The analyst functions as the operational hub of the risk lifecycle -- from initial intake and ... In collaboration with SOC, ensures that Vulnerability Scanning output ingested into Workflow ...
The analyst functions as the operational hub of the risk lifecycle -- from initial intake and ... In collaboration with SOC, ensures that Vulnerability Scanning output ingested into Workflow ...
Senior Security Analyst
Atlanta, GA · On-site
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Senior Security Analyst
Atlanta, GA · On-site
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Senior Security Analyst
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Senior Security Analyst
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Senior Analyst, Cybersecurity Governance, Risk and Compliance, Atlanta, GA The Senior Analyst ... SOC II Type II, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test ...
Senior Analyst, Cybersecurity Governance, Risk and Compliance, Atlanta, GA The Senior Analyst ... SOC II Type II, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test ...
Senior Security Analyst
Atlanta, GA · On-site
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Senior Security Analyst
Atlanta, GA · On-site
$91K - $119K/yr
... as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values ... Strong analytical, communication, and documentation skills. * Ability to partner effectively across ...
Serve as a central coordination point for communication between Security Operations Center (SOC ... Data Analyst Associate, or equivalent. * US Citizen
Serve as a central coordination point for communication between Security Operations Center (SOC ... Data Analyst Associate, or equivalent. * US Citizen
Budget Analyst or Sr. Budget Analyst (Southern Power Company) Birmingham, AL or Atlanta, GA The SPC Budget Analyst is a strategic financial partner for Southern Power's business units. This role ...
Budget Analyst or Sr. Budget Analyst (Southern Power Company) Birmingham, AL or Atlanta, GA The SPC Budget Analyst is a strategic financial partner for Southern Power's business units. This role ...
Compliance Analyst
Atlanta, GA · Hybrid
About Your Role We are seeking a Compliance Analyst to support key operational activities across ... Support internal and external audit activities, including SOC 2, SOX, HIPAA, FedRAMP, TX-RAMP, and ...
Compliance Analyst
Atlanta, GA · Hybrid
About Your Role We are seeking a Compliance Analyst to support key operational activities across ... Support internal and external audit activities, including SOC 2, SOX, HIPAA, FedRAMP, TX-RAMP, and ...
Budget Analyst or Sr. Budget Analyst (Southern Power Company) Birmingham, AL or Atlanta, GA The SPC Budget Analyst is a strategic financial partner for Southern Power's business units. This role ...
Budget Analyst or Sr. Budget Analyst (Southern Power Company) Birmingham, AL or Atlanta, GA The SPC Budget Analyst is a strategic financial partner for Southern Power's business units. This role ...
Threat Analyst
Atlanta, GA · On-site
$86K - $111K/yr
The analyst collaborates with internal teams to enhance security operations, participates in ... CIRT/SOC; hands-on experience with SIEM content and automation development. * Direct prior ...
Threat Analyst
Atlanta, GA · On-site
$86K - $111K/yr
The analyst collaborates with internal teams to enhance security operations, participates in ... CIRT/SOC; hands-on experience with SIEM content and automation development. * Direct prior ...
Senior GRC Analyst
Atlanta, GA · On-site +1
Coordinate and support the organization's annual security audits and certifications (e.g., SOC 2, ... risk analysis, remediation tracking, and ongoing monitoring of third-party risk throughout the ...
Senior GRC Analyst
Atlanta, GA · On-site +1
Coordinate and support the organization's annual security audits and certifications (e.g., SOC 2, ... risk analysis, remediation tracking, and ongoing monitoring of third-party risk throughout the ...
Cybersecurity Third Party Senior Analyst
Atlanta, GA · On-site
$96K - $124K/yr
The analyst also drives process improvements, develops new risk attribution methods, and refines ... Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.
Cybersecurity Third Party Senior Analyst
Atlanta, GA · On-site
$96K - $124K/yr
The analyst also drives process improvements, develops new risk attribution methods, and refines ... Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.
Cybersecurity Third Party Senior Analyst
Atlanta, GA · On-site
$96K - $124K/yr
The analyst also drives process improvements, develops new risk attribution methods, and refines ... Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.
Cybersecurity Third Party Senior Analyst
Atlanta, GA · On-site
$96K - $124K/yr
The analyst also drives process improvements, develops new risk attribution methods, and refines ... Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.
Senior Information Security Analyst Serving the needs of all families with young children, Carter ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
Quick apply
Senior Information Security Analyst Serving the needs of all families with young children, Carter ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
The Senior Information Security Analyst is primarily focused on leading complex investigations ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
The Senior Information Security Analyst is primarily focused on leading complex investigations ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
Data Analyst II
Atlanta, GA · On-site
$110K - $130K/yr
Data Analyst II Responsibilities and Duties: * Participate in recurring program forums, including ... Serve as a central coordination point for communication between Security Operations Center (SOC ...
Data Analyst II
Atlanta, GA · On-site
$110K - $130K/yr
Data Analyst II Responsibilities and Duties: * Participate in recurring program forums, including ... Serve as a central coordination point for communication between Security Operations Center (SOC ...
The Senior Information Security Analyst is primarily focused on leading complex investigations ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
The Senior Information Security Analyst is primarily focused on leading complex investigations ... Exposure to regulatory compliance frameworks (PCI DSS, HIPAA, SOC 2, GDPR). * Experience in a cloud ...
Cybersecurity Analyst - ICD
Atlanta, GA · On-site
Job#: 3040649 Cybersecurity Analyst - ICD Location: Atlanta, GA (Onsite) ** Role Overview We are ... Experience with compliance frameworks such as NIST 800-171, PCI, ISO 27001, HIPAA, or SOC. * One or ...
Cybersecurity Analyst - ICD
Atlanta, GA · On-site
Job#: 3040649 Cybersecurity Analyst - ICD Location: Atlanta, GA (Onsite) ** Role Overview We are ... Experience with compliance frameworks such as NIST 800-171, PCI, ISO 27001, HIPAA, or SOC. * One or ...
Risk & Internal Controls Manager
Peachtree Corners, GA · On-site
$75K - $138K/yr
Perform and oversee walkthroughs, control testing, analysis, and documentation to evaluate the design and effectiveness of internal controls. * Assists with the coordination of SOC 1 and SOC 2 ...
Risk & Internal Controls Manager
Peachtree Corners, GA · On-site
$75K - $138K/yr
Perform and oversee walkthroughs, control testing, analysis, and documentation to evaluate the design and effectiveness of internal controls. * Assists with the coordination of SOC 1 and SOC 2 ...
Our Cyber Defense & Risk Analyst is responsible for strengthening Veritiv's security posture ... Experience supporting audits and control testing (e.g., ITGC, internal audit, SOC report reviews ...
Our Cyber Defense & Risk Analyst is responsible for strengthening Veritiv's security posture ... Experience supporting audits and control testing (e.g., ITGC, internal audit, SOC report reviews ...
Soc Analyst information
See Decatur, GA salary details
$34.7K - $42.8K
2% of jobs
$42.8K - $50.9K
3% of jobs
$50.9K - $59K
12% of jobs
$59K - $67.1K
7% of jobs
$67.8K is the 25th percentile. Wages below this are outliers.
$67.1K - $75.3K
9% of jobs
$75.3K - $83.4K
5% of jobs
$83.4K - $91.5K
3% of jobs
$91.5K - $99.6K
6% of jobs
The median wage is $101.7K / yr.
$99.6K - $107.8K
6% of jobs
$107.8K - $115.9K
2% of jobs
$119.3K is the 75th percentile. Wages above this are outliers.
$115.9K - $124K
43% of jobs
$34.7K
$96.8K
$124K
How much do soc analyst jobs pay per year?
What is the difference between Soc Analyst vs Security Engineer?
| Aspect | Soc Analyst | Security Engineer |
|---|---|---|
| Credentials | Certifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level) | Certifications like CISSP, CEH, OSCP, often more technical and advanced |
| Work Environment | Security operations centers, monitoring and analyzing security alerts | Designing, implementing, and maintaining security systems and infrastructure |
| Employer & Industry Usage | Financial, healthcare, government, and corporate sectors | Tech companies, cybersecurity firms, large enterprises |
| Common Search & Comparison Intent | Understanding roles in security monitoring and incident response | Understanding technical security implementation and architecture |
While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.
What are some typical challenges a SOC Analyst faces during incident response, and how can these be managed?
What are SOC Analysts?
What are the key skills and qualifications needed to thrive as a SOC Analyst, and why are they important?

Other
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 4 days ago
Job description
About Us
Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $8.1 billion in revenue for 2025, Clayco specializes in the "art and science of building," providing fast track, efficient solutions for mission critical, industrial, life sciences, power & energy, aviation, commercial, institutional, residential and sports & entertainment related building projects.
The Role We Want You For
Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk Register. This role is responsible for ensuring all identified risk is accurately captured, properly rated, assigned to an accountable owner, actively worked, and driven to resolution across the Clayco organization. The analyst functions as the operational hub of the risk lifecycle — from initial intake and classification through remediation coordination, escalation, stakeholder accountability, and reporting. This is a high-accountability, process-driven role that demands both technical depth and organizational influence. The analyst transforms the risk register from a static document into a dynamic governance instrument — one that delivers a clear, current, and quantified view of organizational risk exposure to leadership. Additional responsibilities will be assigned as deemed necessary. Any travel is usually planned in advance, but issues may arise which warrant immediate travel to one or more satellite locations.
The Specifics of the Role
- Assumes the ownership and maintenance of the Enterprise Risk Register as the authoritative system of record for all identified risks across the Clayco organization.
- Enforces rigorous data integrity standards: no missing owners, undefined due dates, stale entries, or incomplete risk descriptions.
- Establishes and maintains a consistent process for risk creation, categorization, severity rating, and treatment classification to ensure comparability and defensibility of the data set.
