SOC Splunk Analyst I: Hands-On Security Ops

GCS Recruitment Specialists

United States

On-site

USD 65,000 - 90,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A Security Operations Analyst (Tier 1) position in Northern Virginia is part of a 24/7 operations center. You will monitor alert queues, classify incidents, and ensure proper handoffs to senior responders while maintaining thorough case records in ServiceNow.

A degree in cybersecurity or hands-on experience, plus working knowledge of Splunk or equivalent SIEM, are required. Shifts rotate, including nights, weekends, and holidays.

Qualifications

  • Degree or hands-on experience in cybersecurity, IT, CS, or related field.
  • Understanding of how a SOC operates and incident workflows.
  • Working knowledge of Splunk or equivalent SIEM.
  • Experience with ticketing platforms such as ServiceNow.
  • Foundation in networking and core security concepts, plus log reading.
  • Willingness to rotate shifts including nights, weekends and holidays.

Responsibilities

  • Monitor alert queues and dashboards in SIEM for signs of malicious or unusual activity across networks, endpoints, and cloud systems.
  • Assess incoming alerts against runbooks, rate their severity, and determine next steps.
  • Escalate confirmed issues within required response times and hand off to senior responders.
  • Maintain detailed case records in a ticketing platform from first alert to closure.
  • Stay updated on current threat activity, vulnerabilities, and attacker behavior.
  • Assist senior analysts in reconstructing incidents and suggesting fixes to prevent recurrence.
  • Collaborate with engineering and threat-hunting teams to close gaps and improve defenses.
  • Follow runbooks consistently and propose improvements when observed.
  • Provide clear status updates to internal teams during an incident.

Skills

SIEM (Splunk)
Incident response
Threat detection
Networking basics
Analytical/problem solving
Written and verbal communication

Education

Degree in cybersecurity/IT/CS or related field

Tools

ServiceNow

Job description

A Security Operations Analyst (Tier 1) position in Northern Virginia is part of a 24/7 operations center. You will monitor alert queues, classify incidents, and ensure proper handoffs to senior responders while maintaining thorough case records in ServiceNow.

A degree in cybersecurity or hands-on experience, plus working knowledge of Splunk or equivalent SIEM, are required. Shifts rotate, including nights, weekends, and holidays.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Splunk Analyst I
SOC Splunk Analyst I

GCS Recruitment Specialists • United States

On-site
USD 65,000 - 90,000
SOC Operations Technician - Cybersecurity Analyst
SOC Operations Technician - Cybersecurity Analyst

Apex Systems, LLC • Herndon (VA)

Hybrid
USD 41,000 - 51,000
SOC Analyst I – 24/7 Ops (Splunk/SOAR)
SOC Analyst I – 24/7 Ops (Splunk/SOAR)

Aquent • Houston (TX)

On-site
USD 70,000 - 100,000
SOC Analyst – Splunk & SIEM (Remote, US)
SOC Analyst – Splunk & SIEM (Remote, US)

WinTrio LLC • United States

On-site
USD 80,000 - 120,000
Healthcare (Medical, Dental, Vision)
401(k) Plan
Paid Time Off (PTO)
+1
Security Operations Center Analyst
Security Operations Center Analyst

Diligente Technologies • San Jose (CA)

On-site
USD 80,000 - 100,000
Cybersecurity Operations Analyst - 24/7 SIEM Defender
Cybersecurity Operations Analyst - 24/7 SIEM Defender

myBridge Corporation • Reston (VA)

On-site
USD 150,000 - 200,000
401K
Medical Insurance
Dental Insurance
+1
Security Analyst I
Security Analyst I

Procom • Houston (TX)

On-site
USD 65,000 - 90,000
SOC Analyst I — Remote 24/7 Security Operations
SOC Analyst I — Remote 24/7 Security Operations

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
Security Operations Center Analyst
Security Operations Center Analyst

Optomi • Houston (TX)

On-site
USD 70,000 - 100,000
Security Operations Analyst
Security Operations Analyst

Intrinsicamerica • Northern (KY)

Hybrid
USD 70,000 - 90,000