1

Security Operations Center Analyst Jobs in Riverside, CA

Cybersecurity Analyst

Santa Ana, CA · On-site

$130K - $150K/yr

HomeXpress Mortgage is hiring a Cybersecurity Analyst to support day to day security operations in a cloud-first environment. On-site in Santa Ana with hybrid flexibility. Not a remote position. This ...

Under the direction of the Director, Information Security Operations, the Governance Analyst II is responsible for the development, implementation, and maintenance of policies, standards, baselines ...

New

... risk analysis, and security operations (conceptual/architectural level) • Awareness of Model Context Protocol (MCP) as an emerging AI to enterprise integration standard and its security ...

Oversee daily security operations and contract security personnel. * Monitor security performance ... Strong analytical, organizational, and communication skills. * Proficiency with Microsoft Office ...

Oversee daily security operations and contract security personnel. * Monitor security performance ... Strong analytical, organizational, and communication skills. * Proficiency with Microsoft Office ...

Oversee daily security operations and contract security personnel. * Monitor security performance ... Strong analytical, organizational, and communication skills. * Proficiency with Microsoft Office ...

Partner with various intelligence and investigations teams, global security operations center assets, other private security firms, and local law enforcement to proactively identify and mitigate ...

Partner with various intelligence and investigations teams, global security operations center assets, other private security firms, and local law enforcement to proactively identify and mitigate ...

Partner with various intelligence and investigations teams, global security operations center assets, other private security firms, and local law enforcement to proactively identify and mitigate ...

Showing results 41-60

Security Operations Center Analyst information

See Riverside, CA salary details

$18

$38

$73

How much do security operations center analyst jobs pay per hour?

As of Sep 13, 2026, the average hourly pay for security operations center analyst in Riverside, CA is $38.46, according to ZipRecruiter salary data. Most workers in this role earn between $23.56 and $45.62 per hour, depending on experience, location, and employer.

What is a security operations center analyst?

Security Operations Center (SOC) Analysts are cybersecurity professionals who monitor, detect, and respond to security threats within an organization’s IT environment. They analyze security alerts, investigate incidents, and coordinate responses to mitigate risks and protect sensitive data. SOC Analysts use specialized tools to track suspicious activities, implement security measures, and ensure compliance with security policies. Their work is crucial in defending organizations against cyberattacks and maintaining overall information security.

What does a security operations center analyst do?

A security operations center analyst works on the cybersecurity team at an organization to proactively defend the organization's database, website, servers, and network. In this role you control the security alerts and ensure that each alert is taken care of before the threat of hackers gaining access to your company's information is realized. You may run an investigation if you see similar threats repeatedly to see who is attempting to attack your systems and why. Your other duties may include keeping and analyzing a security log, coordinating with other analysts or security team members, and assessing company vulnerability.

What skills make an effective security operations center analyst?

To thrive as a Security Operations Center Analyst, you need a strong understanding of cybersecurity principles, network protocols, and incident response, often backed by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM tools (e.g., Splunk, QRadar), intrusion detection systems, and ticketing platforms is essential for effective monitoring and analysis. Attention to detail, analytical thinking, and clear communication help SOC Analysts excel in identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, investigating, and mitigating security incidents, protecting organizational assets from cyber threats.

What are the most common challenges security operations center analysts face during daily operations?

Security Operations Center (SOC) Analysts often deal with a high volume of alerts, many of which may be false positives, requiring keen analytical skills to prioritize genuine threats. Staying updated on evolving cyber threats and attack patterns is another challenge, as adversaries continuously adapt their tactics. Additionally, SOC Analysts frequently work in high-pressure environments where quick, accurate decision-making is crucial, and collaboration with IT, incident response teams, and management is essential to ensure coordinated defense efforts.

What is the difference between Security Operations Center Analyst vs Security Analyst?

AspectSecurity Operations Center AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA (preferred)
Work EnvironmentMonitoring security alerts in a SOC, 24/7 shiftsAnalyzing security data, conducting risk assessments
Employer & Industry UsagePrimarily in security operations centers, cybersecurity firmsVarious industries including finance, healthcare, government

The Security Operations Center Analyst focuses on real-time monitoring and incident response within a SOC environment, often working in shifts. In contrast, a Security Analyst typically conducts broader security assessments, policy development, and risk analysis across organizations. Both roles require similar certifications and are integral to cybersecurity teams, but their daily tasks and work settings differ.

What are popular job titles related to Security Operations Center Analyst jobs in Riverside, CA?

For Security Operations Center Analyst jobs in Riverside, CA, the most frequently searched job titles are:

What job categories do people searching Security Operations Center Analyst jobs in Riverside, CA look for?

The top searched job categories for Security Operations Center Analyst jobs in Riverside, CA are:

What cities near Riverside, CA are hiring for Security Operations Center Analyst jobs?

