SOC Analyst - US

Inforcer Ltd.

Cerritos (CA)

On-site

USD 90,000 - 120,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

inforcer is seeking a SOC Analyst to monitor, investigate, and respond to security threats across our environment. You will be on the front line of security operations, reviewing alerts, identifying suspicious activity, and conducting hands-on investigations using SIEM, EDR, and threat intelligence tools.

You will help strengthen detection and response capabilities by improving playbooks, reducing noise, and ensuring incidents are handled quickly and with high quality.

Qualifications

  • Hands-on alert triage experience in a SOC, MSP, MSSP or internal security team.
  • Proficient in writing KQL queries to search sign-in, audit and hunting data.
  • Strong Microsoft 365 and Entra ID security knowledge, including authentication flows and conditional access.
  • Practical understanding of MITRE ATT&CK and identity-led attack techniques against Microsoft 365.
  • Sound judgement on evidence support and knowing when it’s inconclusive.
  • Clear, concise written English for a technical audience under time pressure.

Responsibilities

  • Monitor in-house custom tooling for real-time alerts and suspicious activity.
  • Triage, investigate, and document security incidents following established playbooks.
  • Perform in-depth log analysis across our customer estate.
  • Escalate incidents as needed and collaborate with internal teams.
  • Support containment and remediation efforts.
  • Contribute to improving detection content by identifying gaps, false positives, and tuning opportunities.
  • Participate in threat hunting exercises and proactive investigations into anomalous behaviour.
  • Assist with onboarding and operationalizing new security tools and processes.
  • Stay current with emerging threats, attack techniques, and security best practices.

Skills

SOC Experience
KQL queries
MS365 Security
MITRE ATT&CK
Critical thinking
Technical writing

Job description

About Us

inforcer is one of the fastest growing technology organisations in the world and a leading provider of cutting‑edge cybersecurity and AI solutions to support to the SMB market. We provide MSPs (Managed Service Providers) with the fundamental technology they need to manage and secure Microsoft 365 at scale and deliver AI services. Our mission is to beinforcedin every MSP!

About the Role

We are seeking a SOC Analyst to play a critical role in monitoring, investigating, and responding to security threats across our environment. There are two key parts to the role.

Firstly, you will act as the front line of our security operations; reviewing alerts, identifying suspicious activity, and conducting hands‑on investigations using our SIEM, EDR, and threat intelligence tools. This is an operational role with real ownership, ideal for someone who thrives in a fast‑paced environment, enjoys digging into logs, and can bring clarity to complex behaviours across our network, endpoints, and cloud platforms. As part of this, you will take part in regular out‑of‑hours work, which is a natural component of a 24/7 security operation and compensated as overtime.

Secondly, you will help strengthen our detection and response capabilities by improving playbooks, enhancing alert quality, and contributing insights that increase our overall readiness. As our environment grows, you’ll play a pivotal role in reducing noise, closing detection gaps, and ensuring incidents are handled quickly, consistently, and with high quality. Your work will directly support our ability to remain secure, resilient, and able to operate without interruption.

What you’ll be doing
  • Monitor our In-house Custom tooling for real‑time alerts and suspicious activity.
  • Triage, investigate, and document security incidents following established playbooks.
  • Perform In-depth log analysis across our customer estate
  • Escalate incidents as needed and collaborate with internal teams
  • Support containment and remediation efforts
  • Contribute to improving detection content by identifying gaps, false positives, and tuning opportunities.
  • Participate in threat hunting exercises and proactive investigations into anomalous behaviour.
  • Assist with onboarding and operationalizing new security tools and processes.
  • Stay current with emerging threats, attack techniques, and security best practices.
What We Can Offer You

Steep Learning curve: We believe people leave organisations when learning stops. We promise a steep and continuous learning curve to both challenge and develop our people. You are responsible for your own learning, but you’ll be surrounded by exceptional people and strong enablement, if you choose to lean into it, in an environment where it’s safe to make mistakes, try new things, and improve.

Real impact:We operate in a high-trust and autonomous environment where you can make a real impact and difference in your role and across the company.

Transparency and Honesty:We believe honest and clear communication creates a highly collaborative culture. It gives you the “why” we make decisions and allows you to effectively make your own. We won’t pull the wool over your eyes, we are a fast-growing start‑up that comes with its own unique challenges, but we all work hard to solve them, together, as a team.

A+ Global Team: Our people power every part of our business, and we look for individuals who bring genuine passion to their role and operate at their very best. A-players thrive when surrounded by other A-players. Our level of growth and rate of change can be hard work and challenging, but you’ll be surrounded with exceptional people that are always happy to help.

Regular Team Socials:We celebrate our team, our milestones, promotions and achievements with social events every month.

Employee Recognition:Programs to recognise and reward our top contributors for their achievementsand efforts. We live our company values every day and reward those people who embody them.

Skills We Need for This Role
  • Hands‑on alert triage experience in a SOC, MSP, MSSP or internal security team.
  • Working KQL, you can query sign‑in, audit and hunting data to answer a question unaided.
  • Strong Microsoft 365 and Entra ID security knowledge: authentication flows, conditional access, OAuth and app consent, mailbox and delegation permissions, and the audit trail behind each.
  • Practical understanding of MITRE ATT&CK and identity‑led attack techniques against Microsoft 365.
  • Sound judgement on when evidence supports a conclusion, and the confidence to say when it does not.
  • Clear, concise written English for a technical audience, under time pressure

inforcer is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Engineer - US
SOC Engineer - US

Inforcer Ltd. • United States

Hybrid
USD 90,000 - 135,000
Competitive salary
Nest pension
Hybrid/remote
+4
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

On-site
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

On-site
USD 110,000 - 150,000
Security Operations Center Analyst
Security Operations Center Analyst

Charter Solutions • Minneapolis (MN), Saint Paul (MN)

Hybrid
USD 70,000 - 100,000
Incident Response Engineer 2
Incident Response Engineer 2

Sophos • United States

Remote
USD 85,000 - 120,000
Remote-first
Flexible schedule
Security Operations Center (SOC) Analyst / Engineer
Security Operations Center (SOC) Analyst / Engineer

Zoho • United States

On-site
USD 110,000 - 160,000
Cybersecurity Analyst
Cybersecurity Analyst

EXOS • Indianapolis (IN)

On-site
USD 90,000 - 120,000
Senior SOC Analyst (Direct Hire EAD OKAY)
Senior SOC Analyst (Direct Hire EAD OKAY)

Confidential • United States

On-site
USD 120,000 - 180,000
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000