1

Tier 1 Security Analyst Jobs (NOW HIRING)

Tier 1 SOC Analyst

Alexandria, VA · On-site +1

$78K - $105K/yr

Analyze endpoint, user-activity, and network-security alerts at the Tier 1 level and escalate events requiring deeper analysis or incident response. * Maintain accurate event records, tickets ...

Tier 1 SOC Analyst

Seaside, CA · On-site

$78K - $105K/yr

Analyze endpoint, user-activity, and network-security alerts at the Tier 1 level and escalate events requiring deeper analysis or incident response. * Maintain accurate event records, tickets ...

$65K - $95K/yr

At Knox one team watches everything -- performance, availability and security -- out of the same ... Follow our runbooks for containment and call the senior analyst on duty when a runbook runs out.

Tier 1 SOC Analyst

Alexandria, VA · On-site

$78K - $105K/yr

Analyze endpoint, user-activity, and network-security alerts at the Tier 1 level and elevate events requiring deeper analysis or incident response. * Maintain accurate event records, tickets ...

Security Analyst - Tier 3

Boston, MA · On-site

$140K - $152K/yr

Our culture runs on respect, collaboration, and a shared bar for excellence, all pointed at one ... As a Tier 3 Security Analyst, you'll be the technical lead and escalation point for junior analysts ...

Support Analyst Tier 1 Department: Information Technology Reports To: IT Service Desk Manager ... Maintain compliance with HIPAA and company data privacy/security policies. * Participate in limited ...

Executive Airlift Government Security Operations Center (GSOC) - Tier 1 Analyst Available Shifts * Monday thru Friday Mid Shift Hours: 3 PM to 11 PM * Monday thru Friday Overnight Shift Hours: 11 PM ...

Support Analyst Tier 1 Department: Information Technology Reports To: IT Service Desk Manager ... Maintain compliance with HIPAA and company data privacy/security policies. * Participate in limited ...

Security Analyst Location: Alameda, CA Type: Direct Hire Company located in Alameda, CA has an ... Qualifications Required Skills: 1) Security within Information Technology 2) Advanced Data Security ...

Showing results 41-60

Tier 1 Security Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do tier 1 security analyst jobs pay per year?

As of Sep 9, 2026, the average yearly pay for tier 1 security analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is a Tier 1 Security Analyst?

A Tier 1 Security Analyst is an entry-level cybersecurity professional responsible for monitoring, detecting, and responding to security incidents. They typically work in a Security Operations Center (SOC) and are the first line of defense against cyber threats. Their duties include analyzing alerts, escalating incidents to higher tiers if necessary, and maintaining security tools. Tier 1 analysts help ensure that potential threats are identified and addressed promptly to protect an organization's IT infrastructure.

What are the key skills and qualifications needed to thrive as a Tier 1 Security Analyst?

To thrive as a Tier 1 Security Analyst, you need a strong understanding of cybersecurity fundamentals, incident response, and network monitoring, usually supported by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, ticketing systems, and certifications like CompTIA Security+ are commonly required. Attention to detail, critical thinking, and effective communication are crucial soft skills for identifying threats and escalating incidents appropriately. These abilities ensure rapid detection and response to security events, helping protect organizational assets and data from cyber threats.

What are some common challenges faced by Tier 1 Security Analysts, and how can they be overcome?

Tier 1 Security Analysts often face challenges such as managing high alert volumes, prioritizing incidents, and distinguishing between false positives and real threats. To overcome these challenges, it is essential to develop strong analytical skills and become familiar with the organization's security tools and processes. Collaborating closely with more senior analysts and participating in regular training sessions can also help Tier 1 Analysts improve their efficiency and accuracy in incident response.

What is the difference between Tier 1 Security Analyst vs Security Operations Center (SOC) Analyst?

AspectTier 1 Security AnalystSOC Analyst
CertificationsCompTIA Security+, CEH, CISSP (entry-level)CompTIA Security+, CEH, CISSP (entry-level)
Work EnvironmentSecurity monitoring, initial incident responseSecurity monitoring, incident detection, escalation
Employer & Industry UsageIT security teams across various industriesSecurity operations centers in multiple sectors

Both roles involve monitoring security alerts and basic incident response, often requiring similar certifications. The main difference is that a SOC Analyst may handle a broader range of security tasks within a dedicated security team, while a Tier 1 Security Analyst typically focuses on initial alert analysis and escalation. Overall, they are closely related roles with overlapping responsibilities in cybersecurity operations.

How much do Tier 1 Security Analysts make?

Tier 1 Security Analysts typically earn an average annual salary ranging from $45,000 to $65,000, depending on experience, location, and employer. Entry-level analysts often start at the lower end, while those with certifications like CompTIA Security+ or relevant skills may earn higher wages.

What cities are hiring for Tier 1 Security Analyst jobs?

Cities with the most Tier 1 Security Analyst job openings:

What states have the most Tier 1 Security Analyst jobs?

States with the most job openings for Tier 1 Security Analyst jobs include:

What are popular job titles related to Tier 1 Security Analyst jobs?

For Tier 1 Security Analyst jobs, the most frequently searched job titles are:

Tier 2 Security Operations Center (SOC) Analyst

Alexandria, VA • On-site

Leidos
IT Services • 10K+ employees

$87K - $157K/yr

Full-time

Medical, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Leidos rating

8.3

Company rating: 8.3 out of 10

Based on 153 frontline employees who took The Breakroom Quiz

82nd of 501 rated business services


Job description

Description

 Leidos is seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC.  

The Tier 2 SOC Analyst will perform advanced analysis of cybersecurity events escalated from Tier 1 or identified through enterprise monitoring capabilities. This position will correlate security data, determine the scope and potential impact of suspicious activity, support incident triage and containment, preserve evidence, and coordinate with incident responders and other cybersecurity teams to protect DHRA systems and networks. 

Work Locations: 

  • Mark Center, Alexandria, Virginia – 3 positions 

  • Department of Defense Center – Monterey Bay, Seaside, California – 3 positions 

Clearance: Active Secret security clearance required at time of consideration. U.S. Citizen is a must.

Mission Environment 

DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense’s largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data. The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS). The Tier 2 SOC Analysts operate within a 24x7 security operations environment responsible for detecting, analyzing, escalating, and supporting response to cybersecurity activity affecting DHRA systems and networks. Tier 2 analysts provide the deeper technical analysis required when events cannot be resolved through initial Tier 1 triage. 

Primary Responsibilities:

  • Perform advanced analysis of cybersecurity events escalated from Tier 1 analysts or identified through endpoint, user-activity, network, and other enterprise monitoring capabilities. 

  • Correlate alerts, security telemetry, and supporting technical data to determine the nature, scope, severity, and potential impact of cybersecurity activity. 

  • Distinguish legitimate activity, false positives, policy violations, suspicious behavior, and potential cybersecurity incidents. 

  • Determine appropriate next actions based on approved SOC procedures, playbooks, and escalation criteria. 

  • Recommend or initiate authorized actions to contain or mitigate identified threats. 

  • Support cybersecurity incident triage, escalation, and containment in coordination with the incident-response team. 

  • Preserve relevant technical evidence and supporting information required for further investigation and incident response. 

  • Document investigative actions, analysis, findings, and conclusions in Government-approved systems. 

  • Maintain complete and accurate event records, tickets, timelines, and supporting evidence. 

  • Contribute to required SOC event reporting and operational status information. 

  • Perform Tier 2 troubleshooting of cybersecurity tools, alerts, security data, and related technical issues. 

  • Use approved Commercial-Off-The-Shelf (COTS) security-analysis tools to investigate cybersecurity events. 

  • Support security testing, mitigation activities, and cybersecurity compliance checking as required by SOC operations. 

  • Coordinate analysis with incident responders, network engineers, endpoint-security personnel, cybersecurity-tool teams, system administrators, and other cybersecurity stakeholders. 

  • Identify recurring false positives, detection gaps, or ineffective alerting and recommend improvements to monitoring and detection capabilities. 

  • Support tuning of cybersecurity monitoring capabilities to improve detection accuracy and analyst effectiveness. 

  • Contribute to SOC procedure, playbook, and process improvements based on operational experience and lessons learned. 

  • Support knowledge transfer across SOC analysts to improve consistent analysis and response within the 24x7 operating environment. 

Basic Qualifications:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline and 5 or more years of relevant cybersecurity experience. Specific experience, education and training may be considered in lieu of degree.

  • Experience performing cybersecurity event analysis, SOC operations, cyber defense, incident triage, or security monitoring. 

  • Experience analyzing and correlating alerts from multiple cybersecurity monitoring capabilities. 

  • Experience investigating endpoint, network, user-activity, or other cybersecurity events. 

  • Experience determining the scope, severity, and potential impact of suspicious cybersecurity activity. 

  • Experience supporting cybersecurity incident escalation, containment, mitigation, or evidence preservation. 

  • Experience using enterprise security-analysis or cybersecurity monitoring tools. 

  • Experience performing Tier 2 cybersecurity troubleshooting. 

  • Working knowledge of cybersecurity attack techniques, network-security concepts, endpoint security, event analysis, and incident-response processes. 

  • Ability to document investigations, findings, actions, and conclusions clearly and accurately. 

  • Ability to work effectively within a team-based 24x7 security operations environment. 

  • U.S. Citizenship required. 

  • Active Secret security clearance required. 

Preferred Qualifications:

  • Experience supporting a Department of Defense or Federal Security Operations Center. 

  • Experience working in a 24x7 SOC or Cybersecurity Service Provider environment. 

  • Experience with Security Information and Event Management (SIEM) platforms and enterprise cybersecurity monitoring tools. 

  • Experience analyzing endpoint, network, identity, user-activity, intrusion-detection, or other cybersecurity telemetry. 

  • Experience supporting cybersecurity incident response and digital-evidence preservation. 

  • Experience tuning security alerts, detection logic, or monitoring capabilities to reduce false positives and improve detection quality. 

  • Experience developing or refining SOC procedures, playbooks, or escalation criteria. 

  • Experience with cybersecurity mitigation, compliance checking, or security testing. 

  • Familiarity with Department of Defense cybersecurity requirements and Risk Management Framework processes. 

  • Familiarity with DHRA, DMDC, or comparable Department of Defense enterprise environments.   

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:September 2, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

#Remote


What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media