Security Operations Analyst
Austin, TX · On-site
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact ... Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Austin, TX · On-site
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact ... Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Austin, TX · On-site
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact ... Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Austin, TX · On-site
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact ... Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Austin, TX · On-site
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact ... Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Security Operations Center (SOC) Analyst Duration : 6 months Location : Houston, TX Schedule : Monday - Friday: 7am - 4pm Role Summary The SOC Analyst is responsible for monitoring, investigating ...
Security Operations Center (SOC) Analyst Duration : 6 months Location : Houston, TX Schedule : Monday - Friday: 7am - 4pm Role Summary The SOC Analyst is responsible for monitoring, investigating ...
The Physical Security Operations Analyst is the on-site IC4 owner for the Shackelford, TX local SOC operating model. This role is not a people-manager position. It leads the SOC function ...
The Physical Security Operations Analyst is the on-site IC4 owner for the Shackelford, TX local SOC operating model. This role is not a people-manager position. It leads the SOC function ...
Experience writing or iterating on detection logic, response playbooks, or SOC operational ... Security Clearance eligible. Demonstrated experience triaging and investigating alerts across at ...
Experience writing or iterating on detection logic, response playbooks, or SOC operational ... Security Clearance eligible. Demonstrated experience triaging and investigating alerts across at ...
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
Quick apply
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection ... Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier ...
... operational-readiness reviews * Mentor Security Engineers and analysts, and raise the bar for ... Experience standing up or maturing SOC capabilities from the ground up * Experience leading purple ...
... operational-readiness reviews * Mentor Security Engineers and analysts, and raise the bar for ... Experience standing up or maturing SOC capabilities from the ground up * Experience leading purple ...
Plano, TX · On-site
$30 - $40/hr
SOC Analyst Overview A leading healthcare organization is seeking a SOC Analyst to join its growing ... This role will support daily Security Operations Center (SOC) functions, including alert monitoring ...
Plano, TX · On-site
$30 - $40/hr
SOC Analyst Overview A leading healthcare organization is seeking a SOC Analyst to join its growing ... This role will support daily Security Operations Center (SOC) functions, including alert monitoring ...
The Security Operations Center (SOC) serves as the front line of IBM's cyber defense mission ... Your role and responsibilities As a SOC Analyst, you will serve as a first responder to ...
The Security Operations Center (SOC) serves as the front line of IBM's cyber defense mission ... Your role and responsibilities As a SOC Analyst, you will serve as a first responder to ...
The Security Operations Center (SOC) serves as the front line of IBM's cyber defense mission ... Your role and responsibilities As a SOC Analyst, you will serve as a first responder to ...
The Security Operations Center (SOC) serves as the front line of IBM's cyber defense mission ... Your role and responsibilities As a SOC Analyst, you will serve as a first responder to ...
Security Operations Center (SOC) Analyst - Tier II About the Employer We're recruiting for a U.S. cybersecurity services company that provides managed detection and response for mid-market and ...
Security Operations Center (SOC) Analyst - Tier II About the Employer We're recruiting for a U.S. cybersecurity services company that provides managed detection and response for mid-market and ...
Armor is seeking a hands-on Security Operations Center (SOC) Manager to lead our global Security ... analyst productivity. * Understanding of AI/LLM security risks, including prompt injection, data ...
Quick apply
Armor is seeking a hands-on Security Operations Center (SOC) Manager to lead our global Security ... analyst productivity. * Understanding of AI/LLM security risks, including prompt injection, data ...
Frisco, TX · On-site
Joining a team of SOC Analysts, the Security Operations Lead sets the standard on how to identify, triage, and resolve cybersecurity incidents, and demonstrates this to the SOC team. This role is a ...
Frisco, TX · On-site
Joining a team of SOC Analysts, the Security Operations Lead sets the standard on how to identify, triage, and resolve cybersecurity incidents, and demonstrates this to the SOC team. This role is a ...
Houston, TX · On-site
$16/hr
SOC Operator (Security Operations Center) Company Overview DSI Security Services is a leading provider of contract security solutions, serving clients across multiple industries nationwide. Founded ...
Houston, TX · On-site
$16/hr
SOC Operator (Security Operations Center) Company Overview DSI Security Services is a leading provider of contract security solutions, serving clients across multiple industries nationwide. Founded ...
SOC Operator (Security Operations Center) Company Overview DSI Security Services is a leading provider of contract security solutions, serving clients across multiple industries nationwide. Founded ...
SOC Operator (Security Operations Center) Company Overview DSI Security Services is a leading provider of contract security solutions, serving clients across multiple industries nationwide. Founded ...
Security Operations Center (SOC) Analyst** to join our growing U.S. Managed Detection and Response team in Austin, Texas.This is an exciting opportunity to help build Sygnia's first U.S. MDR site as ...
Security Operations Center (SOC) Analyst** to join our growing U.S. Managed Detection and Response team in Austin, Texas.This is an exciting opportunity to help build Sygnia's first U.S. MDR site as ...
SOC personnel will be working with enterprise forensic capable systems, log analysis systems, and ... Security Operations Center Analyst Mandatory Skills Requirements: * Thirst for knowledge ...
