SOC Analyst

Mantis Security Corporation

Reston (VA)

On-site

USD 100,000 - 150,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Mantis Security Corporation in Reston, VA is seeking an experienced SOC Analyst to monitor, detect, investigate, and respond to cybersecurity threats across enterprise and AWS environments.

The role requires hands-on incident response, experience with SIEM/EDR, and a TS/SCI clearance; we value strong communication, threat hunting, and improving playbooks.

Qualifications

  • 7+ years in cybersecurity, SOC, or incident response.
  • Hands-on experience investigating security events in AWS environments.
  • Experience with SIEM and EDR platforms.
  • Security+ or equivalent certification; TS/SCI clearance.

Responsibilities

  • Monitor and investigate security alerts across enterprise and AWS environments.
  • Triage potential threats, determine impact, and support incident response and remediation.
  • Analyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch.
  • Investigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise.
  • Conduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats.
  • Document investigations, communicate findings, and elevate incidents when necessary.
  • Help improve SOC detection capabilities, playbooks, processes, and alerting.

Skills

Cybersecurity experience
AWS security
SIEM/EDR experience
AWS IAM/EC2/S3 knowledge
Network security fundamentals
Communication of findings
MITRE ATT&CK familiarity
Top Secret clearance

Education

Security+ or equivalent certification

Tools

Splunk
AWS GovCloud
Python/PowerShell/Bash scripting

Job description

Mantis Security is seeking an experienced Security Operations Center (SOC) Analyst to support the monitoring, detection, investigation, and response to cybersecurity threats within a mission-focused environment. This position will work as part of a security operations team responsible for protecting both traditional and AWS cloud-based infrastructure.

The ideal candidate will have a strong foundation in security operations and incident response, with hands-on experience analyzing security events across AWS environments. This role requires someone who can move beyond simply reviewing alerts to determine what happened, assess the potential impact, document findings, and support appropriate response and remediation actions.

As a SOC Analyst at Mantis Security, you'll help protect critical customer environments by monitoring, investigating, and responding to cybersecurity threats across both traditional and AWS cloud infrastructure.

  • Monitor and investigate security alerts across enterprise and AWS environments
  • Triage potential threats, determine impact, and support incident response and remediation
  • Analyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch
  • Investigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise
  • Conduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats
  • Document investigations, communicate findings, and elevate incidents when necessary
  • Help improve SOC detection capabilities, playbooks, processes, and alerting
WHAT WE'RE LOOKING FOR:
  • 7+ years of cybersecurity, SOC, incident response, or related experience
  • Hands-on experience investigating security events in AWS environments
  • Experience working with SIEM and endpoint detection and response (EDR) platforms
  • Working knowledge of AWS IAM, EC2, S3, VPC, CloudTrail, GuardDuty, Security Hub, and related security concepts
  • Strong understanding of network security, common attack techniques, and incident response
  • Ability to analyze complex technical information and clearly communicate findings
  • Familiarity with MITRE ATT&CK, threat intelligence, and vulnerability management
  • Security+ or equivalent cybersecurity certification
  • Active TS/SCI security clearance required.
NICE TO HAVE:
  • Experience supporting DoD, Intelligence Community, or other federal environments
  • AWS security or architecture certification
  • Experience with Splunk and AWS GovCloud
  • Basic Python, PowerShell, or Bash scripting experience
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM/Detection Engineer
SIEM/Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
SOC Analyst
SOC Analyst

Tactibit • Suitland (MD)

On-site
USD 85,000 - 110,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Cybersecurity Analyst (AWS Cloud Security)
Cybersecurity Analyst (AWS Cloud Security)

Barton Malow • Michigan

On-site
USD 85,000 - 115,000
Cybersecurity Analyst (AWS Cloud Security)
Cybersecurity Analyst (AWS Cloud Security)

Barton Malow Builders • Southfield (MI)

On-site
USD 80,000 - 110,000
SOC Manager
SOC Manager

HW3 • Jacksonville (FL)

On-site
USD 120,000 - 180,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
MSSP SOC Analyst
MSSP SOC Analyst

Districttechgroup • Washington

Remote
USD 75,000 - 115,000
Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
+2