1

Security Operations Center Analyst Jobs in Chicago, IL

S. Crash Champions was founded in 1999 as a single Chicago repair center by industry veteran and ... Security Operations Analysts improve the organization's security posture by evaluating, testing ...

Security Operations Analyst

Westmont, IL · On-site +1

$80K - $95K/yr

S. Crash Champions was founded in 1999 as a single Chicago repair center by industry veteran and ... Security Operations Analysts improve the organization's security posture by evaluating, testing ...

next page

Showing results 1-20

Security Operations Center Analyst information

See Chicago, IL salary details

$17

$37

$72

How much do security operations center analyst jobs pay per hour?

As of Aug 8, 2026, the average hourly pay for security operations center analyst in Chicago, IL is $37.97, according to ZipRecruiter salary data. Most workers in this role earn between $23.27 and $45.05 per hour, depending on experience, location, and employer.

What skills make an effective security operations center analyst?

To thrive as a Security Operations Center Analyst, you need a strong understanding of cybersecurity principles, network protocols, and incident response, often backed by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM tools (e.g., Splunk, QRadar), intrusion detection systems, and ticketing platforms is essential for effective monitoring and analysis. Attention to detail, analytical thinking, and clear communication help SOC Analysts excel in identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, investigating, and mitigating security incidents, protecting organizational assets from cyber threats.

What are the most common challenges security operations center analysts face during daily operations?

Security Operations Center (SOC) Analysts often deal with a high volume of alerts, many of which may be false positives, requiring keen analytical skills to prioritize genuine threats. Staying updated on evolving cyber threats and attack patterns is another challenge, as adversaries continuously adapt their tactics. Additionally, SOC Analysts frequently work in high-pressure environments where quick, accurate decision-making is crucial, and collaboration with IT, incident response teams, and management is essential to ensure coordinated defense efforts.

What is a security operations center analyst?

Security Operations Center (SOC) Analysts are cybersecurity professionals who monitor, detect, and respond to security threats within an organization’s IT environment. They analyze security alerts, investigate incidents, and coordinate responses to mitigate risks and protect sensitive data. SOC Analysts use specialized tools to track suspicious activities, implement security measures, and ensure compliance with security policies. Their work is crucial in defending organizations against cyberattacks and maintaining overall information security.

What is the difference between Security Operations Center Analyst vs Security Analyst?

AspectSecurity Operations Center AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA (preferred)
Work EnvironmentMonitoring security alerts in a SOC, 24/7 shiftsAnalyzing security data, conducting risk assessments
Employer & Industry UsagePrimarily in security operations centers, cybersecurity firmsVarious industries including finance, healthcare, government

The Security Operations Center Analyst focuses on real-time monitoring and incident response within a SOC environment, often working in shifts. In contrast, a Security Analyst typically conducts broader security assessments, policy development, and risk analysis across organizations. Both roles require similar certifications and are integral to cybersecurity teams, but their daily tasks and work settings differ.

What does a security operations center analyst do?

A security operations center analyst works on the cybersecurity team at an organization to proactively defend the organization's database, website, servers, and network. In this role you control the security alerts and ensure that each alert is taken care of before the threat of hackers gaining access to your company's information is realized. You may run an investigation if you see similar threats repeatedly to see who is attempting to attack your systems and why. Your other duties may include keeping and analyzing a security log, coordinating with other analysts or security team members, and assessing company vulnerability.

What are the most commonly searched types of Security Operations Center Analyst jobs in Chicago, IL? The most popular types of Security Operations Center Analyst jobs in Chicago, IL are:
What are popular job titles related to Security Operations Center Analyst jobs in Chicago, IL? For Security Operations Center Analyst jobs in Chicago, IL, the most frequently searched job titles are:
What job categories do people searching Security Operations Center Analyst jobs in Chicago, IL look for? The top searched job categories for Security Operations Center Analyst jobs in Chicago, IL are:
What cities near Chicago, IL are hiring for Security Operations Center Analyst jobs? Cities near Chicago, IL with the most Security Operations Center Analyst job openings:
Infographic showing various Security Operations Center Analyst job openings in Chicago, IL as of August 2026, with employment types broken down into 84% Full Time, 13% Part Time, 1% Temporary, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $78,987 per year, or $38 per hour.

Security Operations Center Analyst II (SOC Analyst II)

Old Second National Bank

Downers Grove, IL • On-site

Other

Posted 10 days ago


Old Second National Bank rating

6.7

Company rating: 6.7 out of 10

Based on 6 frontline employees who took The Breakroom Quiz

136th of 170 rated banks


Job description

Position Overview:

The Security Operations Center (SOC) Analyst supports the Information Security Program through security monitoring, incident response, threat intelligence, vulnerability management, user access governance, operational resilience activities, and administration of security technologies. The Analyst assists in protecting the confidentiality, integrity, and availability of Bank information assets through analysis, investigation, reporting, and remediation of cybersecurity events.

The SOC Analyst partners with Information Technology, Fraud, Risk Management, Vendor Management, Legal/Compliance, and business units to investigate incidents, support regulatory and audit activities, maintain operational readiness, and continuously improve the Bank's cybersecurity posture. Responsibilities and ownership vary by position level.

