... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Master's Degree in Statistics, Mathematics ...
... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Master's Degree in Statistics, Mathematics ...
... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Master's Degree in Statistics, Mathematics ...
... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Master's Degree in Statistics, Mathematics ...
Security Operations Center Supervisor
Bothell, WA · On-site
$55.61/hr
Direct SOC operators in effective intelligence collection, analysis, and reporting. * Draft and ... Other (Security Operations Center, Emergency & Disaster Management, Communications and Dispatch ...
Security Operations Center Supervisor
Bothell, WA · On-site
$55.61/hr
Direct SOC operators in effective intelligence collection, analysis, and reporting. * Draft and ... Other (Security Operations Center, Emergency & Disaster Management, Communications and Dispatch ...
Security Operations Center Supervisor
Bothell, WA · On-site
$55.61/hr
Direct SOC operators in effective intelligence collection, analysis, and reporting. * Draft and ... Other (Security Operations Center, Emergency & Disaster Management, Communications and Dispatch ...
Security Operations Center Supervisor
Bothell, WA · On-site
$55.61/hr
Direct SOC operators in effective intelligence collection, analysis, and reporting. * Draft and ... Other (Security Operations Center, Emergency & Disaster Management, Communications and Dispatch ...
... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Bachelor's Degree in Statistics, Mathematics ...
... Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response * OR Bachelor's Degree in Statistics, Mathematics ...
TechOps Administrator I (Full Scope Polygraph Clearance) with Security Clearance
Redmond, WA · On-site
$130K/yr
TechOps Administrator, SOC Analyst, Security Operations Center, Azure, Microsoft Azure, Office 365, O365, Cloud Operations, Cloud Support, Cloud Administrator, Systems Administrator, IT Operations ...
TechOps Administrator I (Full Scope Polygraph Clearance) with Security Clearance
Redmond, WA · On-site
$130K/yr
TechOps Administrator, SOC Analyst, Security Operations Center, Azure, Microsoft Azure, Office 365, O365, Cloud Operations, Cloud Support, Cloud Administrator, Systems Administrator, IT Operations ...
Use analytical tools to consolidate and analyze information then produce report outs to provide ... Security Operations Center (SOC / GSOC) * Experience working with C-Suite level executives or ...
Use analytical tools to consolidate and analyze information then produce report outs to provide ... Security Operations Center (SOC / GSOC) * Experience working with C-Suite level executives or ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
Security Operations Center Operator
Seattle, WA · On-site
$54.32/hr
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
Security Operations Center Operator
Seattle, WA · On-site
$54.32/hr
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
The Security Operations Center (SOC) Operator serves as a central point of contact for security ... Perform continuous monitoring and analysis of security risks to identify potential threats to ...
Security Operations Center Operator II
Bothell, WA · On-site
$42.92/hr
The Operator (Level 2) will serve as a senior Operator in the SOC and assist the Supervisor with ... Use multiple sources to identify and analyze potential risks, business opportunities and/or threats ...
Security Operations Center Operator II
Bothell, WA · On-site
$42.92/hr
The Operator (Level 2) will serve as a senior Operator in the SOC and assist the Supervisor with ... Use multiple sources to identify and analyze potential risks, business opportunities and/or threats ...
Security Operations Center Operator II
Bothell, WA · On-site
$42.92/hr
The Operator (Level 2) will serve as a senior Operator in the SOC and assist the Supervisor with ... Use multiple sources to identify and analyze potential risks, business opportunities and/or threats ...
Security Operations Center Operator II
Bothell, WA · On-site
$42.92/hr
The Operator (Level 2) will serve as a senior Operator in the SOC and assist the Supervisor with ... Use multiple sources to identify and analyze potential risks, business opportunities and/or threats ...
Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...
Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...
Utilize analytical tools to consolidate and analyze information then produce report outs to provide ... SOC / GSOC) * Experience working with C-Suite level executives or equivalent * Advanced ...
Utilize analytical tools to consolidate and analyze information then produce report outs to provide ... SOC / GSOC) * Experience working with C-Suite level executives or equivalent * Advanced ...
Galvanick protects the industrial world against cyber attacks, and they are seeking a Threat Hunter / SOC Analyst to enhance their operational security. The role involves conducting manual threat ...
Galvanick protects the industrial world against cyber attacks, and they are seeking a Threat Hunter / SOC Analyst to enhance their operational security. The role involves conducting manual threat ...
You'll partner closely with our Security Operations Center (SOC), Security Operations Engineering ... Partner with the SOC to triage, tune, and close detection feedback loops; use analyst dispositions ...
You'll partner closely with our Security Operations Center (SOC), Security Operations Engineering ... Partner with the SOC to triage, tune, and close detection feedback loops; use analyst dispositions ...
