> Markdown version of [/jobs/ext/2202034-security-soc-analyst](https://www.wearedevelopers.com/jobs/ext/2202034-security-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security (SOC) Analyst - **Company:** Insight Global - **Location:** Charlotte, NC, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Apache HTTP Server, Apple Mac Systems, Application Firewall, Cyber Security, Linux, Internet Information Services (IIS), Intrusion Detection and Prevention, Network Security, Log Analysis, Network Protocols, Regular Expressions, Web Application Security, Web Applications, Scripting, Enterprise Software Applications, Macros, Cyber Threat Analysis, Cybercrime, Splunk - **Published:** August 23, 2026 - **Apply:** https://www.beyondcharlotte.com/job.asp?id=3363359209&tx=KK1313FFG&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * 3+ years of Cyber Security, Security Operations, or Threat Detection experience * 1+ year of hands-on Web Application Firewall (WAF) experience * Strong intrusion analysis and incident investigation background * Advanced Splunk experience, including: Log analysis, Dashboard creation, Alert development, Macro creation * Ability to identify and interpret web application and security logs from a security perspective. * Strong understanding of current cyber threats, attack techniques, and common exploits. * Experience with Linux, Windows, and macOS operating systems. * Experience with scripting languages and regular expressions. * Strong knowledge of networking fundamentals and common network protocols. - Working Knowledge of Linux * Able to interpret Apache web logs, IIS, Active Directory and other security logs ## Description We are seeking a Cyber Security Analyst to join an enterprise application security and threat detection team responsible for identifying, analyzing, and responding to active cyber threats. This individual will leverage advanced monitoring, log analysis, and threat intelligence capabilities to detect malicious activity, investigate security events, and enhance security controls across the organization. The ideal candidate has hands-on experience analyzing web application security events, developing alerting and detection mechanisms, and utilizing Splunk to identify and mitigate threats. This role operates on the front lines of cybersecurity defense and requires the ability to work independently while collaborating with security teams and business stakeholders. This team will partner closely with the Threat Hunting team, while this team is monitoring and managing the alerting Key Responsibilities - Monitor, analyze, and respond to web application and network security events. - Develop and implement custom alerts, dashboards, macros, and monitoring controls within Splunk. - Investigate security incidents using log correlation, threat intelligence, and forensic analysis techniques. - Identify and mitigate emerging threats against enterprise systems and web applications. - Analyze web, application, network, and security logs to detect suspicious or malicious activity. - Partner with business and security leaders to triage incidents and communicate security risks. - Enhance existing detection capabilities and implement new controls based on threat intelligence. - Support audit, compliance, and risk management initiatives through process and control development. Participate in an on-call rotation supporting active security incidents and threat response activities. ## Related Videos - [Crafting Custom Frameworks with Rust: A Deep Dive into Procedural Macros](https://www.wearedevelopers.com/videos/849-crafting-custom-frameworks-with-rust-a-deep-dive-into-procedural-macros) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Modularity: Let's dig deeper](https://www.wearedevelopers.com/videos/1200-modularity-let-s-dig-deeper) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)