Security Operations Analyst II - Incident Response

NextGenEnergyJobs

Vienna, Northern (VA, KY)

Hybrid

USD 90,000 - 140,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health benefits
401(k) and profit-sharing
Paid holidays
Vacation leave

Job summary

NextGenEnergyJobs is seeking an Enterprise Security Analyst II to join our hands-on SOC team in Virginia. You will monitor alerts across endpoints, identity, network, cloud and email environments, triage incidents, and support full incident response lifecycle from investigation to closure.

The role requires 2+ years of cybersecurity experience, strong telemetry analysis, and the ability to communicate findings clearly to technical and non-technical audiences. U.S.

Qualifications

  • 2+ years of cybersecurity experience in security monitoring, alert triage, and incident investigation.
  • Experience analyzing endpoint, identity, network, cloud, email, and log data.
  • Knowledge of SIEM and EDR platforms.
  • Understanding of networking, OS, identity concepts, cloud security.
  • Ability to write investigation notes and recommendations for technical and non-technical audiences.
  • U.S. citizenship is mandatory.
  • Ability to obtain security clearance.
  • Experience converting threat intelligence into detections, hunts, playbooks, response actions, or mitigation recommendations.
  • Familiarity with scripting and query languages (PowerShell, Python, KQL, SPL).

Responsibilities

  • Security Operations and Incident Response
  • Monitor and manage the SOC alert queue across endpoint, identity, network, email, cloud, and log monitoring platforms
  • Independently triage and investigate security alerts and events, distinguishing confirmed threats from benign activity using available evidence and telemetry
  • Support the full incident lifecycle, including investigation, escalation, containment support, remediation follow-up, documentation, and closure
  • Escalate incidents with clear evidence, impact assessment, and recommended next steps
  • Apply playbooks and runbooks while identifying opportunities to improve alert quality, response consistency, automation, and analyst enablement
  • Threat Intelligence and Threat Hunting
  • Analyze relevant threat intelligence to identify threats, campaigns, vulnerabilities, and adversary behaviors that may affect the organization
  • Enrich alerts and investigations with context about threat actors, malware, indicators, vulnerabilities, and attack techniques
  • Assist with threat hunts across endpoint, identity, network, cloud, and application telemetry
  • Use MITRE ATT&CK to support investigations, communicate adversary behavior, and identify detection gaps
  • Partner with security engineers and analysts to turn relevant intelligence into detections, hunts, watchlists, playbooks, blocking recommendations, or response improvements

Skills

Cybersecurity experience
Incident investigation
Threat hunting
Telemetry analysis

Education

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related STEM

Tools

SIEM platforms
EDR platforms
SOAR familiarity
PowerShell scripting

Job description

NextGenEnergyJobs is seeking an Enterprise Security Analyst II to join our hands-on SOC team in Virginia. You will monitor alerts across endpoints, identity, network, cloud and email environments, triage incidents, and support full incident response lifecycle from investigation to closure.

The role requires 2+ years of cybersecurity experience, strong telemetry analysis, and the ability to communicate findings clearly to technical and non-technical audiences. U.S.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Analyst II: Threat Intel & IR
Security Operations Analyst II: Threat Intel & IR

Esri • Town of Vienna (WI)

On-site
USD 70,000 - 114,000
Health Insurance
401(k)
Paid Holidays
Security Operations Pro: Threat Hunting & Incident Response
Security Operations Pro: Threat Hunting & Incident Response

Esri • Redlands (CA)

On-site
USD 70,000 - 114,000
Medical insurance
Dental insurance
Vision insurance
+4
Security Operations & Threat Hunting Analyst
Security Operations & Threat Hunting Analyst

Esri • Vienna (VA)

On-site
USD 70,000 - 114,000
Medical
Dental
Vision
+3
Security Operations Engineer — Incident Response & SIEM
Security Operations Engineer — Incident Response & SIEM

Atmos Energy • Dallas (TX)

On-site
USD 90,000 - 130,000
Enterprise Security Analyst II - Incident Response & Risk
Enterprise Security Analyst II - Incident Response & Risk

Associated Credit Union • Peachtree Corners (GA)

On-site
Incident-Response Cyber Threat Analyst II
Incident-Response Cyber Threat Analyst II

NewGen Technologies • Arlington (VA)

On-site
USD 90,000 - 120,000
Cyber Security Engineer II: Incident Response & SOC
Cyber Security Engineer II: Incident Response & SOC

TEEMA Solutions Group • Mississippi

On-site
USD 90,000 - 120,000
SOC Analyst I–II: Incident Detection & Response
SOC Analyst I–II: Incident Detection & Response

Optimalsemi • Irving (TX)

On-site
USD 95,000 - 125,000
SOC Analyst II: Threat Hunting & Incident Response
SOC Analyst II: Threat Hunting & Incident Response

JPS Tech Solutions • Harrisburg

On-site
USD 70,000 - 90,000
Senior SOC Analyst: Threat Detection & Incident Response
Senior SOC Analyst: Threat Detection & Incident Response

ASM Research, An Accenture Federal Services Company • Fairfax (VA)

On-site
USD 100,000 - 120,000