1

Soc Analyst Jobs in Madison, WI (NOW HIRING)

This role demands both the precision of an IAM engineer and the instincts of a SOC analyst. You will work closely with the Director of IT Security and collaborate cross-functionally with IT, HR, ...

Monitor, triage, and escalate security events in coordination with the managed SOC provider ... Strong analytical, troubleshooting, and problem-solving skills * CompTIA Security+ or an equivalent ...

Senior IT Security Analyst

Madison, WI · On-site +1

$90K - $115K/yr

... 27001, CIS, or SOC 2. * Strong knowledge and understanding of cloud security policies ... Strong analytical, organizational, and project management skills, with the ability to drive ...

Security Analyst Location: Wisconsin - Remote (As of when required need to visiti Clinet Location) Must be a current Wisconsin resident - no relocation. We are seeking a Level III Security Analyst ...

Become a cybersecurity analyst in the UW-Madison College of Agricultural and Life Sciences (CALS)! This new position will work closely with the CALS Information Security Officer and other IT ...

New

Syntricate Technologies is seeking a Security Analyst to join their team in Madison, WI. The role involves developing comprehensive System Security Plans and conducting security assessments to ...

Document and communicate analysis. Answer clarifying questions. Escalate to ISS leadership if an acceptable level of risk cannot be achieved 2. Act as a liaison between the program area and the ...

Provide options to mitigate risk considering business impact. • Draft security requirements to be included into charters, scope documents, procurements. • Document and communicate analysis.

Security Analyst

Madison, WI · Remote

$50 - $55/hr

Our client is looking for a Security Analyst to work as a part of the Security & Accounts Management team and to be responsible for provisioning and de-provisioning access to networks, resources and ...

Security Analyst Location: Madison,Wisconsin Work Arrangement: Remote with periodic onsite requirements Duration: Through 6/30/2027, with possible extension Project Details We are seeking a Level III ...

Security Access Analyst

Madison, WI · On-site

$30 - $37/hr

MARS Solutions Group is looking for an experienced Security Analyst located in Madison, WI. Our client is a government agency looking for high-quality talent to make a difference. They are known to ...

Provide options to mitigate risk considering business impact. · Draft security requirements to be included into charters, scope documents, procurements. · Document and communicate analysis. Answer ...

The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor the internal and external landscape for relevant events, risks, and threats related to malicious ...

next page

Showing results 1-20

Soc Analyst information

See Madison, WI salary details

$35.8K

$99.9K

$128K

How much do soc analyst jobs pay per year?

As of Aug 31, 2026, the average yearly pay for soc analyst in Madison, WI is $99,929.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,600.00 and $127,500.00 per year, depending on experience, location, and employer.

What is a SOC analyst?

SOC Analysts, or Security Operations Center Analysts, are cybersecurity professionals responsible for monitoring, detecting, and responding to security threats within an organization's IT infrastructure. They analyze security alerts, investigate suspicious activities, and help protect against data breaches and cyber attacks. SOC Analysts often work in shifts to provide round-the-clock surveillance and are essential for maintaining an organization’s security posture. Their duties also include reporting incidents, conducting threat analysis, and recommending improvements to security policies.

What are the key skills and qualifications needed to thrive as a SOC analyst?

To thrive as a SOC Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often backed by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and relevant certifications like CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for quickly identifying and mitigating threats. These skills and qualifications are crucial for effectively protecting organizational assets and maintaining robust security operations.

What are some typical challenges a SOC analyst faces during incident response, and how can these be managed?

SOC Analysts often encounter challenges such as distinguishing legitimate threats from false positives, responding quickly to multiple simultaneous incidents, and managing large volumes of security alerts. These challenges can be managed by developing strong analytical skills, maintaining up-to-date knowledge of threat landscapes, and leveraging automated tools to prioritize incidents. Effective communication with IT teams and regular training in incident response protocols also play a key role in overcoming these obstacles and ensuring organizational security.

What is the difference between Soc Analyst vs Security Engineer?

AspectSoc AnalystSecurity Engineer
CredentialsCertifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level)Certifications like CISSP, CEH, OSCP, often more technical and advanced
Work EnvironmentSecurity operations centers, monitoring and analyzing security alertsDesigning, implementing, and maintaining security systems and infrastructure
Employer & Industry UsageFinancial, healthcare, government, and corporate sectorsTech companies, cybersecurity firms, large enterprises
Common Search & Comparison IntentUnderstanding roles in security monitoring and incident responseUnderstanding technical security implementation and architecture

While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.

