> Markdown version of [/jobs/ext/1670891-soc-analyst-sr](https://www.wearedevelopers.com/jobs/ext/1670891-soc-analyst-sr). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst (SR.) - **Company:** ECS Corporate Services, LLC - **Location:** Fairfax, VA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Data Analysis, User Authentication, Cyber Security, Information Technology Operations, Intrusion Detection and Prevention, Log Analysis, Security Information and Event Management, Cybercrime - **Published:** July 26, 2026 - **Apply:** https://www.disabledperson.com/jobs/73866503-soc-analyst-sr ## About the Role Experience : Minimum of 5 years of cybersecurity experience, with at least 3 years in a Security Operations Center or incident response role. * Security Investigation Expertise : Strong experience investigating security alerts, analyzing suspicious activity, and determining the scope and impact of security incidents. * Incident Response Experience : Hands-on experience supporting incident response investigations including containment, eradication, and recovery coordination. * Security Technology Experience : Experience working with enterprise security tools such as SIEM platforms, EDR platforms, and log analysis systems. * Threat Analysis Skills : Ability to analyze indicators of compromise, attacker behaviors, and adversary techniques during investigations. * Log Analysis Expertise : Strong experience reviewing and interpreting system logs, endpoint telemetry, network events, and authentication activity. * Detection Engineering Experience : Experience developing or tuning detection rules, analytics, or monitoring logic used to identify malicious activity. * Security Framework Knowledge : Familiarity with cybersecurity frameworks such as NIST Cybersecurity Framework or CIS Critical Security Controls. * Investigation Documentation : Experience documenting investigations, incidents, and response actions within case management platforms. Other Requirements of the position include: * Ab l e and willing to obtain a US Security Clearance . ## Description The Senior SOC Analyst is responsible for advanced security monitoring, investigation, and incident response activities within the Everforth Security Operations Center (SOC). This role serves as a senior technical resource within the analyst team, responsible for leading complex investigations, mentoring junior analysts, and ensuring high-quality incident analysis across enterprise environments. The Senior SOC Analyst plays a critical role in identifying sophisticated threats, escalating security incidents, and improving SOC investigative capabilities. This role reports to the SOC Manager and works closely with the Security Engineering team, enterprise IT operations teams, and the Everforth Commercial MSSP to ensure effective monitoring, investigation, and response across the enterprise. R esponsibilities * Advanced Threat Investigation : Conduct in-depth analysis of complex security alerts, anomalies, and potential threat activity across enterprise environments. * Incident Response Support : Lead investigation and response activities for confirmed or suspected cybersecurity incidents affecting enterprise systems. * Alert Triage and Escalation : Perform detailed triage of security alerts and escalate validated incidents according to established procedures. * Investigation Leadership : Serve as the lead analyst during significant investigations, coordinating investigative efforts and guiding response activities. * Threat Analysis : Analyze indicators of compromise, attacker behavior, and malicious artifacts to determine the scope and impact of security incidents. * Detection Engineering : Develop and refine detection logic, analytics, and monitoring use cases based on investigative findings and threat intelligence. * Threat Hunting : Conduct proactive threat hunting activities to identify adversary behavior not detected through automated alerts. * MSSP Escalation Handling : Review and validate alerts and escalations originating from the MSSP after- hours monitoring team. * Investigation Documentation : Ensure thorough documentation of investigations, findings, and response actions within the SOC case management platform. * Operational Quality Assurance : Support the SOC Manager in maintaining investigation quality and adherence to SOC playbooks and procedures. * Operational Effectiveness: Leads the design and implementation of SOC process improvements through automation, AI-driven solutions, workflow optimization, and continuous enhancement of detection and response capabilities. * Operational Collaboration : Work closely with IT operations, infrastructure teams, and security engineering to support investigation and remediation activities. * Knowledge Sharing : Mentor junior SOC analysts and provide guidance on investigative techniques, threat analysis, and incident handling procedures. * Situational Awareness : Maintain awareness of emerging threats, attacker tactics, techniques, and procedures relevant to enterprise environments. * Playbook Execution : Execute established SOC investigation playbooks and contribute to the refinement of operational procedures. * On-Call Support: Participates in on-call support to assist with security incident response, operational issues, and investigation activities to maintain continuous SOC coverage and response capability. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Progressive Delivery in Kubernetes](https://www.wearedevelopers.com/videos/949-progressive-delivery-in-kubernetes) - [Getting under the skin: The Social Engineering techniques](https://www.wearedevelopers.com/videos/38-getting-under-the-skin-the-social-engineering-techniques) - [Data Science on Software Data](https://www.wearedevelopers.com/videos/162-data-science-on-software-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)