1

Security Operations Analyst Jobs in Rancho Cordova, CA

Support and work in an Agile and DevOps team focused on security operations, analytics, and solution development. The ideal candidate should show the following behavioral traits: * Strong ...

next page

Showing results 1-20

Security Operations Analyst information

See Rancho Cordova, CA salary details

$18

$47

$64

How much do security operations analyst jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for security operations analyst in Rancho Cordova, CA is $47.09, according to ZipRecruiter salary data. Most workers in this role earn between $36.92 and $58.22 per hour, depending on experience, location, and employer.

What is a security operations analyst?

Security Operations Analysts are IT professionals responsible for monitoring, detecting, and responding to cybersecurity threats within an organization. They work in security operations centers (SOCs) to analyze security incidents, investigate suspicious activities, and help implement measures to protect digital assets. Their role often involves using security tools and technologies, collaborating with other IT teams, and ensuring compliance with security policies. By proactively identifying vulnerabilities and responding to incidents, Security Operations Analysts play a critical role in safeguarding an organization's information systems.

What does a security operations analyst do?

A security operations analyst works with a company, organization, or government office to identify and reduce security risks to their computer network. Your duties are to keep records of any suspicious activity, install security measures to prevent breaches, and give the organization suggestions about how to avoid future incidents. As a security operations analyst, your responsibilities also include conducting research on new threats and upgrading software as necessary. You often collaborate with other employees to resolve incidents as quickly as possible.

What are the key skills and qualifications needed to thrive as a security operations analyst, and why are they important?

To thrive as a Security Operations Analyst, you need a strong understanding of cybersecurity principles, incident response, and risk assessment, typically supported by a degree in computer science or related fields. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications like CompTIA Security+ or CISSP is highly valuable. Analytical thinking, attention to detail, and effective communication are key soft skills that set top analysts apart. These skills and qualifications are essential for quickly identifying, investigating, and mitigating security threats to protect organizational assets.

How does a security operations analyst typically collaborate with other IT and security teams?

Security Operations Analysts work closely with various IT and cybersecurity teams to monitor, detect, and respond to security threats. They regularly interact with network engineers, incident response teams, and system administrators to escalate and resolve security incidents. Effective communication and coordination are crucial, as analysts may need to provide detailed incident reports, share threat intelligence, and participate in post-incident reviews to improve security protocols. This collaborative environment helps ensure a swift response to threats and fosters ongoing professional development through cross-team knowledge sharing.

What is the difference between Security Operations Analyst vs Security Engineer?

AspectSecurity Operations AnalystSecurity Engineer
Primary FocusMonitoring, detecting, and responding to security incidentsDesigning, implementing, and maintaining security systems
CertificationsCompTIA Security+, CISSP, CEHCISSP, GIAC Security Certifications, CISSP
Work EnvironmentSecurity operations centers, incident response teamsSecurity architecture teams, development environments
ResponsibilitiesAnalyzing security alerts, incident response, threat huntingDeveloping security tools, deploying security solutions, system hardening

While both roles focus on cybersecurity, Security Operations Analysts primarily monitor and respond to threats in real-time, whereas Security Engineers design and build security infrastructure to prevent attacks. Both roles often collaborate but serve different functions within an organization's security strategy.

What are popular job titles related to Security Operations Analyst jobs in Rancho Cordova, CA?

For Security Operations Analyst jobs in Rancho Cordova, CA, the most frequently searched job titles are:

What cities near Rancho Cordova, CA are hiring for Security Operations Analyst jobs?

Cities near Rancho Cordova, CA with the most Security Operations Analyst job openings:

Infographic showing various Security Operations Analyst job openings in Rancho Cordova, CA as of August 2026, with employment types broken down into 81% Full Time, 16% Part Time, 1% Temporary, 1% Contract, and 1% Nights. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $97,952 per year, or $47.1 per hour.

Power BI Administrator / Security Reporting & Analytics Engineer

Anvaya Solutions

Rancho Cordova, CA โ€ข Remote

Full-time

Posted 5 days ago


Key responsibilities

  • Build and administer Power BI reports and dashboards, including exporting data from operational and security tools and transforming it using Power Query.

  • Develop and administer content within SIEM platforms, including creating dashboards, scheduled searches, reports, and KPI reporting.

  • Write search and query languages to build reports and detection content related to security operations.


Job description

1-YEAR BASE TERM, WITH POTENTIAL 1-YEAR EXTENSION.ย  WORK WILL BE PERFORMED REMOTELY.

