SOC Analyst

Posted 2 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
100K-120K Annually
Mid level
Artificial Intelligence • Information Technology • Software • Defense
The Role
Monitor and analyze cyber threats, investigate incidents, perform malware and network forensics, and support Tier 1/Tier 2 incident response for federal networks. Develop detection content, SOC playbooks, threat-hunting reports, remediation strategies, and recovery activities while collaborating with cyber teams and stakeholders to improve SOC operations and situational awareness.
Summary Generated by Built In

SOC Analyst

Expression is seeking a SOC Analyst to join our team in support of the National Telecommunications and Information Administration (NTIA) ISCOM Division. In this role, you will provide cyber threat monitoring, analysis, and incident response support that strengthens program situational awareness and ensures resilience of critical federal networks. You will support Tier 1 and Tier 2 SOC operations, contribute to SOC playbook development, and help mature cyber defense strategies in a mission-focused environment.

Location and Clearance

  • Washington, DC – Onsite
  • Active Secret or Top Secret clearance required (U.S. Citizenship required)

Responsibilities

  • Monitor, detect, and analyze security threats, risks, and alerts using SOC tools, and initiate escalation as required.
  • Conduct cyber threat analysis and contribute to reports for program situational awareness.
  • Provide Tier 1 response to security incidents and support escalation to Tier 2 during high-volume or critical events.
  • Conduct functional incident response teams during shifts, ensuring accountability and effective resolution.
  • Conduct malware analysis (static and dynamic) and assess Indicators of Compromise (IOCs).
  • Perform network forensics and deep packet inspection to investigate intrusions.
  • Implement remediation strategies and support recovery activities after incidents.
  • Recommend process improvements and create new detection content to strengthen SOC operations.
  • Conduct proactive monthly threat hunts and provide reports to stakeholders.
  • Collaborate with cyber teams for incident escalation, coordinated responses, and SOC policy/procedure development.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field; OR equivalent certifications (CompTIA Security+, CISSP, GCIH, GCIA).
  • Minimum of 4 years of experience in security operations, incident response, or cyber threat analysis.
  • Strong knowledge of SOC operations, incident detection, and response workflows.
  • Familiarity with malware analysis, network forensics, and packet-level inspection.
  • Excellent analytical, problem-solving, and communication skills.

Preferred Experience

  • Advanced certifications such as CISSP, GCFA, GCIH, GCIA, or equivalent.
  • Prior experience supporting NTIA, Department of Commerce, or other federal civilian agencies.
  • Hands-on experience with SIEM platforms, IDS/IPS, and endpoint monitoring tools.
  • Familiarity with the NIST Cybersecurity Framework and Risk Management Framework (RMF).
  • Experience developing and maturing SOC playbooks, processes, and detection capabilities.

Benefits

Expression offers highly competitive salaries, performance-based incentives, and additional benefits, such as:

  • 401k matching
  • PPO and HDHP medical/dental/vision insurance
  • Education reimbursement up to $10,000/yr
  • Complimentary life insurance
  • Generous PTO and 11 days of holiday leave
  • Onsite gym facility at our HQ office in Washington DC
  • Commuter Benefits Plan

About Expression

Founded in 1997 and headquartered in Washington, DC, Expression provides data fusion, data analytics, AI/ML, software engineering, information technology, and electromagnetic spectrum management solutions to the U.S. Department of Defense, Department of State, and national security community.

Our culture emphasizes creating immediate and sustainable value for our clients through agile delivery of tailored solutions and constant engagement. We were ranked #1 on the Washington Technology Fast 50 list of fastest-growing small business Government contractors and recognized as a Top 20 Big Data Solutions Provider by CIO Review.

At Expression, we ensure every team member has the tools and opportunities to grow while working with the newest technologies in the industry. We celebrate milestones, accomplishments, promotions, and collaborative achievements that make our workplace engaging and rewarding.

Equal Opportunity Employer/Veterans/Disabled
Expression is an Equal Opportunity Employer. If you require a reasonable accommodation during the application or interview process, please submit your request to our Human Resources department through the application portal.

Skills Required

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field, or equivalent certifications such as CompTIA Security+, CISSP, GCIH, or GCIA
  • Minimum of 4 years of experience in security operations, incident response, or cyber threat analysis
  • Strong knowledge of SOC operations, incident detection, and response workflows
  • Familiarity with malware analysis, network forensics, and packet-level inspection
  • Excellent analytical, problem-solving, and communication skills
  • Active Secret or Top Secret security clearance
  • U.S. citizenship
  • Advanced certifications such as CISSP, GCFA, GCIH, GCIA, or equivalent
  • Experience supporting NTIA, the Department of Commerce, or other federal civilian agencies
  • Hands-on experience with SIEM platforms, IDS/IPS, and endpoint monitoring tools
  • Familiarity with the NIST Cybersecurity Framework and Risk Management Framework
  • Experience developing and maturing SOC playbooks, processes, and detection capabilities
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, DC
144 Employees
Year Founded: 1997

What We Do

Expression Networks is a software company providing AI-enhanced data fusion, analytics, engineering, and information technology solutions to support national security and defense missions.

Similar Jobs

hatch I.T. Logo hatch I.T.

SOC Analyst

Information Technology • Other • Software • Consulting
In-Office
Washington, DC, USA
24 Employees
100K-120K Annually

Agile Defense, LLC Logo Agile Defense, LLC

Tier 1 SOC Analyst

Information Technology • Software • Cybersecurity • Defense
In-Office
Washington, DC, USA
2000 Employees
70K-80K Annually

Amentum Logo Amentum

SOC / Incident Response Analyst

Security • Cybersecurity
In-Office
Washington, DC, USA
18261 Employees
In-Office
Washington, DC, USA
110K-160K Annually

Similar Companies Hiring

Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account