> Markdown version of [/jobs/ext/3051079-soc-analyst](https://www.wearedevelopers.com/jobs/ext/3051079-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst - **Company:** Valiant Solutions, LLC - **Location:** United States (Remote available) - **Experience:** Starter - **Salary:** $97,000.0 - $134,000.0 - **Contract:** Permanent contract - **Skills:** Multitier Architecture, Artificial Intelligence, Amazon Web Services, Cyber Security, Information Systems, Log Analysis, Network Forensics, Red Team (Cyber Security), Reverse Engineering, Security Information and Event Management, Data Streaming, Mitre Att&ck, Malware, Cyber Threat Analysis, HybridCloud, Amazon Virtual Private Cloud (VPC), Information Technology, Purple Team (Cyber Security), Cloudwatch, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** September 24, 2026 - **Apply:** https://www.builtincolorado.com/job/soc-analyst/11341972?handler=ApplyRedirect ## About the Role Eligibility Requirements: U.S. Citizenship is required due to federal contract obligations, along with the ability to successfully pass a federal background investigation., * Six or more years of Security Operations Center experience, with demonstrated time in a Tier II or Tier III analyst role. * At least one of the following certifications: GCIH, GCIA, CEH, or Security+. * Hands-on experience with SIEM platforms and endpoint telemetry, including alert tuning, correlation rule review, and use of EDR agents for investigation. * Working knowledge of operating systems (Windows and Linux internals, event and audit logs, process and memory artifacts) and networking (TCP/IP, DNS, HTTP/S, common protocols, packet capture analysis). * Experience with AWS native capabilities and telemetry, including CloudTrail, GuardDuty, VPC Flow Logs, and CloudWatch, in a monitoring or investigation context. * Ability to lead a shift and drive handover discipline across analyst tiers. * Strong written and verbal communication skills, including the ability to write clear incident write-ups and shift handover notes. * Required to obtain and maintain a Non-Sensitive / High Risk (Public Trust) security clearance, Tier 4/6c., * Additional certifications such as GCFA, GCFE, GNFA, or GREM. * Experience with malware reverse engineering, memory forensics, and network forensics. * Familiarity with MITRE ATT&CK and the ability to map alerts and hunt findings to ATT&CK techniques. * Working knowledge of NIST SP 800-61 Rev. 2, NIST SP 800-86, and NIST SP 800-137. * Experience with SOAR platforms and playbook automation. * Familiarity with AWS GovCloud and hybrid cloud detection patterns., Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchanging of accurate information via electronic communication, phones, and in person. Occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job. ## Description Be an Early Applicant In-Office or Remote Hiring Remotely in US Senior level In-Office or Remote Hiring Remotely in US Senior level Provides Tier III SOC support through advanced SIEM alert triage, forensic analysis, incident escalation, threat hunting, detection engineering, and malware investigation. Leads shift handovers, monitors security tool health, updates playbooks and procedures, supports Red and Purple Team exercises, prepares incident reports, mentors junior analysts, and collaborates with government and partner SOCs. Requires six or more years of SOC experience, cybersecurity certifications, AWS security telemetry expertise, and a Public Trust clearance. The summary above was generated by AI, The SOC Analyst is the senior Tier III analyst on the Security Operations Center floor, providing advanced triage, forensic analysis, and escalation for SIEM alerts and incidents that exceed Tier I and Tier II capability. The analyst is the escalation point for the shift, maintains situational awareness of SOC tools and telemetry, drives shift handovers so incoming analysts inherit full context, and contributes to standard operating procedure and playbook updates that keep detection and response current. The role also supports Red Team and Purple Team exercises, using those engagements to test and improve detection coverage., * Provide Tier III support for SIEM alert triage, in-depth forensic analysis, and escalation, including malware reverse engineering, memory forensics, and campaign correlation across the SOC and partner SOC environments. * Serve as the shift escalation point for complex or high-severity events raised by Tier I and Tier II analysts, and analyze them within 4 hours per contract SLA. * Maintain situational awareness of SOC tools and telemetry, including SIEM, SOAR, EDR, NDR, and CDM data flows, and alert the SOC Manager when tool health or coverage gaps put detection at risk. * Lead shift handovers, providing incoming analysts with a written and verbal summary of open incidents, active hunts, tuning changes, and outstanding follow-up items. * Contribute to SOC standard operating procedure and playbook updates, with revisions reviewed at least semi-annually and refreshed sooner when new threats, tools, or gaps require it; major changes are reviewed by the Change Control Board. * Support Red Team and Purple Team exercises by validating detection coverage during engagement, translating adversary tradecraft into new detection rules, and feeding lessons learned back into playbooks. * Support the development and testing of custom detection rules and collaborate with the customer OCIO, OIG, and partner SOCs to strengthen strategic threat awareness. * Contribute to monthly threat actor profiles and update detection signatures accordingly. * Submit initial incident reports within one hour of confirmation and support delivery of final incident reports within 72 hours, including impact, timeline, and remediation. * Participate in post-incident lessons-learned sessions and translate findings into playbooks, runbooks, and detection improvements. * Mentor Tier I and Tier II analysts on triage technique, log analysis, and escalation quality., In-Office or Remote Mid level Mid level Digital Media * Professional Services * Consulting * SEO Monitor and triage SOC/NOC alerts, investigate and contain security incidents, manage patch and firmware updates, maintain network infrastructure, tune automated alerting, meet SLAs, and audit client environments against SOC 2, HIPAA, and NIST frameworks. The role also requires root-cause analysis, detailed documentation, process improvement, and participation in scheduled on-call rotations within a dedicated remote home office. Top Skills: ConnectwiseEdrFirewallsGoogle WorkspaceHipaaMicrosoft 365AzureNetwork Management ConsolesNistRmmSIEMSoc 2 Concept Plus SOC Analyst (WarU E-ITSS) 9 Days Ago Remote United States Entry level Entry level Information Technology Monitors network, host, and security systems for suspicious activity; triages alerts using SIEM, vulnerability scanning, and endpoint security tools; supports incident response, threat research, vulnerability identification, reporting, and SOC process improvements under senior guidance. Maintains awareness of cybersecurity best practices and DoD security requirements while helping protect mission-critical information systems. Top Skills: AcasIds/IpsKqlMicrosoft DefenderMicrosoft SentinelSplSplunkTcp/Ip What you need to know about the Colorado Tech Scene With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation. Key Facts About Colorado Tech * Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey) * Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3 * Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech * Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook) * Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures * Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From Black Box to Glass Box : Bedrock AgentCore Observability](https://www.wearedevelopers.com/videos/2126-from-black-box-to-glass-box-bedrock-agentcore-observability) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)