> Markdown version of [/jobs/ext/2307689-soc-analyst-night-shift](https://www.wearedevelopers.com/jobs/ext/2307689-soc-analyst-night-shift). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst (Night Shift) - **Company:** Kforce Inc. - **Location:** Arlington, VA, United States - **Salary:** $122,720.0 - $168,480.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Cyber Security, Computer Networks, Linux, Digital Forensics, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Security, Pcap, Log Analysis, Network Forensics, Packet Analyzer, Network Protocols, Security Software, Security Information and Event Management, TCP/IP, Software Vulnerability Management, Mitre Att&ck, Software Troubleshooting, Malware, Cyber Threat Analysis, Cybercrime, Cyber Warfare, Splunk, Vulnerability Analysis - **Published:** August 30, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9129151/soc-analyst-night-shift ## About the Role * Experience supporting a Security Operations Center (SOC), Cyber Defense Team, or Incident Response function. * Hands-on experience with Splunk for log analysis, correlation, alert investigation, and reporting. * Experience with Trellix security products and endpoint security monitoring. * Experience utilizing ACAS for vulnerability scanning, analysis, and remediation tracking. * Strong understanding of Cyber Network Defense (CND) principles and security monitoring methodologies. * Experience performing packet analysis using PCAP data. * Knowledge of IDS/IPS technologies and network-based threat detection. * Understanding of TCP/IP, network protocols, and common attack methodologies. * Experience analyzing security alerts, events, and indicators of compromise. * Strong troubleshooting, documentation, and communication skills. * Ability to work rotating shifts in a 24x7 operational environment., * Experience supporting DoD or Federal cybersecurity programs. * Familiarity with MITRE ATT&CK, Cyber Kill Chain, and threat hunting methodologies. * Experience with incident response, malware analysis, or digital forensics. * Knowledge of STIGs, vulnerability management processes, and security compliance frameworks. * Experience with threat intelligence integration and IOC analysis. * Understanding of Windows, Linux, and enterprise networking environments. Certifications (One or More Preferred) * Security+ * CySA+ * CASP+ * GCIH * GCIA * CEH * CISSP ## Description Join a long-term cybersecurity program supporting a critical Department of Defense mission in a fast-paced 24/7 Security Operations Center (SOC) environment. This role focuses on Cyber Network Defense (CND), threat detection, incident analysis, vulnerability management, and continuous monitoring across enterprise networks. Analysts will leverage industry-leading platforms including Splunk, Trellix, and ACAS to identify, investigate, and respond to cyber threats while helping maintain the security and integrity of mission-critical systems. This opportunity offers long-term stability on a five-year contract supporting a high-visibility federal customer., * Monitor and analyze security events from SIEM, EDR, IDS/IPS, and vulnerability management platforms. * Perform real-time cyber threat detection, triage, investigation, and escalation activities within a 24/7 SOC. * Conduct Cyber Network Defense (CND) operations to identify malicious activity, anomalous behavior, and indicators of compromise. * Investigate network traffic using packet capture (PCAP) data to identify intrusion attempts, malware activity, and unauthorized communications. * Analyze alerts and logs generated from Splunk, Trellix, ACAS, and other cybersecurity tools. * Utilize IDS/IPS technologies to identify threats, validate alerts, and support incident response efforts. * Perform threat hunting activities using log analysis, endpoint telemetry, network traffic analysis, and threat intelligence. * Conduct vulnerability assessments and track remediation activities using ACAS and related vulnerability management tools. * Correlate events from multiple data sources to determine root cause, scope, and impact of security incidents. * Develop and maintain incident documentation, shift reports, and operational metrics. * Coordinate with engineering, network, and system administration teams to support containment and remediation efforts. * Support continuous monitoring initiatives and compliance with DoD cybersecurity requirements. * Participate in daily shift handoffs to ensure seamless 24/7 operational coverage. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)