2

Remote Microsoft Security Operations Analyst Jobs in Baltimore, MD

... analytics for security operations * Experience with Elastic Security detection rules, alerts, and ... Remote : If this position is listed as remote, there may still be occasions when you are required ...

next page

Showing results 1-20

Remote Microsoft Security Operations Analyst information

See Baltimore, MD salary details

$17

$43

$60

How much do remote microsoft security operations analyst jobs pay per hour?

As of Aug 31, 2026, the average hourly pay for remote microsoft security operations analyst in Baltimore, MD is $43.86, according to ZipRecruiter salary data. Most workers in this role earn between $34.38 and $54.23 per hour, depending on experience, location, and employer.

What is a Remote Microsoft Security Operations Analyst?

A Remote Microsoft Security Operations Analyst is a cybersecurity professional who monitors, investigates, and responds to security threats and incidents within Microsoft environments, such as Microsoft 365, Azure, and Windows systems, while working remotely. They use various security tools and platforms, like Microsoft Sentinel and Defender, to detect suspicious activity, analyze alerts, and implement security measures. Their primary goal is to protect organizational data and systems from cyber threats by identifying vulnerabilities and addressing them promptly, all while collaborating with other IT and security teams from a remote location.

How does a Remote Microsoft Security Operations Analyst typically collaborate with other IT and security team members?

As a Remote Microsoft Security Operations Analyst, you will frequently work alongside IT administrators, incident response teams, and other security professionals to monitor, investigate, and respond to security threats. Collaboration often takes place through virtual meetings, shared dashboards, and ticketing systems to ensure timely communication and efficient incident handling. You may also participate in cross-functional projects, sharing insights from security monitoring tools like Microsoft Sentinel or Defender, and help develop or refine company-wide security policies and procedures. Effective communication and documentation skills are key to ensuring alignment and maintaining a strong security posture while working remotely.

What are the key skills and qualifications needed to thrive as a Remote Microsoft Security Operations Analyst, and why are they important?

To thrive as a Remote Microsoft Security Operations Analyst, you need strong knowledge of cybersecurity principles, threat detection, incident response, and familiarity with Microsoft security solutions, often supported by a relevant degree or certifications like Microsoft Certified: Security Operations Analyst Associate. Proficiency with tools such as Microsoft Sentinel, Defender for Endpoint, and Security Information and Event Management (SIEM) systems is essential. Excellent problem-solving, analytical thinking, and clear communication are crucial soft skills for investigating threats and collaborating with distributed teams. These skills ensure effective protection of organizational assets, quick response to security incidents, and seamless remote teamwork in a dynamic security environment.

What is the difference between Remote Microsoft Security Operations Analyst vs Remote Cybersecurity Analyst?

AspectRemote Microsoft Security Operations AnalystRemote Cybersecurity Analyst
CertificationsMicrosoft Security certifications, CompTIA Security+CompTIA Security+, CISSP, CEH
Work EnvironmentPrimarily within Microsoft security tools and cloud platformsVaried environments, including multiple security tools and platforms
Industry UsageCommon in organizations using Microsoft products and cloud servicesWidespread across industries with diverse security needs
Job FocusMonitoring Microsoft security solutions, incident response, threat detectionBroader security analysis, vulnerability assessment, incident handling

The Remote Microsoft Security Operations Analyst specializes in managing Microsoft security tools and cloud environments, focusing on threat detection and incident response within Microsoft ecosystems. In contrast, the Remote Cybersecurity Analyst has a broader scope, working across various security platforms and industries. Both roles require security certifications but differ in their technical focus and work environment.

Can you work remotely as a Microsoft Security Operations Analyst?

Yes, many Microsoft Security Operations Analyst roles are available as remote positions, allowing analysts to monitor security alerts, investigate threats, and manage security tools from home. Employers often require familiarity with cloud security platforms like Microsoft Defender and remote collaboration tools. Remote work arrangements depend on the company's policies and the specific role's requirements.

What are the most commonly searched types of Microsoft Security Operations Analyst jobs in Baltimore, MD?

The most popular types of Microsoft Security Operations Analyst jobs in Baltimore, MD are:

What are popular job titles related to Remote Microsoft Security Operations Analyst jobs in Baltimore, MD?

For Remote Microsoft Security Operations Analyst jobs in Baltimore, MD, the most frequently searched job titles are:

What job categories do people searching Remote Microsoft Security Operations Analyst jobs in Baltimore, MD look for?

The top searched job categories for Remote Microsoft Security Operations Analyst jobs in Baltimore, MD are:

What cities near Baltimore, MD are hiring for Remote Microsoft Security Operations Analyst jobs?

Cities near Baltimore, MD with the most Remote Microsoft Security Operations Analyst job openings:

Infographic showing various Remote Microsoft Security Operations Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 83% Full Time, 13% Part Time, 1% Temporary, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $91,237 per year, or $43.9 per hour.

Security Operations Center Analyst

Annapolis Junction, MD โ€ข On-site, Remote

$57.69 - $67.30/hr

Other

Posted 18 days ago


Job description

Job Title
Security Operations Center Analyst
Overview
EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control environments to preserve continuity and ensure mission success.
EverWatch employees are focused on tackling the most difficult challenges of the US Government. We offer the best salaries and benefits packages in our industry - to identify and retain the top talent in support of our critical mission objectives.
Commitment to Non-Discrimination:
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Responsibilities
Are you ready to take a strategic role in cyber defense for U.S Cyber Command? Do you want to use your experience-based knowledge to protect critical warfighter infrastructure from the constant onslaught of cyber threats? If you want a position that uses your extensive threat analysis skills to perform advanced threat identification and complex incident response, you want to be a SOC analyst. As an analyst on our SOC team, you'll analyze logs, forensic data, and threat intelligence to find the advanced threats that are escaping detection. Using your deep understanding of your customer's networks, combined with your cybersecurity experience, you'll analyze patterns to understand attackers' goals and stop them from succeeding. Once you find the adversary in the SEIM's blind spot, you'll advise on ways to close the gaps and harden their network. Let's outsmart malicious actors and protect U.S. Cyber Command.
Join us. The world can't wait.
Qualifications
You Have:
  • Experience with SIEM Fundamentals, including Splunk
  • Knowledge of basic networking fundamentals
  • Knowledge of the basic functions and configurations of Bro (Zeek)
  • Knowledge of Suricata or Snort
  • Ability to review Nessus scans and Firewall configurations
  • Ability to review Linux hosts for indicators of compromise and hardening of Linux systems
  • Ability to navigate *nix based systems via CLI
  • Ability to find, read, and analyze various logs
  • TS/SCI clearance with a polygraph
  • HS diploma or GED and 6+ years of experience with incident response procedures and analysis, or Bachelor's degree and 2+ years of experience with incident response procedures and analysis

Nice If You Have:
  • Experience with correlating threat intelligence (INTEL) to determine the threat actor, the attack's scope, and the affected systems
  • Experience with AI Fundamentals
  • Knowledge of Splunk Phantom or SOAR

Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance with polygraph is required.
Compensation at EverWatch is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $57.69 to $67.30 per hour. The estimate displayed represents the typical compensation range for this position and is just one component of EverWatch's total compensation package for employees.
Job Locations
US-MD-Annapolis Junction
Skills
cyber threat, SIEM, Networking, suricata, snort, Linux, *nix