
Tier 1 SOC Analyst
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in District of Columbia, +2 more states.
• Oversee SIEM alerting systems, such as Microsoft Sentinel or Splunk, and assess events by severity in accordance with established runbooks.
• Evaluate and respond to endpoint detection and response (EDR) alerts across client environments.
• Monitor and confirm Tenable vulnerability findings and direct them into the appropriate workflows.
• Elevate incidents through the designated escalation process, ensuring clear and documented transitions.
• Create, update, and finalize tickets with precise and auditable notes.
• Maintain organized shift logs.
• Liaise with clients and the on-call lead during overnight issues.
• Adhere to and contribute to the enhancement of standard operating procedures.
• Identify detection gaps and opportunities for tuning.
• Assist in monthly reporting with accurate event and response metrics.
• Must successfully complete a drug screening and comprehensive background check, which includes verification of references, employment history, education, and certifications.
• 0–2 years of experience in security operations, IT, or a similar technical domain.
• Familiarity with SIEM alerting and EDR alert triage principles.
• Strong foundational knowledge of networking and operating systems across Windows, macOS, and Linux.
• Awareness of the incident lifecycle: detection, triage, containment, and escalation.
• Reliable availability to work overnight shifts on a rotation that includes weekends.
• Excellent written communication skills and disciplined documentation practices.
• U.S. Citizenship or Permanent Residency is mandatory.
• If employed, all responsibilities pertaining to this role must be conducted within the continental U.S.
• Preferred: Practical experience with Microsoft Sentinel, Splunk, CrowdStrike or similar EDR, and Tenable.
• Preferred: Security+ or an equivalent entry-level security certification.
• Preferred: Basic scripting skills for triage or automation using Python or PowerShell.
• Preferred: Relevant coursework, internship, or laboratory experience in a SOC or IT security context.
• Preferred: Residency in the Hampton Roads to Richmond, VA corridor.
• Medical – Multiple POS health plan options, including an HSA-compatible plan.
• Dental – PPO coverage for preventive, basic, and major services.
• Vision – Annual exam, frames, lenses, and contact lens allowance.
• 401(k) – Employer match up to 5% of eligible compensation.
• Long-Term Disability – 100% employer-paid coverage at 50% of pre-disability earnings.
• Life Insurance & AD&D – 100% employer-paid coverage valued at $10,000 each.
• PTO – 15–25 days annually based on tenure.
• Paid Federal Holidays – All 11 federal holidays observed.
SafelyYou
SafelyYou
Arctiq
Get handpicked remote jobs straight to your inbox weekly.