Security Operations Center (SOC) Analyst

Cognizant Technology Solutions Corporation
Rockville, MD, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
1 year minimum
Compensation
$85,000.0 - $130,000.0
Working hours
Shift work
Job source

Tech stack

Microsoft Windows Microsoft Azure Cloud Computing Security Cyber Security Linux Identity and Access Management Information Technology Operations Intrusion Detection and Prevention Network Security Phishing Security Information and Event Management Software Vulnerability Management
+8 more
Cloud Platform System Mitre Att&ck Cyber Threat Analysis Information Technology Cybercrime Splunk Security Orchestration, Automation & Response Servicenow

Job description

As a Cybersecurity Analyst , you will make an impact by helping protect enterprise systems, data, and business operations through proactive security monitoring, threat detection, incident response, and continuous security operations. You will be a valued member of the Cybersecurity Operations team and work collaboratively with infrastructure, cloud, networking, identity, and security stakeholders to identify and respond to cyber threats while maintaining a strong security posture across the organization.

In this role, you will: Monitor and investigate security events, alerts, and incidents across enterprise security platforms, cloud environments, endpoints, and networks. Conduct incident triage, analysis, containment, and remediation activities for security events including phishing, malware, unauthorized access attempts, and account compromises. Leverage threat intelligence, threat hunting techniques, and security analytics to identify emerging threats and improve detection capabilities. Support vulnerability management, security operations, tool optimization, and continuous improvement initiatives to strengthen enterprise security defenses. Collaborate with cross-functional teams to maintain operational readiness, improve security processes, and support compliance and audit requirements. Work model We strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a remote position open to qualified applicants in the United States. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs. The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations. What you need to have to be considered

Requirements

Bachelor’s degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related field, or equivalent work experience. 1-3 years of experience in cybersecurity, security operations, information security, IT operations, or Security Operations Center (SOC) environments. Experience investigating and responding to security alerts, incidents, and operational security events. Familiarity with Security Information and Event Management (SIEM) platforms, preferably Splunk. Experience with Endpoint Detection and Response (EDR) technologies, preferably CrowdStrike. Knowledge of Microsoft 365 security, Azure security services, identity and access management, and cloud security concepts. Understanding of network security principles, security monitoring, threat detection, and incident response methodologies. Knowledge of Windows, Linux, and cloud environments. Familiarity with the MITRE ATT&CK framework and cybersecurity best practices. Strong analytical, troubleshooting, investigative, and problem-solving skills. Excellent written and verbal communication skills. These will help you stand out Experience with ReliaQuest Managed Detection and Response (MDR) services. Experience with ServiceNow incident management and security operations workflows. Exposure to threat hunting, threat intelligence, and security detection engineering activities. Knowledge of vulnerability management processes and remediation tracking. Experience supporting enterprise security audits, governance, and compliance initiatives. Familiarity with automation, security orchestration, and operational process improvements. Experience participating in on-call support and major incident response activities. We’re excited to meet people who share our mission and can make an impact in a variety of ways. Don’t hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.

Benefits & conditions

3.83.8 out of 5 stars Rockville, MD Remote $85,000 - $130,000 a year - Full-time, Pulled from the full job description

  • Paid parental leave
  • Employee stock purchase plan
  • Parental leave
  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance, The annual salary for this position is between $85,000- $130,000 USD pending on experience and other qualifications of the successful candidate. This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans. Benefits : Cognizant offers the following benefits for this position, subject to applicable eligibility requirements: Medical/Dental/Vision/Life Insurance Paid holidays plus Paid Time Off 401(k) plan and contributions Long-term/Short-term Disability Paid Parental Leave Employee Stock Purchase Plan Disclaimer: The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 · WWC 2024

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

Videos

See all

Related articles

See all