Soc Tier 3 Analyst

Global Alliant Inc

Crownsville (MD)

Hybrid

USD 130,000 - 190,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Global Alliant Inc in Crownsville, MD is seeking a SOC Tier 3 Analyst to lead incident response, forensics, and threat hunting across federal-regulated environments. You will coordinate with Tier 1/2 teams, tune SIEM rules, and drive security monitoring improvements.

This hybrid, full-time role requires US citizenship and on-site presence 2–3 days weekly; hybrid schedule, strong leadership, and experience with Sentinel and forensic tools are essential.

Qualifications

  • Bachelor's degree in a related technical field.
  • 10+ years of cybersecurity/forensics/IR experience.
  • Certifications such as GREM/CEH/CHFI/GCFE are preferred.

Responsibilities

  • Lead incident response and forensic investigations on compromised systems.
  • Analyze malware and attacker tools; develop detection signatures.
  • Tune SIEM rules and dashboards; train SOC analysts.
  • Conduct threat hunting and threat intelligence reviews to identify advanced threats.
  • Provide technical leadership and develop IR procedures.

Skills

Forensic tools
Sentinel SIEM
Malware analysis
Network traffic analysis
Threat intelligence gathering

Education

Bachelor's degree in Computer Science, Information Systems, Engineering

Tools

Sentinel
Forensic software

Job description

Job Title:

SOC Tier 3 Analyst

Location:

Crownsville, MD - Local Candidates Only

Onsite Address:

DoIT HQ, 100 Community Place, Crownsville, MD

Employment Type:

Full-Time

Work Arrangement:

Hybrid

Criteria:

Need US citizenship because of federal regulations and the sensitive nature of the work involved

Summary of Key Responsibilities
  • Incident Response & Forensics: Plan, initiate, and conduct forensic investigations on compromised systems; perform root cause and scope-of-impact analysis; create detailed forensic reports.
  • Malware & Tool Analysis: Support malware analysis of attacker tools and techniques; identify and analyze malicious payloads.
  • Tool & Process Development: Train SOC analysts on SIEM tools (e.g., Sentinel), develop and tune detection rules, and assist in creating new SOC monitoring processes.
  • Threat Intelligence & Hunting: Correlate actionable security events, review threat data, develop custom detection signatures, and conduct threat hunting to identify advanced threats.
  • Technical Leadership: Contribute to technical briefings, develop incident response procedures, and ensure adherence to operational and technical standards.
  • On-Call Support: May require availability outside regular hours or on weekends to respond to critical incidents.
Additional Job Description
  • Assists with the development of Security Operation Center (SOC) tiered monitoring and escalation processes.
  • Provides support for SOC Analyst Tier 1 & 2 personnel.
  • Provides technical expertise in the development of existing Cybersecurity projects and initiatives to include but not limited to: End Point Protection and Response, Vulnerability Management, Security Operations Expansion.
  • Provides technical expertise & support in Cybersecurity monitoring and analysis tool engineering and implementation.
  • Reviews, evaluates, and triages security alerts in Sentinel using dashboards, reports, and custom queries.
  • Uses tools, such as captured network traffic, intrusion detection software and Sentinel instrumentation to investigate possible cyber incidents.
  • Other security program development, documentation, security monitoring, threat hunting, vulnerability management, technical and risk assessment, and security engineering duties assigned by OSM SOC and senior management.
Required Qualifications
Education:
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or a related technical/scientific discipline.
Experience:
  • 10+ years of relevant experience in cybersecurity, digital forensics, or incident response.
Skills:
  • Proficiency with forensic tools.
  • SIEM platforms (Sentinel).
  • Malware analysis.
  • Network traffic analysis.
  • Threat intelligence gathering.
Certifications:
  • GREM, CEH, CHFI, GCFE, GIAC, or similar cybersecurity/forensics credentials are preferred.
Additional Requirements
  • Hybrid position - Must be able to work at the Crownsville office 2-3 times a week or rotation schedule with other Tier 3 Analysts.
  • Strong leadership and communication skills.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Analyst - Tier 1
SOC Analyst - Tier 1

Evans & Chambers • Maryland

On-site
USD 88,000 - 118,000
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Evans & Chambers • Fort Meade (MD)

On-site
USD 88,000 - 118,000
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
Senior SOC Analyst (Direct Hire EAD OKAY)
Senior SOC Analyst (Direct Hire EAD OKAY)

Confidential • United States

Hybrid
USD 120,000 - 180,000
Security Operations Center Analyst
Security Operations Center Analyst

Oxford Global Resources • Virginia (MN)

On-site
USD 120,000 - 180,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

On-site
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
Tier 2 Cybersecurity Engineer
Tier 2 Cybersecurity Engineer

On Call Computer Solutions, LLC • Tallahassee (FL)

On-site
USD 110,000 - 150,000
Health insurance
Life insurance
128 Hours PTO
+1
SOC Analyst Tier 1 (Secret Clearance)
SOC Analyst Tier 1 (Secret Clearance)

ShorePoint • Washington

On-site
USD 65,000 - 90,000
18 days PTO
11 holidays
85% insurance premium covered
+3
SOC Analyst
SOC Analyst

Tactibit • Suitland (MD)

On-site
USD 85,000 - 110,000
Tier 2 Cybersecurity Engineer
Tier 2 Cybersecurity Engineer

On Call Computer Solutions, LLC • Houston (TX)

On-site
USD 110,000 - 150,000
Health insurance
Retirement plan
Disability insurance
+5