degree requirements. Candidates without a degree must possess a minimum of 12 years of relevant experience.ย 
  • Minimum 2 years of incident handling and incident response experience.ย 
  • Minimum 2 years of Security Operations Center (SOC) experience.ย 
  • Experience supporting Cyber Network Defense (CND) operations within a Computer Incident Response organization.ย 
  • Demonstrated understanding of cyber threat lifecycles, attack vectors and exploitation methodologies, and adversary tactics, techniques, and procedures (TTPs).ย 
  • Strong knowledge of TCP/IP networking, network protocols and ports, traffic analysis, system administration, OSI model, and defense-in-depth security principles.ย 
  • Ability to work independently in a fast-paced operational environment.ย 
  • Demonstrated ability to independently investigate complex or previously unseen cybersecurity incidents by applying analytical problem-solving beyond established playbooks and standard operating procedures.ย 
  • Experience developing, updating, or improving incident response playbooks, standard operating procedures (SOPs), detection use cases, or investigative workflows, with the ability to recommend appropriate containment, eradication, and recovery actions for suspected compromised systems.ย 
  • Ability to articulate a structured incident investigation methodology, including alert triage, evidence collection, attack scoping, containment, eradication, recovery, and post-incident analysis.ย 
  • DoD 8570 IAT Level II (or higher) certification prior to start date (CompTIA Security+, SSCP, etc.).ย 
  • Must obtain a DoD 8570 CSSP-Analyst certification within six months of hire (e.g., CEH, CySA+, GCIA).
Preferred Qualifications
  • Experience analyzing large volumes of: Security logs, NetFlow data, Full Packet Capture (PCAP), Network forensic artifacts
  • Hands-on experience with enterprise SIEM platforms such as: Splunk, ArcSight, QRadar, McAfee Enterprise Security Management (Nitro), LogLogic.
  • Experience with: IDS/IPS technologies, Host-Based Security Systems (HBSS), Endpoint security tools, Malware analysis techniques
  • Unix/Linux command-line proficiency.
  • Scripting or programming experience.
  • Familiarity with: MITRE ATT&CK Framework, Cyber Kill Chain Methodology, Intelligence-Driven Defense concepts
Physical Demands and Work Environmentย 

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this position. Reasonable accommodations may be made to enable individuals with disabilities to perform these functions.


While performing the duties of this position, the employee is regularly required to talk or hear. The employee frequently is required to use hands or fingers, handle or feel objects, tools, or controls. The employee is occasionally required to stand; walk; sit; and reach with hands and arms. The employee must occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this position include close vision, distance vision, and the ability to adjust focus. The noise level in the work environment is usually low to moderate.ย 


Northern Technologies Group is an equal opportunity employer. We do not discriminate based on race, color, religion, sex, national origin, disability, age, or any other protected status under federal, state, or local law.


Travel

10%


Shift

Day Shift


Note

The company is an Equal Opportunity Employer, drug free workplace, and complies with ADA regulations as applicable.

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. Employees will be required to follow any other job-related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. This document does not create an employment contract, implied or otherwise, other than an "at will" relationship.


The salary range listed represents a good faith estimate and is provided in compliance with applicable pay transparency laws. The final compensation offered will be determined based on a variety of factors, including your skills, experience, qualifications, internal equity, and market conditions.