Security Operations Center Analyst

Charter Solutions

Minneapolis, Saint Paul (MN, MN)

Hybrid

USD 70,000 - 100,000

Full time

18 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Charter Solutions is seeking a contract Security Operations Center (SOC) Analyst to monitor, investigate, and respond to security events across our client's systems. This hybrid role covers alert triage, remediation, threat hunting, phishing analysis, and security tool administration.

The candidate should have 2+ years in a SOC, with hands-on work on Defender XDR, Sentinel, Entra ID, Intune, CrowdStrike, NGSIEM, and Active Directory audits; strong collaboration and thorough incident

Qualifications

  • Minimum 2 years in a SOC or similar security operations role.
  • Experience with alert triage, remediation and after-action documentation.
  • Hands-on with Defender XDR, Sentinel, Entra ID, Intune, CrowdStrike and NGSIEM.

Responsibilities

  • Log, analyze, and remediate security alerts; document incidents and responses.
  • Proactively hunt for IOCs and investigate anomalies and suspicious IP activity.
  • Analyze phishing emails, including header analysis and spoofing indicators.
  • Operate and monitor security tools such as Defender XDR, Sentinel, Entra ID, Intune, CrowdStrike, NGSIEM.
  • Create, update, and transfer incident tickets in ServiceNow.
  • Collaborate with Cybersecurity Team and IT staff; document findings thoroughly.

Skills

Alert triage
Remediation
Threat hunting
Phishing analysis
Security tools
Collaboration
Documentation

Tools

Microsoft Defender XDR
Microsoft Sentinel
Entra ID
Intune
CrowdStrike
NGSIEM
Active Directory auditing
ServiceNow

Job description

Security Operations Center (SOC) Analyst
Position Summary

Charter Solutions is seeking a contract Security Operations Center (SOC) Analyst to help monitor, investigate, and respond to security events across our client's systems. This role supports day-to-day SOC operations — alert triage and remediation, threat hunting, phishing email analysis, and security tool administration — while working closely with the Cybersecurity Team to strengthen the client's overall security posture. This is a hybrid position that may require occasional after-hours work during active incidents.

Key Responsibilities
  • Alert Management – Log, analyze, and remediate security alerts; conduct after-action reviews and maintain clear documentation of incidents and response activities.
  • Threat Hunting – Proactively hunt for indicators of compromise (IOCs), monitor industry threat alerts and advisories, and investigate anomalies and suspicious IP activity.
  • Phishing & Email Analysis – Analyze suspicious and reported emails, including email header analysis, and identify spoofing and other phishing indicators.
  • Security Tools – Operate and monitor the security tool stack, including Microsoft Defender XDR, Sentinel, Entra ID, and Intune; CrowdStrike endpoint protection and NGSIEM; and Active Directory audit tools.
  • Ticketing – Create, update, and transfer incident tickets in ServiceNow to ensure timely tracking, escalation, and resolution.
  • Collaboration & Documentation – Collaborate closely with the Cybersecurity Team and broader IT staff, communicating findings clearly and maintaining thorough documentation.
Required Skills & Qualifications
  • Minimum of 2 years of experience in a SOC or similar security operations role.
  • Experience with alert triage, remediation, and after-action documentation.
  • Working knowledge of threat hunting: IOC analysis, industry threat intelligence, anomaly detection, and IP investigation.
  • Demonstrated experience analyzing phishing emails, including header analysis and spoofing identification.
  • Hands-on experience with Microsoft Defender XDR, Microsoft Sentinel, Entra ID, and Microsoft Intune.
  • Hands-on experience with CrowdStrike (endpoint protection) and Next-Gen SIEM (NGSIEM).
  • Experience performing Active Directory audits.
  • Experience using ServiceNow to create, update, and transfer tickets.
  • Strong collaboration and communication skills · sound problem-solving and judgment · high attention to detail · a continuous learner who stays current on the evolving threat landscape and security tooling.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center Analyst
Security Operations Center Analyst

Diligente Technologies • San Jose (CA)

On-site
USD 80,000 - 100,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Security Operations Center Analyst
Security Operations Center Analyst

StevenDouglas • Miami (FL)

Hybrid
USD 100,000 - 140,000
Hybrid work arrangement
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Senior Security Operations Analyst
Senior Security Operations Analyst

Prosegur Security USA, Inc • Lowell (MA), Northern (KY)

Hybrid
USD 90,000 - 140,000
SOC Analyst 2
SOC Analyst 2

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000
IT Security Analyst
IT Security Analyst

Signode • Kentucky

On-site
USD 65,000 - 90,000
Network Security Analyst – Level 1
Network Security Analyst – Level 1

Jobtailor • Austin (TX)

On-site
USD 95,000 - 130,000
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)

Chandra Technologies, Inc • Austin (TX)

On-site
USD 70,000 - 100,000
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000