1

Secops Analyst Jobs (NOW HIRING)

As a SecOps Analyst at Saronic, you'll be on the front line of our detection and response operations, triaging and investigating security alerts across endpoint, cloud, identity, network, and SaaS ...

ServiceNow SecOps Developer

Chicago, IL ยท On-site

$55.75 - $76.50/hr

Strong analytical, troubleshooting, and problem-solving skills. * Ability to work effectively with ... SecOps Preferred Certifications * ServiceNow Certified Implementation Specialist - Vulnerability ...

ServiceNow SecOps Architect

Richardson, TX ยท On-site

$30K - $30K/yr

Role Summary We are seeking an experienced ServiceNow SecOps Senior Developer to lead the design ... analytical, troubleshooting, and problem-solving skills. ยท Ability to work effectively with ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

ServiceNow GRC/SecOps Specilist

Austin, TX ยท On-site

$33K - $33K/yr

Specialize in ServiceNow Governance, Risk, and Compliance (GRC) or ServiceNow SecOps product suite ... Excellent verbal/written communication, problem solving, analytical, and independent judgment ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

ServiceNow SecOps Sr. Developer

Phoenix, AZ ยท On-site

$53.50 - $73.75/hr

Hiring Alert | ServiceNow SecOps Sr. Developer - Security Operations & Vulnerability Response ... Custom Dashboards, Reports & Performance Analytics * Security & Vulnerability KPI Monitoring ...

Performance Analytics, Dashboards & Security KPIs * SOC Operations & Incident Response Frameworks ... SecOps governance standards and architecture design patterns * Risk scoring, prioritization models ...

ServiceNow GRC/SecOps Specilist

Dallas, TX ยท On-site

$33K - $33K/yr

Specialize in ServiceNow Governance, Risk, and Compliance (GRC) or ServiceNow SecOps product suite ... Excellent verbal/written communication, problem solving, analytical, and independent judgment ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Showing results 21-40

Secops Analyst information

What is a SecOps analyst?

A SecOps Analyst, short for Security Operations Analyst, is a professional responsible for monitoring, detecting, and responding to security threats within an organization's IT environment. They analyze security incidents, investigate alerts, and help implement measures to protect data and systems from cyberattacks. SecOps Analysts often work closely with IT and security teams to ensure that security policies and procedures are followed, and they use a variety of tools to identify vulnerabilities or suspicious activities. Their work is crucial for maintaining an organization's cybersecurity posture and minimizing risks.

What are the key skills and qualifications needed to thrive as a SecOps analyst, and why are they important?

To thrive as a SecOps Analyst, you need strong knowledge of cybersecurity principles, incident response, and network security, often supported by a degree in computer science or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications like CompTIA Security+ or CISSP are typically required. Analytical thinking, attention to detail, and effective communication help analysts identify threats and collaborate across teams. These skills are crucial for proactively protecting organizational assets and ensuring swift, coordinated responses to security incidents.

What are the most common challenges faced by a SecOps analyst in a fast-paced organization?

SecOps Analysts in fast-paced environments often encounter challenges such as managing a high volume of security alerts, prioritizing incidents effectively, and keeping up with rapidly evolving threats. Collaboration with IT, development, and compliance teams is essential to ensure timely incident response and maintain security best practices. Staying updated with the latest security tools and maintaining clear communication under pressure are key to success in this dynamic role.

What cities are hiring for Secops Analyst jobs?

Cities with the most Secops Analyst job openings:

What states have the most Secops Analyst jobs?

States with the most job openings for Secops Analyst jobs include:

What are popular job titles related to Secops Analyst jobs?

For Secops Analyst jobs, the most frequently searched job titles are:

Infographic showing various Secops Analyst job openings in the United States as of August 2026, with employment types broken down into 85% Full Time, 7% Part Time, 1% Temporary, and 7% Contract. Highlights an 80% Physical, 8% Hybrid, and 12% Remote job distribution.

