> Markdown version of [/jobs/ext/2279718-soc-analyst-tier-2](https://www.wearedevelopers.com/jobs/ext/2279718-soc-analyst-tier-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst - Tier 2 - **Company:** Fiserv, Inc. - **Location:** Berkeley Heights, NJ, United States - **Experience:** Expert - **Salary:** $90,000.0 - $158,400.0 - **Contract:** Temporary contract - **Skills:** CompTIA Security+, Cyber Security, Mobile Application Software, Security Information and Event Management, Cyber Threat Analysis, Splunk - **Published:** August 28, 2026 - **Apply:** https://www.techcareers.com/job.asp?id=3367805147&tx=KR7171FFJ&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Approximately 5+ years of hands-on SOC or incident response experience, including working with EDR tools - CrowdStrike experience preferred, though comparable tool experience is acceptable. * Demonstrated experience serving as an incident lead or commander, including remediation, containment, and stakeholder communication during active incidents. * Strong communicationskills, with the ability to work diplomatically with other teams, executives, and application managers while taking charge and assigning responsibilities. * Ability towriteclear after-action reports and summaries tailored to technical and non-technical audiences. * Demonstrated ability to mentor or coach junior analysts on both technical methods and soft skills. * Ability to perform under pressure, take charge of a situation, and make sound decisions with incomplete information. * A collaborative mindset with genuine curiosity about cybersecurity fundamentals, adversaries, threats, and their potential impact on the environment. * Willingness toparticipatein occasional on-call coverage outside of standard business hours. Experience that would be great to have: * Recent or in-progress cybersecurity certifications such as Security+, CISSP, or SANS credentials. * Active engagement with the cybersecurity community, signaling curiosity and ongoing learning about current threats. * Experience crafting Splunk queries or similar SIEM searches to support investigations and mentoring. * Prior experience partnering with a globally distributed SOC or incident response team. * Familiarity withadditionalEDR/XDR, SIEM, or SOAR platforms beyond CrowdStrike. ## Description We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv. About your role: This role is a Tier 2 Security Operations Center (SOC) analyst position on Fiserv's Cyber Threat Management team, serving as an escalation point when a routine security event becomes a true incident. This is a regular Monday-Friday, 9:00 a.m.-5:00 p.m. role, with occasional on-call work. You'll bring hands-on EDR/incident response experience, step in as incident commander to coordinate cross-functional response, communicate clearly with everyone from application teams to executives, and mentor Tier 1 analysts using real incidents as teaching moments. What you'll do: * Act as incident commander when an event is escalated to a true incident, coordinating with application and cybersecurity teams tocontainissues such as removing an unauthorized user from a server or isolating malware. * Assess and triage incoming alerts, distinguish routine events from incidents, develop hypotheses on how incidents occurred, and provide direction during incident bridges. * Communicate diplomatically with application managers, executives, and cross-functional stakeholders during high-pressure incidents, tailoring the level of technical detail to each audience. * Writeafter-action reports and incident summaries for audiences ranging from executives and sales to technical and management teams. * Mentor Tier 1 SOC analysts using completed incidents as case studies, covering both soft skills (e.g., calming an application team) and technical methods (e.g., crafting Splunk queries). * Use CrowdStrike and comparable EDR platforms tocontainnetwork assets, remotely access affected systems, and collect system information during investigations. * Participate in occasional on-call coverage, keeping your phone nearby to be engaged first when an incident occurs outside of standard business hours. * Build rapport quickly with incident participants and partner effectively with application teams, executives, and other cybersecurity functions. Responsibilities listed are not intended to be all-inclusive and may be modified as necessary. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Getting under the skin: The Social Engineering techniques](https://www.wearedevelopers.com/videos/38-getting-under-the-skin-the-social-engineering-techniques) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How Much FAANG Companies Actually Pay Software Engineers in 2025](https://www.wearedevelopers.com/magazine/230-how-much-faang-companies-actually-pay-software-engineers-in-2025)