In this role, you will support Next-Generation Security Operations Center (SOC) capabilities ... data analytics, and threat intelligence. The team helps organizations manage dynamic attack ...
In this role, you will support Next-Generation Security Operations Center (SOC) capabilities ... data analytics, and threat intelligence. The team helps organizations manage dynamic attack ...
Staff Security Detection Engineer, Machine Learning
Seattle, WA · On-site
$180 - $240/hr
You'll partner closely with our Security Operations Center (SOC), Security Operations Engineering ... Mentor engineers and analysts on applied ML, anomaly detection, detection tuning, data quality, and ...
Staff Security Detection Engineer, Machine Learning
Seattle, WA · On-site
$180 - $240/hr
You'll partner closely with our Security Operations Center (SOC), Security Operations Engineering ... Mentor engineers and analysts on applied ML, anomaly detection, detection tuning, data quality, and ...
Security Operations Analyst
Seattle, WA · On-site
$129 - $171/hr
... center. As the world enters an era of strategic competition, Anduril is committed to bringing ... SOC operations * Must have experience with one or more SIEM languages (SPL, KQL, SQL) * Experience ...
New
Security Operations Analyst
Seattle, WA · On-site
$129 - $171/hr
... center. As the world enters an era of strategic competition, Anduril is committed to bringing ... SOC operations * Must have experience with one or more SIEM languages (SPL, KQL, SQL) * Experience ...
New
Security Operations Center Soc Analyst information
See Seattle, WA salary details
$19.71 - $25.23
19% of jobs
$26.39 is the 25th percentile. Wages below this are outliers.
$25.23 - $30.76
27% of jobs
$30.76 - $36.28
3% of jobs
The median wage is $36.53 / hr.
$36.28 - $41.80
12% of jobs
$46.50 is the 75th percentile. Wages above this are outliers.
$41.80 - $47.33
16% of jobs
$47.33 - $52.85
6% of jobs
$52.85 - $58.38
3% of jobs
$58.38 - $63.90
4% of jobs
$63.90 - $69.42
1% of jobs
$69.42 - $74.95
2% of jobs
$74.95 - $80.47
5% of jobs
$19
$41
$80
How much do security operations center soc analyst jobs pay per hour?
What is a Security Operations Center (SOC) analyst?
What are the key skills and qualifications needed to thrive as a Security Operations Center (SOC) analyst?
What are some common challenges faced by Security Operations Center (SOC) analysts, and how can they prepare to address them?
What is the difference between Security Operations Center Soc Analyst vs Security Engineer?
| Aspect | Security Operations Center Soc Analyst | Security Engineer |
|---|---|---|
| Certifications | CompTIA Security+, CEH, CISSP (preferred) | CISSP, GIAC, Security+ (common) |
| Work Environment | Monitoring security alerts in a SOC, incident response | Designing and implementing security solutions |
| Employer & Industry Usage | Typically employed by organizations with SOCs, cybersecurity firms | Used across industries for security infrastructure development |
The Security Operations Center Soc Analyst primarily monitors security alerts and responds to incidents within a SOC environment, focusing on detection and immediate response. In contrast, a Security Engineer designs, implements, and maintains security systems. While both roles require similar certifications and work in cybersecurity, their daily tasks and focus areas differ significantly.
What are popular job titles related to Security Operations Center Soc Analyst jobs in Seattle, WA?
For Security Operations Center Soc Analyst jobs in Seattle, WA, the most frequently searched job titles are:
What job categories do people searching Security Operations Center Soc Analyst jobs in Seattle, WA look for?
The top searched job categories for Security Operations Center Soc Analyst jobs in Seattle, WA are:

Microsoft rating
8.5
Based on 132 frontline employees who took The Breakroom Quiz
81st of 247 rated software companies
Job description
Quantum computing has the potential to massively accelerate science and technology innovation. Microsoft Discovery & Quantum is building advanced computing platforms, spanning HPC, AI, and quantum, to realize that future. You will join the Quantum Security & IT Operations (QSIT) team protecting a globally distributed research community and its intellectual property.
As a Principal Security Operations Engineer in QSIT, you will own the response to cybersecurity, external & insider threat incidents affecting Microsoft Quantum, from initial detection and severity assessment through containment, recovery, root-cause analysis, and executive closure working across National Security Team, HR, Legal, Global Trade, and CISO organizations. You will set the technical direction for incident handling, coordinate responders across Quantum and Microsoft security organizations, and ensure lessons learned translate into durable improvements to controls, detections, and operating procedures.
