1

Soc Analyst Jobs (NOW HIRING)

The SOC Analyst 2 supports the organization's security operations by conducting deeper investigation of escalated alerts, correlating security telemetry, supporting incident response activities, and ...

Sr. SOC Analyst

Conshohocken, PA · On-site

$86K - $114K/yr

Senior SOC Analyst We're looking for a highly experienced Senior SOC Analyst to lead triage and incident response efforts in a fast-paced environment. This is a hands-on, SOC-heavy role focused on ...

As a SOC I Analyst, you will be responsible for monitoring, analyzing, and responding to security alerts to help protect the organization from cyber threats. You will support the day-to-day security ...

As a SOC I Analyst, you will be responsible for monitoring,analyzing, and responding to security alerts to help protect theorganization from cyber threats. You will support the day-to-daysecurity ...

SOC Analyst

Buffalo, NY · On-site +1

$68K - $80K/yr

We are in search of a talented SOC Analyst to join Cegeka's Modern SOC As SOC Analyst you are a key player in investigating and responding to security threats in the environments of our customers.

As a SOC I Analyst, you will be responsible for monitoring,analyzing, and responding to security alerts to help protect theorganization from cyber threats. You will support the day-to-daysecurity ...

In this role, the SOC Analyst will provide incident response services. These services include investigating complex network transactions and data analysis tasks in order to identify computer attacks ...

The SOC Analyst will play a critical role in monitoring, analyzing, and responding to security incidents. This position involves collaboration with Incident Response teams, conducting research ...

SOC Analyst

Buffalo, NY · On-site +1

$68K - $80K/yr

We are in search of a talented SOC Analyst to join Cegeka's Modern SOC As SOC Analyst you are a key player in investigating and responding to security threats in the environments of our customers.

The SOC Analyst executes and helps to create operational processes for consistent monitoring of client environments and should be familiar with a variety of security tools and technologies. The SOC ...

SOC Tier 3 Analyst

Portland, OR · On-site

$88K - $104K/yr

The SOC Analyst 3 supports the organization's security operations by leading complex incident analysis, validating advanced investigative findings, coordinating technical response actions, improving ...

SOC Analyst I

Dallas, TX · On-site

$65K - $85K/yr

SOC Analyst I Location: Dallas, TX Pay Range: $65K-$85K Benefits: Medical, Dental, Vision, 401(k) We are looking to bring on a SOC Analyst to our team due to growth in our Dallas HQ. What we need is ...

SOC Analyst I Location: Dallas, TX Pay Range: $65K-$85K Benefits: Medical, Dental, Vision, 401(k) We are looking to bring on a SOC Analyst to our team due to growth in our Dallas HQ. What we need is ...

The SOC Analyst executes and helps to create operational processes for consistent monitoring of client environments and should be familiar with a variety of security tools and technologies. The SOC ...

As a SOC Analyst within RSM Defense, you play a key role in monitoring, investigating, and responding to security events across a diverse managed security services environment. You will analyze ...

We are now looking for a SOC analyst in our global Cyber Defense Center (CDC). We detect and respond to cyber attacks originating from external threat actors and ensure we are one step ahead of ...

next page

Showing results 1-20

Soc Analyst information

See salary details

$35.5K

$99.2K

$127K

How much do soc analyst jobs pay per year?

As of Jun 8, 2026, the average yearly pay for soc analyst in the United States is $99,157.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,000.00 and $126,500.00 per year, depending on experience, location, and employer.

What is the difference between Soc Analyst vs Security Engineer?

AspectSoc AnalystSecurity Engineer
CredentialsCertifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level)Certifications like CISSP, CEH, OSCP, often more technical and advanced
Work EnvironmentSecurity operations centers, monitoring and analyzing security alertsDesigning, implementing, and maintaining security systems and infrastructure
Employer & Industry UsageFinancial, healthcare, government, and corporate sectorsTech companies, cybersecurity firms, large enterprises
Common Search & Comparison IntentUnderstanding roles in security monitoring and incident responseUnderstanding technical security implementation and architecture

While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.

What are some typical challenges a SOC Analyst faces during incident response, and how can these be managed?

SOC Analysts often encounter challenges such as distinguishing legitimate threats from false positives, responding quickly to multiple simultaneous incidents, and managing large volumes of security alerts. These challenges can be managed by developing strong analytical skills, maintaining up-to-date knowledge of threat landscapes, and leveraging automated tools to prioritize incidents. Effective communication with IT teams and regular training in incident response protocols also play a key role in overcoming these obstacles and ensuring organizational security.

What are SOC Analysts?

SOC Analysts, or Security Operations Center Analysts, are cybersecurity professionals responsible for monitoring, detecting, and responding to security threats within an organization's IT infrastructure. They analyze security alerts, investigate suspicious activities, and help protect against data breaches and cyber attacks. SOC Analysts often work in shifts to provide round-the-clock surveillance and are essential for maintaining an organization’s security posture. Their duties also include reporting incidents, conducting threat analysis, and recommending improvements to security policies.

What are the key skills and qualifications needed to thrive as a SOC Analyst, and why are they important?

To thrive as a SOC Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often backed by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and relevant certifications like CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for quickly identifying and mitigating threats. These skills and qualifications are crucial for effectively protecting organizational assets and maintaining robust security operations.
What cities are hiring for Soc Analyst jobs? Cities with the most Soc Analyst job openings:
What are the most commonly searched types of Soc Analyst jobs? The most popular types of Soc Analyst jobs are:
Who are the top companies hiring for Soc Analyst jobs? The top employers for Soc Analyst jobs are:
What states have the most Soc Analyst jobs? States with the most job openings for Soc Analyst jobs include:
Infographic showing various Soc Analyst job openings in the United States as of May 2026, with employment types broken down into 67% Full Time, and 33% Part Time. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution, with an average salary of $99,157 per year, or $47.7 per hour.
SOC Tier 2 Analyst

SOC Tier 2 Analyst

ECS

Portland, OR • On-site

Full-time

Posted 19 days ago


Job description

Everforth ECS is seeking a SOC Tier 2 Analyst to work in our Portland, OR office.
The SOC Analyst 2 supports the organization's security operations by conducting deeper investigation of escalated alerts, correlating security telemetry, supporting incident response activities, and preparing incident summaries and recommendations. This role is the mid-level investigation and response-support tier within the SOC Analyst role family.
The ideal candidate has hands-on SOC or security operations experience, understands common attack techniques and defensive technologies, and can independently investigate security events while coordinating with SOC Analyst 1, SOC Analyst 3, threat intelligence, threat hunting, forensics, engineering, and business stakeholders.
This role involves shift work schedule to support our 24/7 operation, including weekends and holidays. Candidates must be flexible in their availability. While we make every effort to accommodate individual preferences, it's essential to understand that specific shift requests are not guaranteed and are assigned based on operational needs.
Key Responsibilities
Escalated Alert Investigation & Correlation
  • Review and investigate alerts escalated by SOC Analyst 1 or automated SOC workflows to validate severity, scope, potential impact, and required response actions.
  • Analyze suspicious activity, indicators of compromise, anomalous behavior, and policy violations using logs, endpoint telemetry, network data, identity data, cloud events, and other evidence.
  • Correlate evidence across security platforms to identify affected assets, affected accounts, attack paths, timeline of activity, and potential business or mission impact.
  • Map observed behaviors to applicable frameworks and threat models such as MITRE ATT&CK when useful for investigation, reporting, or detection improvement.

Incident Response & Coordination Support
  • Support containment, eradication, and recovery activities for standard or moderate incidents in alignment with incident response plans and approved playbooks.
  • Coordinate with system owners, security engineers, senior analysts, and other technical teams to gather evidence, validate impact, and support response actions.
  • Escalate complex, high-impact, evidence-sensitive, or ambiguous incidents to SOC Analyst 3, SOC leadership, Forensics, Threat Hunter, Threat Intelligence Analyst, or other specialized roles as appropriate.
  • Maintain accurate incident status, action tracking, and communications during investigation and response activities.

Detection, Tuning & Process Improvement Input
  • Analyze recurring alerts, false positives, attack patterns, threat intelligence, vulnerabilities, and emerging tactics to identify opportunities to improve detection and response.
  • Recommend updates to correlation rules, alert logic, dashboards, use cases, response playbooks, and triage procedures based on investigation outcomes.
  • Operationalize threat intelligence in triage and investigation workflows by applying relevant indicators, adversary behaviors, vulnerabilities, and contextual reporting.
  • Provide operational requirements and validation feedback to SOC Analyst 3, SOC Threat Hunter, Senior Splunk Engineer, Splunk Architect/Lead, Security Engineer, and SOC Technical Writer as appropriate.

Reporting & Documentation
  • Document investigation activities, evidence, decisions, response actions, and outcomes clearly and accurately.
  • Prepare incident summaries, ticket updates, timelines, shift handoff notes, and supporting information for after-action documentation.
  • Communicate technical findings in clear operational, business, and risk language for SOC leadership and affected stakeholders.
  • Provide evidence summaries and analysis notes that can be used by Forensics or specialized teams when deeper analysis is required.

Mentorship & Continuous Improvement
  • Provide escalation guidance, quality feedback, and informal mentoring to SOC Analyst 1 personnel.
  • Participate in lessons-learned activities, tabletop exercises, detection reviews, and SOC process improvement efforts.
  • Stay current with evolving cyber threats, vulnerabilities, detection techniques, and security operations best practices.
  • Contribute to continuous improvement of SOC workflows, investigation checklists, documentation practices, and escalation procedures.

  • U.S. Citizenship with ability to obtain and maintain a DOE "L" clearance after start.
  • 3-5 years of experience in SOC operations, incident response, security monitoring, threat monitoring, or related technical cybersecurity roles.
  • Experience triaging escalated alerts and investigating security events using SIEM, EDR, ticketing, case management, and log analysis tools.
  • Intermediate knowledge of Windows, Linux, networking, cloud, identity, endpoint, and application security concepts.
  • Working knowledge of common attack techniques, incident response lifecycle activities, escalation procedures, playbooks, and evidence-handling practices.
  • Ability to correlate evidence across multiple tools, develop incident timelines, and determine recommended response actions.
  • Strong analytical, written documentation, communication, and collaboration skills, including the ability to guide SOC Analyst 1 personnel.