Security Operations Center Analyst - All Levels

Provides first response support by analyzing alerts and gathering information about potential incidents or vulnerabilities.

  • Conduct first-level triage of security events and incidents, including phishing attempts, malware detections, dark-web exposures, suspicious email activity, and security tool alerts.
  • Investigate suspicious emails identified through email security systems or reported by employees.
  • Administer Business Email Compromise (BEC) response activities, including quarantine actions, email release reviews, and coordination with Fraud and Information Technology teams.
  • Assess, prioritize, document, and escalate security alerts generated by security monitoring technologies according to established procedures and incident response playbooks.
  • Perform security event investigations utilizing SIEM, EDR, email security, threat intelligence, and other security monitoring platforms.
  • Document findings, collect evidence, and maintain incident records throughout the Incident Response Lifecycle.
  • Execute incident response procedures and playbooks for assigned events and assist with containment, eradication, and recovery activities.
  • Create remediation tickets and monitor assigned corrective actions through completion.
  • Monitor threat intelligence feeds, vulnerability disclosures, vendor security notifications, and emerging threats that may impact Bank operations.
  • Monitor external indicators including spoofed websites, brand abuse, leaked credentials, compromised vendors, and supply-chain cyber events.
  • Assist in the administration and maintenance of assigned Information Security technologies.
  • Compile and prepare operational metrics and reports related to incidents, phishing activity, vulnerabilities, patch status, security awareness activities, and other Information Security indicators.
  • Support user access review execution by collecting access materials, validating user and role information, identifying exceptions, and supporting remediation efforts.
  • Participate in Business Continuity Planning and operational resilience activities, including tabletop exercises, vendor outage scenarios, disaster recovery testing support, and lessons-learned documentation.
  • Participate in security reviews of new technologies and business solutions as assigned.
  • Support the collection of evidence and documentation required for audits, examinations, compliance reviews, and risk assessments.
  • Perform daily operational review activities and other Information Security monitoring tasks as assigned.

Additional Responsibilities for Security Operations Center Analyst - Level II

Provides second-level response support by analyzing complex security alerts, validating findings, coordinating escalations, and supporting containment, eradication, and recovery activities. The SOC Analyst II serves as a senior technical and operational security resource responsible for advanced investigations, SOC process improvement, security governance support, operational resilience activities, and continuous improvement of Security Operations processes. Responsibilities include, but are not limited to:

  • Lead or coordinate advanced security investigations and support escalation decisions for complex incidents, vulnerabilities, and threat activity.
  • Maintain, test, and improve incident response playbooks, runbooks, escalation procedures, and audit-ready evidence.
  • Serve as department lead for assigned incident response events and manage post-incident reviews with management.
  • Validate SOC metrics and provide management reporting related to phishing testing, security awareness training, incidents, vulnerabilities, and operational trends.
  • Develop, maintain, and distribute internal security awareness materials.
  • Conduct risk assessments to determine the impact, criticality, and remediation timelines for identified vulnerabilities.
  • Develop the quarterly Information Security trends newsletter and use relevant current events to support tabletop exercise planning.
  • Lead or coordinate assigned User Access Reviews, support Segregation of Duties and Password Complexity control assessments, maintain UAR evidence, and assist with audit-ready documentation and final review packages.
  • Lead assigned BCP/tabletop scenarios for SOC-managed platforms and ensure playbooks, escalation paths, alternate monitoring methods, and recovery procedures remain current.

Minimum Requirements 

Bachelor's degree in computer science, Engineering or Related Field (logic, philosophy, systemic theology or related discipline with ability to apply concepts to technology) and three or more years of experience in one or a combination of the following:  information security, compliance, operational risk management (includes audit, legal, credit risk, market risk, or the management of a process or business with accountability for compliance or operational risk); or equivalent combination of education and experience.

  • Relevant military experience, certification, or ability to clearly demonstrate competence through experience may substitute for education requirement.
  • Four years of related experience may substitute for the education requirement.

Competencies:

  • Strong problem-solving skills. Ideal candidate prefers to work on a series of short-duration complex problems (vs. a single problem over a long period.)
  • Excellent written and verbal communication skills
  • Strong project management, analytical skills and administrative skills
  • Excellent organizational skills, ability to multitask and demonstrate flexibility.
  • Demonstrates initiative and creativity in problem-solving; self-motivated/self-starter; works independently with minimal supervision; works well under pressure, develops strong relationships with subordinates, peers, and senior managers; demonstrates commitment and accountability.

Preferred, but not required

  • Information Security Certifications or pursuing certifications such as CISSP, CISM, CISA, CISSP, GAIC, CompTIA Security + etc.

Location Details 

This position is considered a hybrid role.  With management approval, an incumbent may work a combination of remote and onsite work to perform the regular responsibilities of the role.  Actual schedule requirements may vary based upon business needs.


Compensation & Benefits

Base pay:  $69,100 - $90,000 

Old Second is committed to fair and equitable pay practices.  Pay is dependent upon the pay range and the incumbent's knowledge, skills and experience. 

Benefits:  How We Support You - Old Second


What Old Second National Bank employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom