SOC Tier 2 Analyst

Posted Yesterday
Be an Early Applicant
Hiring Remotely in USA
Remote
Entry level
Cloud • Information Technology • Cybersecurity
The Role
Conducts advanced cybersecurity investigations and incident response within a Security Operations Center. Responsibilities include threat hunting, malware triage, forensic review, log analysis, threat intelligence correlation, and technical response coordination. The analyst leads moderate-severity incidents, guides Tier 1 analysts, and improves detection engineering through alert-rule refinement and monitoring-content development. The role requires expertise in SIEM, EDR, network and cloud security, attack frameworks, incident response, and digital evidence collection.
Summary Generated by Built In

This is a remote position.

The SOC Tier 2 Analyst serves as the primary investigative and response resource within the Security Operations Center. This position is responsible for conducting deeper investigations of escalated incidents, validating potential threats, performing threat hunting activities, and coordinating technical response efforts.

Tier 2 Analysts analyze complex attack patterns across multiple systems and data sources. They correlate information from endpoints, networks, cloud platforms, identity services, and threat intelligence feeds to determine the scope, severity, and business impact of potential incidents.

The analyst is responsible for performing advanced log analysis, malware triage, forensic review, and threat intelligence correlation. The position frequently serves as the technical lead during moderate severity incidents and provides guidance to Tier 1 analysts during investigations.

Tier 2 Analysts also contribute to detection engineering efforts by improving security monitoring content, developing detection logic, refining alert rules, and recommending improvements to SOC operations.

Requirements

Candidates must possess advanced knowledge of cybersecurity operations, threat detection methodologies, incident response procedures, attack frameworks, and threat actor tactics, techniques, and procedures.

The candidate should have strong experience with SIEM platforms, EDR platforms, network security monitoring, cloud security technologies, threat intelligence platforms, and incident management processes. Experience investigating ransomware, phishing campaigns, credential theft, insider threats, and cloud security incidents is highly desirable.

The position requires the ability to analyze large volumes of data, identify subtle indicators of compromise, and make informed decisions under pressure. Candidates should understand MITRE ATT&CK, threat hunting methodologies, detection engineering principles, and digital evidence collection.

Typical certifications include CySA+, GCIA, GCIH, GCED, CASP+, CISSP, or equivalent.


The candidate must have a minimum of
Secrete Clearance. 



Benefits

At Defianx, we believe that great people build great outcomes. We are committed to supporting our employees with a competitive benefits package designed to promote health, professional growth, work-life balance, and long-term career success. Eligible employees have access to medical benefits, paid time off, paid holidays, professional development opportunities, certification support, and flexible work arrangements based on customer and operational requirements.

As a growing cybersecurity company, we invest in our team by fostering a collaborative culture that values continuous learning, innovation, and excellence. Employees are encouraged to expand their technical expertise, pursue industry certifications, contribute to mission-critical initiatives, and grow their careers alongside the company's success. Defianx is committed to creating an environment where talented professionals can thrive while delivering exceptional value to our customers.



Skills Required

  • Advanced knowledge of cybersecurity operations, threat detection methodologies, incident response procedures, attack frameworks, and threat actor tactics, techniques, and procedures
  • Strong experience with SIEM platforms, EDR platforms, network security monitoring, cloud security technologies, threat intelligence platforms, and incident management processes
  • Ability to analyze large volumes of data, identify subtle indicators of compromise, and make informed decisions under pressure
  • Understanding of MITRE ATT&CK, threat hunting methodologies, detection engineering principles, and digital evidence collection
  • Experience investigating ransomware, phishing campaigns, credential theft, insider threats, and cloud security incidents
  • CySA+, GCIA, GCIH, GCED, CASP+, CISSP, or equivalent certification
  • Minimum Secret clearance
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
6 Employees
Year Founded: 2016

What We Do

Defianx is a cybersecurity and technology services firm serving government agencies and businesses, particularly organizations responsible for mission-critical environments. It provides cybersecurity engineering, security and network operations, incident response, threat operations, cloud security, and technology modernization, alongside federal mission support. Its work connects security, IT, operations, and governance to help clients maintain continuity, improve resilience, make technology investments more valuable, and give leaders clearer insight into risk and business outcomes.

Similar Jobs

Binary Defense Systems, LLC Logo Binary Defense Systems, LLC

Tier 2 SOC Analyst with AI Tools Experience - REMOTE

Information Technology • Security • Software • Cybersecurity
In-Office or Remote
Houston, TX, USA
192 Employees

Binary Defense Systems, LLC Logo Binary Defense Systems, LLC

Tier 2 SOC Analyst with Threat Intelligence Experience - REMOTE

Information Technology • Security • Software • Cybersecurity
In-Office or Remote
Houston, TX, USA
192 Employees

UL Solutions Logo UL Solutions

Senior Building Inspector

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
Northbrook, IL, USA
15000 Employees
85K-105K Annually

Basis Logo Basis

Office & Administrative Coordinator

AdTech • Digital Media • Marketing Tech • Software • Automation
Easy Apply
In-Office or Remote
Chicago, IL, USA
815 Employees
59K-65K Annually

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account