CyberSOC Co-op - 2027 (US Green Shift)

Securityriskadvisors

United States

On-site

USD 34,000 - 49,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Mental health support
Professional development
In-depth training program

Job summary

Security Risk Advisors seeks a CyberSOC Co-Op to contribute to the 24x7 security operations, working with a diverse set of tools and client environments. You will participate in incident handling, evidence collection, and containment guidance under supervision.

The role requires coursework in cybersecurity, incident response, and strong communication skills. A hybrid/onsite schedule with in-person office work is expected, with potential for training and professional development opportunities.

Qualifications

  • Experience or coursework around incident investigation and forensics, information security and computer networking.
  • Strong written and verbal communication skills with a high level of professionalism.
  • Flexibility to accommodate changing schedules and willingness to work extended hours when needed.

Responsibilities

  • Continuously monitor and triage security alerts across endpoint, network, identity, and cloud telemetry.
  • Investigate alerts to determine severity, scope, and whether activity is benign, suspicious, or malicious.
  • Perform initial incident response support activities; evidence collection and timeline development.
  • Use SIEM, EDR, NDR/NSM, and SOAR platforms to detect, investigate, and respond to threats.
  • Leverage threat intelligence and MITRE ATT&CK to enrich investigations and communicate attacker behavior clearly.
  • Document work in case management systems with investigation steps and next actions.
  • Communicate status and findings to leadership and clients professionally.

Skills

Incident investigation
Digital forensics
Information security
Computer networking
PowerShell
Python
Security+
Team collaboration

Education

Coursework in cybersecurity

Tools

Splunk
Microsoft Sentinel
CrowdStrike Falcon
Microsoft Defender for Endpoint

Job description

SRA’s mission is tolevel up every day to protect our clients and their customers. This begins with our team members and their experience. SRA prides itself onmaintaininga culture where team members have a shared sense of support and belonging, consistent withour It’sPersonal company value. At SRA, we prioritize transparent career pathing, varied DEI programming and community groups, competitive benefits including mental health support, and an emphasis on a sustainable, healthy, and engaging work culture. SRA has twice been nameda BestPlace to Work by the Philadelphia Business Journal.

These Essential Functions, Requirements, and Skills are guidelines. If you are a candidate who does not meet this exact job description but candemonstrateexcellent organization, attention to detail, professionalism, flexibility, and self-direction in your professional background, we hope you apply.SRA values a diverse workplace and strongly encourages people of all backgrounds to apply.

Summary/Objective

TheCyberSOCCo-Op will be part of Security Risk Advisors’CyberSOCPractice, dedicated to the Green Shift hours of 4:30PM - 1:30AM Eastern. This role will be involved in the day-to-day, 24x7,andoperations oftheSOC. This is an outstanding opportunity to work with a wide variety of tool sets and various client organizations.

Requirements
Essential Functions

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Continuouslymonitorand triage security alerts across endpoint, network, identity, and cloud telemetry.
  • Investigate alerts todetermineseverity, scope, and whether activity is benign, suspicious, or malicious; escalat per documented procedures.
  • Perform initial incident response support activities such as evidence collection, timeline development, and basic containment recommendations under supervision.
  • Use SIEM, EDR, NDR/NSM, and SOAR platforms to detect, investigate, and respond to threats; examples include Splunk or Microsoft Sentinel (SIEM), CrowdStrike Falcon or MicrosoftDefender forEndpoint (EDR).
  • Leverage threat intelligence and common frameworks (e.g., MITRE ATT&CK) to enrich investigations and communicate attacker behavior clearly.
  • Thoroughly document work in case management systems, including investigation steps taken, evidence reviewed, decisions made, and recommended next actions.
  • Communicate status and findings to internal leadership and clients with professionalism and clarity (written and verbal).
  • Contribute tocontinuous improvement byidentifyingrecurring false positives/noisy alerts and providing feedback for tuning and playbook updates.
  • Maintainproficiencythrough required training, labs, and knowledge sharing; follow policies to protect confidential information.
  • Protectorganization’svalue by keeping information confidential.
Supervisory Responsibility

Not applicable.

Work Environment

This joboperatesin a professional office environment,and all co-ops are expected to work in the office. This role routinely uses standard office equipment.

Physical Demands

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employeeis regularly required totalk and hear; use hands to finger, handle, or feel; and reach with hands and arms. The employeefrequentlyis required tostand and walk. This is alargely sedentaryrole.

Candidates with disabilities are encouraged to apply and emailcareers@sra.iowith any questions. Reasonable accommodations may be made to enable disabled individuals to perform the essential functions of this role.

Position Type/Expected Hours of Work

This is a full-time temporary co-op position with 40 working hours expected weekly, typically worked over five consecutive days. New hires may be assigned to any of our three daily shifts (morning, day, or night) and willworka schedule that includes either Saturday or Sunday. Shifts are assigned based on current coverage needs and resource geolocation. Once assigned, you can expect a consistentshiftweek to week.

Co-ops are expected to work in-person at their assigned office 4out of5 days per week unless otherwisepermittedby their supervisor.

Travel

N/A

Required Education and Experience
  • Punctuality andtimelyattendance to external client and internal stakeholder needs.
  • A demonstrated passion for technology.
  • Work effectively as part of ateam, yetfunction well with independent responsibilities.
  • Experience or coursework around incident investigation and forensics, informationsecurityand computer networking.Interest in taking the initiative for personal growth and development.
  • Flexibility to accommodate changing schedules of client and project needs and willingness to work extended hours when needed.
  • Strong written and verbal communication skills with a high level of professionalism.
  • Other skills/competencies:creativeproblemsolving,attention todetail,coordination,reporting,teamwork,motivation,decisionmaking,information analysis.
Preferred Qualifications and Experience
  • Residence in Hawaii-Aleutian Standard Time (HAST) zone preferred.
  • Coursework, labs, internship, or work experience in one or more of: incident investigation, digitalforensicsfundamentals, information security, systems administration, or computer networking.
  • Familiarity with common log sources and security concepts (e.g., authentication logs, Windows event logs, DNS, HTTP, email security).
  • Comfort learning new tools and following documented processes; strong attention to detail and case documentation habits.
  • Strong written and verbal communication skills and a high level of professionalism in client-facing environments.
  • Ability to work effectively on a team while owning independent tasks and meeting deadlines.
  • Interest in automation/scripting (e.g., PowerShell or Python)
  • Security certifications (e.g., Security+, Network+).
Other Duties

Pleasenotethis job description is not designed to cover orcontaina comprehensive listing of activities, duties or responsibilities that arerequiredofthe employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

EEO Statement

Security Risk Advisorsisan Equal Opportunity Employer and prohibits discrimination or harassment of any kind. All employment decisions at SRA are based on business needs, job requirements, and individual qualifications, without regard to race, color, sex, sexual orientation, gender identity or expression, age, religion, national origin, disability, marital or family status, veteran status, medical condition, or any similar category protected under federal, state, or local laws.

Benefits

Work with Experts: Robust internal training program, plus Company-paid external training. SRA recognizes the value of professional development for employees. Therefore, we encourage our employees to pursue continuing education and role-specific training.

Corps Training Program: Our SRA Corps training program is a six-week experience for new hires that begins with one week of orientation at our Philadelphia headquarters. Whether new hires are interns, co-ops or full-time consultants, SRA Corps members meet our founders, learn our values, and experience a day in the life of a cybersecurity consultant. Following orientation, Corps members return to their home office and participate in trainings such as Consulting 101, Enterprise Networks, Cloud Security, and more. Our leaders provide hands-on offensive, defensive, and frameworks bootcamps.

Mental Health Services: SRA has partnered with BetterHelp to provide SRA employees with free mental health support. BetterHelp connects individuals with licensed therapists for chat, video, and phone sessions.

Hourly Pay Rate: $30.00 USD

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Systems Co-op (2027)
IT Systems Co-op (2027)

Securityriskadvisors • Pennsylvania

On-site
USD 30,000 - 39,000
Training program
Mental health support
Corps Training Program
Advisory Blue Co-op (2027) (US)
Advisory Blue Co-op (2027) (US)

Securityriskadvisors • City of Rochester (NY)

On-site
USD 42,000 - 60,000
Work with Experts training
Corps Training Program
Mental Health Services
Advisory Purple Project Coordinator Co-op
Advisory Purple Project Coordinator Co-op

Securityriskadvisors • City of Rochester (NY)

On-site
USD 38,000 - 48,000
Work with Experts
Corps Training Program
Mental Health Services
Advisory Red Co-op (2027) (US)
Advisory Red Co-op (2027) (US)

Securityriskadvisors • Pennsylvania

On-site
USD 34,000 - 49,000
Advisory Purple Senior Consultant (2026)
Advisory Purple Senior Consultant (2026)

Securityriskadvisors • Pennsylvania

Remote
USD 90,000 - 130,000
Mental health support
Professional development
Remote work options
+2
DevOps Engineer III (2026)
DevOps Engineer III (2026)

Security Risk Advisors Intl. • United States

On-site
USD 110,000 - 150,000
Medical / Dental / Vision
Company 401(k) with match
Remote work option
+1
Cloud Security Engineer
Cloud Security Engineer

Securityriskadvisors • Pennsylvania

Hybrid
USD 90,000 - 130,000
Remote work options
Medical benefits
401(k) plan
+2
Advisory Purple Senior Consultant (2026)
Advisory Purple Senior Consultant (2026)

Security Risk Advisors Intl, LLC. • Philadelphia

On-site
USD 80,000 - 120,000
Medical, dental, and vision benefits
Generous parental leave
Flexible work schedule
+2
Cloud Security Engineer
Cloud Security Engineer

Security Risk Advisors Intl. • Philadelphia

On-site
USD 90,000 - 130,000
Remote work possibility
Flexible schedule
Company-paid cell phone
Cloud Security Engineer
Cloud Security Engineer

Security Risk Advisors • Philadelphia

On-site
USD 90,000 - 130,000
Remote work flexibility
401(k) plan with company match
Professional development & training