1

Internship Security Operations Center Jobs in Baltimore, MD

next page

Showing results 1-20

Internship Security Operations Center information

See Baltimore, MD salary details

$9

$17

$23

How much do internship security operations center jobs pay per hour?

As of Aug 23, 2026, the average hourly pay for internship security operations center in Baltimore, MD is $17.53, according to ZipRecruiter salary data. Most workers in this role earn between $14.57 and $19.09 per hour, depending on experience, location, and employer.

What is an internship Security Operations Center (SOC)?

An Internship Security Operations Center (SOC) position is a temporary role designed for students or recent graduates to gain practical experience in cybersecurity by working within an organization's SOC. Interns assist with monitoring network traffic, analyzing security alerts, responding to incidents, and learning about threat detection tools and processes. The goal is to provide hands-on exposure to real-world security operations and prepare interns for future careers in cybersecurity. SOC internships often involve working alongside experienced security analysts and participating in training sessions. These roles are valuable for building technical skills, understanding security protocols, and enhancing employability in the cybersecurity field.

What kind of projects and hands-on tasks can I expect during an internship in a Security Operations Center (SOC)?

As an intern in a Security Operations Center, you can expect to work on tasks such as monitoring network activity for suspicious behavior, assisting with incident response, and helping to analyze security alerts. You'll likely gain exposure to security information and event management (SIEM) tools and collaborate closely with experienced analysts to learn industry best practices. Interns are often given real-world assignments, such as reviewing logs, participating in vulnerability assessments, and documenting security incidents, providing a solid foundation for a career in cybersecurity.

What are the key skills and qualifications needed to thrive as an intern in a Security Operations Center (SOC), and why are they important?

To thrive as a Security Operations Center (SOC) Intern, you need a foundational understanding of cybersecurity principles, networking, and incident response, often supported by coursework or relevant certifications like CompTIA Security+. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and basic scripting languages is typically expected. Strong analytical thinking, attention to detail, and effective communication help interns excel in identifying threats and collaborating with team members. These skills are vital for quickly detecting, analyzing, and responding to security incidents, ensuring organizational protection and learning in a high-stakes environment.

What is the difference between Internship Security Operations Center vs Security Analyst?

AspectInternship Security Operations CenterSecurity Analyst
CredentialsTypically pursuing or recent graduate, no formal certifications requiredOften holds certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentEntry-level, supervised, learning-focused in SOC environmentFull-time, responsible for monitoring and analyzing security threats
Employer & Industry UsageInternship programs in cybersecurity firms, IT departments, or security vendorsFull-time roles in various industries including finance, healthcare, and tech

In summary, an Internship Security Operations Center role is an entry-level, learning-focused position designed for students or recent graduates, whereas a Security Analyst is a full-time professional responsible for security monitoring and threat analysis, often requiring certifications and experience.

What are the most commonly searched types of Security Operations Center jobs in Baltimore, MD?

The most popular types of Security Operations Center jobs in Baltimore, MD are:

Security Operations Center Analyst

Everwatch

Annapolis Junction, MD โ€ข On-site, Remote

$57.69 - $67.30/hr

Other

Posted 10 days ago


Job description

Job Title
Security Operations Center Analyst
Overview
EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control environments to preserve continuity and ensure mission success.
EverWatch employees are focused on tackling the most difficult challenges of the US Government. We offer the best salaries and benefits packages in our industry - to identify and retain the top talent in support of our critical mission objectives.
Commitment to Non-Discrimination:
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Responsibilities
Are you ready to take a strategic role in cyber defense for U.S Cyber Command? Do you want to use your experience-based knowledge to protect critical warfighter infrastructure from the constant onslaught of cyber threats? If you want a position that uses your extensive threat analysis skills to perform advanced threat identification and complex incident response, you want to be a SOC analyst. As an analyst on our SOC team, you'll analyze logs, forensic data, and threat intelligence to find the advanced threats that are escaping detection. Using your deep understanding of your customer's networks, combined with your cybersecurity experience, you'll analyze patterns to understand attackers' goals and stop them from succeeding. Once you find the adversary in the SEIM's blind spot, you'll advise on ways to close the gaps and harden their network. Let's outsmart malicious actors and protect U.S. Cyber Command.
Join us. The world can't wait.
Qualifications
You Have:
  • Experience with SIEM Fundamentals, including Splunk
  • Knowledge of basic networking fundamentals
  • Knowledge of the basic functions and configurations of Bro (Zeek)
  • Knowledge of Suricata or Snort
  • Ability to review Nessus scans and Firewall configurations
  • Ability to review Linux hosts for indicators of compromise and hardening of Linux systems
  • Ability to navigate *nix based systems via CLI
  • Ability to find, read, and analyze various logs
  • TS/SCI clearance with a polygraph
  • HS diploma or GED and 6+ years of experience with incident response procedures and analysis, or Bachelor's degree and 2+ years of experience with incident response procedures and analysis

Nice If You Have:
  • Experience with correlating threat intelligence (INTEL) to determine the threat actor, the attack's scope, and the affected systems
  • Experience with AI Fundamentals
  • Knowledge of Splunk Phantom or SOAR

Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance with polygraph is required.
Compensation at EverWatch is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $57.69 to $67.30 per hour. The estimate displayed represents the typical compensation range for this position and is just one component of EverWatch's total compensation package for employees.
Job Locations
US-MD-Annapolis Junction
Skills
cyber threat, SIEM, Networking, suricata, snort, Linux, *nix