1

Soc Analyst Jobs in California (NOW HIRING)

SOC Analyst

San Francisco, CA · On-site

$90 - $120/hr

We are looking for a SOC Analyst to join our team. You will be the consistent, accountable owner of alert triage during coverage hours -- bringing the speed, rigor, and communication discipline that ...

New

SOC Analyst II

Monterey, CA · On-site

$39 - $44/hr

As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations Center "SOC" environment. Daily responsibilities of the SOC are ever changing, however, you can expect ...

Tier 1 SOC Analyst

Seaside, CA · On-site

$78K - $105K/yr

Description Tier 1 SOC Analyst Xcelerate Solutions is seeking a Tier 1 SOC Analyst to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support ...

As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations Center "SOC" environment. Daily responsibilities of the SOC are ever changing, however, you can expect ...

As the SOC Analyst I, you will provide tier I cybersecurity support in a SOC environment by tracking and reporting cyber security threats, events, and incidents. You will be expected to perform ...

SOC Analyst I

Monterey, CA · On-site

$38.72 - $40/hr

As the SOC Analyst I, you will provide tier I cybersecurity support in a SOC environment by tracking and reporting cyber security threats, events, and incidents. You will be expected to perform ...

SOC Analyst

Palo Alto, CA · On-site

$115 - $145/hr

We are looking for a versatile SOC analyst to join the team and write, tune and respond to alerts covering the entire environment from endpoints to cloud infrastructure. This exciting opportunity ...

New

SOC Analyst

San Francisco, CA · On-site

$115 - $145/hr

We are looking for a versatile SOC analyst to join the team and write, tune and respond to alerts covering the entire environment from endpoints to cloud infrastructure. This exciting opportunity ...

New

M1 Global is seeking an SOC Analyst who views security as a core component of operational excellence. This role serves as a centralized hub for physical security operations, responsible for real-time ...

The SOC Analyst leads communication during routine and crisis events, supports business continuity efforts, and ensures compliance with established security procedures. Key Responsibilities * Monitor ...

GSOC Analyst

Newport Beach, CA · On-site

$28 - $30.02/hr

The SOC Analyst leads communication during routine and crisis events, supports business continuity efforts, and ensures compliance with established security procedures. Key Responsibilities * Monitor ...

next page

Showing results 1-20

Soc Analyst information

See California salary details

$35K

$97.9K

$125.3K

How much do soc analyst jobs pay per year?

As of Aug 21, 2026, the average yearly pay for soc analyst in California is $97,859.00, according to ZipRecruiter salary data. Most workers in this role earn between $71,100.00 and $124,800.00 per year, depending on experience, location, and employer.

What is a SOC analyst?

SOC Analysts, or Security Operations Center Analysts, are cybersecurity professionals responsible for monitoring, detecting, and responding to security threats within an organization's IT infrastructure. They analyze security alerts, investigate suspicious activities, and help protect against data breaches and cyber attacks. SOC Analysts often work in shifts to provide round-the-clock surveillance and are essential for maintaining an organization’s security posture. Their duties also include reporting incidents, conducting threat analysis, and recommending improvements to security policies.

What are the key skills and qualifications needed to thrive as a SOC analyst?

To thrive as a SOC Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often backed by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and relevant certifications like CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for quickly identifying and mitigating threats. These skills and qualifications are crucial for effectively protecting organizational assets and maintaining robust security operations.

What are some typical challenges a SOC analyst faces during incident response, and how can these be managed?

SOC Analysts often encounter challenges such as distinguishing legitimate threats from false positives, responding quickly to multiple simultaneous incidents, and managing large volumes of security alerts. These challenges can be managed by developing strong analytical skills, maintaining up-to-date knowledge of threat landscapes, and leveraging automated tools to prioritize incidents. Effective communication with IT teams and regular training in incident response protocols also play a key role in overcoming these obstacles and ensuring organizational security.

What is the difference between Soc Analyst vs Security Engineer?

