1

Incident Response Soc Analyst Jobs (NOW HIRING)

Incident Response Analyst

Austin, TX

$104K - $138K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Come help us reinvent the modern SOC! Your Impact Own the full arc of security incidents from first ... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ...

New

Incident Response Analyst

Atlanta, GA

$104K - $138K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Come help us reinvent the modern SOC! Your Impact Own the full arc of security incidents from first ... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ...

New

Incident Response Analyst

Phoenix, AZ · On-site

$104K - $138K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Come help us reinvent the modern SOC! Your Impact Own the full arc of security incidents from first ... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ...

New

The SOC Analyst 2 supports the organization's security operations by conducting deeper ... Incident Response & Coordination Support * Support containment, eradication, and recovery ...

The SOC Analyst will play a critical role in monitoring, analyzing, and responding to security ... This position involves collaboration with Incident Response teams, conducting research, managing ...

Incident Response Analyst

Alexandria, VA · On-site

$94K - $127K/yr

Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response Analyst ... Coordinate with SOC analysts, Cybersecurity Service Providers, system owners, technical teams, and ...

Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response Analyst ... Coordinate with SOC analysts, Cybersecurity Service Providers, system owners, technical teams, and ...

The DHS SOC has primary responsibility for monitoring and responding to security events and ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...

SOC Analyst II (L2) Location: Bellaire, Texas (Hybrid - 1 day onsite per week) About Us STAFFXPERT ... Document incident findings, response actions, and recommendations for improvement. * Support ...

next page

Showing results 1-20

Incident Response Soc Analyst information

See salary details

$22

$46

$62

How much do incident response soc analyst jobs pay per hour?

As of Aug 15, 2026, the average hourly pay for incident response soc analyst in the United States is $46.45, according to ZipRecruiter salary data. Most workers in this role earn between $40.62 and $52.64 per hour, depending on experience, location, and employer.

What is the difference between Incident Response Soc Analyst vs Security Operations Center (SOC) Analyst?

AspectIncident Response Soc AnalystSecurity Operations Center (SOC) Analyst
CertificationsCompTIA Security+, GIAC certifications, CISSP (preferred)CompTIA Security+, GIAC certifications, CISSP (preferred)
Work EnvironmentResponds to security incidents, investigates breaches, often in a reactive roleMonitors security alerts, analyzes threats, maintains security tools
Employer & Industry UsageUsed in cybersecurity teams across various industries, focusing on incident handlingCommon in security operations centers across industries, focusing on threat detection

Both roles require similar certifications and work in cybersecurity environments, but Incident Response Soc Analysts focus on investigating and responding to security incidents, while SOC Analysts primarily monitor and analyze security alerts to prevent incidents.

What is an incident response SOC analyst?

An Incident Response SOC Analyst is a cybersecurity professional responsible for monitoring, detecting, analyzing, and responding to security incidents within an organization. Working in a Security Operations Center (SOC), they investigate alerts, contain threats, and coordinate with other teams to mitigate potential damage. They also help develop and refine security procedures, ensure compliance with policies, and create detailed reports on incidents. Their work is crucial in protecting an organization's digital assets and reducing the impact of cyberattacks.

What are some common challenges incident response SOC analysts face when handling real-time security incidents?

Incident Response SOC Analysts often face the challenge of quickly distinguishing between genuine threats and false positives, as alerts can be numerous and sometimes ambiguous. They must remain calm and methodical under pressure, especially during active incidents where rapid decisions are critical to minimize potential damage. Effective collaboration with IT, network teams, and sometimes external partners is vital for gathering information and executing containment or remediation steps. Additionally, staying updated with evolving cyber threats and maintaining detailed incident documentation are ongoing demands that can shape daily responsibilities.

What are the key skills and qualifications needed to thrive as an incident response SOC analyst, and why are they important?

To thrive as an Incident Response SOC Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response methodologies, often supported by a degree in computer science or cybersecurity and relevant certifications like CompTIA Security+ or GIAC. Familiarity with Security Information and Event Management (SIEM) tools, intrusion detection systems (IDS), and forensic analysis software is typically required. Attention to detail, analytical thinking, and effective communication are essential soft skills for identifying, investigating, and resolving security incidents. These skills and qualifications are crucial to quickly detect threats, minimize damage, and enhance an organization’s overall security posture.
More about Incident Response Soc Analyst jobs

What cities are hiring for Incident Response Soc Analyst jobs?

Cities with the most Incident Response Soc Analyst job openings:

Infographic showing various Incident Response Soc Analyst job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 13% Part Time, 3% Contract, and 1% Nights. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $96,618 per year, or $46.5 per hour.

Incident Response Analyst

Cisco

Austin, TX

$104K - $138K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 2 days ago

New


Cisco Systems rating

8.0

Company rating: 8.0 out of 10

Based on 42 frontline employees who took The Breakroom Quiz

58th of 157 rated electronics manufacturers


Job description

The application window is expected to close on: 08/15/2026

Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received.

24 x 7 Global Operations

Shift time: 10:00am - 8:00pm pacific time

Wednesday - Saturday

On call rotation 1 week every 2 months from 11:00pm - 8:00am eastern standard time

Meet the Team

Splunk's Threat Response SOC operates globally, 24/7, at the intersection of incident response, detection engineering, and automation. We protect Splunk's enterprise and product environments and we're constantly building better ways to do it. Our team of analysts and engineers turns repetitive manual work into documented, version-controlled, AI-augmented workflows. We're builders and defenders. Come help us reinvent the modern SOC!

Your Impact

Own the full arc of security incidents from first alert to documented resolution. This role combines hands-on security operations with AI-enabled investigation workflows and human-supervised agentic tooling to reduce analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper every sprint!

  • Triage, investigate, and respond to security alerts across Splunk's enterprise and product environments.

  • Scope threats, collect evidence, and drive response actions using Splunk tooling and security platforms.

  • Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.

  • Build and maintain SOC automation to eliminate repetitive work including scripts, playbooks, and enrichment workflows.

  • Apply AI-assisted and agentic tooling to accelerate investigation, enrichment, summarization, and repeatable analyst workflows with human oversight at every step.

  • Hunt threats, lead incident reviews, and contribute to cross-team investigations that raise SOC-wide quality.

Minimum Qualifications
  • Bachelor's Degree and 4+ years' of experience in security operations, incident response, or related technical role.

  • Working knowledge of incident response, alert triage, threat hunting, evidence handling, escalation workflows, and common attacker techniques.

  • Hands-on experience triaging and investigating alerts using SIEM, EDR, cloud, or network security tooling.

  • Experience with Git/GitLab workflows: branching, merge requests, code review, and CI/CD.

  • Experience with automation scripts, and make updates to playbooks, pipeline configurations, or modular tooling.

  • Experience with AI-assisted development, AI-powered security tooling, or agentic workflows, and ability to critically evaluate tool output before taking action.

  • Experience with MITRE ATT&CK, threat hunting methodology, malware triage, phishing analysis, vulnerability exploitation, attacker infrastructure analysis, or SOC performance metrics.

Preferred Qualifications
  • Strong written and verbal communication skills, including the ability to document investigations, write clear runbooks, and explain technical findings.

  • Experience with Splunk Enterprise Security, Splunk SPL, SOAR platforms, or large-scale security telemetry environments.

  • Experience building, maintaining, or reviewing SOC automation, enrichment workflows, SOAR playbooks, detection-as-code, reusable modules, or agentic investigation workflows.

  • Experience with GitLab CI/CD or similar pipeline systems, including pipeline configuration, automated testing, validation, deployment workflows, or approval gates.

  • Familiarity with cloud, container, Kubernetes, CI/CD runner, artifact registry, package management, or software supply chain security concepts.

  • Scripting or automation experience in Python, Bash, Go, or JavaScript.

Note: As part of this role, you will be responsible for maintaining services in a FedRAMP-compliant environment and must be a U.S. Person (U.S. citizen). This position may perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil.

Why Cisco?

At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.

Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.

We are Cisco, and our power starts with you.

Message to applicants applying to work in the U.S. and/or Canada:The starting salary range posted for this position is $104,000.00 to $138,100.00 and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation*, equity, or benefits.

Individual pay is determined by the candidate's hiring location, market conditions, job-related skillset, experience, qualifications, education, certifications, and/or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.

U.S. employees are offered benefits, subject to Cisco's plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short and long-term disability coverage, and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.

U.S. employees are eligible for paid time away as described below, subject to Cisco's policies:

  • 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees

  • 1 paid day off for employee's birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness determined by Cisco

  • Non-exempt employees** receive 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees

  • Exempt employees participate in Cisco's flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use (subject to availability and some business limitations)

  • 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours ofunused sick timecarried forwardfrom one calendar yearto the next

  • Additional paid time away may be requested to deal with critical or emergency issues for family members

  • Optional 10 paid days per full calendar year to volunteer

For non-sales roles, employees are also eligible to earn annual bonuses subject to Cisco's policies.

Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components, subject to the applicable Cisco plan. For quota-based incentive pay, Cisco typically pays as follows:

  • .75% of incentive target for each 1% of revenue attainment up to 50% of quota;

  • 1.5% of incentive target for each 1% of attainment between 50% and 75%;

  • 1% of incentive target for each 1% of attainment between 75% and 100%; and

  • Once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.

For non-quota-based sales performance elements such as strategic sales objectives, Cisco may pay 0% up to 125% of target. Cisco sales plans do not have a minimum threshold of performance for sales incentive compensation to be paid.

The applicable full salary ranges for this position, by specific state, are listed below:

New York City Metro Area:

$130,600.00 - $191,200.00

Non-Metro New York state & Washington state:

$116,600.00 - $170,100.00

* For quota-based sales roles on Cisco's sales plan, the ranges provided in this posting include base pay and sales target incentive compensation combined.

** Employees in Illinois, whether exempt or non-exempt, will participate in a unique time off program to meet local requirements.


What Cisco Systems employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Cisco Systems logo

About Cisco Systems

Sourced by ZipRecruiter

Cisco Systems, a global tech titan based in San Jose, CA, US, operates in the information technology and services industry. Founded in 1984, the company was derived from a project between two computer scientists from Stanford University. They aimed to connect different networks of computer systems at the university, resulting in the first multi-protocol router, and subsequently, the birth of Cisco. As an industry-leading manufacturer of networking hardware and telecommunications equipment, Cisco's product and services range includes routers, switches, firewall devices, and telecommunication technology. The company's mission, "to shape the future of the Internet by creating unprecedented value and opportunity for our customers, employees, investors, and ecosystem partners," is a testament to its pursuit of technology-forward innovation and customer satisfaction.

Industry

Computer and computer peripheral equipment and software wholesalers

Company size

10,000+ Employees

Headquarters location

San Jose, CA, US

Year founded

1984

Social media