Do SOC analysts get paid well?

SOC analysts typically earn competitive salaries that vary based on experience, certifications, and location. Entry-level positions may start lower, but experienced analysts with certifications like CISSP or CEH can command higher wages, especially in high-demand areas or specialized environments.

Is a SOC analyst a hard job?

A SOC analyst role involves monitoring security systems, analyzing threats, and responding to incidents, which can be challenging due to the need for quick decision-making and technical skills. The job often requires knowledge of cybersecurity tools, protocols, and certifications, and may involve shift work to ensure 24/7 coverage.

What are the most commonly searched types of Soc Analyst jobs in Madison, WI?

The most popular types of Soc Analyst jobs in Madison, WI are:

What job categories do people searching Soc Analyst jobs in Madison, WI look for?

The top searched job categories for Soc Analyst jobs in Madison, WI are:

What cities near Madison, WI are hiring for Soc Analyst jobs?

Cities near Madison, WI with the most Soc Analyst job openings:

Infographic showing various Soc Analyst job openings in Madison, WI as of August 2026, with employment types broken down into 73% Full Time, 11% Part Time, and 16% Contract. Highlights an 87% In-person, and 13% Remote job distribution, with an average salary of $99,929 per year, or $48 per hour.

IT Security Engineer

Trek Bicycle

Waterloo, WI • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Trek Bicycle rating

7.3

Company rating: 7.3 out of 10

Based on 88 frontline employees who took The Breakroom Quiz

105th of 739 rated retailers


Job description

A bit about us
Trek is an awesome place to work, with amazing benefits for all employees. We build only products we love, provide incredible hospitality to our customers, and change the world by getting more people on bikes. When you're on our team, you're taken care of, encouraged to learn and grow, and given lots of opportunities to do so. Give us your best, and we'll give it right back. Sound pretty sweet? Then come join us!
Job Description
Location: Trek Waterloo HQ (Hybrid)
Role Summary
Help us secure the Awesome Bus! We are looking for someone to join our global cybersecurity team. We are a highly effective team that works to protect and defend against intrusions into Trek's systems.
The Information Security Engineer owns two of the security program's most operationally critical functions: Identity & Access Management (IAM) and Security Operations (SOC). This is a senior individual contributor role - you won't manage people, but you will own the technical controls that govern who can access Trek's systems and how threats against those systems are detected and contained.
You will be the hands-on owner of Trek's identity infrastructure - Microsoft Entra ID, privileged access, joiner-mover-leaver processes, and access governance - while simultaneously operating as Trek's primary security analyst: monitoring for threats, investigating incidents, and running detection and response workflows across CrowdStrike Falcon, Zscaler, and Microsoft Sentinel. This role demands both the precision of an IAM engineer and the instincts of a SOC analyst. You will work closely with the Director of IT Security and collaborate cross-functionally with IT, HR, Legal, and engineering teams across Trek's global environment.
If you want a role where no two days are the same, where you own real enterprise security infrastructure, and where the work you do directly protects a globally recognized brand - this is it.
Key Responsibilities
Identity & Access Management
  • Own the IAM program lifecycle: identity governance, role-based access control (RBAC), access certification, joiner-mover-leaver (JML) processes, and policy enforcement
  • Administer and optimize Microsoft Entra ID (Azure AD) including SSO, MFA, Conditional Access policies, and directory health
  • Design and maintain a least-privilege access model across SaaS, cloud, and on-premises systems, including privileged access management (PAM)
  • Drive access certification campaigns: scope, execute, and report on periodic entitlement reviews across all systems
  • Develop and enforce IAM policies, standards, and procedures - including third-party and service account governance
  • Detect and investigate identity-based threats: anomalous authentication, lateral movement indicators, credential abuse, and over-privileged account activity
  • Partner with HR, IT, and application teams to ensure processes are accurate, automated where possible, and consistently enforced
  • Support audit and compliance activities with identity evidence and access control documentation

Security Operations
  • Serve as Trek's primary security analyst: monitor alerts across CrowdStrike Falcon, Microsoft Sentinel, and Zscaler; triage, investigate, and escalate as warranted
  • Own the incident response lifecycle for security events - from initial detection through containment, eradication, recovery, and post-incident review
  • Develop, tune, and maintain detection rules and correlation logic across SIEM and EDR platforms to reduce noise and surface high-confidence detections
  • Build and maintain incident response playbooks, investigation runbooks, and post-incident documentation
  • Integrate identity signals and IAM data into SOC detection workflows - connecting the IAM and SOC functions into a unified threat detection capability
  • Conduct threat hunting using CrowdStrike, Sentinel, and Zscaler telemetry to proactively identify attacker activity that evades automated detection
  • Orchestrate and automate security operations workflows to improve speed and consistency across the security team
  • Evangelize information security practices within Trek worldwide
  • Perform other duties as assigned
Leveraging AI
At Trek we view artificial intelligence as a competitive advantage and a personnel multiplier, not a replacement for human expertise or judgment. Our Security team is expected to actively leverare AU tools to increase efficiency and sharpen analysis. Specific AI released tasks will include:
  • Using AI to analyze access patterns and entitlement data at scale - identifying over-provisioning, dormant accounts, anomalous permission combinations, and least-privilege violations across large user populations
  • Applying AI to accelerate alert triage, reduce noise, and surface high-confidence detections across SIEM and EDR platforms
  • Leveraging AI to enrich threat intelligence, correlate indicators of compromise (IOCs), and contextualize threats against Trek's environment
  • Using AI to draft and refine IAM policies, role definitions, access request templates, incident response playbooks, and governance documentation
  • Employing AI coding assistants to automate JML workflows, build security integrations, and maintain detection and reporting pipelines
  • Continuously evaluating new AI-driven security capabilities and recommending adoption where they meaningfully reduce risk or analyst toil
Required Qualifications
  • 5+ years' experience in IT or information security, with demonstrable hands-on ownership across both IAM and security operations functions
  • Deep hands-on experience with Microsoft Entra ID (Azure AD) including SSO, MFA, Conditional Access, and directory operations
  • Strong understanding of IAM concepts: RBAC, least privilege, PAM, JML processes, access certification, and federated identity
  • Experience with endpoint detection and response (EDR) platforms - CrowdStrike Falcon strongly preferred
  • Experience with SIEM platforms for alert monitoring, investigation, and detection rule management - Microsoft Sentinel preferred
  • Experience with network security monitoring and proxy platforms - Zscaler ZIA/ZPA preferred
  • Demonstrated ability to own incident response end-to-end: triage, investigation, containment, eradication, and documentation
  • Strong understanding of Windows and *nix systems, network architecture and protocols (TCP/IP, DNS, HTTPS), and cloud technologies
  • Demonstrated ability to incorporate AI tools into security workflows - not just awareness of them
  • Excellent written and verbal communication skills - able to explain identity risk and security incidents to non-technical stakeholders
  • Holds or is actively pursuing relevant certification: (ISC)² CISSP/CCSP/SSCP; SANS GIAC GCIH/GCIA/GCFA; Microsoft SC-300; CompTIA Security+; or equivalent
Preferred Qualifications
  • Experience with privileged access management platforms (CyberArk, BeyondTrust, Admin by Request, or similar)
  • Scripting experience - PowerShell or Python - for automating identity workflows, detection pipelines, and security integrations
  • Experience with physical security systems (access control, CCTV) as a secondary function
  • Experience supporting compliance frameworks - PCI DSS, ISO 27001, SOC 2, or similar - with technical evidence and control documentation
  • Experience with threat hunting methodologies and hypothesis-driven investigation
  • Bachelor's degree in Computer Science, Information Security, MIS, or equivalent experience

Trek Benefits:
• Flexible and fun company culture
• Competitive health care
• PPO & HDHP medical plan options, Dental insurance, Vision insurance
• Flexible Spending Accounts (FSA)
• Free life insurance & optional term life insurance
• Competitive vacation package
• 401(k) with match and Employee Stock Ownership Plans (ESOP)
• 12 weeks of maternity leave with 100% pay
• Flexible holiday schedule - 10 company holidays
• Tuition Reimbursement up to $15,000! (Undergraduate & Masters programs)
• Employee discounts on all product
• Deep partner retail discounts
We are an Equal Employment Opportunity ("EEO") Employer. Trek strictly prohibits discrimination on the basis of race, color, creed, religion, gender, gender identity, pregnancy, marital status, partnership status, sexual orientation, age, national origin, veteran or military status, disability, medical condition, genetic information, or any other characteristic prohibited by federal, state and/or local laws. This policy applies to all aspects of employment, including hiring, promotion, demotion, compensation, training, working conditions, transfer, job assignments, benefits, layoff, and termination.
We are an E-Verify employer.
For more information, please click on the following links:
E-Verify Participation Poster: English / Spanish
E-Verify Right to Work Poster: English | Spanish

What Trek Bicycle employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom