Job Requirements
Reston, VA
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
About the Team
Our Security Operations Center (SOC) provides advanced monitoring and response capabilities
for enterprise and U.S. Government SaaS environments. Analysts serve as technical
investigators and escalation points within the SOC, helping protect critical systems and
customer environments.
About the Role
The SOC Analyst Level 2 is responsible for in-depth investigation of escalated alerts and
security incidents. This role performs log analysis, correlates events across multiple platforms,
and validates potential security incidents using tools such as Splunk and endpoint detection
platforms.
The successful candidate will support proactive threat hunting activities, contribute to detection
engineering and playbook improvements, and assist with tuning detection logic to reduce false
positives. This role will also mentor junior analysts and help drive operational maturity within the
SOC.
This role will support one or more direct or indirect contracts with the U.S. Federal Government
and requires an active TS/SCI with CI Polygraph security clearance.
Basic Qualifications
● Active TS/SCI with CI Polygraph security clearance required
● 5+ years of experience in cybersecurity operations, security monitoring, or incident
response
● Hands-on experience with Splunk and advanced query development
● Experience analyzing endpoint, network, and cloud security logs
● Strong understanding of incident response procedures and methodologies
● Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or
equivalent experience
Other Qualifications
● Experience conducting threat hunting activities
● Familiarity with MITRE ATT&CK framework and adversary behavior mapping
● Experience using SOAR platforms (such as Tines) for workflow automation
● Ability to perform root cause analysis and impact assessments
● Strong documentation, reporting, and briefing skills
● Experience mentoring junior analysts and supporting team development
● Certifications meeting DoD 8570 IAT Level II requirements
Preferred Qualifications
● Experience supporting federal, intelligence community, or defense environments
● Experience with endpoint detection and response (EDR) platforms
● Experience supporting cloud security monitoring and investigations
● Familiarity with detection engineering, SIEM content development, and use case tuning
Experience supporting continuous monitoring and security operations maturity initiatives
Our Security Operations Center (SOC) provides advanced monitoring and response capabilities
for enterprise and U.S. Government SaaS environments. Analysts serve as technical
investigators and escalation points within the SOC, helping protect critical systems and
customer environments.
About the Role
The SOC Analyst Level 2 is responsible for in-depth investigation of escalated alerts and
security incidents. This role performs log analysis, correlates events across multiple platforms,
and validates potential security incidents using tools such as Splunk and endpoint detection
platforms.
The successful candidate will support proactive threat hunting activities, contribute to detection
engineering and playbook improvements, and assist with tuning detection logic to reduce false
positives. This role will also mentor junior analysts and help drive operational maturity within the
SOC.
This role will support one or more direct or indirect contracts with the U.S. Federal Government
and requires an active TS/SCI with CI Polygraph security clearance.
Basic Qualifications
● Active TS/SCI with CI Polygraph security clearance required
● 5+ years of experience in cybersecurity operations, security monitoring, or incident
response
● Hands-on experience with Splunk and advanced query development
● Experience analyzing endpoint, network, and cloud security logs
● Strong understanding of incident response procedures and methodologies
● Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or
equivalent experience
Other Qualifications
● Experience conducting threat hunting activities
● Familiarity with MITRE ATT&CK framework and adversary behavior mapping
● Experience using SOAR platforms (such as Tines) for workflow automation
● Ability to perform root cause analysis and impact assessments
● Strong documentation, reporting, and briefing skills
● Experience mentoring junior analysts and supporting team development
● Certifications meeting DoD 8570 IAT Level II requirements
Preferred Qualifications
● Experience supporting federal, intelligence community, or defense environments
● Experience with endpoint detection and response (EDR) platforms
● Experience supporting cloud security monitoring and investigations
● Familiarity with detection engineering, SIEM content development, and use case tuning
Experience supporting continuous monitoring and security operations maturity initiatives
group id: 90838916