AspectSoc AnalystSecurity Engineer
CredentialsCertifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level)Certifications like CISSP, CEH, OSCP, often more technical and advanced
Work EnvironmentSecurity operations centers, monitoring and analyzing security alertsDesigning, implementing, and maintaining security systems and infrastructure
Employer & Industry UsageFinancial, healthcare, government, and corporate sectorsTech companies, cybersecurity firms, large enterprises
Common Search & Comparison IntentUnderstanding roles in security monitoring and incident responseUnderstanding technical security implementation and architecture

While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.

Do SOC analysts get paid well?

SOC analysts typically earn competitive salaries that vary based on experience, certifications, and location. Entry-level positions may start lower, but experienced analysts with certifications like CISSP or CEH can command higher wages, especially in high-demand areas or specialized environments.

Is a SOC analyst a hard job?

A SOC analyst role involves monitoring security systems, analyzing threats, and responding to incidents, which can be challenging due to the need for quick decision-making and technical skills. The job often requires knowledge of cybersecurity tools, protocols, and certifications, and may involve shift work to ensure 24/7 coverage.

What are the most commonly searched types of Soc Analyst jobs in California?

The most popular types of Soc Analyst jobs in California are:

What job categories do people searching Soc Analyst jobs in California look for?

The top searched job categories for Soc Analyst jobs in California are:

What cities in California are hiring for Soc Analyst jobs?

Cities in California with the most Soc Analyst job openings:

Infographic showing various Soc Analyst job openings in California as of August 2026, with employment types broken down into 91% Full Time, 4% Part Time, and 5% Contract. Highlights an 80% Physical, 9% Hybrid, and 11% Remote job distribution, with an average salary of $97,859 per year, or $47 per hour.

SOC Analyst

Doist

San Francisco, CA • On-site

$90 - $120/hr

Other

Medical, Dental, Vision

Posted 3 days ago

New


Job description

# SOC AnalystHappyRobot • San Francisco, CA • Software Development • 1w agoSave this role or tell us whether you want more jobs like it.## **About HappyRobot**HappyRobot is the infrastructure for enterprises to build and orchestrate AI workforces. Our AI workers don't just communicate through voice and email - they make decisions, take action, and run operations autonomously across entire enterprise systems. Born in Y Combinator (S23) and backed by a16z, Base10, Prysm Capital and Eurazeo with over $150M raised, we power critical operations for global enterprises worldwide.Our platform is battle-tested in the most demanding environments, where AI has real consequences. We started in logistics, built our own voice stack, models, and orchestration layer from the ground up, and are now bringing that infrastructure to every enterprise that runs the real economy. Learn more about our vision in our manifesto.## **Role Overview**We are looking for a SOC Analyst to join our team. You will be the consistent, accountable owner of alert triage during coverage hours — bringing the speed, rigor, and communication discipline that transforms alert handling from a best-effort scramble into a reliable, measurable function.This is not a detection engineering or research role. Your deepest strength is triage: prioritizing fast, distinguishing signal from noise, and escalating with the context that lets engineers act immediately rather than re-investigate from scratch. That said, you operate with a continuous improvement mindset — feeding a structured tuning loop with the SOC Engineer and proposing runbook fixes when the playbook doesn't match reality.**What You'll Do*** **Alert Triage** Own the queue during coverage hours. Prioritize and disposition alerts accurately and fast — high-severity alerts acknowledged within 15 minutes, all alerts dispositioned within SLA. Know the difference between a true positive and noise, and act accordingly without waiting to be told.* **Log & Threat Analysis** Pivot across cloud, identity, and endpoint log sources to build a clear timeline when an alert warrants deeper investigation. Use MITRE ATT&CK as a reference frame to understand what you're looking at and what it means in context.* **Incident Escalation & Communication** Escalate incidents with complete, actionable context — severity reasoning, timeline, affected systems, and recommended next steps. Write clearly in English. Engineers receiving your escalations should be able to act without asking follow-up questions.* **Runbook Discipline & Improvement** Follow runbooks rigorously. When a runbook falls short — wrong steps, missing cases, outdated assumptions — flag it and propose a fix. Runbooks improve because analysts use them critically, not just obediently.* **Tuning Feedback Loop** Run a weekly feedback cycle with the SOC Engineer. Report false positives, patterns in noise, and cases where detection logic needs adjustment. Improve signal quality over time rather than just processing the same noise on repeat.* **Audit Readiness** Keep monitoring and response evidence current and organized for SOC 2, ISO 27001, and customer incident response commitments. Triage work that isn't documented doesn't exist for audit purposes — make sure yours does.**Must Have*** 2–3 years as a SOC analyst or in a blue team / detection and response role.* Hands-on alert triage experience with a SIEM and an EDR — investigation, disposition, and escalation.* Log analysis across cloud, identity, and endpoint sources.* Working knowledge of MITRE ATT&CK and common attack patterns.* Clear written incident notes and escalations in English (B2+).* Comfortable operating on a coverage-hours rotation.**Nice to Have*** Cloud console familiarity with AWS, Azure, or GCP.* Scripting basics in Python or Bash.* Phishing and email threat analysis experience.* Certifications: BTL1, GCIH, Security+, or CySA+.* Exposure to detection tuning or writing simple detection rules.* Prior experience at a SaaS or tech startup.## **Why join us?*** Join a world-class team of engineers and builders.* Backed by top investors including a16z, Y Combinator, Base10, Prysm Capital and Eurazeo.* Have ownership and autonomy of projects and are encouraged to ship.* Comprehensive Benefits including healthcare, dental, vision coverage.* Competitive salary + equity in a high-growth startup.**Our Operating Principles*****Extreme Ownership***We take full responsibility for our work, outcomes, and team success. No excuses, no blame-shifting — if something needs fixing, we own it and make it better. This means stepping up, even when it’s not “your job.” If a ball is dropped, we pick it up. If a customer is unhappy, we fix it. If a process is broken, we redesign it. We don’t wait for someone else to solve it — we lead with accountability and expect the same from those around us.***Craftsmanship***Putting care and intention into every task, striving for excellence, and taking deep ownership of the quality and outcome of your work. Craftsmanship means never settling for “just fine.” We sweat the details because details compound. Whether it’s a product feature, an internal doc, or a sales call — we treat it as a reflection of our standards. We aim to deliver jaw-dropping customer experiences by being curious, meticulous, and proud of what we build — even when nobody’s watching.***We are “majos”***Be friendly & have fun with your coworkers. Always be genuine & honest, but kind. “Majo” is our way of saying: be a good human. Be approachable, helpful, and warm. We’re building something ambitious, and it’s easier (and more fun) when we enjoy the ride together. We give feedback with kindness, challenge each other with respect, and celebrate wins together without ego.***Urgency with Focus***Create the highest impact in the shortest amount of time. Move fast, but in the right direction. We operate with speed because time is our most limited resource. But speed without focus is chaos. We prioritize ruthlessly, act decisively, and stay aligned. We aim for high leverage: the biggest results from the simplest, smartest actions. We’re running a high-speed marathon — not a sprint with no strategy.***Talent Density and Meritocracy***Hire only people who can raise the average; ‘exceptional performance is the passing grade.’ Ability trumps seniority. We believe the best teams are built on talent density — every hire should raise the bar. We reward contribution, not titles or tenure. We give ownership to those who earn it, and we all hold each other to a high standard. A-players want to work with other A-players — that’s how we win.***First-Principles Thinking***Strip a problem to physics-level facts, ignore industry dogma, rebuild the solution from scratch. We don’t copy-paste solutions. We go back to basics, ask why things are the way they are, and rebuild from the ground up if needed. This mindset pushes us to innovate, challenge stale assumptions, and move faster than incumbents. It’s how we build what others think is impossible.*The personal data provided in your application and during the selection process will be processed by Happyrobot, Inc., acting as Data Controller.**By sending us your CV, you consent to the processing of your personal data for the purpose of evaluating and selecting you as a candidate for the position. Your personal data will be treated confidentially and will only be used for the recruitment process of the selected job offer.**In relation to the period of conservation of your personal data, these will be eliminated after three months of inactivity in compliance with the GDPR and legislation on the protection of personal data.**If you wish to exercise your rights of access, rectification, deletion, portability or opposition in relation to your personal data, you can do so through security@happyrobot.ai subject to the GDPR.**For more information, visit* *https://www.happyrobot.ai/privacy-policy**By submitting your request, you confirm that you have read and understood this clause and that you agree to the processing of your personal data as described.* #J-18808-Ljbffr