Security Operations Analyst

MultiPlan

McLean (VA)

On-site

USD 95,000 - 105,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
401k plan
Bonus opportunity

Job summary

MultiPlan in McLean, VA is seeking a SOC Analyst to monitor, detect, investigate, and respond to cybersecurity threats across the organization's technology environment. You will serve as a frontline defender by analyzing security alerts, conducting incident investigations, and escalating events as needed.

This role collaborates with IT, infrastructure, cloud, and application teams to protect assets, strengthen security posture, and support audit and compliance initiatives while maintaining

Qualifications

  • Bachelor's degree in Cybersecurity, Information Security, IT, CS or related field, or equivalent experience.
  • 3+ years in cybersecurity, IT operations, or SOC roles (Level I/II).
  • Experience investigating security alerts and incidents.
  • Familiarity with SIEM platforms and security monitoring tools.

Responsibilities

  • Monitor security events and alerts from SIEM, EDR, IDS/IPS, email security, cloud security, and other tools.
  • Investigate incidents including malware infections, phishing, account compromises, insider threats, and unauthorized access attempts.
  • Coordinate containment, eradication, and recovery with stakeholders.

Skills

Troubleshooting
Incident response
Communication skills
Prioritization under pressure
Security awareness

Education

Bachelor's degree in Cybersecurity/Info Security/CS

Tools

SIEM
Splunk
CrowdStrike
Reliaquest MDR
ServiceNow

Job description

JOB SUMMARY: The SOC Analyst is responsible for monitoring, detecting, investigating, and responding to cybersecurity threats across the organization's technology environment. This role serves as a frontline defender against cyber threats by analyzing security alerts, conducting incident investigations, and escalating security events as appropriate. The analyst works closely with IT, infrastructure, cloud, and application teams to protect organizational assets, maintain security monitoring capabilities, and strengthen the overall security posture.

JOB ROLES AND RESPONSIBILITIES
Security Monitoring & Detection
  • Monitor security events and alerts generated by SIEM, EDR, IDS/IPS, email security, cloud security, and other security tools.
  • Analyze and triage security alerts to determine legitimacy, severity, and business impact.
  • Identify indicators of compromise (IOCs), suspicious behavior, and emerging threats.
  • Perform continuous threat monitoring and situational awareness activities.
Incident Response
  • Investigate cybersecurity incidents including malware infections, phishing attacks, account compromises, insider threats, and unauthorized access attempts.
  • Execute incident response procedures and playbooks.
  • Document findings, actions taken, and lessons learned.
  • Coordinate containment, eradication, and recovery activities with appropriate stakeholders.
  • Escalate significant incidents according to established procedures.
Threat Hunting & Intelligence
  • Utilize threat intelligence feeds to enrich investigations.
  • Research emerging threats, vulnerabilities, and attack techniques.
  • Develop and refine detection use cases based on threat intelligence and incident trends.
Security Operations
  • Support vulnerability management efforts by validating findings and tracking remediation.
  • Assist with security tool administration and tuning.
  • Review and improve alerting logic to reduce false positives.
  • Participate in security assessments and operational readiness activities.
  • Support audit and compliance initiatives as required.
  • And other duties as assigned.
Documentation & Reporting
  • Maintain accurate incident records, investigation notes, and operational metrics.
  • Prepare reports on security incidents, trends, and findings.
  • Contribute to development and maintenance of standard operating procedures (SOPs).
  • Provide security recommendations to business and technical stakeholders.
Collaboration
  • Work closely with infrastructure, networking, cloud, and identity teams.
  • Participate in on-call rotations and after-hours incident response activities when required.
  • Support user awareness efforts through identification of phishing and social engineering trends.
REQUIREMENTS (Education, Experience, and Training)
  • Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or related field; or equivalent combination of education and experience.
  • 3+ years of cybersecurity, information security, IT operations, or SOC experience (Level I/II).
  • Experience investigating security alerts and incidents.
  • Familiarity with SIEM platforms and security monitoring tools.
  • (Preferred) Security Information and Event Management (SIEM) platforms (Splunk)
  • (Preferred) Endpoint Detection and Response (EDR) solutions (Crowdstrike)
  • (Preferred) Reliaquest managed detection and response (MDR) and Servicenow experience
  • Microsoft 365 and Azure security technologies
  • Network security concepts and protocols
  • Identity and Access Management (IAM)
  • Windows, Linux, and cloud environments
  • MITRE ATT&CK framework
  • Incident response methodologies
  • Strong troubleshooting and investigative abilities
  • Ability to prioritize multiple security events in a fast-paced environment
  • Excellent attention to detail
  • Strong written and verbal communication skills
Preferred Qualifications
  • CompTIA Security+
  • CompTIA CySA+
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Security Essentials (GSEC)
  • SSCP
  • Certified Ethical Hacker (CEH)
  • SC-200 Security Operations Analyst
  • CISSP
  • Experience with Splunk, Microsoft core infrastructure technologies (Entra/Active Directory, Sharepoint, Copilot, etc.), CrowdStrike, or similar platforms.
  • Experience with SOAR and security automation technologies.
  • Exposure to cloud security platforms (Azure, AWS, GCP).
  • Knowledge of NIST Cybersecurity Framework and incident response best practices.
COMPENSATION

The salary range for this position is $95K -105K. Specific offers take into account a candidate's education, experience and skills, as well as the candidate's work location and internal equity. This position is also eligible for health insurance, 401k and bonus opportunity.

Why Claritev?

Healthcare is complex. We help make it clearer.

At Claritev, you'll do work that matters. Together, we're helping make healthcare more transparent and affordable for all through the power of data, technology, and expertise. We offer meaningful opportunities to grow your career, collaborate with talented colleagues, and make an impact on the clients and communities we serve. If you're looking for purpose, growth, and a team that succeeds together, you'll find it here.

What Guides Us

At Claritev, innovation, agility, and a focus on results drive our success. We embrace bold thinking, work as one team, take ownership, and strive for excellence in everything we do - creating meaningful impact for our clients, communities, and each other.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of IT Security Operations
Director of IT Security Operations

The Security Executive Council • United States

Remote
USD 170,000 - 210,000
Medical, dental, and vision coverage
401(k) company match
Generous Paid Time Off
+1
Security Operations Analyst
Security Operations Analyst

Jobgether • United States

Remote
USD 70,000 - 100,000
Remote-first
Unlimited PTO
Medical, dental, vision
+4
Information Security Analyst
Information Security Analyst

Clearcapital • Reno (NV)

On-site
USD 113,800 - 139,000
Comprehensive medical, dental, and vision insurance
401(k) retirement plan with employer match
Paid time off (PTO) and paid holidays
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Fargo (ND)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Training and development programs
+1
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Kansas City (KS)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+2
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Louisville (KY)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+4
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Information Security Analyst
Information Security Analyst

NPAworldwide • City of Syracuse (NY)

On-site
USD 85,000 - 90,000
Senior Security Operations Analyst
Senior Security Operations Analyst

Prosegur Security USA, Inc • Lowell (MA)

On-site
USD 90,000 - 120,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000