> Markdown version of [/jobs/ext/1212226-soc-analyst-i](https://www.wearedevelopers.com/jobs/ext/1212226-soc-analyst-i). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst I - **Company:** AMERICAN SYSTEMS - **Location:** Monterey, CA, United States - **Experience:** Starter - **Salary:** $80,538.0 - **Contract:** Contract - **Skills:** Multitier Architecture, Access Control List, Backup Devices, Cyber Security, Computer Forensics, Domain Name System (DNS), Email Filtering, Intrusion Detection and Prevention, Intrusion Detection Systems, OSI Models, Network Security, Networking Basics, Network Forensics, Network Protocols, Open Source Technology, Cloud Services, Security Information and Event Management, Software Engineering, TCP/IP, Network Access Control, Malware, Firewalls (Computer Science), Information Technology, Cybercrime, Palo Alto Networks, Malware Detection, Cyber Warfare, Splunk, Programming Languages - **Published:** July 9, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9019663/soc-analyst-i ## About the Role * As a requirement of this position, all candidates must be a U.S. Citizen. In accordance with 8 U.S.C. 1324b (a)(2)(C) , we will not consider candidates for this position who do not meet the aforementioned conditions. * Must hold an active DOW Interim Secret or Secret Clearance * Must hold at least one certification as required by Dept. of War (DoW) 8570.01-M and Department of War Directive 8140.01, IAT Level II or Higher OR have the ability to obtain within 6 months of hire. * Must hold at least one of the following certifications or have the ability to obtain within 6 months of hire: CompTIA CySA+, EC-Council CEH, GIAC GCIA, Microsoft AZ 900, Palo Alto Networks PCCET, or Splunk Core Certified Advanced Power User * Must have a minimum of one (1) year of professional experience in networking, UNIX/Linux system administration, software engineering, or software development. * Will accept a bachelor's degree in computer science, engineering, information technology, cybersecurity, or related field in place of the 1 year of experience. ## Description An average day: As the SOC Analyst I, you will provide tier I cybersecurity support in a SOC environment by tracking and reporting cyber security threats, events, and incidents. You will be expected to perform threat analysis and investigate security incidents. In the event of an incident, you will identify the source of the incident, determine the scope of the incident, and assess the impact of the incident. You will be responsible for providing initial response and containment measures, as well as escalating incidents to higher tiers if necessary. You will report to the Incident Handler Principle and work closely with other Tier I and Tier II personnel to effectively and efficiently provide optimum service to our customers. Additionally, IN this position you will: * Use intrusion detection technologies to apply techniques for identifying host and network-based * Create, update, and resolve incident tickets that have been tasked to Tier I and appropriately document all alerts and incidents in the ticketing * Create new incident tickets for alerts that signal an incident requiring escalation for Tier 2 review. * Identify, capture, contain, and report malware to protect networks (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters). * Recognize and categorize types of vulnerabilities and associated * Utilize the SOC standard operating procedures (SOP) to perform daily tasks, resolve incidents and preserve evidence integrity. May provide input for and assist with updating procedures. * Perform damage assessments, secure network communications, and use security event correlation * Utilize the SOC checklist when reviewing the latest alerts and events from various SOC sensors to determine relevancy and urgency. * Review open source and other sources of information to identify events that should be transitioned into the incident response process. * Under supervision, may manage and configure security monitoring tools (SIEM, IDS, Firewall, Access Control Lists, etc.) to mitigate existing threats and vulnerabilities. * May assist with the design of incident response for cloud service models., + Computer networking concepts, OSI model, and network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services, and network security + Host/network access control mechanisms (e.g., access control list, capabilities lists). + Network traffic analysis methods an packet-level + Cyber threats and vulnerabilities; cyber-attack stages, classes of attacks and attackers; cyber defense and information security policies, procedures, and + Incident response and handling methodologies, incident categories, and timelines for + Intrusion detection methodologies and techniques for detecting host and network-based intrusions. + Malware analysis concepts and methodologies. + System administration, network, and operating system hardening techniques as well as data backup and * Proficient in at least one programming language. * Working understanding of computer forensic techniques and methodologies. * This team operates in a 24/7 shift environment. The SOC Analyst I will provide support Monday - Thursday, 6:45am - 5:15pm PST. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)