Jobs · Information Technology · Virginia

SOC Analyst Tier 2

JFL CONSULTING, LLC · Springfield, VA · 4 days ago
On-siteInformation Technology$90k–$140k/yrFull-time

Key Responsibilities

  • Monitor SIEM dashboards and security tooling alerts
  • Serve as the advanced triage for all incoming customer calls, alerts, emails, and tickets using established playbooks to categorize, prioritize, and route
  • Create and manage detailed tickets for all confirmed or suspected events
  • Receive, review, and investigate all Tier 1 escalations within SLA
  • Perform deep log correlation across multiple data sources such as endpoint, network, application, identity
  • Conduct PCAP analysis for network-based threat investigation
  • Conduct root cause analysis or determine scope of compromise and identify affected systems, lateral movement, data exfiltration indicators
  • Escalate confirmed incidents to Tier 3/IR with a complete documentation and investigation summary
  • Tune false positive alerts
  • Write clear and thorough investigation reports for all escalated incidents
  • Mentor T1 analysts such as reviewing their triage decisions and provide coaching through their analysis
  • Maintain and update playbooks based on new TTPs and lessons learned
  • Maintain the SOC Event log for all events during the shift
  • Maintain situational awareness of the threat landscape and active campaigns
  • Participate briefings and training sessions

Requirements

  • 3+ years of SOC analyst experience with hands-on investigation or threat hunting experience
  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, Information Security, or related field. In lieu of degree, four additional years of experience in a NOC, SOC, IT security, or network engineering role
  • One of the following certifications, equivalent or better: Sec+, CYSA+, GCIH, SecX, CEH, GCIA, GSOC, CISSP
  • Experience with SIEM platforms and log analysis
  • Experience with SIEM query languages — SPL, KQL, or equivalent
  • Experience with PCAP analysis tools (Wireshark, NetworkMiner, or equivalent)
  • Strong understanding of attacker TTPs and MITRE ATT&CK framework
  • Ability to work shifts including nights, weekends, and holidays on rotating shift schedule

Preferred Qualifications

  • Active Secret clearance preferred but not required
  • Experience with EDR platforms (CrowdStrike Falcon, SentinelOne, or equivalent)
  • Memory forensics or malware triage experience

Similar jobs

SOC Tier 2 Analyst

ECSPortland, OR· 3 days ago
Information Technologyapply on myjobs.adp.com

Tier 2 SOC Analyst

CareerscapeUnited States· Yesterday
RemoteInformation Technology$70k–$88k/yrapply on cs-recruiters.com

Tier II SOC Analyst

Zachary Piper SolutionsMorrisville, NC· 1 wk ago
Information Technology$130k/yrapply on careers.zacharypiper.com

SOC Analyst 2

i-Link SolutionsHarrisburg, PA· 1 wk ago
Information Technologyapply on www1.jobdiva.com

SOC Analyst 2

Apex SystemsHarrisburg, PA· 1 mo ago
Information Technologyapply on apexsystems.com

SOC Analyst Tier 1

JFL CONSULTING, LLCSpringfield, VA· 4 days ago
Information Technology$65k–$100k/yrapply on recruiting.paylocity.com