SOC personnel will be working with enterprise forensic capable systems, log analysis systems, and ... Security Operations Center Analyst Mandatory Skills Requirements: * Thirst for knowledge ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent ... Minimum of seven (7) years of experience in enterprise security operations, primarily within a SOC ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent ... Minimum of seven (7) years of experience in enterprise security operations, primarily within a SOC ...
| Aspect | Security Operations Analyst Soc | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CEH | CompTIA Security+, CISSP, CEH |
| Work Environment | Security operations centers, 24/7 monitoring | Office or remote, project-based |
| Employer & Industry | Cybersecurity firms, large corporations, government agencies | Various industries including finance, healthcare, tech |
The main difference is that Security Operations Analysts Soc focus on real-time security monitoring, incident response, and managing security tools within a Security Operations Center. Security Analysts may have a broader role, including vulnerability assessments, security audits, and policy development. Both roles require similar certifications and often overlap in skills, but the Soc role is more centered on operational security and incident handling in a dedicated environment.
Cities in Texas with the most Security Operations Analyst Soc job openings:

Austin, TX • On-site
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 8 days ago
Monitor and triage security alerts across endpoint, cloud, identity, network, and SaaS telemetry using SIEM and XDR platforms
Own initial response for well-scoped incidents to contain, eradicate, and recover from security events
Support the development of response playbooks, runbooks, and analyst workflow documentation
Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms.
Job OverviewSaronic Technologies is a leader in revolutionizing autonomy at sea, developing cutting-edge unmanned surface vessels (USVs) to enhance maritime operations for defense and national security. We're looking for a hands-on Security Engineer to join our Security Operations team on the front line of detection and response.
You'll triage and investigate security alerts across endpoint, cloud, identity, network, and SaaS telemetry using our SIEM and XDR platforms, run root-cause analysis on real events, and own initial response for well-scoped incidents to contain, eradicate, recover. You'll tune detections to cut noise, join the on-call rotation, run targeted threat hunts, and contribute to the playbooks and post-incident reviews that make the team better. This is an early, formative role on a SecOps team being built from the ground up, with senior engineers to learn from and real room to grow across security domains rather than being boxed into one lane.
ResponsibilitiesDetection & Alert OperationsMonitor and triage alerts across endpoint, cloud, identity, network, and SaaS telemetry using enterprise SIEM and XDR platforms
Investigate alerts and perform root-cause analysis, documenting clear timelines and impact assessments
Tune existing detections to reduce false positives, and surface gaps and tuning needs to Detection Engineering
Own initial response for well-scoped, mid-tier incidents across endpoint, cloud, and identity to contain, eradicate, recover
Participate in the on-call rotation and communicate status and findings to security leadership and stakeholders
Contribute to post-incident reviews, surfacing gaps in detection, response, and containment
Coordinate with Security Engineering and IT during active incidents to accelerate response
Support security leadership and senior engineers in building response playbooks, runbooks, and analyst workflow documentation
Run targeted threat hunts to find activity that automated detections miss
Contribute to SecOps metrics, reporting, and operational-readiness reviews
Grow your depth across detection, investigation, and hunting as the team scales
2–5 years of hands-on Security Operations, alert triage/SOC, or incident response experience, or an equivalent combination of experience and demonstrated ability; we are open to strong early-career talent
Experience triaging and investigating alerts across at least two of: endpoint, cloud, identity, network, or SaaS
Working proficiency with an enterprise SIEM platform and its query language; able to write investigative queries and tune existing detections
Hands-on experience with EDR tooling to triage, hunt, and respond using endpoint telemetry
Solid understanding of attacker TTPs mapped to MITRE ATT&CK, applied during investigations
Scripting proficiency in Python, PowerShell, or Bash for enrichment, automation, or triage
Strong network fundamentals: TCP/IP, DNS, HTTP/S, firewall and proxy logs, and lateral-movement patterns
Clear, structured written and verbal communication skills and can brief a non-technical stakeholder and write a thorough incident report
Ownership mindset: follows incidents through to closure and flags what needs fixing, not just what needs documenting
Hands-on learning signals such as a home lab, CTF participation, personal detection/hunting projects, or public writeups/blogs
Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory
Ability to obtain and maintain a U.S. security clearance
Experience with XDR platforms and cross-domain correlated detection across endpoint, identity, and cloud
Familiarity with cloud-native security operations and log sources in AWS or Azure
Experience with SOAR platforms or building response-automation workflows
Exposure to supply-chain and CI/CD pipeline security monitoring
Familiarity with data lake-based or pipeline-driven detection architectures
Background in defense, aerospace, robotics, or other high-assurance operational environments
Familiarity with compliance frameworks such as NIST SP 800-171 or NIST SP 800-53
Relevant certifications are a plus but never a gate, including GIAC GCIH, GCIA, GCFA, GCFE, GCDA, GSOM, CySA+, BTL1/2, OSCP, or CISSP
Active security clearance or prior clearance history is a strong differentiator
Prolonged periods of sitting at a desk and working on a computer
Occasional standing and walking within the office
Manual dexterity to operate a computer keyboard, mouse, and other office equipment
Visual acuity to read screens, documents, and reports
Occasional reaching, bending, or stooping to access file drawers, cabinets, or office supplies
Lifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages)
Saronic CCPA Notice for Candidates and California Employees
If this role is based in the United States, it requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in 8 U.S.C. 1324b(a)(3).
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits. We are also committed to providing reasonable accommodations for qualified individuals with disabilities.