Cities near Riverside, CA with the most Security Operations Center Analyst job openings:

Infographic showing various Security Operations Center Analyst job openings in Riverside, CA as of September 2026, with employment types broken down into 1% As Needed, 76% Full Time, 20% Part Time, 1% Temporary, 1% Contract, and 1% Nights. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $79,993 per year, or $38.5 per hour.

10318 - Cyber Defense Head of Department (HOD)

Irvine, CA • On-site

$119K - $161K/yr

Full-time

This job post has expired today. Applications are no longer accepted.


Job description

Cyber Security Defense Head Of Department (Hod)

Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis.

HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group.

At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations.

If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation.

Role Overview

The Cyber Security Defense Head of Department (HOD) serves as the senior leader responsible for the vision, strategy, execution, and continuous advancement of the organization's cyber defense program. This role requires a highly experienced, hands-on cybersecurity executive with CISO-level expertise who can effectively balance strategic leadership with operational execution. The successful candidate will lead and mature all defensive security functions, including the Security Operations Center (SOC), Incident Response, Threat & Vulnerability Management (TVM), Blue Team Operations, Red Team and Adversary Simulation, Penetration Testing, and Application Security.

The ideal candidate is a well-rounded cybersecurity leader who is equally comfortable presenting risk and security strategy to executive leadership as they are engaging directly with technical teams during active incidents, security assessments, or transformation initiatives. They will be expected to actively guide, mentor, and support teams at every level, roll up their sleeves when necessary, and foster a culture of accountability, operational excellence, continuous improvement, and innovation. This leader will play a critical role in strengthening the organization's security posture, developing high-performing teams, and ensuring cyber defense capabilities evolve to address emerging threats and business objectives. Key responsibilities of this role are outlined below.

Security Operations & Blue Team Oversight

  • Oversee 24x7 SOC operations, ensuring effective monitoring, detection, and response to security events, across levels 1-3.
  • Drive continuous enhancement of detection engineering, threat hunting, and security analytics.
  • Implement best-in-class security tooling, automation, and operational processes.

Adversarial Security: Red Team & Penetration Testing

  • Lead internal Red Team and offensive security capabilities, including penetration testing.
  • Define testing methodologies, operational rules of engagement, and reporting standards.
  • Translate offensive findings into actionable improvements for defensive teams and architecture.

Incident Response & Crisis Management

  • Oversee the Incident Response program, ensuring rapid and effective handling of security incidents.
  • Lead tabletop exercises, simulation drills, and readiness assessments.
  • Facilitate and lead high/critical incident responses, when the Incident Response Manager is unavailable. Coordinate with legal, communications, and executive stakeholders during major incidents.

Threat & Vulnerability Management (TVM)

  • Own the enterprise-wide vulnerability management strategy, including prioritization, remediation, and reporting.
  • Drive continuous scanning, assessment, and metrics to reduce risk across infrastructure, applications, and cloud environments.
  • Collaborate with engineering and operations teams to ensure timely and effective remediation.
  • Facilitate and the zero-day vulnerability response process, when the Incident Response Manager is unavailable.

Application Security (AppSec)

  • Lead the organization's AppSec program, including secure SDLC practices, code reviews, SAST/DAST tools, and developer enablement.
  • Partner with software engineering to embed security into product and platform design.

Adversary Simulation & Cyber Readiness

  • Develop and run adversary simulation programs that mimic real-world threat actors.
  • Use intelligence-led scenarios to evaluate detection capabilities, response effectiveness, and organizational resilience.

Basic Qualifications

  • Experience & Leadership: 10+ years of progressive experience across the various cyber defense disciplines (SOC, Incident Response, Red/Blue teams, or similar defensive/offensive functions.) Proven experience leading cyber defense teams. Demonstrated ability to hire, mentor, and lead high-performing technical teams.
  • Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science or a related discipline.
  • Technical Expertise: Strong knowledge of threat detection, incident response, adversary tactics (MITRE ATT&CK), vulnerability management, and secure software development.
  • Availability: In the absence of IR team members, utilize a flexible work schedule to facilitate the security incident response process for high/critical incidents.

Preferred Qualifications

  • Education and Certifications: Master's degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as CISSP, CISM, OSCP/OSCE, GIAC (GSEC, GCIA, GCIH, GPEN, GXPN) are highly desirable.
  • Framework Experience: Familiarity with, and prior participation with FIRST (Forum of Incident Response and Security Teams) is preferred.
  • Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication.
  • Proven experience collaborating with global teams across diverse regions and cultures, building strong cross-functional partnerships.

Team Culture:

The team fosters a high-performance, collaborative environment centered around proactive cybersecurity defense and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring readiness and resilience in the face of evolving threats.

  • Collaborative Leadership: Team members lead cross-functional service delivery efforts, coordinating with internal stakeholders, MSSPs, and external partners to drive delivery of services and maintain transparency.
  • Continuous Improvement & Accountability: The team regularly adjusts the Information Security strategy and roadmap in alignment with customer needs, changing threat landscape and industry trends.

Base Salary Range: $181,240 - $ 259,160