You will also define and drive the requirements for an AI-enabled QSIT Security Operations Center, shaping how AI supports signal enrichment, triage, investigation, response, and analyst decision-making while maintaining strong auditability and data-handling controls.
This role requires broad technical and risk judgment, independent leadership in ambiguous situations, and the ability to influence security strategy across organizational boundaries. This role is onsite in Redmond, WA.
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees, we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities
- Own cybersecurity incidents affecting Microsoft Quantum, establishing severity and response strategy, directing technical investigation and containment, coordinating recovery, and driving incidents to clear, accountable closure.
- Manage insider and external threat incident analysis and triage from initial indicators through scoping, forensic review, evidence preservation, case disposition, and root-cause analysis, producing defensible investigative narratives for executive, legal, and compliance review.
- Drive changes to systems and processes based on incident and risk learnings that cross and impact other teams.
- Lead cross-functional incident response with Quantum engineering, Microsoft CISO organization, National Security Team, HR, Legal, and Global Trade; provide concise executive updates, document decisions and evidence, and ensure post-incident actions are assigned and completed.
- Define and drive the requirements, architecture, operating model, and prioritized engineering backlog for an AI-enabled QSIT SOC, covering signal enrichment, triage, investigation, response recommendations, analyst-in-the-loop controls, auditability, and sensitive-data handling.
- Translate AI SOC needs into measurable capabilities and acceptance criteria, evaluate first- and third-party solutions, guide implementation, and assess operational effectiveness, risk, and readiness for production use.
- Design, implement, and tune insider threat and cybersecurity detections in Microsoft Sentinel and related platforms; onboard and normalize new security data streams; identify visibility gaps; and convert incident findings into improved detections, controls, runbooks, and monitoring coverage.
Embody our Culture and Values
Qualifications
Required/minimum qualifications
- Doctorate in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- OR equivalent experience.
Other Qualifications
- Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
- Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter.
- Citizenship & Citizenship Verification: This role will require access to information that is controlled for export under export control regulations, potentially under the U.S. International Traffic in Arms Regulations or Export Administration Regulations, the EU Dual Use Regulation, and/or other export control regulations. As a condition of employment, the successful candidate will be required to provide proof of citizenship, U.S. permanent residency, or other protected status (e.g., under 8 U.S.C. § 1324b(a)(3)) for assessment of eligibility to access the export-controlled information. To meet this legal requirement, and as a condition of employment, the successful candidate's citizenship will be verified with a valid passport. Lawful permanent residents, refugees, and asylees may verify status using other documents, where applicable.Additional or Preferred Qualifications (PQs)
Additional or preferred qualifications
- Doctorate in Statistics, Mathematics, Computer Science, or related field AND 5+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
- OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 8+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
- OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 12+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
- OR equivalent experience.
- CISSP CISA CISM SANS OSCP Security+
- 6+ years of experience in cybersecurity, security operations, incident response, insider threat, threat analytics, security information and event management (SIEM), or equivalent experience.
- Demonstrated experience leading complex security incidents end-to-end, including technical investigation, containment, recovery, root-cause analysis, executive communication, and post-incident remediation.
- Hands-on experience with Microsoft Sentinel (KQL) or an equivalent enterprise SIEM, including detection engineering, data onboarding, investigative analysis, and the ability to set technical direction across ambiguous, high-impact security situations.
- CISSP certification or other relevant (CISA, CISM, SANS GCIA, GCIH, OSCP, Security+).
- Experience collaborating with corporate insider threat, investigations, legal, or trade compliance functions; exposure to dedicated insider threat platforms such as Purview, DTEX, Proofpoint ITM, Magnet Axiom, or Forcepoint.
- Experience designing, deploying, or evaluating agentic AI or LLM-based automation in a security operations context is strongly desired; familiarity with post-quantum cryptography concepts and CNSA 2.0.
- Experience or interest in the specific challenges of protecting strategic research programs from sustained external targeting; familiarity with export control (EAR / ITAR) and government program environments.
#Quantum #QuantumCareers #MDQCareers #Security
Security Operations Engineering IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
What Microsoft employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Microsoft
Sourced by ZipRecruiter
Our infrastructure is comprised of a large global portfolio of more than 100 datacenters and 1 million servers. Our foundation is built upon and managed by a team of subject matter experts working to support services for more than 1 billion customers and 20 million businesses in over 90 countries worldwide. With environmental sustainability and optimization at the forefront of our datacenter design and operations, we continue to grow and evolve as we meet the ever-changing business demands that hold Microsoft as a world-class cloud provider.
Industry
Computer and computer peripheral equipment and software wholesalers
Company size
10,000+ Employees
Headquarters location
Redmond, WA, US
Year founded
1975