Security Operations & Threat Hunting Analyst

Esri

Vienna (VA)

On-site

USD 70,000 - 114,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical
Dental
Vision
Life insurance
401(k) with profit sharing
Vacation leave 80 hours (minimum accr)

Job summary

Esri is seeking an Enterprise Security Analyst II to join its SOC team in a hands‑on role focused on monitoring alerts, investigating events, and supporting incident response. This position emphasizes threat intelligence, threat hunting, and improving detection and response capabilities.

The role requires a 2+ year cybersecurity background with SIEM/EDR experience, strong telemetry analysis, and the ability to communicate findings clearly to technical and non‑technical audiences.

Qualifications

  • 2+ years of cybersecurity experience with hands-on involvement in security monitoring, alert triage, and incident investigation.
  • Experience analyzing endpoint, identity, network, cloud, email, and log data to identify suspicious or malicious activity.
  • Working knowledge of SIEM and EDR platforms, common triage workflows, and security telemetry analysis.
  • Strong understanding of networking, operating systems, identity and access concepts, cloud security fundamentals, and core security protocols.
  • Ability to write clear investigation notes, incident records, intelligence summaries, and recommendations for technical and non-technical audiences.

Responsibilities

  • Monitor and manage the SOC alert queue across endpoint, identity, network, email, cloud, and log monitoring platforms.
  • Independently triage and investigate security alerts and events, distinguishing confirmed threats from benign activity using available evidence and telemetry.
  • Support the full incident lifecycle, including investigation, escalation, containment support, remediation follow‑up, documentation, and closure.
  • Escalate incidents with clear evidence, impact assessment, and recommended next steps.
  • Apply playbooks and runbooks while identifying opportunities to improve alert quality, response consistency, automation, and analyst enablement.
  • Analyze threat intelligence to identify threats, campaigns, vulnerabilities, and adversary behaviors that may affect the organization.
  • Enrich alerts and investigations with context about threat actors, malware, indicators, vulnerabilities, and attack techniques.
  • Assist with threat hunts across endpoint, identity, network, cloud, and application telemetry.
  • Use MITRE ATT&CK to support investigations, communicate adversary behavior, and identify detection gaps.

Skills

Security monitoring
Incident investigation
Threat intelligence concepts
Threat hunting
SIEM
EDR
Cloud security

Education

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related STEM

Tools

SOAR platforms
PowerShell
Python
KQL
SPL

Job description

Esri is seeking an Enterprise Security Analyst II to join its SOC team in a hands‑on role focused on monitoring alerts, investigating events, and supporting incident response. This position emphasizes threat intelligence, threat hunting, and improving detection and response capabilities.

The role requires a 2+ year cybersecurity background with SIEM/EDR experience, strong telemetry analysis, and the ability to communicate findings clearly to technical and non‑technical audiences.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Pro: Threat Hunting & Incident Response
Security Operations Pro: Threat Hunting & Incident Response

Esri • Redlands (CA)

On-site
USD 70,000 - 114,000
Medical insurance
Dental insurance
Vision insurance
+4
Security Operations Analyst II: Threat Intel & IR
Security Operations Analyst II: Threat Intel & IR

Esri • Town of Vienna (WI)

On-site
USD 70,000 - 114,000
Health Insurance
401(k)
Paid Holidays
Security Operations Analyst
Security Operations Analyst

NextGenEnergyJobs • Vienna (VA), Northern (KY)

Hybrid
USD 90,000 - 140,000
Health benefits
401(k) and profit-sharing
Paid holidays
+1
Security Operations Analyst
Security Operations Analyst

Esri • Town of Vienna (WI)

On-site
USD 70,000 - 114,000
Health Insurance
401(k)
Paid Holidays
Security Operations Analyst
Security Operations Analyst

Esri • Redlands (CA)

On-site
USD 70,000 - 114,000
Medical insurance
Dental insurance
Vision insurance
+4
Security Operations Analyst
Security Operations Analyst

Esri • Vienna (VA)

On-site
USD 70,000 - 114,000
Medical
Dental
Vision
+3
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

No Limit Staffing, Inc. • United States

On-site
USD 90,000 - 120,000
SOC Analyst: Incident Response & Threat Hunter
SOC Analyst: Incident Response & Threat Hunter

Inforcer • Cerritos (CA)

On-site
USD 90,000 - 130,000
SOC Analyst II: Threat Hunting & Incident Response
SOC Analyst II: Threat Hunting & Incident Response

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000
Remote SOC Engineer II - Threat Detection & Incident Lead
Remote SOC Engineer II - Threat Detection & Incident Lead

CTS • United States

On-site
USD 80,000 - 85,000
Health Insurance
401(k) with company match
Paid Time Off
+6