1

Soc Two Analyst Jobs in Oregon (NOW HIRING)

The SOC Analyst 2 supports the organization's security operations by conducting deeper investigation of escalated alerts, correlating security telemetry, supporting incident response activities, and ...

Lead Security & Compliance Analyst

OR · On-site +1

$80K - $135K/yr

Own SOC 1, SOC 2, HITRUST CSF, and HITRUST AI audits end-to-end: scoping, evidence collection ... Support security incident response: log analysis, forensic evidence collection, and containment

Escalate confirmed, ambiguous, high-risk, or complex alerts to SOC Analyst 2, SOC Analyst 3, or SOC leadership according to established procedures. Ticketing, Documentation & Shift Handoff * Create ...

Senior IT Security Engineer

OR · Remote

$130K - $155K/yr

You will drive ISO 27001 certification and SOC 2 Type II attestation initiatives end-to-end - from initial gap analysis and control design through evidence collection, audit coordination, and ...

About the Role The Strategy & Operations Analyst works to execute Strategy & Business Operations ... A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn ...

New

OR · On-site

Streamline and lead SOC 2 Type II, ISO 27001/27701/42001, PCI-DSS, TISAX, HIPAA, and FedRAMP audit processes. * Perform internal audits and keep the necessary documentation updated as required for ...

About the Role The Marketing Operations Analyst will play a critical role in supporting A-LIGN ... A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn ...

Coordinate with SOC Tier 2 and Tier 3 analysts, forensics personnel, and incident response teams during escalations * Assist with post-incident hunt activity to identify related indicators, lateral ...

... 2 and Tier 3 analysts, forensics personnel, and incident response teams during escalations • ... SOC processes, analytic standards, and knowledge management resources • Stay current with ...

GRC Analyst - Remote

$80K - $137K/yr

Overview The GRC Analyst will play a critical role in strengthening the security posture of our ... SOC 2, NIST, and other applicable frameworks). * Oversees the development and maintenance of ...

Senior Security Compliance Analyst

OR · Remote

$110K - $140K/yr

We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and ... Strong understanding of NIST CSF, SOC 2, GDPR, and other security frameworks. * Hands-on experience ...

As the M&A Corporate Development Associate, you will provide analytical and strategic support to ... A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn ...

Senior Associate Support Engineer

OR · On-site +1

$60K - $105K/yr

Experience with SIEM querying (Splunk SPL, Wazuh rules, Sigma) or log analysis. * Exposure to compliance frameworks (SOC 2, HIPAA, NIST CSF, ISO 27001). * Experience with LLMs, agents, MCP servers ...

$130K - $135K/yr

Background in SOC operations, detection engineering, threat hunting, or cyber threat intelligence ... Must be comfortable supporting a weekend schedule. ( 2 nd Shift WEEKEND schedule, Wednesday ...

$130K - $135K/yr

Background in SOC operations, detection engineering, threat hunting, or cyber threat intelligence ... Must be comfortable supporting a weekend schedule. ( 2 nd Shift WEEKEND schedule, Wednesday ...

$130K - $135K/yr

Background in SOC operations, detection engineering, threat hunting, or cyber threat intelligence ... Must be comfortable supporting a weekend schedule. ( 2 nd Shift WEEKEND schedule, Wednesday ...

next page

Showing results 1-20

Soc Two Analyst information

Is Soc Two analyst still in demand?

Soc Two analysts are in demand due to the increasing need for cybersecurity monitoring and incident response in organizations. They typically require knowledge of security tools, threat detection, and compliance standards, making the role relevant in many industries seeking skilled cybersecurity professionals.

What is the difference between Soc Two Analyst vs Security Analyst?

AspectSoc Two AnalystSecurity Analyst
CertificationsISO 27001, SOC 2, CompTIA Security+CompTIA Security+, CISSP, CEH
Work EnvironmentAuditing, compliance, risk assessment in IT environmentsMonitoring, threat detection, incident response
Industry UsageIT service providers, SaaS companies, cloud providersAny organization with cybersecurity needs

While both roles focus on cybersecurity, a Soc Two Analyst primarily conducts audits and ensures compliance with SOC 2 standards, whereas a Security Analyst actively monitors and defends against security threats. The Soc Two Analyst emphasizes compliance and risk assessment, while the Security Analyst focuses on threat detection and incident response.

What does a Soc Two analyst do?

A Soc Two analyst monitors and analyzes security systems to detect and respond to cybersecurity threats, ensuring compliance with Soc Two standards. They use security tools, perform incident investigations, and document findings to maintain organizational security posture.
What cities in Oregon are hiring for Soc Two Analyst jobs? Cities in Oregon with the most Soc Two Analyst job openings:

SOC Tier 2 Analyst

ECS

Portland, OR • On-site

Full-time

Re-posted 19 days ago


Job description

Everforth ECS is seeking a SOC Tier 2 Analyst to work in our Portland, OR office. Note: This position is contingent upon contract award.
The SOC Analyst 2 supports the organization's security operations by conducting deeper investigation of escalated alerts, correlating security telemetry, supporting incident response activities, and preparing incident summaries and recommendations. This role is the mid-level investigation and response-support tier within the SOC Analyst role family.
The ideal candidate has hands-on SOC or security operations experience, understands common attack techniques and defensive technologies, and can independently investigate security events while coordinating with SOC Analyst 1, SOC Analyst 3, threat intelligence, threat hunting, forensics, engineering, and business stakeholders.
This role involves shift work schedule to support our 24/7 operation, including weekends and holidays. Candidates must be flexible in their availability. While we make every effort to accommodate individual preferences, it's essential to understand that specific shift requests are not guaranteed and are assigned based on operational needs.
Key Responsibilities
Escalated Alert Investigation & Correlation
  • Review and investigate alerts escalated by SOC Analyst 1 or automated SOC workflows to validate severity, scope, potential impact, and required response actions.
  • Analyze suspicious activity, indicators of compromise, anomalous behavior, and policy violations using logs, endpoint telemetry, network data, identity data, cloud events, and other evidence.
  • Correlate evidence across security platforms to identify affected assets, affected accounts, attack paths, timeline of activity, and potential business or mission impact.
  • Map observed behaviors to applicable frameworks and threat models such as MITRE ATT&CK when useful for investigation, reporting, or detection improvement.

Incident Response & Coordination Support
  • Support containment, eradication, and recovery activities for standard or moderate incidents in alignment with incident response plans and approved playbooks.
  • Coordinate with system owners, security engineers, senior analysts, and other technical teams to gather evidence, validate impact, and support response actions.
  • Escalate complex, high-impact, evidence-sensitive, or ambiguous incidents to SOC Analyst 3, SOC leadership, Forensics, Threat Hunter, Threat Intelligence Analyst, or other specialized roles as appropriate.
  • Maintain accurate incident status, action tracking, and communications during investigation and response activities.

Detection, Tuning & Process Improvement Input
  • Analyze recurring alerts, false positives, attack patterns, threat intelligence, vulnerabilities, and emerging tactics to identify opportunities to improve detection and response.
  • Recommend updates to correlation rules, alert logic, dashboards, use cases, response playbooks, and triage procedures based on investigation outcomes.
  • Operationalize threat intelligence in triage and investigation workflows by applying relevant indicators, adversary behaviors, vulnerabilities, and contextual reporting.
  • Provide operational requirements and validation feedback to SOC Analyst 3, SOC Threat Hunter, Senior Splunk Engineer, Splunk Architect/Lead, Security Engineer, and SOC Technical Writer as appropriate.

Reporting & Documentation
  • Document investigation activities, evidence, decisions, response actions, and outcomes clearly and accurately.
  • Prepare incident summaries, ticket updates, timelines, shift handoff notes, and supporting information for after-action documentation.
  • Communicate technical findings in clear operational, business, and risk language for SOC leadership and affected stakeholders.
  • Provide evidence summaries and analysis notes that can be used by Forensics or specialized teams when deeper analysis is required.

Mentorship & Continuous Improvement
  • Provide escalation guidance, quality feedback, and informal mentoring to SOC Analyst 1 personnel.
  • Participate in lessons-learned activities, tabletop exercises, detection reviews, and SOC process improvement efforts.
  • Stay current with evolving cyber threats, vulnerabilities, detection techniques, and security operations best practices.
  • Contribute to continuous improvement of SOC workflows, investigation checklists, documentation practices, and escalation procedures.

  • U.S. Citizenship with ability to obtain and maintain a DOE "L" clearance after start.
  • 3-5 years of experience in SOC operations, incident response, security monitoring, threat monitoring, or related technical cybersecurity roles.
  • Experience triaging escalated alerts and investigating security events using SIEM, EDR, ticketing, case management, and log analysis tools.
  • Intermediate knowledge of Windows, Linux, networking, cloud, identity, endpoint, and application security concepts.
  • Working knowledge of common attack techniques, incident response lifecycle activities, escalation procedures, playbooks, and evidence-handling practices.
  • Ability to correlate evidence across multiple tools, develop incident timelines, and determine recommended response actions.
  • Strong analytical, written documentation, communication, and collaboration skills, including the ability to guide SOC Analyst 1 personnel.