IBM

Security Operations Center Analyst

IBM$80K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in a Security Operations Center (SOC), incident response, or related cybersecurity role
  • Proficient in using EDR and SIEM platforms for security alert analysis
  • Solid understanding of common cyber threats and MITRE ATT&CK techniques
  • Working knowledge of networking fundamentals like DNS, TCP/IP, and firewalls
  • Strong analytical skills with the ability to prioritize multiple investigations in a fast-paced environment

Responsibilities

  • Monitor security alerts from various platforms including SIEM and EDR
  • Perform triage and analysis of security events to assess legitimacy and impact
  • Execute containment actions such as host isolation and blocking threats
  • Document investigations and recommendations following operational procedures
  • Analyze telemetry from multiple sources to detect malicious activities

Benefits

  • Healthcare coverage including medical, dental, and mental health
  • 401(k) and employee stock purchase plan options
  • Generous paid time off and family leave policies
  • Access to training and certifications through an AI-driven learning platform
  • Diverse resources and community engagement opportunities
Full Job Description
Your role and responsibilities

As a SOC Analyst, you will serve as a first responder to cybersecurity threats, helping protect IBM's global enterprise by identifying, investigating, and containing malicious activity before it becomes a significant incident.

You will work closely with threat detection engineers, incident responders, security operations teams, and business stakeholders to assess security alerts, determine risk and impact, and take appropriate response actions.

This role requires strong investigative instincts, technical troubleshooting skills, and the ability to communicate findings clearly to both technical and non-technical audiences.

Key Responsibilities
  • Monitor and investigate security alerts generated from SIEM, EDR, email security, cloud security, and network security platforms
  • Perform triage and analysis of security events to determine legitimacy, severity, scope, and impact
  • Execute approved containment actions, including host isolation, account restrictions, malicious email remediation, and blocking indicators of compromise
  • Escalate confirmed or high-risk incidents while providing complete investigative context and supporting evidence
  • Analyze endpoint, network, identity, cloud, and application telemetry to identify malicious activity
  • Correlate data from multiple security technologies to investigate complex security events
  • Document investigations, containment actions, and recommendations in accordance with operational procedures
  • Participate in incident response activities and support post-incident reviews as needed
  • Continuously improve detection and triage processes through operational feedback and collaboration with engineering teams
  • Maintain awareness of emerging threats, attacker tactics, techniques, and procedures (TTPs), and industry trends
  • Contribute to operational readiness by assisting with playbook development, process improvement, and knowledge sharing


Required education

Associate's Degree/College Diploma

Preferred education

Bachelor's Degree

Required technical and professional expertise

  • Experience in a Security Operations Center (SOC), Cybersecurity Operations, Incident Response, or related cybersecurity role
  • Experience investigating and triaging security alerts in a large enterprise environment
  • Experience using EDR platforms
  • Experience working with SIEM platforms and log analysis technologies
  • Understanding of common cyber threats, attacker methodologies, and MITRE ATT&CK techniques
  • Experience performing threat containment actions and supporting incident response activities
  • Strong analytical and problem-solving skills with attention to detail
  • Experience analyzing endpoint, identity, email, network, and cloud-based security events
  • Knowledge of Windows, Linux, macOS, Active Directory, Entra ID, and enterprise authentication technologies
  • Working knowledge of networking fundamentals including DNS, TCP/IP, HTTP/S, firewalls, proxies, VPNs, and IDS/IPS technologies
  • Ability to assess risk and prioritize multiple investigations simultaneously in a fast-paced operational environment
  • Strong verbal communication, technical writing, and incident documentation skills
  • Ability to work independently while collaborating effectively across global teams

Key Technical Skills
  • Security Alert Triage and Investigation
  • Event Correlation and Threat Analysis
  • Endpoint Detection and Response (EDR)
  • Security Information and Event Management (SIEM)
  • Account Compromise Investigation
  • Phishing and Business Email Compromise Analysis
  • Threat Containment and Remediation
  • Log Analysis and Query Development
  • Threat Intelligence Utilization
  • Incident Documentation and Case Management


Preferred technical and professional experience

  • Experience working within an enterprise SOC supporting global operations
  • Experience using QRadar, Splunk, Sentinel, Elastic, or similar SIEM platforms
  • Experience with CrowdStrike Falcon and/or Microsoft Defender XDR
  • Familiarity with cloud security monitoring in AWS, Azure, IBM Cloud, or GCP environments
  • Experience performing threat hunting activities
  • Knowledge of identity-based attacks and Entra ID / Active Directory investigations
  • Understanding of malware behavior and attacker TTPs
  • Experience developing detections, use cases, or automation workflows
  • Basic scripting skills using Python, PowerShell, KQL, or similar technologies
  • Experience supporting incident response engagements or working closely with a CSIRT organization
  • Cybersecurity certifications such as Security+, CySA+, GCIH, GCIA, GCED, SC-200, SC-300, or equivalent experience


OTHER RELEVANT JOB DETAILS

IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:

- Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being

- Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs

- Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law

- Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals

- Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences

We consider qualified applicants with criminal histories, consistent with applicable law.

This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.

IBM will not be providing visa sponsorship for this position now or in the future. Therefore, in order to be considered for this position, you must have the ability to work without a need for current or future visa sponsorship.

The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.

About IBM

Sequent Computer Systems designs and manufactures multiprocessing computer systems based on Cache Coherent Non-Uniform Memory Access architecture, which are used primarily as application and database servers for commercial applications. Through a partnership with Oracle Corporation, Sequent became a dominant high-end UNIX platform in the late 1980s and early 1990s. Later it introduced a next-generation high-end platform for UNIX and Windows NT based on non-uniform memory access architecture, NUMA-Q. Sequent Computer Systems, Inc. was incorporated in 1983 and is based in Beaverton, Oregon. In July 1999 Sequent Computer Systems, Inc. was acquired by International Business Machines Corp.

IBM Careers

Joining IBM presents a prime opportunity to be part of our global team of professionals, leading the way in technological innovation and business solutions. At IBM, we offer more than just job opportunities; we provide a platform for growth, leadership development, and a chance to be at the forefront of industry innovation. Work You’ll Do At IBM, your work impacts global markets and helps reshape industries. As part of our team, you will contribute to projects that harness the power of cloud computing, AI, and blockchain technologies. With IBM, you are positioned to lead in the marketplace, leveraging our deep industry expertise and commitment to digital innovation. Transform Your Career IBM is not just a company; it's a culture of innovation and leadership. We are committed to diversity and providing an inclusive environment where all professionals can thrive. Joining IBM means being part of a team that values your unique skills and perspectives. IBM offers a variety of career paths, including full-time positions and internships, that allow you to explore your interests and develop new skills. Our professional development programs are designed to help you grow at every stage of your career, featuring robust training, certification support, and opportunities for advancement. Innovate with Us Engage in work that matters with a team of over 350,000 IBMers worldwide, driving progress in over 170 countries. At IBM, innovation isn’t just about technology, it’s about transforming how businesses operate and compete. Your work will deliver solutions that anticipate and fulfill the needs of our clients in an ever-evolving landscape. Be Part of a Great Team IBMers are diverse, talented, and globally connected. You’ll collaborate with thought leaders and industry experts who are shaping the future of technology. Our culture fosters creativity, teamwork, and the continuous pursuit of excellence. Networking and Professional Growth IBM is deeply invested in the professional growth of its employees. We encourage networking within the company to foster connections that can lead to greater innovation and career advancement. Our leadership is committed to providing every employee with the tools they need to succeed, from mentorship programs to diversity training. Explore Job Opportunities Whether you’re looking for an internship, a graduate role, or a leadership position, IBM offers a range of career opportunities. Our hiring process is designed to be transparent and fair, providing you with all the resources you need to succeed in your interview and resume preparation. Stay Connected Join Our Team Discover the various positions available that match your skills and interests. At IBM, we look for passionate, curious, and solution-driven team players. Explore our open positions and find where you can make a difference. Keep Up to Date Stay informed with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. Job Alert Emails Customize your subscription to receive job alerts, the latest news, and insider tips tailored to your preferences. See what exciting and rewarding opportunities await at IBM. Join IBM and be part of a legacy of leadership and innovation. Shape your future and build a career designed to last.
Learn more about IBM
Size
307,600 employees
Market Cap
$128 billion
Industry
Net Income
$5.5 billion
Founded
1911
5 Year Trend
-6.4%
Revenue
$73.6 billion
NASDAQ

Similar Jobs

More Jobs at IBM

More Information Technology Jobs

Find similar Security Operations Center Analyst jobs: