> Markdown version of [/jobs/ext/1428383-soc-analyst](https://www.wearedevelopers.com/jobs/ext/1428383-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst - **Company:** Clear Capital - **Location:** Reno, NV, United States (Remote available) - **Experience:** Expert - **Salary:** $113,800.0 - $139,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Apple Mac Systems, Cloud Computing, Cyber Security, Linux, Domain Name System (DNS), Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), Log Analysis, OAuth, Security Assertion Markup Language (SAML), Security Information and Event Management, Software Vulnerability Management, Cloud Platform System, Mitre Att&ck, Firewalls (Computer Science), Information Technology, Cybercrime, CIS Benchmarks, ArcSight Event Correlation, Vulnerability Analysis - **Published:** July 24, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=db46979e6ee6158f ## About the Role * Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent professional experience. * Minimum of 5 years security experience including a deep proficiency of SOC related duties and responsibilities, including but not limited to, threat detection, incident response, security event investigations. * Demonstrated experience investigating real security events using SIEM, EDR/XDR, firewall, identity, endpoint, cloud, or network telemetry. * Strong understanding of incident response, threat hunting, attacker tactics, log analysis, event correlation, detection tuning, and security investigation workflows. * Experience reviewing vulnerability findings, assessing technical risk, prioritizing remediation, and advising system owners using vulnerability management platforms. * Working knowledge of Windows, macOS, Linux, Active Directory, cloud environments, networking, endpoint security, CIS Benchmarks, NIST, CIS Controls, RMF, MITRE ATT&CK, and common protocols such as DNS, HTTP/S, LDAP, SMB, Kerberos, SAML, and OAuth. * Relevant technical security certification required. Preferred certifications include CompTIA CySA+, CompTIA CASP+, GIAC GCIH, GIAC GCIA, GIAC GSOC, GIAC GMON, or equivalent hands-on SOC, incident response, threat hunting, or blue-team certification. ## Description As a SOC Analyst, your primary responsibility will be to help protect our organization's on-premises and cloud environments through security monitoring, incident response, threat hunting, vulnerability analysis, and security advisory support. This role is best suited for a candidate with prior Security Operations Center (SOC) experience who is comfortable investigating alerts, analyzing logs, correlating activity across multiple security platforms, and supporting response to security incidents. In addition to hands-on detection and response work, this role serves in an advisory capacity for vulnerability management, system hardening, and security platform administration. The analyst will help assess risk, prioritize remediation, recommend secure configurations, identify visibility gaps, and partner with system, infrastructure, cloud, and application owners to improve the organization's security posture. What You Will Work On * Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms. * Perform incident response and threat hunting activities, including alert triage, investigation, root cause analysis, containment recommendations, documentation, and follow-up actions. * Use SIEM and related security tools to correlate events, analyze log data, tune detections, reduce false positives, improve alert fidelity, and identify visibility gaps. * Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise, credential misuse, lateral movement, persistence, and other suspicious behavior. * Advise on vulnerability management by reviewing findings, assessing technical risk, prioritizing remediation, validating closure, and helping system owners understand exposure and business impact. * Provide practical security guidance on system hardening, secure configuration, platform tuning, and control improvement based on CIS Benchmarks, vendor guidance, and organizational standards. * Play an active role in the design and execution of infrastructure initiatives and participate in technical and non-technical projects to ensure an evolving adherence to industry best practices and compliance with corporate security policies and customer standards. * Perform other duties as assigned., * Wherever it Leads, Whatever it Takes® - No matter how remote, complex, or unexpected. Our commitment never wavers. * Hire NICE people - Skills can be taught but character shines through. We seek those who bring integrity, kindness, and grit. * Lift others up - We lead with empathy and strive to improve the lives of those around us. * Sweat the details - Excellence lives in the little things. Getting it just so is how we make a big impact. * Raise the bar - We don't settle for industry standards, we redefine them. ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk)