1

Internship Security Operations Center Jobs in Winfield, IL

S. Crash Champions was founded in 1999 as a single Chicago repair center by industry veteran and ... Security Operations Analysts improve the organization's security posture by evaluating, testing ...

Security Operations Analyst

Westmont, IL · On-site +1

$80K - $95K/yr

S. Crash Champions was founded in 1999 as a single Chicago repair center by industry veteran and ... Security Operations Analysts improve the organization's security posture by evaluating, testing ...

Senior Security Engineer

Chicago, IL · On-site

$118K - $161K/yr

The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of ... Responsible for mentoring and training of SOC Interns, SOC Technicians, SOC Engineer I and SOC ...

Senior Security Engineer

Chicago, IL · On-site

$118K - $161K/yr

The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of ... Responsible for mentoring and training of SOC Interns, SOC Technicians, SOC Engineer I and SOC ...

next page

Showing results 1-20

Internship Security Operations Center information

See Winfield, IL salary details

$9

$17

$23

How much do internship security operations center jobs pay per hour?

As of Aug 7, 2026, the average hourly pay for internship security operations center in Winfield, IL is $17.23, according to ZipRecruiter salary data. Most workers in this role earn between $14.33 and $18.80 per hour, depending on experience, location, and employer.

What is an internship Security Operations Center (SOC)?

An Internship Security Operations Center (SOC) position is a temporary role designed for students or recent graduates to gain practical experience in cybersecurity by working within an organization's SOC. Interns assist with monitoring network traffic, analyzing security alerts, responding to incidents, and learning about threat detection tools and processes. The goal is to provide hands-on exposure to real-world security operations and prepare interns for future careers in cybersecurity. SOC internships often involve working alongside experienced security analysts and participating in training sessions. These roles are valuable for building technical skills, understanding security protocols, and enhancing employability in the cybersecurity field.

What are the key skills and qualifications needed to thrive as an intern in a Security Operations Center (SOC), and why are they important?

To thrive as a Security Operations Center (SOC) Intern, you need a foundational understanding of cybersecurity principles, networking, and incident response, often supported by coursework or relevant certifications like CompTIA Security+. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and basic scripting languages is typically expected. Strong analytical thinking, attention to detail, and effective communication help interns excel in identifying threats and collaborating with team members. These skills are vital for quickly detecting, analyzing, and responding to security incidents, ensuring organizational protection and learning in a high-stakes environment.

What kind of projects and hands-on tasks can I expect during an internship in a Security Operations Center (SOC)?

As an intern in a Security Operations Center, you can expect to work on tasks such as monitoring network activity for suspicious behavior, assisting with incident response, and helping to analyze security alerts. You'll likely gain exposure to security information and event management (SIEM) tools and collaborate closely with experienced analysts to learn industry best practices. Interns are often given real-world assignments, such as reviewing logs, participating in vulnerability assessments, and documenting security incidents, providing a solid foundation for a career in cybersecurity.

What is the difference between Internship Security Operations Center vs Security Analyst?

AspectInternship Security Operations CenterSecurity Analyst
CredentialsTypically pursuing or recent graduate, no formal certifications requiredOften holds certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentEntry-level, supervised, learning-focused in SOC environmentFull-time, responsible for monitoring and analyzing security threats
Employer & Industry UsageInternship programs in cybersecurity firms, IT departments, or security vendorsFull-time roles in various industries including finance, healthcare, and tech

In summary, an Internship Security Operations Center role is an entry-level, learning-focused position designed for students or recent graduates, whereas a Security Analyst is a full-time professional responsible for security monitoring and threat analysis, often requiring certifications and experience.

What are the most commonly searched types of Security Operations Center jobs in Winfield, IL? The most popular types of Security Operations Center jobs in Winfield, IL are:

Security Operations Center Analyst II (SOC Analyst II)

Old Second National Bank

Downers Grove, IL • On-site

Other

Posted 9 days ago


Old Second National Bank rating

6.7

Company rating: 6.7 out of 10

Based on 6 frontline employees who took The Breakroom Quiz

136th of 170 rated banks


Job description

Position Overview:

The Security Operations Center (SOC) Analyst supports the Information Security Program through security monitoring, incident response, threat intelligence, vulnerability management, user access governance, operational resilience activities, and administration of security technologies. The Analyst assists in protecting the confidentiality, integrity, and availability of Bank information assets through analysis, investigation, reporting, and remediation of cybersecurity events.

The SOC Analyst partners with Information Technology, Fraud, Risk Management, Vendor Management, Legal/Compliance, and business units to investigate incidents, support regulatory and audit activities, maintain operational readiness, and continuously improve the Bank's cybersecurity posture. Responsibilities and ownership vary by position level.

Security Operations Center Analyst - All Levels

Provides first response support by analyzing alerts and gathering information about potential incidents or vulnerabilities.

  • Conduct first-level triage of security events and incidents, including phishing attempts, malware detections, dark-web exposures, suspicious email activity, and security tool alerts.
  • Investigate suspicious emails identified through email security systems or reported by employees.
  • Administer Business Email Compromise (BEC) response activities, including quarantine actions, email release reviews, and coordination with Fraud and Information Technology teams.
  • Assess, prioritize, document, and escalate security alerts generated by security monitoring technologies according to established procedures and incident response playbooks.
  • Perform security event investigations utilizing SIEM, EDR, email security, threat intelligence, and other security monitoring platforms.
  • Document findings, collect evidence, and maintain incident records throughout the Incident Response Lifecycle.
  • Execute incident response procedures and playbooks for assigned events and assist with containment, eradication, and recovery activities.
  • Create remediation tickets and monitor assigned corrective actions through completion.
  • Monitor threat intelligence feeds, vulnerability disclosures, vendor security notifications, and emerging threats that may impact Bank operations.
  • Monitor external indicators including spoofed websites, brand abuse, leaked credentials, compromised vendors, and supply-chain cyber events.
  • Assist in the administration and maintenance of assigned Information Security technologies.
  • Compile and prepare operational metrics and reports related to incidents, phishing activity, vulnerabilities, patch status, security awareness activities, and other Information Security indicators.
  • Support user access review execution by collecting access materials, validating user and role information, identifying exceptions, and supporting remediation efforts.
  • Participate in Business Continuity Planning and operational resilience activities, including tabletop exercises, vendor outage scenarios, disaster recovery testing support, and lessons-learned documentation.
  • Participate in security reviews of new technologies and business solutions as assigned.
  • Support the collection of evidence and documentation required for audits, examinations, compliance reviews, and risk assessments.
  • Perform daily operational review activities and other Information Security monitoring tasks as assigned.

Additional Responsibilities for Security Operations Center Analyst - Level II

Provides second-level response support by analyzing complex security alerts, validating findings, coordinating escalations, and supporting containment, eradication, and recovery activities. The SOC Analyst II serves as a senior technical and operational security resource responsible for advanced investigations, SOC process improvement, security governance support, operational resilience activities, and continuous improvement of Security Operations processes. Responsibilities include, but are not limited to:

  • Lead or coordinate advanced security investigations and support escalation decisions for complex incidents, vulnerabilities, and threat activity.
  • Maintain, test, and improve incident response playbooks, runbooks, escalation procedures, and audit-ready evidence.
  • Serve as department lead for assigned incident response events and manage post-incident reviews with management.
  • Validate SOC metrics and provide management reporting related to phishing testing, security awareness training, incidents, vulnerabilities, and operational trends.
  • Develop, maintain, and distribute internal security awareness materials.
  • Conduct risk assessments to determine the impact, criticality, and remediation timelines for identified vulnerabilities.
  • Develop the quarterly Information Security trends newsletter and use relevant current events to support tabletop exercise planning.
  • Lead or coordinate assigned User Access Reviews, support Segregation of Duties and Password Complexity control assessments, maintain UAR evidence, and assist with audit-ready documentation and final review packages.
  • Lead assigned BCP/tabletop scenarios for SOC-managed platforms and ensure playbooks, escalation paths, alternate monitoring methods, and recovery procedures remain current.

Minimum Requirements 

Bachelor's degree in computer science, Engineering or Related Field (logic, philosophy, systemic theology or related discipline with ability to apply concepts to technology) and three or more years of experience in one or a combination of the following:  information security, compliance, operational risk management (includes audit, legal, credit risk, market risk, or the management of a process or business with accountability for compliance or operational risk); or equivalent combination of education and experience.

  • Relevant military experience, certification, or ability to clearly demonstrate competence through experience may substitute for education requirement.
  • Four years of related experience may substitute for the education requirement.

Competencies:

  • Strong problem-solving skills. Ideal candidate prefers to work on a series of short-duration complex problems (vs. a single problem over a long period.)
  • Excellent written and verbal communication skills
  • Strong project management, analytical skills and administrative skills
  • Excellent organizational skills, ability to multitask and demonstrate flexibility.
  • Demonstrates initiative and creativity in problem-solving; self-motivated/self-starter; works independently with minimal supervision; works well under pressure, develops strong relationships with subordinates, peers, and senior managers; demonstrates commitment and accountability.

Preferred, but not required

  • Information Security Certifications or pursuing certifications such as CISSP, CISM, CISA, CISSP, GAIC, CompTIA Security + etc.

Location Details 

This position is considered a hybrid role.  With management approval, an incumbent may work a combination of remote and onsite work to perform the regular responsibilities of the role.  Actual schedule requirements may vary based upon business needs.


Compensation & Benefits

Base pay:  $69,100 - $90,000 

Old Second is committed to fair and equitable pay practices.  Pay is dependent upon the pay range and the incumbent's knowledge, skills and experience. 

Benefits:  How We Support You - Old Second


What Old Second National Bank employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom