1

Overnight Security Operations Center Jobs (NOW HIRING)

Everforth ECS is seeking a Security Operations Center Analyst to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax . Please Note: This position is contingent upon ...

Security Operations Center Operator

Normal, IL ยท On-site

$17.50 - $21.75/hr

The Security Operations Center (SOC) is the centralized hub which manages the security and safety issues at our client's facilities. We provide outstanding customer service to all calling parties ...

Security Operations Center Operator

Normal, IL ยท On-site

$17.50 - $21.75/hr

The Security Operations Center (SOC) is the centralized hub which manages the security and safety issues at our client's facilities. We provide outstanding customer service to all calling parties ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

The Security Operations Center (SOC) Operator is a highly visible, dual-function role responsible for maintaining situational awareness for all protected assets, including personnel, facilities, and ...

SECURITY OPERATIONS CENTER OPERATOR

Baltimore, MD ยท On-site

$18 - $22/hr

Baltimore, MD 21220 Job Title: IT PROFESSIONAL - SECURITY OPERATIONS CENTER OPERATOR ACCOUNTABILITIES: -Monitor and remediate intrusion detection alarms -Answer, prioritize, and respond to telephonic ...

next page

Showing results 1-20

Overnight Security Operations Center information

See salary details

$7

$19

$28

How much do overnight security operations center jobs pay per hour?

As of Jun 30, 2026, the average hourly pay for overnight security operations center in the United States is $19.83, according to ZipRecruiter salary data. Most workers in this role earn between $17.31 and $21.39 per hour, depending on experience, location, and employer.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role can be entry-level, especially for positions that focus on monitoring security alerts and basic incident response. However, more advanced SOC roles typically require prior experience, technical skills, or certifications such as CompTIA Security+ or Certified SOC Analyst (CSA). Entry-level positions often serve as a starting point for careers in cybersecurity and may involve on-the-job training.

What jobs make 10,000 a month without a degree?

Jobs in the security operations field, such as experienced security analysts or cybersecurity specialists, can sometimes reach $10,000 per month with extensive experience and certifications like CISSP or CEH. High-paying roles often require specialized skills, on-the-job training, and a strong understanding of security tools and protocols, rather than formal degrees.

What is the difference between Overnight Security Operations Center vs Security Guard?

AspectOvernight Security Operations CenterSecurity Guard
CredentialsSecurity certifications, monitoring trainingSecurity guard license, basic training
Work EnvironmentControl room, monitoring center, 24/7 shiftsOn-site patrols, access control, physical presence
Employer & IndustrySecurity firms, corporate security, government agenciesPrivate companies, retail, industrial sites

While both roles focus on security, the Overnight Security Operations Center involves monitoring and managing security systems remotely, often during night shifts, requiring specialized certifications. In contrast, Security Guards provide physical security through patrols and access control on-site. Understanding these differences helps employers and job seekers find the right fit for their skills and career goals.

What jobs pay $2000 a day?

Jobs in the Overnight Security Operations Center typically do not pay $2000 a day; such high daily rates are usually associated with specialized roles like high-level consultants, executive security contractors, or certain freelance security experts. These positions often require extensive experience, certifications, and sometimes involve project-based or contract work with high compensation rates.

How to get into overnight security?

To pursue an overnight security operations center role, candidates typically need a high school diploma or equivalent, relevant security certifications such as CompTIA Security+ or CISSP, and experience with security tools like intrusion detection systems. Strong observational skills, attention to detail, and the ability to work overnight shifts are essential. Prior experience in security or law enforcement can also be beneficial.
What cities are hiring for Overnight Security Operations Center jobs? Cities with the most Overnight Security Operations Center job openings:
What are the most commonly searched types of Security Operations Center jobs? The most popular types of Security Operations Center jobs are:
What states have the most Overnight Security Operations Center jobs? States with the most job openings for Overnight Security Operations Center jobs include:
Security Operations Center Analyst

Security Operations Center Analyst

ECS

Falls Church, VA โ€ข On-site

Full-time

Posted yesterday


Key responsibilities

  • Executes continuous security monitoring operations across classified and unclassified DoW networks, supporting mission systems operating on NIPRNet, SIPRNet, and JWICS.

  • Analyzes security events generated by enterprise Security Information and Event Management platforms including Splunk and Elastic, correlating host, network, and application telemetry to identify anomalous activity and potential adversary behavior.

  • Conducts structured incident investigations using established incident response playbooks aligned to DoW Cyber Incident Handling Program guidance, documenting findings within ServiceNow and SharePoint tracking repositories.


Job description

Everforth ECS is seeking a Security Operations Center Analyst to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. Please Note: This position is contingent upon contract award.
The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI-First strategy introduced in early 2026. The WDP separates business and financial data from operational warfighting data, aiming to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts.
The Security Operations Center Analyst supports WDP's 24/7 continuous monitoring mission by performing structured threat detection, incident investigation, and response operations across NIPRNet, SIPRNet, and JWICS. This role operates within an integrated SOC environment leveraging Splunk SIEM, SOAR-driven automation, and AI-assisted triage capabilities to identify adversary behavior, contain incidents, and sustain cyber defense resilience across WDP's classified and unclassified mission enclaves.
โ€ข Executes continuous security monitoring operations across classified and unclassified DoW networks, supporting mission systems operating on NIPRNet, SIPRNet, and JWICS.
โ€ข Analyzes security events generated by enterprise Security Information and Event Management platforms including Splunk and Elastic, correlating host, network, and application telemetry to identify anomalous activity and potential adversary behavior.
โ€ข Conducts structured incident investigations using established incident response playbooks aligned to DoW Cyber Incident Handling Program guidance, documenting findings within ServiceNow and SharePoint tracking repositories.
โ€ข Performs proactive threat hunting activities leveraging MITRE ATT&CK mappings, endpoint telemetry, network flow data, and log analytics to detect previously unidentified threats.
โ€ข Coordinates containment and remediation actions with system administrators, ISSOs, and vulnerability management teams, supporting rapid mitigation of malware, unauthorized access, and policy violations.
โ€ข Maintains detailed incident records, forensic timelines, and evidentiary artifacts supporting after-action reporting and continuous monitoring requirements under the Risk Management Framework.
โ€ข Tunes detection logic, refines correlation rules, and contributes to improvement of SOC use cases to reduce false positives and increase detection fidelity.
โ€ข Provides technical mentorship to junior analysts through peer review of investigations and collaborative shift handovers.
โ€ข Delivers operational reporting products including incident summaries, alert trend analysis, and threat activity assessments supporting operational readiness, cyber defense resilience, and mission assurance across combat support and intelligence environments.
โ€ข Performs other duties as assigned.
โ€ข Current Secret security clearance with the ability to obtain and maintain a Top Secret (TS) security clearance.
โ€ข A minimum of 3 years of experience in security operations, cyber threat analysis, or incident response within a federal, defense, or intelligence community environment, with demonstrated hands-on proficiency performing continuous monitoring and structured incident investigations using enterprise SIEM platforms such as Splunk or Elastic across multi-enclave network environments.
โ€ข Active IAM Level I certification, satisfied by one of the following: CompTIA Security+ CE, ISCยฒ CAP, ISCยฒ SSCP, or GIAC GSLC.
โ€ข Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
โ€ข Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).