ย 

Mandatory Requirements

  • At least five (5) years within the last seven (7) years of professional experience building and administering Power BI reports and dashboards, including exporting data from operational and security tools, transforming it using Power Query, and generating reports.
  • At least five (5) years within the last seven (7) years of professional experience administering and developing content within SIEM platforms, custom dashboards, scheduled searches, reports, and KPI reporting.
  • At least five (5) years within the last seven (7) years of professional experience writing search and query languages used to build reports and detection content.
  • At least five (5) years within the last seven (7) years of professional experience with Security Orchestration, Automation and Response (SOAR) tools, including building playbooks and custom automation scripts in Python.
  • At least five (5) years within the last seven (7) years of professional experience with data ingestion and data onboarding from Windows, Linux, and syslog sources into reporting and analytics platforms, including configuring indexes, routing, and retention policies.
  • At least five (5) years within the last seven (7) years of professional experience architecting and operating reporting/analytics infrastructure in AWS, including automated CI/CD deployment using GitLab and Terraform (and/or Jenkins and CloudFormation).
  • At least five (5) years within the last seven (7) years of professional experience administering Identity and Access Management (IAM) and Single Sign-On (SSO) (e.g., Okta, Centrify), including role-based access control (RBAC) and user provisioning for reporting/analytics and security applications.
  • At least five (5) years within the last seven (7) years of professional experience integrating and reporting against Governance, Risk and Compliance (GRC) platforms (such as RSA Archer) and ticketing/service-management tools (such as ServiceNow or Remedy).
  • Working knowledge of the MITRE ATT&CK framework and NIST standards, and the ability to translate security data into executive-ready dashboards and reports.

Desirable Requirements

  • Any professional experience conducting risk assessments for an IT environment with business units to support a diverse set of infrastructure and services.
  • Working knowledge of the National Institute of Standards and Technology (NIST) Standards, the NIST Cybersecurity Framework, and NIST Special Publication (SP) 800-53 and other regulatory security standards and frameworks.
  • Possession of one or more of the following information technology industry certifications:
    • Security Operations & Engineering (Microsoft):ย  Microsoft Security Operations Analyst (SC-200), Azure Security Engineer Associate (AZ-500), Cybersecurity Architect Expert (SC-100), Identity and Access Administrator Associate (SC-300), Azure Administrator Associate (AZ-104), or Security, Compliance, and Identity Fundamentals (SC-900);
    • Governance, Risk & Audit:ย  CISM, CISSP, CISA, CRISC, or CGRC (Certified in Governance, Risk, and Compliance / formerly CAP);
    • Cloud Security:ย  CCSP (Certified Cloud Security Professional), AWS Certified Solutions Architect, or AWS Certified Security โ€“ Specialty;
    • SOC / Blue-Team / Incident Response:ย  Any GIAC certification (e.g., GSEC, GCIH, GCDA, GMON, or GCFA), CompTIA Security+, or CompTIA CySA+.
    • SIEM / SOAR Platforms:ย  Splunk certifications (e.g., Core Certified Power user or Enterprise Security Certified Admin), or Palo Alto Networks Certified XSIAM Engineer;
    • Project & Agile Delivery:ย  PMP, PMI-ACP, or SAFe Scrum Master (SSM).
  • Ten (10) years within the last fifteen (15) years of experience supporting statewide cybersecurity operations and modernization initiatives within a California State agency.
  • Ten (10) years within the last fifteen (15) years of experience with Agile/Scrum delivery and tools such as Azure DevOps (ADO).
  • Demonstrated leadership experience establishing and leading technical teams and overseeing the delivery of multiple (two or more) enterprise identity and access management (IAM) and cybersecurity initiatives from concept through implementation and ongoing operations, including at least one initiative incorporating AI/automation or other emerging technologies.ย  Experience should include cross-functional stakeholder coordination and full-lifecycle delivery at an enterprise or public-sector scale.
  • Depth operating a Microsoft-native SOC at scale โ€“ Sentinel + Defender XDR in a multi-tenant / MSSIP or enterprise environment.
  • AI/GenAI applied to security operations SOC automation, detection engineering, or LLM triage.
  • Zero Trust and identity governance (IGA) delivery Entra ID Governance, SailPoint, or Saviynt implementations.
  • Security automation / SOAR playbook development (Azure Logic Apps, XSIAM, Splunk, SOAR).
  • Public-sector compliance depth StateRAMP/FedRAMP, CJIS, or California SAM/SIMM 5300 experience.
  • Knowledge transfer / mentoring of State staff.

Applications that do not complete the Prescreen Survey will not be considered.

Anvaya Solutions, Inc. is an equal opportunity employer. All employment decisions, including hiring, promotions, and compensation, are made without regard to race, color, religion, sex, national origin, or any other protected characteristic.ย  We are committed to a merit-based workplace where every individual is treated with respect and has equal access to opportunities based solely on their qualifications and performance.