SOC Analyst, Tier I

Indigo IT LLC

Fort Bragg (NC)

On-site

USD 70,000 - 95,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical, Dental, Vision
401(k) with company match
Paid Time Off
Paid holidays
Education assistance

Job summary

Indigo IT LLC seeks Tier 1 Watch Analysts to provide real-time monitoring and triage for a 24/7/365 blue team operation at Fort Bragg, NC. Onsite shifts include evenings, nights, weekends, and holidays, with strict adherence to playbooks and incident response procedures.

Applicants must possess a Bachelor's degree and 4+ years of experience, DoD 8140.03 qualification for DCWF 511, and US citizenship with a current DoD SECRET clearance. A CAC and base access are required.

Qualifications

  • Bachelor's degree with 4+ years of experience required.
  • DoD 8140.03 qualification required for solo watch.
  • US citizenship and DoD SECRET clearance required.
  • Ability to obtain DoD CAC and installation access; security training completed.

Responsibilities

  • Monitor SIEM alerts, sensor events, and host-based detections in real time.
  • Perform initial event triage, ticket creation, and category assignment; reject obvious false positives.
  • Elevate qualifying events to Tier 2 while following SOP timelines; hand off at shift changes.
  • Maintain pass-down logs and complete required training on schedule.

Skills

SIEM triage
TCP/IP networking
Windows
Linux fundamentals
Written communication
On-site shift flexibility
Incident reporting

Education

Bachelor's degree
DoD 8140.03 qualification
US Citizenship
DoD SECRET clearance

Tools

Enterprise SIEM
CJCSM 6510.01B playbooks
Access control systems

Job description

Founded in 2001, Indigo IT is an award-winning information technology consulting and services company. We are a trusted services provider to government agencies seeking innovative Cloud, Cybersecurity, Knowledge Management, and Enterprise solutions. We know our defense, federal, and civilian customers have critical IT infrastructures that must remain reliable, available, and maximized. Indigo IT is mission focused and committed to maintaining a sense of urgency in anticipating and supporting our customers’ technology goals and objectives. Our unique ability to think beyond today allows our clients to stay ahead of their IT challenges. As a Veteran-Friendly employer, we are proudly partnered with the Virginia Values Veterans (V3) Program, and a recipient of the HIRE Vets Gold Medallion Award, which recognizes our commitment to recruiting our nation’s Veterans. Recognized on the Inc. 5000 list of America’s fastest growing companies in 2020 & 2021 and named as one of the 2022 Best Places to Work in Virginia, we are always looking to hire top talent in the field - come join us today!

Fort Bragg, NC

The USARC Defensive Cyberspace Operations Mission Support Services (DCOMSS) program establishes a dedicated, 24/7/365 cyber defense capability for the U.S. Army Reserve Command CIO/G-6, operating as a Cyber Security Service Provider - Executor (CSSP-E). The team performs continuous network security monitoring, detection, analysis, and incident response across NIPRNet and SIPRNet; integrated assessments under the Computer Defense Assistance Program (Network Assistance Visits, Network Damage Assessments, and web assessments); and Cyber Threat Intelligence collection, correlation, signature development, and finished intelligence production in support of approximately 205,000 Army Reserve personnel.

We are seeking Tier 1 Watch Analysts to provide real-time monitoring and triage on the 24/7/365 Blue Team watch. Tier 1 analysts are frequently the sole on-site analyst during evening, night, weekend, and holiday watches and must be fully qualified to stand solo watch, detect high-fidelity alerts within the 15-minute standard, and elevate to the on-call Tier 2/Tier 3 chain.

