1

Level 2 Soc Analyst Jobs (NOW HIRING)

SOC Analyst II

Monterey, CA · On-site

$39 - $44/hr

As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations ... Handle other tasks that tier II level of experience and talent can complete. * Design incident ...

... national-level financial, and personally identifiable information (PII). You will be at the ... Mentor and provide technical guidance to Tier I and Tier II SOC analysts, supporting their ...

As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations ... Handle other tasks that tier II level of experience and talent can complete. * Design incident ...

SOC Analyst

Alexandria, VA · On-site

$150K - $165K/yr

The SOC Analyst will be responsible for monitoring, analyzing, investigating, and responding to ... DoD 8570 IAT Level II (or higher) certification prior to start date (CompTIA Security+, SSCP, etc.

SOC Analyst 2 Location: Harrisburg PA (Onsite Only Role) We are seeking an experienced SOC Analyst 2 to support Security Operations Center (SOC) activities and help protect the confidentiality ...

SOC Analyst (Tenable) Consultant REMOTE 2-months plus Participate in a deployment project. The client needs someone comfortable deploying, and certifying agents. Must be able and effective with ...

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CompTIA CySA+ certification/ or a CompTIA Security+ (or other relevant IAT Level II/III ...

SOC Analyst

Crownsville, MD · On-site

$84K/yr

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CompTIA CySA+ certification/ or a CompTIA Security+ (or other relevant IAT Level II/III ...

SOC Analyst (Tenable) Consultant REMOTE 2-months plus Participate in a deployment project. The client needs someone comfortable deploying, and certifying agents. Must be able and effective with ...

The SOC Analyst executes and helps to create operational processes for consistent monitoring of ... CompTIA CySA+ certification/ or a CompTIA Security+ (or other relevant IAT Level II/III ...

Showing results 41-60

Level 2 Soc Analyst information

See salary details

$33K

$76.3K

$124K

How much do level 2 soc analyst jobs pay per year?

As of Sep 5, 2026, the average yearly pay for level 2 soc analyst in the United States is $76,273.00, according to ZipRecruiter salary data. Most workers in this role earn between $57,500.00 and $90,000.00 per year, depending on experience, location, and employer.

What is a Level 2 SOC analyst?

Level 2 SOC Analysts are cybersecurity professionals who monitor, analyze, and respond to security incidents within an organization's Security Operations Center (SOC). They handle more complex threats and escalated incidents that require deeper investigation compared to entry-level analysts. Their responsibilities include performing in-depth analysis of security alerts, conducting root cause investigations, and coordinating with other teams to remediate threats. Level 2 analysts also support continuous improvement of security monitoring processes and may mentor junior analysts.

What are the key skills and qualifications needed to thrive as a Level 2 SOC analyst?

To thrive as a Level 2 SOC Analyst, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with incident detection and response, typically supported by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM platforms (such as Splunk or QRadar), intrusion detection systems, and ticketing tools is crucial for efficient threat monitoring and investigation. Attention to detail, problem-solving abilities, and effective communication are essential soft skills for collaborating with IT teams and escalating security incidents. These skills ensure timely identification, analysis, and mitigation of security threats to protect organizational assets.

What are the main challenges Level 2 SOC analysts face when prioritizing and escalating security incidents?

Level 2 SOC Analysts often encounter challenges in differentiating between true security threats and benign anomalies, especially when dealing with high volumes of alerts. Prioritizing incidents requires strong analytical skills and a deep understanding of the organization’s environment to assess potential impact. Effective escalation involves clear communication with both internal teams and external stakeholders, ensuring that critical incidents are addressed promptly while minimizing false positives. Continuous learning and situational awareness are key to managing these responsibilities efficiently.

What is the difference between Level 2 Soc Analyst vs Level 1 Soc Analyst?

AspectLevel 2 Soc AnalystLevel 1 Soc Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+ or equivalent
Work EnvironmentAdvanced security operations center, handling complex incidentsEntry-level monitoring and alert analysis
ResponsibilitiesAnalyzing security alerts, escalating incidents, and providing guidanceMonitoring alerts, initial triage, and basic incident response

The main difference between a Level 2 Soc Analyst and a Level 1 Soc Analyst lies in experience, responsibilities, and complexity of tasks. Level 2 analysts handle more complex security incidents, perform detailed analysis, and often guide Level 1 analysts. They typically hold additional certifications and have a deeper understanding of security tools and procedures.

More about Level 2 Soc Analyst jobs

What cities are hiring for Level 2 Soc Analyst jobs?

Cities with the most Level 2 Soc Analyst job openings:

What states have the most Level 2 Soc Analyst jobs?

States with the most job openings for Level 2 Soc Analyst jobs include:

What job categories do people searching Level 2 Soc Analyst jobs look for?

The top searched job categories for Level 2 Soc Analyst jobs are:

Infographic showing various Level 2 Soc Analyst job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, and 5% Contract. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution, with an average salary of $76,273 per year, or $36.7 per hour.

$39 - $44/hr

Full-time

Medical, Retirement, PTO

Re-posted 28 days ago


Key responsibilities

  • Provide tier II cybersecurity support in a Security Operations Center environment, including monitoring, analyzing threats, and conducting vulnerability assessments.

