1

Security Operations Center Soc Engineer Jobs (NOW HIRING)

SOC Engineer

Raleigh, NC · On-site

$110K - $135K/yr

The SOC Engineer will be working in a security operations center leveraging SOC tools, communicating incidents / threats and assisting with response. The SOC Engineer role is a hybrid position ...

Showing results 21-40

Security Operations Center Soc Engineer information

See salary details

$33.5K

$137.7K

$174K

How much do security operations center soc engineer jobs pay per year?

As of Aug 6, 2026, the average yearly pay for security operations center soc engineer in the United States is $137,745.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $173,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Security Operations Center (SOC) engineer, and why are they important?

To thrive as a Security Operations Center (SOC) Engineer, you need strong analytical skills, a solid understanding of network security principles, and typically a degree in computer science or cybersecurity. Familiarity with SIEM tools (like Splunk or QRadar), intrusion detection systems, and relevant certifications such as CompTIA Security+ or CISSP are highly valued. Excellent problem-solving abilities, attention to detail, and effective communication make someone stand out in this role. These skills and qualities are crucial for detecting, analyzing, and responding to security threats promptly, ensuring organizational data and infrastructure remain secure.

What are some common challenges faced by a Security Operations Center (SOC) engineer, and how can they be addressed?

SOC Engineers often face challenges such as managing a high volume of security alerts, staying updated with evolving threat landscapes, and ensuring effective communication across IT and security teams. To address these, it's important to leverage automation tools to filter and prioritize alerts, participate in ongoing training to remain current with new threats, and foster strong collaboration with other departments for coordinated incident response. Developing clear processes and documentation also helps mitigate confusion during high-pressure incidents.

What is the difference between Security Operations Center Soc Engineer vs Security Analyst?

AspectSecurity Operations Center Soc EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials (GSEC)
Work EnvironmentSecurity operations center, monitoring and responding to threatsAnalyzing security data, assessing vulnerabilities
Employer & IndustryCybersecurity firms, large enterprises, government agenciesOrganizations with security teams, IT departments

While both roles focus on cybersecurity, Security Operations Center Soc Engineers primarily design, implement, and respond to security threats within a SOC environment. Security Analysts analyze security data and identify vulnerabilities. SOC Engineers often have more technical responsibilities related to system configuration and incident response, whereas Security Analysts focus on monitoring and reporting. Both roles are essential for a comprehensive security strategy.

What does a Security Operations Center (SOC) engineer do?

A Security Operations Center (SOC) Engineer is responsible for monitoring, detecting, and responding to cybersecurity threats within an organization's IT infrastructure. They use specialized tools and techniques to analyze security alerts, investigate incidents, and coordinate responses to minimize risk. SOC Engineers also help maintain and improve security systems, conduct vulnerability assessments, and implement security best practices to protect sensitive data and resources. Their role is critical in ensuring the organization's information security posture remains strong against evolving threats.
More about Security Operations Center Soc Engineer jobs
What cities are hiring for Security Operations Center Soc Engineer jobs? Cities with the most Security Operations Center Soc Engineer job openings:
Infographic showing various Security Operations Center Soc Engineer job openings in the United States as of August 2026, with employment types broken down into 83% Full Time, and 17% Part Time. Highlights an 89% In-person, and 11% Remote job distribution, with an average salary of $137,745 per year, or $66.2 per hour.

Security Operations Center (SOC) Tier- 3 - Full-time

MAD Security

Huntsville, AL • On-site

Full-time

Re-posted 6 days ago


Job description

Job Summary:
MAD Security, LLC is a veteran-owned cybersecurity provider dedicated to safeguarding businesses. They are seeking a Security Operations Center (SOC) Tier-3 Analyst responsible for advanced security monitoring, incident response, and threat hunting to support clients in Huntsville, Alabama.
Responsibilities:
• Master the technical tools and procedures used to manage and operate the SOC
• Apply a deep understanding of how SIEM and SOAR technologies function to monitor and defend client environments
• Administer and maintain Elastic and related SOC tooling
• Analyze, triage, aggregate, escalate, and report on client security events, including investigation of anomalous and malicious activity
• Lead problem solving and resolution during incident response events
• Plan and execute focused threat hunt operations
• Perform correlation and trend analysis of security logs, network traffic, security alerts, events, and incidents
• Collaborate with all SOC experts to monitor, identify, and make notifications on cybersecurity matters to provide a holistic and seamless experience for the client
• Continuously improve SOC technologies to minimize false positives and maximize detection and prevention effectiveness
• Build, tune, and operationalize AI-assisted SOC workflows for detection, alert triage, enrichment, and automated response
• Evaluate AI and automation tooling to improve analyst efficiency and speed to resolution while preserving accuracy and human oversight of critical decisions
• Develop comprehensive and accurate reports and presentations for technical and executive audiences
• Design and conduct proof-of-concept tests to replicate third-party findings and propose solutions to resolve discovered security issues
• Communicate regularly with the team and with clients to proactively address concerns and maintain trusted relationships
Qualifications:
Required:
• Minimum six (6) years of experience in IT security and/or information technology
• Experience working in a Security Operations Center or Network Operations Center in an enterprise or managed services provider (MSP/MSSP) environment
• Experience in incident response, forensics, malware reverse engineering, or incident investigation in large-scale environments
• Experience with industry security tooling required
• Strong problem solving and critical thinking skills, with the ability to prioritize and execute autonomously
• Ability to tune correlation rules and outcomes via SIEM and SOAR platforms and apply emerging SOC and IR techniques to improve efficiency and effectiveness
• Familiarity with applying AI and automation in a SOC context to augment detection, triage, and response, with sound judgment about where human oversight remains essential
• A desire to take on roles of increasing responsibility including defining services, managing teams, and coordinating resources
• Integrity: Ethical and respectful to clients and team
• Grit: Ability to self-motivate, self-manage, and meet deadlines when faced with competing priorities
• Customer-centric: Understand that partnership with our clients is a 'win-win' scenario
• Selfless: Understand that when one team member succeeds, we all succeed
Preferred:
• Experience with Elastic, Fortinet, Avanan, OpenText NDR, and Microsoft Sentinel is a plus
• Bachelor's degree in Information Technology, Information Security/Assurance, Computer Science, or an equivalent combination of education and experience preferred; Master's degree a plus
Company:
Mad Security is a provider of cyber security solutions that combines multiple ways of raising the online security of a company. Founded in 2010, the company is headquartered in San Francisco, USA, with a team of 11-50 employees. The company is currently Early Stage.