1

Intern Security Operations Analyst Jobs in Texas

The intern will initially focus on governance, risk, and compliance (GRC) activities, including ... security operations, physical security, business continuity, and resilience programs. This ...

The intern will initially focus on governance, risk, and compliance (GRC) activities, including ... security operations, physical security, business continuity, and resilience programs. This ...

The intern will initially focus on governance, risk, and compliance (GRC) activities, including ... security operations, physical security, business continuity, and resilience programs. This ...

Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...

next page

Showing results 1-20

Intern Security Operations Analyst information

What does an Intern Security Operations Analyst do?

An Intern Security Operations Analyst assists in monitoring and analyzing an organization’s IT infrastructure for security threats. They support the security operations team by investigating alerts, helping respond to incidents, and maintaining security tools. Interns often learn foundational skills in cybersecurity, such as using security information and event management (SIEM) systems, conducting basic threat analysis, and documenting findings. This role is ideal for those looking to gain hands-on experience in the cybersecurity field.

What types of projects and responsibilities can an Intern Security Operations Analyst expect to handle during their internship?

As an Intern Security Operations Analyst, you can expect to assist with monitoring security alerts, conducting basic incident investigations, and supporting the team with vulnerability assessments. Interns often work alongside experienced analysts to triage potential threats, document findings, and help improve response procedures. This hands-on experience allows interns to develop technical skills, gain exposure to a variety of security tools, and understand the collaborative nature of working within a Security Operations Center (SOC).

What are the key skills and qualifications needed to thrive as an Intern Security Operations Analyst, and why are they important?

To thrive as an Intern Security Operations Analyst, you need foundational knowledge of cybersecurity principles, network protocols, and basic incident response, often supported by coursework or relevant certifications (such as CompTIA Security+). Familiarity with security information and event management (SIEM) tools, intrusion detection systems (IDS), and ticketing systems is typically expected. Attention to detail, analytical thinking, and strong communication skills help you stand out by enabling accurate threat analysis and effective teamwork. These skills and qualities are crucial for identifying security threats, supporting incident response, and maintaining a secure IT environment.
What are the most commonly searched types of Security Operations Analyst jobs in Texas? The most popular types of Security Operations Analyst jobs in Texas are:
What cities in Texas are hiring for Intern Security Operations Analyst jobs? Cities in Texas with the most Intern Security Operations Analyst job openings:
Infographic showing various Intern Security Operations Analyst job openings in Texas as of July 2026, with employment types broken down into 17% Internship, 66% Full Time, and 17% Contract. Highlights an 83% In-person, and 17% Hybrid job distribution.
Security Operations Analyst (mid level)

Security Operations Analyst (mid level)

Saronic Technologies

Austin, TX • On-site

Full-time

Posted 8 days ago


Job description

Job Summary:
Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. As a SecOps Analyst, you'll be responsible for monitoring and investigating security alerts, leading incident responses, and contributing to the development of security procedures and documentation. This role offers the opportunity to shape the security operations team and grow across various security domains.
Responsibilities:
• Monitor and triage security alerts across endpoint, cloud, identity, network, and SaaS telemetry using enterprise SIEM and XDR platforms
• Perform in-depth alert investigation and root cause analysis, documenting findings with clear, structured timelines and impact assessments
• Tune detections to reduce false positive noise and improve signal fidelity; contribute to detection-as-code pipelines using structured query languages
• Operate across multiple detection and visibility platforms as part of a maturing, layered security monitoring ecosystem
• Lead initial incident response for mid-tier events: contain, eradicate, and recover across endpoint, cloud, and identity domains
• Participate in the on-call incident rotation and effectively communicate status and findings to the SecOps Lead and relevant stakeholders
• Conduct post-incident reviews, identifying gaps in detection, response, and containment and translating them into actionable improvements
• Coordinate with Security Engineering and IT during active incidents to accelerate response and reduce dwell time
• Support the SecOps Lead in developing and refining response playbooks, runbooks, and analyst workflow documentation
• Conduct targeted threat hunting operations to identify attacker activity not surfaced by automated detections
• Contribute to SecOps metrics tracking, reporting, and operational readiness reviews
• Help onboard and mentor junior analysts as the team grows, serving as a technical resource and process guide
Qualifications:
Required:
• 3+ years of hands-on experience in a Security Operations, detection engineering, or incident response role
• Demonstrated experience triaging and investigating alerts across at least two of the following: endpoint, cloud, identity, network, or SaaS environments
• Hands-on proficiency with enterprise SIEM platforms and their query languages; ability to write and iterate on detection logic from scratch
• Experience with EDR tooling in an operational context; ability to hunt, triage, and respond using endpoint telemetry
• Solid understanding of attacker TTPs mapped to MITRE ATT&CK, and the ability to apply that knowledge during active investigations
• Experience writing or iterating on detection logic, response playbooks, or SOC operational documentation
• Scripting proficiency in Python, PowerShell, or Bash for alert enrichment, automation, or triage support
• Strong understanding of network fundamentals: TCP/IP, DNS, HTTP/S, firewall and proxy logs, and lateral movement patterns
• Clear and structured written and verbal communication — you can brief a non-technical stakeholder and write a thorough incident report
• Ownership mindset: you follow incidents through to closure and flag what needs to be fixed, not just what needs to be documented
• Security Clearance eligible
Preferred:
• Experience with XDR platforms and cross-domain correlated detection across endpoint, identity, and cloud
• Familiarity with cloud-native security operations and log sources in AWS or Azure environments
• Experience with SOAR platforms or building response automation workflows
• Exposure to supply chain and CI/CD pipeline security monitoring
• Familiarity with data lake-based or pipeline-driven detection architectures
• Experience operating in or supporting classified, GovCloud, or FedRAMP environments
• Background in defense, aerospace, robotics, or other high-assurance operational environments
• Familiarity with compliance frameworks such as NIST SP 800-171, NIST SP 800-53, or CMMC
• Relevant certifications: GIAC GCIH, GCIA, GCFE, BTL1/2, CySA+, OSCP, or equivalent
• Active security clearance or prior clearance history is a strong differentiator
Company:
Saronic is building cutting-edge unmanned surface vehicles that enable maritime security and domain awareness by combining best-in-class hardware, software and artificial intelligence into one scalable, fully integrated platform. Founded in 2022, the company is headquartered in Austin, USA, with a team of 1001-5000 employees. The company is currently Late Stage.