Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
TL
TGIPOWER LLC
Security Analyst (Tier 2 SOC)
Career Insights for Security Operations Center Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Florida data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Security Operations Center Analyst monitors and analyzes security events and instances within an organization's IT infrastructure. Responds to real-time cybersecurity threats, configuring and deploying security infrastructures, and monitoring of ongoing security issues.
$102,475 / year median in Florida
Job Description
Security Analyst (Tier 2 SOC)
Configure client environments, integrations, policies, alerting, monitoring, and required access according to established SOC standards and service requirements.
Validate that required security tools, agents, integrations, log sources, and monitoring services are properly deployed and reporting as expected. Coordinate with internal teams to ensure onboarding requirements and dependencies are completed accurately and on schedule. Document client-specific configurations, integrations, contacts, escalation requirements, and operational procedures. Perform technical offboarding of clients from SOC applications and solutions, including removal of integrations, agents, access, monitoring, and client-specific configurations as appropriate. Validate completion of onboarding and offboarding activities using established checklists and quality-control procedures. Identify gaps, inconsistencies, or opportunities to improve SOC onboarding and offboarding standards, documentation, and automation. Threat Hunting & Research Perform proactive threat hunting across client environments. Analyze logs, endpoint telemetry, and network activity for indicators of compromise (IOCs). Maintain awareness of emerging threats, vulnerabilities, attack techniques, and threat actor activity. Recommend appropriate mitigations and detection improvements based on identified threats. Mentorship & Collaboration Guide and mentor Tier 1 SOC Analysts on investigation techniques, tools, documentation, and escalation procedures. Assist Tier 1 analysts with complex or ambiguous security events. Participate in internal tabletop exercises, training sessions, and knowledge-sharing activities. Contribute to the development and maintenance of incident response runbooks, SOC procedures, and technical documentation. Collaborate with NOC, Service Desk, Engineering, and other technical teams when security issues cross operational boundaries. Tool Proficiency SentinelOne and Microsoft Defender for Endpoint/XDR. SIEM platforms such as Microsoft Sentinel, Splunk, LogRhythm, or equivalent. Security monitoring, endpoint protection, vulnerability management, email security, and related SOC technologies. PowerShell or other basic scripting and automation technologies. ConnectWise Manage or comparable ITSM platforms for ticket tracking, workflow, and documentation.
TGIPOWER LLC
Boca Raton, FL Job Details Full-time $75,000 - $95,000 a year 16 hours ago Benefits Health insurance Dental insurance 401(k) Paid time off Vision insurance Life insurance Qualifications Endpoint Security Tooling ISO standards Incident management software Research Information security compliance IT monitoring tools NIST standards Incident management operations support Incident response implementation Security technology solutions implementations IT security monitoring Full Job Description Security Analyst (Tier 2 SOC)Department:
Technical Operations / SOC Reports to:Director of Technical Operations Position Summary:
The Tier 2 SOC Analyst plays a critical role in defending clients from cyber threats through proactive monitoring, incident response, threat analysis, and effective management of client security services. This position is responsible for investigating escalated alerts, mentoring Tier 1 analysts, tuning and maintaining security platforms, supporting the onboarding and offboarding of clients across SOC applications and solutions, and enhancing the overall security posture of client environments.Roles and Responsibilities:
Incident Response & Threat Analysis Investigate security incidents escalated from Tier 1 SOC Analysts. Conduct root cause analysis on recurring or advanced threats. Identify and respond to phishing, malware, unauthorized access, insider threats, and other security events. Assist with incident containment, remediation, documentation, and reporting. Escalate significant incidents in accordance with established incident response procedures. Security Platform Optimization Tune SIEM, XDR, endpoint security, and other SOC platforms to improve detection accuracy and reduce false positives. Recommend and implement enhancements to detection rules, alerting, and response playbooks. Review security platform health, integrations, and data ingestion to identify configuration or coverage gaps. Work closely with engineering and NOC to ensure security alerts are actionable and prioritized. Client Security Onboarding & Offboarding Perform technical onboarding of new clients into SOC-managed security applications, platforms, and solutions.Configure client environments, integrations, policies, alerting, monitoring, and required access according to established SOC standards and service requirements.
Validate that required security tools, agents, integrations, log sources, and monitoring services are properly deployed and reporting as expected. Coordinate with internal teams to ensure onboarding requirements and dependencies are completed accurately and on schedule. Document client-specific configurations, integrations, contacts, escalation requirements, and operational procedures. Perform technical offboarding of clients from SOC applications and solutions, including removal of integrations, agents, access, monitoring, and client-specific configurations as appropriate. Validate completion of onboarding and offboarding activities using established checklists and quality-control procedures. Identify gaps, inconsistencies, or opportunities to improve SOC onboarding and offboarding standards, documentation, and automation. Threat Hunting & Research Perform proactive threat hunting across client environments. Analyze logs, endpoint telemetry, and network activity for indicators of compromise (IOCs). Maintain awareness of emerging threats, vulnerabilities, attack techniques, and threat actor activity. Recommend appropriate mitigations and detection improvements based on identified threats. Mentorship & Collaboration Guide and mentor Tier 1 SOC Analysts on investigation techniques, tools, documentation, and escalation procedures. Assist Tier 1 analysts with complex or ambiguous security events. Participate in internal tabletop exercises, training sessions, and knowledge-sharing activities. Contribute to the development and maintenance of incident response runbooks, SOC procedures, and technical documentation. Collaborate with NOC, Service Desk, Engineering, and other technical teams when security issues cross operational boundaries. Tool Proficiency SentinelOne and Microsoft Defender for Endpoint/XDR. SIEM platforms such as Microsoft Sentinel, Splunk, LogRhythm, or equivalent. Security monitoring, endpoint protection, vulnerability management, email security, and related SOC technologies. PowerShell or other basic scripting and automation technologies. ConnectWise Manage or comparable ITSM platforms for ticket tracking, workflow, and documentation.