Source Job

$113,800–$139,000/yr
US

  • Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms.
  • Perform incident response and threat hunting activities, including alert triage, root cause analysis, containment, and documentation.
  • Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise and suspicious behavior.

SIEM Incident Response Threat Hunting Vulnerability Management Cloud Security

20 jobs similar to SOC Analyst

Jobs ranked by similarity.

$70,000–$100,000/yr
US Unlimited PTO

  • Monitor SIEM, EDR/XDR, and other security platforms for threats and respond to incidents.
  • Engineer and maintain SIEM integrations, detection rules, and security automation.
  • Collaborate with IT, Engineering, and Product teams to embed security into systems.

Canada

  • Monitor and triage alerts across endpoint, network, cloud, runtime, and identity data sources.
  • Perform structured investigations on escalated or ambiguous alerts to build coherent timelines.
  • Participate in incident response, including evidence collection and containment actions.

AlphaSense provides AI-driven market intelligence and search to help enterprises make informed decisions. The company has over 2,000 employees globally and fosters a culture of innovation and collaboration.

Global

  • Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
  • Develop and automate detection capabilities and incident response processes.
  • Collaborate with engineering and product teams to improve security posture and respond to incidents.

We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.

United States

  • Analyze, investigate, document, and report on security alerts and potential incidents in customer environments.
  • Serve as an incident coordinator for urgent security events requiring response, containment, and remediation.
  • Stay up-to-date on security training, certifications, and emerging threats while providing security consultation to customers.

CyberSheath is a rapidly growing Managed Security Services Provider offering cybersecurity compliance and threat mitigation for the Defense Industrial Base. The company is expanding its team and fosters a fully remote work environment with a focus on security operations.

$80,000–$85,000/yr
US

  • Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
  • Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
  • Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.

CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.

$205,000–$215,000/yr
US Unlimited PTO

  • Architect the SOC strategy and roadmap, defining threat intelligence operations, detection frameworks, and defensive maturity metrics.
  • Build and tune detection logic across cloud stacks, identity layers, and endpoints, rejecting noise to accelerate incident response velocity.
  • Own incident command, leading containment and recovery operations while driving engineering change through rigorous post-mortems.

Second Front Systems is a public-benefit software company that accelerates secure software development and deployment for government and regulated networks. Founded by national security veterans, the company is a high-growth startup backed by top-tier venture capital with a culture of accountability and technical craft.

$75,600–$97,200/yr
Ireland

  • Triage, investigate, and respond to alerts from the Huntress platform daily.
  • Perform tactical review of EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediations.
  • Contribute to detection engineering and collaborate with a passionate team dedicated to protecting companies from cyber-attacks.

Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, providing enterprise-grade cybersecurity to businesses of all sizes. They secure over 5M endpoints and 14M identities worldwide with a 24/7 human-led SOC and a remote-first culture.

US

  • Lead investigation and response to complex security incidents involving healthcare systems, ePHI, and clinical applications.
  • Perform advanced threat analysis, correlation, and root cause analysis using SIEM, EDR, and other security tooling.
  • Serve as a subject matter expert for incident response, vulnerability management, and security operations processes.

Kettering Health is a not-for-profit system of 14 medical centers and more than 120 outpatient facilities serving southwest Ohio, focused on living God's love by promoting and restoring health. With a commitment to providing exceptional care and safety as a top priority, the organization integrates healthcare experts across a large network.

$96,798–$125,268/yr
Canada

  • Monitor security events and provide technical analysis on alerts
  • Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
  • Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.

$172,279–$249,640/yr
US Canada

  • Build and maintain SIEM for log collection and detection rules across corporate and production environments.
  • Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
  • Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.

Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.

Europe 6w PTO

  • Manage, tune, and continuously improve EDR and SIEM platforms to enhance detection quality.
  • Develop dashboards, reports, alerts, and security use cases to monitor threats.
  • Collaborate with infrastructure and IT teams to onboard new systems and improve visibility.

Sporty is a remote-first company focused on building sustainable technology. They offer a competitive salary, quarterly bonuses, and a global team culture.

Argentina

  • Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
  • Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
  • Develop security automation and workflows to reduce manual toil and improve response speed.

Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.

India

  • Monitor and analyze security logs to identify threats and anomalies in digital commerce environments.
  • Participate in incident response, document findings, and improve security processes.
  • Collaborate with cross-functional teams to strengthen system resilience and mitigate risks.

The partner company is a technology firm specializing in cybersecurity for digital commerce. It operates with a globally distributed team and fosters a culture of proactive thinking, continuous improvement, and collaboration.

US

  • Focus on full life cycle field sales and enterprise account development/expansion in the assigned region (NY/NJ).
  • Required: 5+ years in a closing role, 3+ years full life cycle solution selling in SaaS or cybersecurity with enterprise customers.
  • Strong track record of over-achieving sales targets and ability to connect with all levels from C-Suite to Analyst.

Anomali is the Leading AI-Powered Security Operations Platform that modernizes security operations with an omnipresent, intelligent, and multilingual Copilot. Headquartered in Silicon Valley, the company consolidates ETL, SIEM, XDR, SOAR, and threat intelligence into one efficient platform, empowering teams to deliver risk insights rapidly.

United States 4w PTO 12w maternity 12w paternity

  • Oversee daily operations of the Security Operations Center (SOC) and manage a team of security professionals.
  • Develop and implement security policies, incident response protocols, and security monitoring strategies.
  • Lead as a highly technical leader delivering high business impact across multiple projects.

Aledade empowers independent primary care practices to thrive in value-based care. Founded in 2014, it has become the largest network of independent primary care in the country, fostering a collaborative, inclusive, and remote-first culture.

$140,000–$180,000/yr
US

  • Apply deep expertise in cyber threat intelligence, analyzing advanced threat actors and attack methodologies.
  • Lead strategic threat intelligence initiatives, developing methodologies and providing thought leadership.
  • Convey complex intelligence findings through reports and briefings to diverse technical and executive audiences.

NBCUniversal is a leading media and entertainment company, creating and distributing content across film, television, streaming, and theme parks. As a subsidiary of Comcast Corporation, it employs a large global workforce and fosters an inclusive culture with a commitment to community engagement.

$122,500–$175,000/yr
USA

  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments.
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies.
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation.

Zscaler accelerates digital transformation by providing cloud-based security solutions using its Zero Trust Exchange platform. The company fosters a culture of execution, collaboration, and ownership, with a focus on high-impact work.

US Unlimited PTO

  • Lead investigation and response for security incidents, suspicious activity, and emerging threats.
  • Design, implement, and improve security monitoring, detection, and response capabilities across AWS.
  • Develop detection rules, conduct post-incident reviews, and partner with teams to strengthen security controls.

CoLab is an AI platform that helps mechanical engineering teams bring life-changing products to market faster by driving stronger engineering decisions. Founded in 2019 and based in St. John's, Newfoundland, CoLab has grown rapidly, earning recognition on Deloitte's Fast 50 and Fast 500 lists.

US Unlimited PTO

  • Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
  • Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
  • Build automation and operational tooling using PowerShell, SQL, Bash, or Python.

The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.

US

  • Build and maintain reusable use cases and reference architectures on the Cyware platform for threat intelligence, automation, and agentic SOC workflows.
  • Act as the primary voice of the market to Product, translating customer pain points into product requirements and roadmap input.
  • Enable Sales Engineering and Customer Success teams with reusable technical assets and best practices.

Cyware delivers an innovative approach to cybersecurity that unifies threat intelligence, automation, threat response, and vulnerability management. It is a cybersecurity startup that has closed its Series C funding round and fosters an exciting and challenging start-up culture.