ESSENTIAL FUNCTIONS/RESPONSIBILITIES
Real-Time Monitoring and Triage
  • Stand assigned watch periods on the approved 24/7/365 rotation, including solo evening, night, weekend, and holiday watches
  • Continuously monitor SIEM alerts, sensor events, and host-based detections; acknowledge high-fidelity alerts within the 15-minute mean-time-to-detect standard
  • Perform initial event triage, ticket creation, and CJCSM 6510.01B category assignment; reject obvious false positives using documented playbooks
Escalation and Handoff
  • Execute approved Tier 1 playbook actions only; elevate events that meet documented thresholds to Tier 2 within SOP timelines
  • Recognize and immediately elevate indicators of active adversary presence, data spills, or conditions affecting safety of life or critical mission systems
  • Maintain the pass-down log and deliver the verbal handoff briefing at every shift change; re-confirm the status of critical incidents until closure
Records and Training
  • Support incident record accuracy and portal currency under Tier 2 direction
  • Participate in monthly internal DCO training and complete all required annual training on schedule
  • Do not independently perform Tier 3 analysis, unapproved containment actions, or assessment activity
EDUCATION, EXPERIENCE, & CERTIFICATIONS
  • Bachelor's degree and 4 years of experience
  • DoDM 8140.03 qualification for DCWF 511 Cyber Defense Analyst at Intermediate proficiency is required for any individual assigned solo watch, regardless of labor category level
  • Favorably adjudicated Tier 3 investigation; Tier 5 required prior to any privileged access
  • US Citizenship required
  • Current DoD SECRET clearance required (interim SECRET acceptable at start; final SECRET required within 120 days of award)
  • Ability to obtain and maintain a DoD Common Access Card and USARC installation access
  • Completion of DoD Cyber Awareness training prior to system access and annually thereafter; AT Level I, OPSEC Level I, TARP, and CUI training within 30 days of start
SPECIFIC KNOWLEDGE, SKILLS, & ABILITIES
  • Demonstrated ability to triage alerts using SIEM searches, packet/network traffic, and host logs; distinguish likely malicious activity from false positives; and elevate accurately while standing solo watch
  • Ability to operate an enterprise SIEM console and follow documented playbooks accurately under time pressure
  • Working familiarity with TCP/IP networking, Windows and Linux fundamentals, and common log sources (proxy, firewall, host audit logs)
  • Reliability and discipline to stand solo overnight and weekend watches and to execute complete, accurate handoffs
  • Clear written communication for tickets, pass-down entries, and escalations
  • Working knowledge of CJCSM 6510.01B incident categories and DoD/Army cyber incident reporting requirements
  • Excellent interpersonal and written communication skills to interact effectively with Government stakeholders, ARCYBER and Regional Cyber Center counterparts, and team members
  • The ability to communicate complex technical findings clearly to non-technical audiences
  • A willingness to uncover, document, and communicate deviations from planned outcomes in order to improve processes and prevent recurrence
  • A passion for continuous learning and a commitment to stay current with emerging threats, adversary tradecraft, and defensive technologies
Work Environment
  • Onsite presence at USARC Headquarters, Fort Bragg, NC required
  • Rotating 8-hour shifts on a 24/7/365 watch including nights, weekends, and Federal holidays
  • Solo watch assignments during evening, night, weekend, and holiday periods
Benefits
  • Medical, Dental, and Vision coverage options.
  • 401(k) with company match.
  • Group life and disability.
  • Flex Spending Accounts (FSA).
  • Paid Time Off (PTO).
  • Paid holidays.
  • Education assistance.
  • in house training programs for employees.
  • bonuses and recognition for publishing, speaking, and innovative thought leadership.

Indigo IT is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. This employer uses E-Verify.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Analyst, Tier I
SOC Analyst, Tier I

Indigo IT, LLC • Fort Bragg (NC)

On-site
USD 60,000 - 87,000
Medical/Dental/Vision
401(k) with company match
PTO & Holidays
+1
SOC Analyst, Tier II
SOC Analyst, Tier II

Indigo IT LLC • Fort Bragg (NC)

On-site
USD 75,000 - 110,000
Medical insurance
Dental coverage
Vision coverage
+4
SOC Analyst, Tier II
SOC Analyst, Tier II

Indigo IT, LLC • Fort Bragg (NC)

On-site
USD 80,000 - 110,000
Medical, Dental, Vision coverage
401(k) with company match
Life and disability insurance
+1
Malware Analyst
Malware Analyst

Indigo IT LLC • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
Medical, Dental, Vision coverage
401(k) with company match
Group life and disability
+5
Malware Analyst
Malware Analyst

Indigo IT, LLC • Fort Bragg (NC)

On-site
USD 75,000 - 130,000
Medical, Dental, Vision coverage
401(k) with company match
Paid time off
+3
DCOMSS - Blue Team Lead / Senior Cyber Defense Analyst
DCOMSS - Blue Team Lead / Senior Cyber Defense Analyst

Technology,-Automation,-and-Management,-Inc. • Fort Bragg (NC)

On-site
USD 120,000 - 180,000
Relocation Assistance
Sign-on Bonus
Travel Required
Cyber Threat Intelligence (CTI) Analyst
Cyber Threat Intelligence (CTI) Analyst

Indigo IT LLC • Fort Bragg (NC)

On-site
USD 95,000 - 150,000
Medical benefits
Dental benefits
Vision benefits
+9
Senior Cyber Defense Analyst with Secret Clearance
Senior Cyber Defense Analyst with Secret Clearance

CALNET, Inc. • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+3
Intermediate SOC Analyst (Fort Bragg, NC)
Intermediate SOC Analyst (Fort Bragg, NC)

ADP, Inc. • Fort Bragg (NC)

On-site
USD 80,000 - 90,000
Health plans
401(k) plan with employer match
Paid time off
Cyber Threat Intelligence (CTI) Analyst
Cyber Threat Intelligence (CTI) Analyst

Indigo IT, LLC • Fort Bragg (NC)

On-site
USD 90,000 - 110,000
Medical coverage
401(k) with company match
Paid holidays
+2