Advanced SOC Analyst (Fort Bragg, NC)

Akira Technologies Inc.

Fort Bragg (CA)

On-site

USD 90,000 - 100,000

Full time

40 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Akira Technologies is seeking an Advanced SOC Analyst to support the U.S. Army Reserve Command (USARC) in cyberspace operations at Fort Bragg, NC.

This onsite role requires an active Secret clearance and will perform Tier 2 and Tier 3 Blue Team duties, including incident investigation, threat hunting, and detection-content development. You will mentor junior analysts, provide on-the-job training, coordinate with the ISSO and CTI cell, and ensure incident records are complete and defensible.

Qualifications

  • Active Secret security clearance at a minimum; TS/SCI eligibility where required.
  • DoD 8140.03 qualification for DCWF/Work Roles 511 and 531.
  • Experience with enterprise SIEM/EDR, packet capture, and network-analysis tools.
  • Proven ability to perform root-cause analysis of complex cybersecurity incidents.
  • Experience conducting advanced incident investigation, threat hunting, event correlation, or related Tier 2/Tier 3 SOC activities.

Responsibilities

  • Characterize cybersecurity events via multi-source correlation across SIEM, EDR/ENS, and network telemetry.
  • Analyze security alerts and telemetry to identify malicious or anomalous behavior.
  • Recommend containment, mitigation, and eradication actions with stakeholders.
  • Own incident records through closure with complete, accurate documentation.
  • Lead analysis of suspected APT activity and complex intrusions.
  • Plan and execute hypothesis-driven threat-hunting missions.
  • Develop and validate detection content (SIEM rules, YARA, Snort/Suricata).
  • Coordinate detections with CTI cell for production deployment.
  • Provide on-the-job training and mentorship to Tier 1/2 SOC personnel.
  • Perform on-site forensic support during cybersecurity assessments.

Skills

Threat hunting
Incident investigation
Blue Team
SIEM analysis
Endpoint/network analysis

Education

CISSP/CySA+/GCIA/GCED certifications

Tools

Elastic
Splunk
Microsoft Defender
CrowdStrike
Wireshark
Zeek
tcpdump
YARA
Snort
Suricata
Sigma

Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Advanced SOC Analyst (Fort Bragg, NC)

4 days ago Requisition ID: 1137

Salary Range: $90,000.00 To $100,000.00 Annually

Akira Technologies is seeking an Advanced SOC Analyst to support the U.S. Army Reserve Command (USARC) in cyberspace operations supporting Army and joint requirements. The Advanced SOC Analyst will perform Tier 2 and Tier 3 Blue Team functions, including multi-source correlation, advanced incident investigation, root-cause analysis, threat-hunting support, and detection-content development. This position serves as a senior analyst on the watch floor, providing technical guidance to junior analysts and ensuring the quality, accuracy, and timely resolution of cybersecurity incident records.

This is an onsite position at Fort Bragg, NC supporting a mission-focused U.S. Army Reserve Command cyberspace operations environment. This role requires an active Secret clearance or higher.

Key Responsibilities
  • Perform multi-source correlation across SIEM, EDR/ENS, NetFlow, PCAP, proxy, authentication, and other security telemetry to characterize the scope, nature, and impact of cybersecurity events.
  • Conduct advanced analysis of security alerts, network activity, endpoint activity, authentication events, and other telemetry to identify malicious or anomalous behavior.
  • Recommend containment, mitigation, and eradication actions in coordination with the affected mission owner, Information System Security Officer (ISSO), and appropriate operational stakeholders.
  • Own assigned incident records through closure, ensuring documentation is complete, accurate, timely, and current within applicable ARCYBER operational portals.
  • Conduct quality-control reviews of Tier 1 incident tickets prior to closure to ensure appropriate analysis, documentation, categorization, and disposition.
  • Lead analysis of suspected Advanced Persistent Threat (APT) activity and complex cyber intrusions.
  • Plan and execute hypothesis-driven threat-hunting missions based on identified indicators, adversary behaviors, threat intelligence and operational findings.
  • Develop, test, and validate detection content, including SIEM correlation rules, YARA rules, Snort/Suricata signatures, and host-based detection policies.
  • Coordinate detection and signature submissions with the CTI cell for review, refinement, and promotion to the production sensor grid.
  • Provide on-the-job training, technical guidance, and mentorship to Tier 1 and Tier 2 SOC personnel.
  • Execute critical defensive blocks within two hours of notification or detection, as required to mitigate ongoing threat activity.
  • Capture and perform initial analysis of volatile data, system/log data, and captured network traffic in support of incident investigations.
  • Maintain appropriate incident evidence and chain of custody in accordance with applicable ARCYBER forensic and malware analysis (F&MA) procedures.
  • Coordinate with the appropriate Technical Support Center (TSC), DoDIN-A staff, and supported Regional Cyber Center (RCC) personnel regarding network configuration changes and defensive measures.
  • Submit internal recommendations for defensive measures based on incident findings, threat intelligence, and technical analysis.
  • Support CDAP integrated assessment missions, including NAV and NDA activities, as directed.
  • Provide onsite technical support and forensic artifact analysis during cybersecurity assessment and DCO missions.
  • Contribute to the development, review, and refinement of Blue Team SOPs, incident-response playbooks, analytical procedures, and analytic scripts.
  • Identify opportunities to improve detection, investigation, incident-response, and operational processes.
  • Perform other SOC, Blue Team, and DCO support duties as required by the mission.
Required Qualifications
  • DoD Manual 8140.03 qualification for DCWF Work Role 511, Cyber Defense Analyst, Intermediate, and Work Role 531, Cyber Defense Incident Responder, Intermediate.
  • Active Secret security clearance at a minimum; TS/SCI eligibility/access where required by the assigned work role or supported network.
  • Demonstrated experience working with enterprise SIEM platforms, EDR/ENS solutions, packet capture and network-analysis tools, and IDS/IPS technologies.
  • Proven ability to perform root-cause analysis of complex cybersecurity incidents and develop appropriate detection content.
  • Demonstrated experience conducting advanced incident investigation, threat hunting, event correlation, or related Tier 2/Tier 3 SOC activities.
  • Experience analyzing network, host, endpoint, authentication, and security-event telemetry.
  • Experience developing or validating detection rules, signatures, or other defensive cyber capabilities.
  • Working knowledge of CJCSM 6510.01B incident categories and applicable incident-reporting requirements.
  • Familiarity with ARCYBER operational constructs and DoD defensive cyberspace operations.
  • Ability to work effectively in a fast-paced, mission-focused, classified operational environment.
  • Strong analytical, technical documentation, communication, and problem-solving skills.
  • Ability to work onsite at Fort Bragg, NC and support operational requirements, including watch-floor or shift coverage as required.
Preferred Qualifications
  • Experience supporting Army, Army Reserve, ARCYBER, or joint cyberspace operations.
  • Experience supporting a 24/7 Security Operations Center or enterprise defensive cyber operations environment.
  • Experience investigating APT activity, complex intrusions, malware, lateral movement, persistence, privilege escalation, or other advanced attack techniques.
  • Experience with Elastic, Splunk, Microsoft Defender, CrowdStrike, or comparable SIEM/EDR platforms.
  • Experience with Wireshark, Zeek, tcpdump, or other packet-capture and network-analysis tools.
  • Experience developing YARA, Snort, Suricata, Sigma, SIEM correlation, or host-based detection content.
  • Familiarity with MITRE ATT&CK and adversary TTP mapping.
  • Experience with digital forensics, volatile-memory analysis, malware analysis, or forensic artifact analysis.
  • Relevant cybersecurity certifications such as CySA+, GCIH, GCIA, GCED, CISSP, or equivalent are a plus.
Salary Range: $90,000 to $100,000

Akira’s pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.

General Description of Benefits

Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement.

Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees.

Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers.

Akira is proud to be an Equal Employment Opportunity and Affimative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Advanced SOC Analyst (Fort Bragg, NC)
Advanced SOC Analyst (Fort Bragg, NC)

ADP, Inc. • Fort Bragg (NC)

On-site
USD 90,000 - 100,000
Intermediate SOC Analyst (Fort Bragg, NC)
Intermediate SOC Analyst (Fort Bragg, NC)

Akira Technologies Inc. • Fort Bragg (CA)

On-site
USD 80,000 - 90,000
Medical plans
Dental plans
Vision coverage
+1
Intermediate SOC Analyst (Fort Bragg, NC)
Intermediate SOC Analyst (Fort Bragg, NC)

ADP, Inc. • Fort Bragg (NC)

On-site
USD 80,000 - 90,000
Health plans
401(k) plan with employer match
Paid time off
Cyber Threat Intelligence Analyst (Intermediate-Fort Bragg, NC)
Cyber Threat Intelligence Analyst (Intermediate-Fort Bragg, NC)

ADP, Inc. • Fort Bragg (NC)

On-site
USD 90,000 - 100,000
Medical plans
401(k) match
Paid time off
Senior Threat-Warning Analyst (CTI Lead - Fort Bragg, NC)
Senior Threat-Warning Analyst (CTI Lead - Fort Bragg, NC)

Akira Technologies Inc. • Reston (VA)

On-site
USD 120,000 - 130,000
Medical plans
Dental plans
Vision coverage
+5
Senior Threat-Warning Analyst (CTI Lead)
Senior Threat-Warning Analyst (CTI Lead)

Akira Technologies • Fayetteville (NC)

On-site
USD 120,000 - 130,000
Medical plans
Dental plans
Vision coverage
+8
Vulnerability Assessment Analyst (Fort Bragg, NC)
Vulnerability Assessment Analyst (Fort Bragg, NC)

ADP, Inc. • Fort Bragg (NC)

On-site
USD 85,000 - 100,000
Cyber Threat Intelligence Analyst (Intermediate-Fort Bragg, NC)
Cyber Threat Intelligence Analyst (Intermediate-Fort Bragg, NC)

Akira Technologies Inc. • Fort Bragg (CA)

On-site
USD 90,000 - 100,000
Medical plans
401(k) plan
Paid time off
+2
Vulnerability Assessment Analyst (Fort Bragg, NC)
Vulnerability Assessment Analyst (Fort Bragg, NC)

Akira Technologies Inc. • Fort Bragg (CA)

On-site
USD 85,000 - 100,000
Health insurance
401(k) match
Paid time off
+1
Tool Administrator/Lab Manager (Fort Bragg, NC)
Tool Administrator/Lab Manager (Fort Bragg, NC)

Akira Technologies Inc. • Fort Bragg (CA)

On-site
USD 85,000 - 100,000
Medical plans
401(k) plan
Paid time off
+1