- Applies qualitative risk analysis methodologies, including likelihood/impact matrices to produce accurate, prioritized risk ratings.
- Conducts regular audits of the risk register to surface stale, incomplete, or improperly rated entries and drive timely corrections with risk owners.
- Maintains comprehensive documentation for each risk, including: risk description, affected assets and systems, threat source, inherent risk rating, current controls, residual risk, treatment decision, assigned owner, and target remediation date.
- Manages the full risk lifecycle from intake through closure, including periodic re-evaluation of accepted risks to confirm continued acceptability.
- Serve as the primary coordinator and driver of risk remediation and mitigation activities, ensuring every open risk has an actionable, time-bound treatment plan with a clearly accountable owner.
- Collaborates with risk owners and technical teams to develop realistic remediation plans that define specific tasks, milestones, resource requirements, and completion criteria.
- Coordinates corrective and preventive actions (CAPA) arising from audit findings, control failures, and policy exceptions, tracking each to verified closure.
- Tracks and monitors remediation progress across all open items; proactively identify blockers, resource gaps, and at-risk milestones before they result in missed deadlines.
- Escalates risks with insufficient remediation progress, missed SLAs, or unacceptable residual risk levels to the GRC Manager and relevant leadership with supporting data and recommended courses of action.
- Assumes operational ownership of Vulnerability Management and External Attack Surface Management (EASM) processes:
- In collaboration with SOC, ensures that Vulnerability Scanning output ingested into Workflow platform has high fidelity with accurate association with CI’s
- In collaboration with SOC, ensures that EASM output ingested into Workflow Platform has high fidelity with accurate association with CI’s
- Ensures effective tuning and appropriate scoring of Risk Rating algorithm
- Ensures effective execution of assignment Rules and track remediation activity
- Remediates Unknown/Unclassed CI’s from scanning output and tune assignment Rules
- Ensures timely and accurate reporting of active Risk and Vulnerability by severity as well as performance against Remediation targets process.
- Collaborates cross-functionally with other Information Technology teams and Business Stakeholders across the Organization
- Engages as necessary in all GRC functions to maintain an understanding of process and procedures
- Provides leadership with comprehensive reports of compliance-focused activities and outcomes, as requested.
Requirements
- 5-7+ years’ experience in Risk & Compliance Assessment, Audit & Reporting, or similar functions, preferably within the Information Security or Technology fields
- 3-4+ years working specifically in Information Security roles involving Risk Analysis, Information System Security Assessment, Compliance Audit with Regulations, Frameworks, & Standards
- Bachelor's degree in Information Technology or related field, or equivalent experience
- Required Certifications: Certified in Risk & Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), or Certified Information Systems Security Professional (CISSP) (Current status, or obtained within 9 months of assuming role)
- Strong experience leveraging auditing principles and methods to evaluate policies, processes, systems, and vendors to identify business risks and control gaps
- Experience in administering Risk management programs for technology and information security
- Strong, technical knowledge of modern Systems, Services, Cloud Applications/Platforms, Identity Services, and Data Storage/Handling and their areas of Risk and Threat exposure
- Experience with administering, maintaining, and leveraging a Risk Register to track and communicate identified Risk and its required remediation
- Knowledge of statistics, reporting and analytical tools to analyze and solve complex problems
- Proficiency in necessary productivity tools (i.e. Microsoft Excel, PowerPoint, Word etc.) for analytics and presentations
- Operate with strong integrity with ability to handle projects of a sensitive & confidential nature
- Excellent written and verbal communication skills with a proven ability to translate technical or abstract concepts into a narrative that is easily understood by clients.
- Ability to thrive in fast-paced environment.
Some Things You Should Know.
- No other builder can offer the collaborative design-build approach that Clayco does.
- We work on creative, complex, award-winning, high-profile jobs.
- The pace is fast!
- This position is classified as a safety-sensitive role in accordance with applicable state and federal laws. Candidates selected for this position will be subject to a comprehensive background check, which includes mandatory drug testing.
Why Clayco?
- 2025 Best Places to Work – St. Louis Business Journal, Los Angeles Business Journal, and Phoenix Business Journal.
- 2025 ENR Top 400 – Top Data Center Contractor (Top 3).
- 2025 ENR Top 100 Design-Build Firms – Design-Build Contractor (Top 5).
- 2025 ENR Top 100 Green Contractors – Green Contractor (Top 3).
Benefits
- Discretionary Annual Bonus: Subject to company and individual performance.
- Comprehensive Benefits Package Including: Medical, dental and vision plans, 401k, generous PTO and paid company holidays, employee assistance program, flexible spending accounts, life insurance, disability coverage, learning & development programs and more!
Compensation
- The salary range for this position considers a wide range of factors in making compensation decisions including but not limited to: Education, qualifications, skills, training, experience, certifications, internal equity, and location. Compensation decisions are dependent on the facts and circumstances of each case.
About Clayco
Sourced by ZipRecruiter
Industry
Construction
Company size
1,001 - 5,000 Employees
Headquarters location
Chicago, IL, US
Year founded
1984