1

Security Operations Center Analyst Jobs in Spring, TX

SOC Analyst II (L2) Location: Bellaire, Texas (Hybrid - 1 day onsite per week) About Us STAFFXPERT ... This role is ideal for a cybersecurity professional with hands-on Security Operations Center (SOC ...

next page

Showing results 1-20

Security Operations Center Analyst information

See Spring, TX salary details

$15

$32

$62

How much do security operations center analyst jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for security operations center analyst in Spring, TX is $32.80, according to ZipRecruiter salary data. Most workers in this role earn between $20.10 and $38.94 per hour, depending on experience, location, and employer.

What skills make an effective security operations center analyst?

To thrive as a Security Operations Center Analyst, you need a strong understanding of cybersecurity principles, network protocols, and incident response, often backed by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM tools (e.g., Splunk, QRadar), intrusion detection systems, and ticketing platforms is essential for effective monitoring and analysis. Attention to detail, analytical thinking, and clear communication help SOC Analysts excel in identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, investigating, and mitigating security incidents, protecting organizational assets from cyber threats.

What are the most common challenges security operations center analysts face during daily operations?

Security Operations Center (SOC) Analysts often deal with a high volume of alerts, many of which may be false positives, requiring keen analytical skills to prioritize genuine threats. Staying updated on evolving cyber threats and attack patterns is another challenge, as adversaries continuously adapt their tactics. Additionally, SOC Analysts frequently work in high-pressure environments where quick, accurate decision-making is crucial, and collaboration with IT, incident response teams, and management is essential to ensure coordinated defense efforts.

What is a security operations center analyst?

Security Operations Center (SOC) Analysts are cybersecurity professionals who monitor, detect, and respond to security threats within an organization’s IT environment. They analyze security alerts, investigate incidents, and coordinate responses to mitigate risks and protect sensitive data. SOC Analysts use specialized tools to track suspicious activities, implement security measures, and ensure compliance with security policies. Their work is crucial in defending organizations against cyberattacks and maintaining overall information security.

What is the difference between Security Operations Center Analyst vs Security Analyst?

AspectSecurity Operations Center AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA (preferred)
Work EnvironmentMonitoring security alerts in a SOC, 24/7 shiftsAnalyzing security data, conducting risk assessments
Employer & Industry UsagePrimarily in security operations centers, cybersecurity firmsVarious industries including finance, healthcare, government

The Security Operations Center Analyst focuses on real-time monitoring and incident response within a SOC environment, often working in shifts. In contrast, a Security Analyst typically conducts broader security assessments, policy development, and risk analysis across organizations. Both roles require similar certifications and are integral to cybersecurity teams, but their daily tasks and work settings differ.

What does a security operations center analyst do?

A security operations center analyst works on the cybersecurity team at an organization to proactively defend the organization's database, website, servers, and network. In this role you control the security alerts and ensure that each alert is taken care of before the threat of hackers gaining access to your company's information is realized. You may run an investigation if you see similar threats repeatedly to see who is attempting to attack your systems and why. Your other duties may include keeping and analyzing a security log, coordinating with other analysts or security team members, and assessing company vulnerability.

What are popular job titles related to Security Operations Center Analyst jobs in Spring, TX? For Security Operations Center Analyst jobs in Spring, TX, the most frequently searched job titles are:
What job categories do people searching Security Operations Center Analyst jobs in Spring, TX look for? The top searched job categories for Security Operations Center Analyst jobs in Spring, TX are:
What cities near Spring, TX are hiring for Security Operations Center Analyst jobs? Cities near Spring, TX with the most Security Operations Center Analyst job openings:
Infographic showing various Security Operations Center Analyst job openings in Spring, TX as of July 2026, with employment types broken down into 100% Full Time. Highlights an 93% In-person, and 7% Remote job distribution, with an average salary of $68,233 per year, or $32.8 per hour.

Security Operations Center Analyst

Oceaneering International, Inc.

Houston, TX • On-site

Full-time

Posted 9 days ago


Oceaneering rating

6.8

Company rating: 6.8 out of 10

Based on 22 frontline employees who took The Breakroom Quiz

366th of 487 rated machine equipment manufacturers


Job description

The Security Operations Center Analyst is responsible for the administration, support, optimization, and expansion of the organization's security monitoring and log management platforms, including Splunk and Cribl. This role serves as a key contributor to security operations by ensuring reliable collection, processing, and analysis of security telemetry across both IT and Operational Technology (OT) environments.

  • Role provides the opportunity to work in a hybrid environment, working both virtually and in the Houston office when required.

Oceaneering is a global provider of engineered services and products, primarily to the offshore energy industry. We develop products and services for use throughout the lifecycle of an offshore oilfield, from drilling to decommissioning. We operate the world's premier fleet of work class ROVs. Additionally, we are a leader in offshore oilfield maintenance services, umbilicals, subsea hardware, and tooling. We also use applied technology expertise to serve the defense, material handling, aerospace, science, and renewable energy industries.
Equal Opportunity Employer: 
All qualified candidates will receive consideration for all positions without regard to race, color, age, religion, sex (including pregnancy), sexual orientation, gender identity, national origin, veteran status, disability, genetic information, or other non-merit factor.
Our regional support functions play a critical role in enabling the success of all Oceaneering business units. These teams include disciplines such as Finance, HR, Recruitment, IT, HSE, Supply Chain, Quality, and Administration. Operating collaboratively across multiple departments and geographic locations, they provide responsive, highquality support that ensures our operations run efficiently and safely. Having these teams based locally allows us to make timely decisions, respond quickly to operational needs, and maintain strong alignment with our business units and workforce.

REQUIRED

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field, or equivalent experience.

  • Minimum 3 years of experience supporting security monitoring, SIEM, or security engineering platforms.

  • Minimum 1 years' experience administering Splunk Enterprise.

  • Minimum 1 years' experience supporting Cribl or similar log management technologies.

  • Minimum 1 years' experience with Syslog architecture and log ingestion technologies.

  • Minimum 1 years' experience supporting Managed Detection and Response (MDR) services or Security Operations Centers.

  • Minimum 1 years' experience working with Windows, Linux, network, and cloud log sources.

  • Familiarity with Operational Technology (OT) and Industrial Control System (ICS) environments.

DESIRED

  • Splunk Certified Administrator or Splunk Certified Architect certification.

  • Experience with industrial networking and OT/ICS environments.

  • Experience integrating enterprise logging platforms with MDR providers.

  • Knowledge of NIST Cybersecurity Framework, IEC 62443, or ISA/IEC industrial security standards.

  • Experience with scripting and automation using PowerShell, Python, or similar tools.

  • Familiarity with Microsoft Azure and cloud security monitoring.

Functions

  • The position is responsible for supporting the integration and ongoing operation of the Managed Detection and Response (MDR) Security Operations Center (SOC), enabling effective threat detection, incident investigation, and security monitoring capabilities. 

  • Additionally, the role designs, implements, and maintains secure log forwarding infrastructure, including Syslog collectors and forwarders within the OT DMZ (Level 3.5) of the Purdue Model, ensuring visibility into critical industrial control system environments while maintaining required segmentation and security controls.

Splunk Administration & Engineering

  • Administer and maintain Splunk infrastructure, including search heads, indexers, forwarders, and supporting services.

  • Configure and optimize data ingestion, indexing, retention, and storage management.

  • Troubleshoot platform issues and coordinate remediation activities.

  • Develop and maintain Splunk dashboards, alerts, reports, and operational monitoring content.

  • Ensure system availability, performance, scalability, and compliance with organizational requirements.

  • Coordinate upgrades, patching, and lifecycle management activities.

Cribl Administration & Engineering

  • Administer and support Cribl Stream infrastructure and associated log pipelines.

  • Develop and maintain log routing, filtering, enrichment, masking, and normalization workflows.

  • Optimize data collection to improve security visibility while controlling storage and licensing costs.

  • Monitor and troubleshooting of ingestion issues across multiple log sources.

  • Collaborate with infrastructure, network, and security teams to onboard new data sources

MDR SOC Integration & Operations

  • Support deployment and integration activities associated with the managed security operations center (MDR SOC).

  • Coordinate onboarding of log sources and security telemetry required for threat monitoring.

  • Partner with MDR analysts to improve detection coverage and data quality.

  • Validate alerting, event correlation, and incident workflows.

  • Assist with tuning security use cases to reduce false positives and improve operational effectiveness.

  • Participate in ongoing operational reviews and continuous improvement activities.

OT Security Monitoring & Syslog Infrastructure

  • Design, implement, and support Syslog forwarding architecture within OT environments.

  • Deploy and maintain log collectors and forwarders within the Level 3.5 OT DMZ in accordance with the Purdue Model.

  • Work with OT, Infrastructure, and Network teams to onboard industrial and manufacturing systems into enterprise monitoring platforms.

  • Ensure security monitoring solutions align with OT segmentation and regulatory requirements.

  • Troubleshoot connectivity, log collection, and data quality issues across OT environments.

  • Support secure transmission and retention of OT security events.

Security Operations Support

  • Investigate platform-generated alerts and assist with security incident response activities.

  • Validate integrity and availability of security monitoring infrastructure.

  • Support audit, compliance, and regulatory reporting requirements.

  • Maintain engineering documentation, architecture diagrams, and operational procedures.

  • Participate in after-hours support activities when required.


What Oceaneering employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom