Security Operations Center (SOC) Analyst

Via Logic LLC

Shiloh (IL)

On-site

USD 70,000 - 126,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Leidos is seeking proactive SOC Analysts for a demanding, 24x7 front-line defense role protecting sensitive digital landscapes. You will investigate alerts, analyze distributed log data, and document adversary TTPs for mission partners.

Level I/II openings require DoD security clearances or eligibility, DoD 8570 IAT II, and a willingness to relocate within commuting distance to Scott AFB, IL. Strong scripting and SIEM/SOAR experience are valued.

Qualifications

  • Active clearance required or ability to obtain DoD Top Secret clearance.
  • Bachelor's degree or equivalent professional/military experience.
  • DoD 8570 IAT Level II certification (or higher) required.
  • CSSP-Analyst certification within 180 days of hire encouraged.

Responsibilities

  • Investigate and triage security alerts from endpoints, IDS/IPS, NetFlow and sensors.
  • Deep-dive analysis of large, highly-classified logs to support investigations.
  • Produce detailed findings and reports outlining TTPs for stakeholders.
  • Integrate classified threat intel and IOCs into SIEM/SOAR tools.
  • Coordinate with incident response teams and communicate incidents to partners.

Skills

SOC Experience
Adversary mindset
Self-motivation
Adaptability to change

Education

Bachelor's degree or equivalent
DoD 8570 IAT Level II
DoD CSSP-Analyst certification within 180 days

Tools

Python
PowerShell
SIEM
SOAR
IDS/IPS

Job description

We are seeking, proactive defenders for a critical role safeguarding the nation's most sensitive digital landscapes. As a Security Operations Center (SOC) Analyst on our 24x7 front-line security operations team, you will be directly responsible for defending mission environments against the world's sophisticated and persistent cyber threats. This role demands exceptional critical thinking, a deep-seated adversary mindset, and a self-motivated drive to excel in a high-stakes mission.

Multiple Openings for SOC Analyst Level I & Level II
Primary Responsibilities:
  • Conduct investigation and triage of security alerts from endpoints, IDS/IPS, NetFlow, and custom sensors to identify and neutralize threats within our mission spaces.
  • Perform deep-dive analysis of extensive, highly-classified log files, pivoting between disparate datasets and correlating evidence to support complex incident investigations against nation-state actors.
  • Produce detailed technical findings and reports for high-level stakeholders, documenting adversary tactics, techniques, and procedures (TTPs).
  • Integrate and operationalize highly-classified threat intelligence feeds and Indicators of Compromise (IOCs) into security sensors and SIEM platforms.
  • Collaborate closely with specialized incident response teams and ensure timely, precise communication of security incidents to mission partners.
Key Skillsets We Are Looking For:
  • SOC Experience: You understand the operational flow, high tempo demands, and rigorous standards of a 24x7 Security Operations Center, particularly those operating at the highest classification levels.
  • Critical Thinking & Adversary Mindset: You possess the ability to look beyond the surface of an alert to uncover the TTPs of advanced persistent threats (APTs). You excel at correlating disparate data points, analyzing raw packet data, and conducting deep-dive investigations of complex security events.
  • Demonstrated Self-Motivation: You are a self-starter who takes active ownership of your professional development. Whether pursuing advanced certifications, researching emerging threat vectors, or mastering new tools, you drive your own growth to stay ahead of the adversary.
  • Thrives on Change: The threat landscape and tactical priorities shift constantly. You demonstrate high operational adaptability, viewing unexpected shifts as opportunities to excel, and seamlessly pivot to adopt new processes, security tools, and analytical methodologies.
Shift & Operational Requirements:
  • Predictable Work-Life Balance: To support your well-being, we utilize a predictable five-day, 8-hour shift structure.
  • Shift Options to Fit Your Lifestyle: Our 24x7 mission requires continuous coverage, but it also provides the opportunity to align your work hours with your personal routine. Key coverage windows include:
  • Day Shift: 8:00 AM - 4:00 PM
  • Swing Shift: 4:00 PM - 12:00 AM
  • Mid Shift: 12:00 AM - 8:00 AM
  • Flexibility: We highly value your work-life balance and make every effort to honor your shift preferences whenever possible. While final assignments must ensure critical program requirements are met, we strive to manage scheduling with a balanced approach that respects our team members' personal needs alongside mission readiness.
Required Qualifications:
  • Clearance: Must have an active DoD Top Secret security clearance.
  • Level I: Bachelor's degree and 2+ years of relevant experience (Equivalent professional work or military experience will be considered in lieu of a degree)
  • Level II: Bachelor's degree and 4+ years of relevant experience (Equivalent professional work or military experience will be considered in lieu of a degree)
  • Baseline Certification: Current DoD 8570 IAT Level II (or higher) certification, such as CompTIA Security+ CE, ISC2 SSCP, or SANS GSEC (or equivalent 8140 requirements).
  • Specialized Certification: Ability to obtain a DoD 8570 CSSP-Analyst level certification (e.g., CEH, CySA+, GCIA, or equivalent) within 180 days of hire.
  • Technical Core: Solid foundation in networking principles, including packet analysis, common ports/protocols, traffic flow, the OSI model, and defense-in-depth architecture.
  • Experience & Education:
  • Location: Commutable distance (within 2 hours) or ability to self-relocate to Scott AFB, IL.
Preferred Qualifications:
  • Prior experience working within a TS/SCI operational environment, DISA, or other specialized DoD agencies.
  • Experience applying intelligence-driven defense strategies utilizing the MITRE ATT&CK or Cyber Kill Chain frameworks against known APT intrusion sets.
  • In-depth experience utilizing SIEM/SOAR platforms to perform behavioral and statistical analysis across multiple log types within a classified network.
  • Knowledge or experience in defending classified cloud environments (e.g., AWS Secret/Top Secret, Azure Government Secret/Top Secret).
  • Basic scripting and programming skills (e.g., Python, PowerShell) to automate routine analytical tasks.

This posting is for multiple opportunities ranging in years of experience. Level of opportunity, including compensation, will be matched to a candidate’s experience.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:

September 18, 2026

Pay Range:

Pay Range $69,550.00 - $125,725.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Leidos • Shiloh (IL)

On-site
USD 87,000 - 157,000
Defensive Cybersecurity Analyst
Defensive Cybersecurity Analyst

Leidos • Illinois

On-site
USD 70,000 - 126,000
Cyber Security Analyst
Cyber Security Analyst

Leidos Inc • Shiloh (IL)

On-site
USD 70,000 - 126,000
Health and Wellness programs
Income Protection
Paid Leave and Retirement
+1
Defensive Cybersecurity Analyst
Defensive Cybersecurity Analyst

Via Logic LLC • Illinois

On-site
USD 70,000 - 126,000
Cyber Security Analyst
Cyber Security Analyst

Leidos • Fort Belvoir (VA)

On-site
USD 87,000 - 157,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Leidos • Illinois

On-site
USD 87,000 - 157,000
Cyber Intel Analyst
Cyber Intel Analyst

Leidos • United States

Hybrid
USD 87,000 - 157,000
Cyber Security Analyst
Cyber Security Analyst

Leidos Inc • Fort Belvoir (VA)

On-site
USD 87,000 - 157,000
Defensive Cybersecurity Analyst
Defensive Cybersecurity Analyst

Leidos Inc • Illinois

On-site
USD 70,000 - 126,000
Health insurance
Tier 3 Cyber Threat Intelligence Analyst
Tier 3 Cyber Threat Intelligence Analyst

Via Logic LLC • Mississippi

On-site
USD 110,000 - 160,000