  • Lead incidents from alert to resolution by leveraging threat intelligence, reviewing asset data, and coordinating remediation efforts.

  • Review and create incident reports, manage security monitoring tools, and assist with updating incident response procedures.


Job description

Overview
Now Hiring at AMERICAN SYSTEMS
Epsilon, Inc. has joined AMERICAN SYSTEMS! As one organization, we offer expanded resources, streamlined operations, and increased opportunities for growth and development.
Join us to be part of a dynamic, collaborative environment dedicated to innovation and customer success.
Responsibilities
An Average Day:
As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations Center "SOC" environment. Daily responsibilities of the SOC are ever changing, however, you can expect to regularly conduct vulnerability assessments, analyze cyber threats, monitor the email gateway and create reports on all confirmed or suspicious activities. You will work closely with the Tier I and other Tier II personnel to effectively and efficiently provide optimum service to our customers as well as assist with training SOC Analyst I team members when needed. Additionally, in this position you will:
  • Use intrusion detection technologies to apply techniques for identifying host and network-based intrusions.
  • Create, update, and resolve incident tickets that have been tasked to Tier II and appropriately document all alerts and incidents in the ticketing system.
  • Review asset discovery and vulnerability assessment data.
  • Lead incidents from alert to resolution:
    • Leverage emerging threat intelligence (Indicators of Compromise, updated rules, etc.) to identify affected systems and the scope of the attack.
    • Review and collect asset data (logs, configurations, running processes, ) on these systems for further investigation.
    • Determine and direct remediation and recovery efforts including tasking of IHT1 as needed.
    • Determine and request engineering, forensics, or threat intelligencesupport.
    • Inform and brief status of incidents to CSOC manager, CISO, DCIO, or CIO.
  • May manage and configure security monitoring tools (SIEM, IDS, Firewall, Access Control Lists, etc.) to mitigate existing threats / vulnerabilities.
  • Interface and take guidance from the CSOC manager (government position).
  • Review trouble tickets generated by Tier 1.
  • Review threat intel and create notifications and share with specified personnel.
  • Handle other tasks that tier II level of experience and talent can complete.
  • Design incident response for cloud service models.
  • Perform damage assessments.
  • Preserve evidence integrity according to standard operating procedures or national standards.
  • Protect networks against (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
  • Recognize and categorize types of vulnerabilities and associated attacks.
  • Secure network communications.
  • Use security event correlation Tools.
  • Identify, capture, contain, and report malware.
  • Utilize the SOC standard operating procedures (SOP) to perform daily tasks, resolve incidents and preserve evidence integrity. May provide input for and assist with updating procedures.

Qualifications
  • As a requirement of this position, all candidates must be a U.S. Citizen in accordance with 8 U.S.C. 1324b(a)(2)(C).
  • Must hold an active Dept. of War Top Secret Clearance.
  • At least three (3) years of professional experience in incident detection and response, malware analysis, or cyber forensics and a bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field.
  • Hold at least one certification as required by DoD 8570.01-M and DoD Directive 8140.01, IAT Level II or higher.
  • Must hold at least one of the following additional certifications: CompTIA CASP+, GIAC GCIH, Microsoft AZ-500, Microsoft SC-200, Splunk Core Certified Advanced Power User
  • Must have extensive experience working with various security methodologies, standard operating procedures, processes, and workflows. Experience configuring and implementing various technical security solutions, extensive experience providing analysis and trending of security log data from a large number of heterogeneous security devices.
  • Experience with some or all of the following is required:
    • Computer networking concepts, OSI model, and network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services, and network security
    • Host/network access control mechanisms (e.g., access control list, capabilities lists).
    • network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
    • Network traffic analysis methods and packet-level
    • Cyber threats and vulnerabilities; cyber-attack stages, classes of attacks and attackers; cyber defense and information security policies, procedures, and
    • Incident response and handling methodologies, incident categories, and timelines for
    • Intrusion detection methodologies and techniques for detecting host and network-based intrusions.
    • Malware analysis concepts and
    • cloud service models and how those models can limit incident
    • Application Security Risks (e.g. Open Web Application Security Project Top 10 list)
    • System administration, network, and operating system hardening techniques as well as data backup and
    • System and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Experience with the following: JIRA (Atlassian issue tracking system), Palo Alto Firewall, SNORT IDS, AlienVault SIEM, Barracuda Mail Spam / Virus Firewall, and HBSS.
  • This team operates in a 24/7 shift environment. 1st, 2nd and 3rd shifts run Monday - Thursday or Friday - Monday, are 10 hours per day and rotate every 3 months.

Pay Transparency Statement
AMERICAN SYSTEMS is committed to pay transparency for our applicants and employee-owners. The salary range for this position is USD $39.00/Hr. - USD $44/Hr. Actual compensation will be determined based on several factors permitted by law. AMERICAN SYSTEMS provides for the welfare of its employees and their dependents through a comprehensive benefits program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and education and training assistance.
EEO Statement
EEO Race/Sex/Disability Status/Veteran Status