1

Soc Security Analyst Jobs in Minnesota (NOW HIRING)

Run SOC 2 compliance operations, including evidence collection, control monitoring, and audit ... For our senior security analyst positions, our compensation ranges from $90,000 to $132,000, which ...

You have the experience to analyze a clients' security posture, anticipate security requirements ... Minimum 2 years of experience working in SOC's with security tooling such as OT NSM's, SIEMs ...

next page

Showing results 1-20

Soc Security Analyst information

See Minnesota salary details

$38.7K

$105.1K

$138.1K

How much do soc security analyst jobs pay per year?

As of Aug 24, 2026, the average yearly pay for soc security analyst in Minnesota is $105,124.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,600.00 and $127,300.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a soc security analyst?

To thrive as a Security Analyst, you need a solid understanding of information security principles, risk assessment, and network protocols, often backed by a degree in computer science or cybersecurity. Familiarity with tools such as SIEM (Security Information and Event Management) systems, intrusion detection software, and certifications like CompTIA Security+ or CISSP is typical. Strong analytical thinking, attention to detail, and effective communication help analysts detect threats and explain security issues to stakeholders. These skills and qualifications are crucial for identifying vulnerabilities, mitigating risks, and ensuring the organization's information assets remain secure.

What is the difference between Soc Security Analyst vs Network Security Analyst?

AspectSoc Security AnalystNetwork Security Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, government agencies, financial institutionsIT departments, cybersecurity firms, corporate networks
Employer & Industry UsagePrimarily in security monitoring and incident response rolesFocus on network infrastructure security and threat prevention

Soc Security Analysts primarily monitor and respond to security incidents within security operations centers, often working with government or financial institutions. Network Security Analysts focus on protecting network infrastructure from threats, ensuring secure data transmission. While both roles require similar certifications and work in cybersecurity, their daily tasks and environments differ, with Soc Security Analysts emphasizing incident response and Network Security Analysts concentrating on network defenses.

Do Soc Security analysts get paid well?

Security analysts typically earn competitive salaries that vary based on experience, certifications, and location. Entry-level positions may start lower, but experienced analysts with skills in cybersecurity tools and threat analysis can earn higher wages, often supplemented by benefits and opportunities for advancement.

Is a Soc Security Analyst still in demand?

Security analysts are in high demand due to increasing cybersecurity threats across industries. They are needed to monitor, detect, and respond to security incidents, often requiring knowledge of security tools, protocols, and certifications like CISSP or CISM. The role is expected to grow as organizations prioritize protecting sensitive data and infrastructure.

What does a Soc Security Analyst do?

A Security Analyst specializing in security operations monitors and analyzes an organization’s security systems to detect and respond to cyber threats. They often use tools like intrusion detection systems and security information and event management (SIEM) software, and may hold certifications such as CISSP or CompTIA Security+ to perform vulnerability assessments and incident response. The role typically requires strong analytical skills and attention to detail to protect sensitive data and maintain security protocols.

What are popular job titles related to Soc Security Analyst jobs in Minnesota?

For Soc Security Analyst jobs in Minnesota, the most frequently searched job titles are:

What job categories do people searching Soc Security Analyst jobs in Minnesota look for?

The top searched job categories for Soc Security Analyst jobs in Minnesota are:

Infographic showing various Soc Security Analyst job openings in Minnesota as of August 2026, with employment types broken down into 84% Full Time, 12% Part Time, 3% Contract, and 1% Nights. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $105,124 per year, or $50.5 per hour.

Senior Security Analyst, Cyber Defense

SPS Commerce, Inc.

Minneapolis, MN • On-site

$108.20 - $140/hr

Other

Re-posted 4 days ago


SPS Commerce rating

9.0

Company rating: 9.0 out of 10

Based on 6 frontline employees who took The Breakroom Quiz

34th of 246 rated software companies


Job description

## Senior Security Analyst, Cyber DefenseApplylocations: US MN Minneapolis Office: United States Remotetime type: Full timeposted on: Posted 2 Days Agojob requisition id: R-001088# **Description:**SPS Commerce is a leading provider of cloud-based supply chain management solutions, serving a global network of retail trading partners. We foster a collaborative and inclusive work environment where innovation and continuous improvement are highly valued. Join SPS Commerce and be part of a dynamic team that's transforming the global retail supply chain!# **Position Summary:**A senior member of the Cyber Defense team who leads detection and response work and provides day-to-day leadership of the SOC. This individual serves as a technical leader — setting the cultural tone, modeling high standards, and managing the SOC queue to keep work prioritized and moving. They collaborate closely across exposure management, security engineering, and cloud security. This role owns escalated investigations, takes point on escalated incidents, and proactively hunts threats across the enterprise. Success is measured by timely, high-quality investigations, effective incident response, a well-prioritized SOC, and clear documentation that enables consistent operations and continuous improvement.**Key Responsibilities:*** **Lead alert triage and investigation:** Serve as the escalation point for alerts raised by the managed SOC and monitoring systems. Pull together the full picture from whatever the investigation calls for: SIEM, EDR, identity and authentication activity, cloud audit trails, network and email telemetry, and other sources as the evidence leads. Reach accurate, defensible determinations under time pressure and decide what warrants escalation to a full incident.* **Run incident response:** Take point on confirmed higher-severity incidents: scoping, containment, coordinating with affected stakeholders, and keeping leadership informed with clear, timely updates. Document incidents thoroughly and drive them to genuine closure, not just ticket closure.* **Hunt for what monitoring misses:** Perform proactive threat hunting informed by current threat intelligence, surfacing coverage gaps and emerging risk before they become incidents.* **Work AI and automation into the daily craft:** Use AI-assisted tooling to accelerate investigation, summarization, and documentation, and identify where AI and automation can reduce repetitive manual work, speed response, or close gaps—partnering with engineering to make it real.* **Partner across the team:** Collaborate with exposure management on triage, prioritization, and remediation tracking, and work with security engineering and cloud security where investigations and detections cross over.* **Sharpen detections and tooling:** Execute established runbooks, identify stale or missing guidance, and feed concrete improvement requests back to engineering to strengthen detections, automations, and documentation.* **Develop the SOC:** Review SOC determination and escalation quality and provide coaching and feedback that helps analysts grow.* Participate in the team's on-call rotation.* Perform other duties as assigned.**Required Qualifications:*** 5+ years in security operations, incident response, or threat detection, with senior-level depth in digital forensics and incident response (DFIR) and SOC work.* Hands-on investigation experience with a SIEM and an EDR platform—the specific products matter less than the ability to search, pivot across identity, cloud, and network log sources, and scope an incident end to end.* Sound evidence-handling practice and forensic fundamentals, including preserving and reasoning over disk, memory, and log artifacts.* A working understanding of adversarial behavior (e.g., MITRE ATT&CK).* Working familiarity with exposure management workflows—triage, prioritization, and remediation tracking.* Clear written and verbal communication, with the judgment to brief both engineers and executives appropriately.* A collaborative working style and genuine curiosity about security and technology—a seasoned professional who exercises sound judgment and collaborates effectively across a larger organization.* Internal candidates: SOC, security operations, or security engineering experience handling escalated investigations or incident response and working across detection, vulnerability management, or cloud security functions, with at least 1 year of SPS experience.* **Key Skills:** Digital forensics and incident response (DFIR), SIEM/EDR investigation, threat hunting, adversarial behavior analysis (MITRE ATT&CK), cloud security monitoring, cross-team communication and executive briefing.**Preferred Qualifications:*** Experience with Crowdstrike as an EDR platform.* Experience with SOAR platforms.* Experience with Crowdstrike NG-SIEM.* Cloud security monitoring experience, primarily AWS, with some exposure to Azure and GCP, and container environments such as EKS.* Windows Defender XDR.* Python programming experience for scripting, automation, or tooling.* Familiarity with infrastructure-as-code (e.g., Terraform, CloudFormation) and CI/CD pipelines, and how to investigate and secure them.* Familiarity with one or more of Oracle, Snowflake, Databricks, and the Atlassian suite.* Proactive threat hunting and threat-intelligence experience.**Location:**This role follows a hybrid work model for candidates based in Minneapolis, MN and is also open to 100% remote candidates. **What We Offer:**At SPS Commerce, we are committed to ensuring that each employee's compensation reflects their unique experiences, performance, and skills in their role. The salary range for this role considers several factors, including education, relevant skills, work history, certifications, location, and more.The annual salary range for this role is: $108,200.00 – $140,000.00 USD. The actual salary offered will be determined based on the factors listed above and may fall anywhere within the range.SPS Commerce offers a comprehensive benefits package designed to support employees' health, well-being, and financial security. Benefits are country-specific and aligned with local laws and market practices.#LI-TB1 #J-18808-Ljbffr

What SPS Commerce employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom