Allied Consultants

Senior SOC Analyst

Allied Consultants$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in cybersecurity and network security disciplines
  • Proficient with Microsoft Sentinel and Kusto Query Language (KQL)
  • Experienced in SIEM for log analysis and security monitoring
  • Familiar with network detection and response (NDR) tools
  • Background in endpoint detection and response (EDR) systems
  • Knowledge of security frameworks such as NIST and HIPAA
  • Strong analytical and problem-solving skills, able to document findings effectively

Responsibilities

  • Monitor security alerts and network events for any anomalies
  • Analyze suspicious activities and determine necessary response actions
  • Conduct incident triage, investigation, and documentation
  • Develop and maintain detection rules and alerts across environments
  • Engage in threat hunting and vulnerability assessments
  • Document incidents and communicate results to management
  • Collaborate with IT teams to enhance security measures

Benefits

  • Full-time onsite role, Monday - Friday
  • Opportunity to work in a critical public sector environment
  • Engagement in high-impact technical security operations
  • Potential for professional development through certification opportunities
  • Contributory role in protecting sensitive information and public systems
Full Job Description
Overview

We are currently seeking an experience Senior SOC Analyst to play a key role within a high-impact technical services team.

 

Responsibilities

4-7 years of experience in the field or in a related area. Familiar with standard concepts, practices, and procedures within a particular field. Relies on limited experience and judgment to plan and accomplish goals. A certain degree of creativity and latitude is required. Works under limited supervision with considerable latitude for the use of initiative and independent judgment. Ability to maintain the security and integrity of critical infrastructure systems by preventing unauthorized access and ensuring compliance with laws and regulations related to national security and foreign ownership restrictions.

 

A network security analyst ensures that information systems and computer networks are secure. This includes protecting the company against hackers and cyber-attacks, as well as monitoring network traffic and server logs for activity that seems unusual. Additionally, these analysts are responsible for finding vulnerabilities in the computer networks and creating recommendations for how to minimize these vulnerabilities. The network security analyst investigates security breaches, develops strategies for any security issues that arise, and utilizes the help of firewalls and antivirus software to maintain security. DISCLAIMER: Candidates for this position will be subject to a pre-employment security review to determine employment eligibility.

 

The position is expected to work onsite at client's in Austin, TX full-time, Monday - Friday during agency business hours.

 

Job Summary 

The Network Security Analyst II performs advanced cybersecurity and network security analysis work in support of client’s enterprise security operations. This role is responsible for monitoring, detecting, investigating, and responding to security events across on-premises, cloud, and endpoint environments. The ideal candidate is a hands-on security operations professional with strong experience across SIEM, SOAR, EDR, network detection, and incident response platforms. This role requires sound judgment, technical depth, attention to detail, and a strong commitment to protecting client's systems, data, and services that support the health and well-being of Texans. 

 

Essential Job Functions 

  • Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds. 
  • Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions. 
  • Perform incident triage, investigation, escalation, containment coordination, and documentation in alignment with client's security operations procedures. 
  • Develop, tune, and maintain detection rules, dashboards, alerts, playbooks, and queries to improve visibility across network, endpoint, identity, and cloud environments. 
  • Support threat hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques. 
  • Assist with vulnerability, risk, and control assessments for network security infrastructure and enterprise information systems. 
  • Document findings, prepare incident reports, track corrective actions, and communicate technical information to security leadership and business stakeholders. 
  • Collaborate with network, infrastructure, cloud, endpoint, and application teams to validate security events and implement risk mitigation measures. 
  • Maintain awareness of emerging cyber threats, attack techniques, indicators of compromise, and security best practices relevant to healthcare and public-sector environments. 
  • Support compliance, audit, and reporting activities by providing evidence, metrics, and security operations documentation as requested. 

