SECURITY OPERATIONS CENTER (SOC) ANALYST, SENIOR

Peraton Inc
Herndon, VA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$104,000.0 - $166,000.0
Working hours
Regular working hours
Job source

Tech stack

Challenge-Handshake Authentication Protocol Cyber Security Information Systems Query Languages Monitoring of Systems Issue Tracking Systems Intrusion Detection and Prevention Network Security Log Analysis Comptia Pentest+ CE Security Information and Event Management Software Engineering
+3 more
Computer Network Operations Information Technology Cyber Warfare

Job description

We are seeking a highly skilled and innovative Security Operations Center (SOC) Analyst Senior to join our team in the greater DMV area, supporting the Army National Guard. Responsibilities

  • Perform advanced Tier-1 monitoring, triage, and initial alert analysis across SIEM, EDR, network security tools, cloud telemetry, and enterprise monitoring platforms.
  • Review high-volume alerts, correlate events across multiple data sources, and identify patterns indicative of targeted or multi-stage activity.
  • Execute Tier-1 containment actions per playbooks (host isolation, account disablement, block rules) and validate immediate mitigations.
  • Enrich alerts with contextual data, validate IOCs, document detailed case notes, and prepare high-quality escalations for Tier-2/Tier-3 and CIRT teams.
  • Conduct deeper log analysis, cross-platform correlation, and preliminary threat-hunt queries to surface anomalies requiring escalation.
  • Coordinate with Tier-2 analysts, CIRT, and network operations to support incident response, provide contextual summaries, and recommend next steps.
  • Monitor SIEM/tool performance, identify visibility gaps or misconfigurations, and recommend tuning to improve SOC coverage.
  • Maintain and update Tier-1 checklists, triage procedures, and playbooks; contribute tuning by identifying false-positive patterns and rule adjustments.
  • Mentor and guide junior analysts on triage best practices, tool usage, and case handling; produce shift summaries, daily operational reports, and incident tracking updates.
  • Contribute to continuous improvement by refining workflows, adopting new SOC techniques, and enhancing frontline defensive effectiveness.

Requirements

  • Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
  • Clearance: Active TS/SCI clearance.
  • Candidate must meet ONE of the following:
  • Bachelor’s degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Software Engineering, or a related field; OR
  • Relevant DoD/military training (examples: 4C-255S (CP); M03385G; M10395B; M223854; A-531-0451; A-531-4421; A-531-1900; Cyber Defense Analyst (Intermediate) Playlist; DISA (511) Training); OR
  • Relevant professional certification or equivalent experience (examples: CEH(P); GMON; GRID; Cloud+; FITSP-O; GCED; GDSA; GSEC; PenTest+; Security+).
  • Required experience and skills:
  • SOC, incident detection, or cybersecurity operations experience with substantial Tier-1/Tier-2 monitoring and triage responsibilities.
  • Hands-on experience with SIEM query languages and workflows, EDR investigation, log forensics, and cross-platform correlation.
  • Familiarity executing containment actions, documenting chain-of-custody/evidence, and following incident playbooks.
  • Strong analytical writing for case documentation, escalation summaries, and shift reporting; ability to synthesize technical detail for responders and leadership.
  • Ability to identify tuning opportunities, manage false positives, and work collaboratively across SOC/CIRT/NOC teams.
  • Desired:
  • Prior DoD/ARNG SOC or operations center experience and familiarity with CDAP/CHAP/enterprise monitoring contexts.
  • Experience mentoring analysts, contributing to SOC tuning programs, and supporting SOC metric/dashboard development.

ENOCS

Benefits & conditions

Pulled from the full job description

  • Parental leave
  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account
  • Dental insurance, Target Salary Range: $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at https://www.careers.peraton.com/benefits.

About the company

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:48 min

Leveraging multi-agent systems for autonomous software testing

Ondřej Gróf Ondřej Gróf · WWC Europe 2026

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 · WWC 2024

Videos

See all

Related articles

See all