SOC Analyst II

Everforth Ecs
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Identity and Access Management Security Information and Event Management Software Vulnerability Management Cyber Threat Analysis Archer IRM Practical Use Cases Cybercrime Security Orchestration, Automation & Response

Job description

  • Performs SOC Tier 1-3 continuous monitoring of SIEM, SOAR, EDR, IAM, DLP, vulnerability management, and other automated security platforms.
  • Conducts triage, threat analysis, threat hunting, correlation, enrichment, risk mitigation, and incident response activities.
  • Documents investigations and artifacts in accordance with IRS and DHS reporting requirements and supports insider threat program and forensic collection.
  • Collaborates with senior analysts and incident response teams to mitigate risks, enhance security monitoring capabilities, and improve the organization’s security posture

Requirements

  • Bachelors’ Degree in Cybersecurity, IT, or related field.
  • 3+ year of experience of SOC experience
  • IRS CI - IRS High Risk Clearance
  • Knowledge of SIEM, SOAR, EDR, DLP, IAM/PAM tools
  • Experience with incident response, threat intelligence, threat hunting, triage, and investigation
  • Understanding of federal incident reporting (NIST 800-53, FISMA, IRM 10.8, DHS/Treasury requirements)
  • Ability to document cases and perform forensic support

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:29 min

Forecasting organizational cybersecurity risks through public employee reviews

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:06 min

Implementing runtime threat event frameworks for attack telemetry

Tom Tovar · WWC 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all