 

Required Qualifications 

  • Minimum of seven years of experience in cybersecurity, network security, security operations, incident response, or a closely related information security role. 
  • Hands-on experience with Microsoft Sentinel, including incident management, analytics rules, workbooks, automation, data connectors, and Kusto Query Language. 
  • Experience using SIEM for log analysis, alert investigation, dashboarding, correlation searches, and security monitoring. 
  • Experience with NDR for network traffic analysis, packet/session investigation, threat detection, and incident support. 
  • Experience with EDR tools, including endpoint alert triage, device investigation, advanced hunting, and response actions. 
  • Working knowledge of network security concepts, including firewalls, IDS/IPS, proxy logs, DNS, VPN, TCP/IP, segmentation, and secure network architecture. 
  • Ability to analyze complex security events, correlate data across multiple sources, and produce clear written documentation and recommendations. 
  • Knowledge of security frameworks, standards, and regulatory considerations such as NIST, CIS Controls, HIPAA, and state information security requirements. 
  • Strong communication, collaboration, problem-solving, and analytical skills. 

 

Preferred Education and Certifications 

  • Bachelor’s degree in cybersecurity, computer science, information systems, information technology, or a related field. Relevant experience may be considered in place of education where applicable. 
  • Microsoft security certifications are strongly preferred, such as Microsoft Certified: Security Operations Analyst Associate, Microsoft Certified: Cybersecurity Architect Expert, Microsoft Certified: Azure Security Engineer Associate, or Microsoft 365 Defender-related certifications. 
  • Additional preferred certifications include CompTIA Security+, CySA+, GIAC security certifications, CISSP, CISM, CISA, Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin, or SentinelOne product certifications. 

 

Knowledge, Skills, and Abilities 

  • Knowledge of SIEM, SOAR, EDR, XDR, network detection and response, log management, and threat intelligence concepts. 
  • Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting. 
  • Skill in identifying indicators of compromise, attacker tactics, suspicious network patterns, and endpoint-based threats. 
  • Ability to prioritize alerts, document investigative steps, and escalate incidents based on severity and business impact. 
  • Ability to work independently and collaboratively in a security operations environment with shifting priorities and time-sensitive incidents. 
  • Ability to communicate cybersecurity risks, findings, and recommended actions to both technical and non-technical audiences. 

 

Work Expectations 

  • Participate in incident response, escalation, and after-action review activities as needed. 
  • Support enterprise security monitoring for systems that process, store, or transmit sensitive information. 
  • Follow client's policies, procedures, standards, and applicable state and federal security requirements. 
  • Maintain accurate operational documentation, investigation notes, metrics, and leadership-ready summaries. 
  • May be required to provide support outside normal business hours during high-priority security incidents or planned maintenance activities. 

 

Qualifications

Minimum Requirements:Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.

Years

Required/Preferred

Experience

7

Required

Knowledge of SIEM, SOAR, EDR, XDR, NDR

7

Required

Experience with security log collection and management

7

Required

Experience with threat intelligence concepts

7

Required

Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting

7

Required

Experience in SIEM platform/architecture support

7

Required

Experience in detection engineering methodology and implementation

10

Preferred

Knowledge of SIEM, SOAR, EDR, XDR, NDR

10

Preferred

Experience with security log collection and management

10

Preferred

Experience with threat intelligence concepts

10

Preferred

Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting

10

Preferred

Experience in SIEM platform/architecture support

10

Preferred

Experience in detection engineering methodology and implementation

About Allied Consultants

Allied Universal is an American provider of security systems and services; janitorial services; and staffing. The company was formed in 2016 by the merger of Santa Ana, California-based security and janitorial services company Universal Services of America, and Conshohocken, Pennsylvania-based security firm AlliedBarton Security Services. At the time of the merger, the combined company was reportedly the largest provider of security guards in the United States, with 140,000 trained officers between the two companies. In October 2021, Allied Universal completed a $5.1 billion takeover of British security firm G4S, creating a combined company of 800,000 employees, with revenues of more than $18 billion USD. The company maintains two corporate headquarters, one is in Santa Ana, California and the main headquarters is in Conshohocken, Pennsylvania.
Learn more about Allied Consultants

Similar Jobs

More Jobs at Allied Consultants

More Information Technology Jobs

Find similar Senior SOC Analyst jobs: