1

Level 2 Soc Analyst Jobs (NOW HIRING)

They are seeking a SOC Tier 2 Analyst to support security operations by investigating escalated alerts, coordinating incident responses, and improving detection processes. Responsibilities : • ...

Candidate must have a minimum of 2-4 years of experience as an analyst in a SOC or similar environment. * Working knowledge of SOC tools and their usage for detecting intrusion attempts.

SOC Analyst

Buffalo, NY · On-site +1

$68K - $80K/yr

We are in search of a talented SOC Analyst to join Cegeka's Modern SOC As SOC Analyst you are a key ... Security related certifications (such as GIAC, CompTIA, CEH, Blue Team Level 1/2) are a plus. * You ...

SOC Analyst

Buffalo, NY · On-site +1

$68K - $85K/yr

We are in search of a talented SOC Analyst to join Cegeka's Modern SOC As SOC Analyst you are a key ... Security related certifications (such as GIAC, CompTIA, CEH, Blue Team Level 1/2) are a plus. * You ...

The Tier 3 SOC Analyst serves as an escalation point for Tier 1 and Tier 2 Analysts within the SOC and provides advanced analytical and investigation support for complex incidents to assist in ...

SOC Analyst Phoenix Cyber is looking for SOC Analysts to join our client delivery team. This is ... Two (2) years' experience in security * Experience in handling incident response * Certified ...

The Tier 3 SOC Analyst serves as an escalation point for Tier 1 and Tier 2 Analysts within the SOC and provides advanced analytical and investigation support for complex incidents to assist in ...

Work closely with SOC Analysts II, SecurityEngineers, and IT teams to support investigations and strengthenoverall security posture. Own the remediation lifecycle for identified vulnerabilities ...

Work closely with SOC Analysts II, Security Engineers, and IT teams to support investigations and strengthen overall security posture. Own the remediation lifecycle for identified vulnerabilities ...

SOC Analyst

Dallas, TX · On-site

$45/hr

SOC Analyst ( L2 and L3 ) Location ... Dallas, TX (Onsite position) Contract: 6+ months & extendable L2 level (4+ years experience) Pay ...

Work closely with SOC Analysts II, SecurityEngineers, and IT teams to support investigations and strengthenoverall security posture. Own the remediation lifecycle for identified vulnerabilities ...

The SOC Analyst will play a critical role in monitoring, analyzing, and responding to security ... Ability to conduct in-depth research and provide thorough documentation 0-2 years Bachelor's Degree ...

SOC Analyst **Hybrid- 2 days a week in Bethesda, MD** **U.S. Citizenship Required** The Security ... level antivirus solutions/systems, VPN technologies and encryption standards Strong understanding ...

SOC Tier 3 Analyst

Portland, OR · On-site

$88K - $104K/yr

Review and resolve escalated findings from SOC Analyst 1 and SOC Analyst 2, including disputed severity, inconclusive evidence, or multi-source correlation challenges. * Provide technical facts, risk ...

SOC Analyst **Hybrid- 2 days a week in Bethesda, MD** **U.S. Citizenship Required** The Security ... level antivirus solutions/systems, VPN technologies and encryption standards Strong understanding ...

SOC Analyst T1

AL · On-site +1

$65K - $80K/yr

Blue Team Security Level 1 Certification * Proficient in a python or PowerShell * EC-Council Certified SOC Analyst (CSA) * Microsoft SC 200 * MS or AZ 500 * Experience with Microsoft Sentinel ...

SOC Analyst

Buffalo, NY · Remote

$68K - $85K/yr

We are in search of a talented SOC Analyst to join Cegeka's Modern SOC As SOC Analyst you are a key ... Security related certifications (such as GIAC, CompTIA, CEH, Blue Team Level 1/2) are a plus. * You ...

next page

Showing results 1-20

Level 2 Soc Analyst information

See salary details

$33K

$76.3K

$124K

How much do level 2 soc analyst jobs pay per year?

As of Jun 14, 2026, the average yearly pay for level 2 soc analyst in the United States is $76,273.00, according to ZipRecruiter salary data. Most workers in this role earn between $57,500.00 and $90,000.00 per year, depending on experience, location, and employer.

What is the difference between Level 2 Soc Analyst vs Level 1 Soc Analyst?

AspectLevel 2 Soc AnalystLevel 1 Soc Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+ or equivalent
Work EnvironmentAdvanced security operations center, handling complex incidentsEntry-level monitoring and alert analysis
ResponsibilitiesAnalyzing security alerts, escalating incidents, and providing guidanceMonitoring alerts, initial triage, and basic incident response

The main difference between a Level 2 Soc Analyst and a Level 1 Soc Analyst lies in experience, responsibilities, and complexity of tasks. Level 2 analysts handle more complex security incidents, perform detailed analysis, and often guide Level 1 analysts. They typically hold additional certifications and have a deeper understanding of security tools and procedures.

What are the key skills and qualifications needed to thrive as a Level 2 SOC Analyst, and why are they important?

To thrive as a Level 2 SOC Analyst, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with incident detection and response, typically supported by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM platforms (such as Splunk or QRadar), intrusion detection systems, and ticketing tools is crucial for efficient threat monitoring and investigation. Attention to detail, problem-solving abilities, and effective communication are essential soft skills for collaborating with IT teams and escalating security incidents. These skills ensure timely identification, analysis, and mitigation of security threats to protect organizational assets.

What are the main challenges Level 2 SOC Analysts face when prioritizing and escalating security incidents?

Level 2 SOC Analysts often encounter challenges in differentiating between true security threats and benign anomalies, especially when dealing with high volumes of alerts. Prioritizing incidents requires strong analytical skills and a deep understanding of the organization’s environment to assess potential impact. Effective escalation involves clear communication with both internal teams and external stakeholders, ensuring that critical incidents are addressed promptly while minimizing false positives. Continuous learning and situational awareness are key to managing these responsibilities efficiently.

What are Level 2 SOC Analysts?

Level 2 SOC Analysts are cybersecurity professionals who monitor, analyze, and respond to security incidents within an organization's Security Operations Center (SOC). They handle more complex threats and escalated incidents that require deeper investigation compared to entry-level analysts. Their responsibilities include performing in-depth analysis of security alerts, conducting root cause investigations, and coordinating with other teams to remediate threats. Level 2 analysts also support continuous improvement of security monitoring processes and may mentor junior analysts.

How much does a L2 SOC analyst make?

A Level 2 SOC analyst typically earns between $60,000 and $90,000 annually, depending on experience, certifications, and location. They often work with security tools like SIEM platforms and require strong analytical skills to monitor and respond to security incidents.

What is a level 2 SOC analyst?

A Level 2 SOC analyst is a cybersecurity professional responsible for monitoring security alerts, analyzing threats, and responding to incidents within a Security Operations Center. They typically use security tools like SIEM systems and have skills in threat detection, incident response, and basic forensic analysis. This role often requires experience with security protocols and may involve working in shifts to ensure 24/7 coverage.

What jobs in the US pay 300,000 a year?

For a Level 2 SOC Analyst, earning $300,000 annually is uncommon; such salaries are typically associated with executive roles or specialized positions in cybersecurity, finance, or technology sectors. High-paying cybersecurity roles often require extensive experience, advanced certifications, and leadership responsibilities, and salaries can vary based on location and organization size.

Can you make $500,000 a year in cyber security?

A Level 2 SOC Analyst typically earns between $60,000 and $100,000 annually, depending on experience and location. Reaching a $500,000 salary usually requires advanced roles such as senior security managers, architects, or executives, often combined with bonuses, stock options, or consulting work. High salaries in cybersecurity generally involve specialized skills, certifications, and leadership responsibilities.
More about Level 2 Soc Analyst jobs
What cities are hiring for Level 2 Soc Analyst jobs? Cities with the most Level 2 Soc Analyst job openings:
What states have the most Level 2 Soc Analyst jobs? States with the most job openings for Level 2 Soc Analyst jobs include:
SOC Tier 2 Analyst

SOC Tier 2 Analyst

ECS

Portland, OR • On-site

Full-time

Posted 25 days ago


Job description

Job Summary:
Everforth ECS is a global organization specializing in advanced technology solutions including cybersecurity. They are seeking a SOC Tier 2 Analyst to support security operations by investigating escalated alerts, coordinating incident responses, and improving detection processes.
Responsibilities:
• Review and investigate alerts escalated by SOC Analyst 1 or automated SOC workflows to validate severity, scope, potential impact, and required response actions.
• Analyze suspicious activity, indicators of compromise, anomalous behavior, and policy violations using logs, endpoint telemetry, network data, identity data, cloud events, and other evidence.
• Correlate evidence across security platforms to identify affected assets, affected accounts, attack paths, timeline of activity, and potential business or mission impact.
• Map observed behaviors to applicable frameworks and threat models such as MITRE ATT&CK when useful for investigation, reporting, or detection improvement.
• Support containment, eradication, and recovery activities for standard or moderate incidents in alignment with incident response plans and approved playbooks.
• Coordinate with system owners, security engineers, senior analysts, and other technical teams to gather evidence, validate impact, and support response actions.
• Escalate complex, high-impact, evidence-sensitive, or ambiguous incidents to SOC Analyst 3, SOC leadership, Forensics, Threat Hunter, Threat Intelligence Analyst, or other specialized roles as appropriate.
• Maintain accurate incident status, action tracking, and communications during investigation and response activities.
• Analyze recurring alerts, false positives, attack patterns, threat intelligence, vulnerabilities, and emerging tactics to identify opportunities to improve detection and response.
• Recommend updates to correlation rules, alert logic, dashboards, use cases, response playbooks, and triage procedures based on investigation outcomes.
• Operationalize threat intelligence in triage and investigation workflows by applying relevant indicators, adversary behaviors, vulnerabilities, and contextual reporting.
• Provide operational requirements and validation feedback to SOC Analyst 3, SOC Threat Hunter, Senior Splunk Engineer, Splunk Architect/Lead, Security Engineer, and SOC Technical Writer as appropriate.
• Document investigation activities, evidence, decisions, response actions, and outcomes clearly and accurately.
• Prepare incident summaries, ticket updates, timelines, shift handoff notes, and supporting information for after-action documentation.
• Communicate technical findings in clear operational, business, and risk language for SOC leadership and affected stakeholders.
• Provide evidence summaries and analysis notes that can be used by Forensics or specialized teams when deeper analysis is required.
• Provide escalation guidance, quality feedback, and informal mentoring to SOC Analyst 1 personnel.
• Participate in lessons-learned activities, tabletop exercises, detection reviews, and SOC process improvement efforts.
• Stay current with evolving cyber threats, vulnerabilities, detection techniques, and security operations best practices.
• Contribute to continuous improvement of SOC workflows, investigation checklists, documentation practices, and escalation procedures.
Qualifications:
Required:
• U.S. Citizenship with ability to obtain and maintain a DOE “L” clearance after start.
• 3-5 years of experience in SOC operations, incident response, security monitoring, threat monitoring, or related technical cybersecurity roles.
• Experience triaging escalated alerts and investigating security events using SIEM, EDR, ticketing, case management, and log analysis tools.
• Intermediate knowledge of Windows, Linux, networking, cloud, identity, endpoint, and application security concepts.
• Working knowledge of common attack techniques, incident response lifecycle activities, escalation procedures, playbooks, and evidence-handling practices.
• Ability to correlate evidence across multiple tools, develop incident timelines, and determine recommended response actions.
• Strong analytical, written documentation, communication, and collaboration skills, including the ability to guide SOC Analyst 1 personnel.
Preferred:
• Experience working in a 24x7 SOC, managed security operations environment, government program, or regulated organization.
• Familiarity with frameworks and guidance such as MITRE ATT&CK, NIST CSF, NIST SP 800-61, CIS Controls, or Cyber Kill Chain.
• Experience with tools such as Splunk, Microsoft Sentinel, QRadar, CrowdStrike, Microsoft Defender, Palo Alto, SOAR platforms, or similar technologies.
• Certifications such as Security+, CySA+, GCIH, GCIA, CEH, SSCP, or equivalent experience.
• Experience contributing to detection tuning recommendations, response playbook updates, tabletop exercises, or lessons-learned activities.
• Experience coordinating with threat intelligence, threat hunting, forensics, Splunk engineering, security engineering, or incident response teams.
Company:
Everforth ECS is the federal segment of Everforth, a $4B global organization with over 10,000 employees. Founded in 2001, the company is headquartered in Fairfax, USA, with a team of 1001-5000 employees. The company is currently Late Stage.