Senior Security Operations Analyst

Austin, TX โ€ข On-site

Other

Posted 9 days ago


Key responsibilities

  • Triaging and investigating security alerts across endpoint, cloud, identity, network, and SaaS telemetry using SIEM and XDR platforms

  • Leading initial incident response for mid-tier events, including containment, eradication, and recovery

  • Conducting targeted threat hunts, participating in post-incident reviews, and contributing to detection tuning and process improvements


Job description

Responsibilities
  • As a SecOps Analyst at Saronic, youโ€™ll be on the front line of our detection and response operations, triaging and investigating security alerts across endpoint, cloud, identity, network, and SaaS telemetry using our SIEM and XDR platforms
  • Youโ€™ll run root cause analysis on real events, lead initial response for mid-tier incidents (contain, eradicate, recover), and tune detections to cut down on noise and sharpen what actually matters
  • Beyond the day-to-day, youโ€™ll join the onโ€‘call rotation, run targeted threat hunts to catch what automation misses, help build out our playbooks and runbooks, and contribute to postโ€‘incident reviews that turn gaps into real improvements
  • This is an early, formative role on a SecOps team being built from the ground up, so youโ€™ll have a direct hand in shaping how we operate, with room to grow across security domains rather than being boxed into one lane
  • Monitor and triage security alerts across endpoint, cloud, identity, network, and SaaS telemetry using enterprise SIEM and XDR platforms
  • Perform inโ€‘depth alert investigation and root cause analysis, documenting findings with clear, structured timelines and impact assessments
  • Tune detections to reduce false positive noise and improve signal fidelity; contribute to detectionโ€‘asโ€‘code pipelines using structured query languages
  • Operate across multiple detection and visibility platforms as part of a maturing, layered security monitoring ecosystem
  • Lead initial incident response for midโ€‘tier events: contain, eradicate, and recover across endpoint, cloud, and identity domains
  • Participate in the onโ€‘call incident rotation and effectively communicate status and findings to the SecOps Lead and relevant stakeholders
  • Conduct postโ€‘incident reviews, identifying gaps in detection, response, and containment and translating them into actionable improvements
  • Coordinate with Security Engineering and IT during active incidents to accelerate response and reduce dwell time
  • Support the SecOps Lead in developing and refining response playbooks, runbooks, and analyst workflow documentation
  • Conduct targeted threat hunting operations to identify attacker activity not surfaced by automated detections
  • Contribute to SecOps metrics tracking, reporting, and operational readiness reviews
  • Help onboard and mentor junior analysts as the team grows, serving as a technical resource and process guide
Qualifications

Strong understanding of network fundamentals: TCP/IP, DNS, HTTP/S, firewall and proxy logs, and lateral movement patterns.

Experience with EDR tooling in an operational context; ability to hunt, triage, and respond using endpoint telemetry.

Ownership mindset: you follow incidents through to closure and flag what needs to be fixed, not just what needs to be documented.

3+ years of handsโ€‘on experience in a Security Operations, detection engineering, or incident response role.

Solid understanding of attacker TTPs mapped to MITRE ATT&CK, and the ability to apply that knowledge during active investigations.

Experience writing or iterating on detection logic, response playbooks, or SOC operational documentation.

Handsโ€‘on proficiency with enterprise SIEM platforms and their query languages; ability to write and iterate on detection logic from scratch.

Clear and structured written and verbal communication โ€” you can brief a nonโ€‘technical stakeholder and write a thorough incident report.

Security Clearance eligible.

Demonstrated experience triaging and investigating alerts across at least two of the following: endpoint, cloud, identity, network, or SaaS environments.

Scripting proficiency in Python, PowerShell, or Bash for alert enrichment, automation, or triage support.

Experience with XDR platforms and crossโ€‘domain correlated detection across endpoint, identity, and cloud.

Familiarity with cloudโ€‘native security operations and log sources in AWS or Azure environments.

Experience with SOAR platforms or building response automation workflows.

Exposure to supply chain and CI/CD pipeline security monitoring.

Familiarity with data lakeโ€‘based or pipelineโ€‘driven detection architectures.

Experience operating in or supporting classified, GovCloud, or FedRAMP environments.

Background in defense, aerospace, robotics, or other highโ€‘assurance operational environments.

Relevant certifications: GIAC GCIH, GCIA, GCFE, BTL1/2, CySA+, OSCP, or equivalent.

Familiarity with compliance frameworks such as NIST SP 800โ€‘171, NIST SP 800โ€‘53, or CMMC.

Active security clearance or prior clearance history is a strong differentiator.

#J-18808-Ljbffr