1

Security Operations Center Analyst Jobs in Raleigh, NC

Log analysis and management - (move logs from log server to reduce memory consumption / resource utilization) * SNMP configuration on security devices. * Patching the security HW/SW environment.

Experience working in a Security Operations Center (SOC) or cybersecurity environment. * Strong experience with Splunk Search Processing Language (SPL). * Experience analyzing security-related data ...

Experience working in a Security Operations Center (SOC) or cybersecurity environment. * Strong experience with Splunk Search Processing Language (SPL). * Experience analyzing security-related data ...

Log analysis and management - (move logs from log server to reduce memory consumption / resource utilization) * SNMP configuration on security devices. * Patching the security HW/SW environment.

Showing results 21-40

Security Operations Center Analyst information

See Raleigh, NC salary details

$16

$35

$68

How much do security operations center analyst jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for security operations center analyst in Raleigh, NC is $35.83, according to ZipRecruiter salary data. Most workers in this role earn between $21.97 and $42.55 per hour, depending on experience, location, and employer.

What is a security operations center analyst?

Security Operations Center (SOC) Analysts are cybersecurity professionals who monitor, detect, and respond to security threats within an organization’s IT environment. They analyze security alerts, investigate incidents, and coordinate responses to mitigate risks and protect sensitive data. SOC Analysts use specialized tools to track suspicious activities, implement security measures, and ensure compliance with security policies. Their work is crucial in defending organizations against cyberattacks and maintaining overall information security.

What does a security operations center analyst do?

A security operations center analyst works on the cybersecurity team at an organization to proactively defend the organization's database, website, servers, and network. In this role you control the security alerts and ensure that each alert is taken care of before the threat of hackers gaining access to your company's information is realized. You may run an investigation if you see similar threats repeatedly to see who is attempting to attack your systems and why. Your other duties may include keeping and analyzing a security log, coordinating with other analysts or security team members, and assessing company vulnerability.

What skills make an effective security operations center analyst?

To thrive as a Security Operations Center Analyst, you need a strong understanding of cybersecurity principles, network protocols, and incident response, often backed by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM tools (e.g., Splunk, QRadar), intrusion detection systems, and ticketing platforms is essential for effective monitoring and analysis. Attention to detail, analytical thinking, and clear communication help SOC Analysts excel in identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, investigating, and mitigating security incidents, protecting organizational assets from cyber threats.

What are the most common challenges security operations center analysts face during daily operations?

Security Operations Center (SOC) Analysts often deal with a high volume of alerts, many of which may be false positives, requiring keen analytical skills to prioritize genuine threats. Staying updated on evolving cyber threats and attack patterns is another challenge, as adversaries continuously adapt their tactics. Additionally, SOC Analysts frequently work in high-pressure environments where quick, accurate decision-making is crucial, and collaboration with IT, incident response teams, and management is essential to ensure coordinated defense efforts.

What is the difference between Security Operations Center Analyst vs Security Analyst?

AspectSecurity Operations Center AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA (preferred)
Work EnvironmentMonitoring security alerts in a SOC, 24/7 shiftsAnalyzing security data, conducting risk assessments
Employer & Industry UsagePrimarily in security operations centers, cybersecurity firmsVarious industries including finance, healthcare, government

The Security Operations Center Analyst focuses on real-time monitoring and incident response within a SOC environment, often working in shifts. In contrast, a Security Analyst typically conducts broader security assessments, policy development, and risk analysis across organizations. Both roles require similar certifications and are integral to cybersecurity teams, but their daily tasks and work settings differ.

What are the most commonly searched types of Security Operations Center Analyst jobs in Raleigh, NC?

The most popular types of Security Operations Center Analyst jobs in Raleigh, NC are:

What are popular job titles related to Security Operations Center Analyst jobs in Raleigh, NC?

For Security Operations Center Analyst jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Security Operations Center Analyst jobs in Raleigh, NC look for?

The top searched job categories for Security Operations Center Analyst jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Security Operations Center Analyst jobs?

Cities near Raleigh, NC with the most Security Operations Center Analyst job openings:

Infographic showing various Security Operations Center Analyst job openings in Raleigh, NC as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 12% Part Time, 1% Temporary, 2% Contract, and 1% Nights. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $74,530 per year, or $35.8 per hour.

SOC Analyst with Security Clearance

Koniag Government Services

Durham, NC • On-site

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 13 days ago


Koniag Government Services rating

8.6

Company rating: 8.6 out of 10

Based on 6 frontline employees who took The Breakroom Quiz

56th of 494 rated business services


Job description

Tuknik Government Services, LLC, a Koniag Government Services company, is seeking a SOC Analyst to support TGS and our government customer in Durham, NC. This position requires the candidate to be able to obtain a Public Trust. We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more. The ideal candidate will be able to obtain a Public Trust Clearance. This position involves providing 24/7/365 monitoring and analysis of security event alerts across the enterprise network. The SOC Analyst will monitor agency systems and daily log events to identify potential security threats, utilizing various sources such as sensor alert logs, firewall logs, content filtering logs, and Security Information and Event Management logs. This role requires reviewing all incoming alerts, investigating, and ticketing all identified potential security threats using the agency's incident response-ticketing platform. The SOC Analyst will validate traffic and/or network activity as anomalous according to agency standards and procedures, and will identify, investigate, and escalate potential security threats to senior agency resources when necessary. The position also involves measuring and modeling traffic, identifying patterns and ports, and producing reports, both contractual and ad hoc, providing information on events, trends, issues, and activity as requested by the federal customer. Additionally, the SOC Analyst will provide data for inclusion in the agency's CISA Report and investigate Open-Source Threat Intelligence for the agency. The role may also require the creation of new intrusion detection signatures as needed. Work in a Security Operations Center (SOC) environment, providing detailed documentation of reported incidents utilizing ServiceNow. The candidate will function as a SOC Analyst performing triage, investigations, and responding to a wide variety of alerts. Shift: Shift: 130pm to 10pm EST Sat to Wed OR 230pm EST to 11pm EST Sun to Thur All employees are considered mission critical and are expected to report even during inclement weather conditions . Essential Functions, Responsibilities & Duties may include, but are not limited to: * Providing 24/7/365 monitoring and analysis of security event alerts across the enterprise network. * Monitoring agency systems and daily log events to identify potential security threats. Sources include, but not limited to, sensor alert logs, firewall logs, content filtering logs, and Security Information and Event Management logs. * Reviewing incoming alerts, investigating, and ticketing all identified potential security threats using agency incident response ticketing platform. * Prioritizing all incoming alerts and respond accordingly in a timely manner. * Validating traffic and/or network activity (per alerts/logs) as anomalous in accordance with agency standards and procedures. * Identifying, investigating, and escalating potential security threats to senior agency resources when needed. * Measuring and modeling traffic, while identifying patterns and ports. * Producing reports, both contractual and ad hoc, providing information on events, trends, issues, and activity as requested by the federal customer. * Providing data for inclusion in the agency's CISA report. * Utilize OSINT tools to identify and mitigate potential cybersecurity threats to the customer's network. * Identifying the necessity for, and implementation of, the creation of new intrusion detection signatures. Work Experience, Knowledge, Skills & Abilities: * Candidate must have a minimum of 2-4 years of experience as an analyst in a SOC or similar environment. * Working knowledge of SOC tools and their usage for detecting intrusion attempts. * Demonstrated experience creating custom intrusion signatures to detect specific network traffic anomalies. * Demonstrated experience in populating sensors with newly available signatures when responding to events or management requests. * Knowledge of potential threat reporting and tracking by means of at least one large-scale ticketing system (ServiceNow, CAPRS, or other similar system). * Ability to utilize email, instant messaging, and other monitoring tools to effectively navigate through the incident response process. * Strong oral presentation skills and the ability to articulate English in a clear and concise manner. * Demonstrated experience with Windows Operating System and Microsoft 365 tools. Requirements: * High School Diploma accompanied with related advanced training and certifications in cybersecurity or a related field. BS/BA degree preferred. * Must have at least one of the following certifications: CompTIA Network+, CompTIA Security +, or CompTIA CySA+. * Documented proof of certifications is required prior to the start of employment. * Experience with Windows Operating System and Microsoft 365 tools. * Great written and oral communication skills, with the ability to convey complex information clearly and effectively. * Must live within a 2-hour commute of the designated Security Operations Center for which they are applying. Nice to have: * Bachelor's or master's degree in computer science, or cybersecurity, or information technology. * Other advanced certifications such as Cybersecurity Analyst+ (CySA+), Certified Ethical Hacker (CEH), GIAC Security Operations Certified (GSOC), etc. * Home lab setup and participation in training platforms like TryHackMe or similar Security Requirement: * Ability to obtain a Public Trust Our Equal Employment Opportunity Policy The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment. The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at or by calling 703-488-9377 to request accommodations. Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com. Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

What Koniag Government Services employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom