Job#: 3044259
Job Description:
Job Title: SOC Analyst I
Location: Cincinnati, OH (Onsite)
Length: 6 months +
Pay Range: $48-$53
Position Summary
The Security Operations Center (SOC) provides 24x7x365 monitoring, detection, and response capabilities across enterprise environments. This includes event monitoring, cloud security monitoring, data loss prevention (DLP) monitoring, and participation in the incident response process. The Tier 1 SOC Analyst serves as the primary point of initial triage and investigation within the SOC. This role is responsible for proactively monitoring security alerts and incidents, conducting initial investigations to identify potential malicious activity, and escalating incidents in accordance with established procedures. The analyst works with senior cybersecurity personnel and cross-functional technology teams to support threat detection, response, and continuous improvement efforts.
Essential Duties and Responsibilities
Security Operations Center Analysis (80%)
Monitor security incidents and alerts across endpoint, network, and cloud environments through Security Information and Event Management (SIEM) tools and ticketing platforms.
Perform initial triage and investigation of incidents assigned through the ticketing system, utilizing established playbooks and response procedures for specific incident types.
Respond to, mitigate, and assist in the eradication of security threats under the guidance of Tier 2 and Tier 3 analysts and SOC leadership.
Documentation and Operational Support (10%)
Maintain accurate, consistent, and high-quality documentation of all actions taken during incident triage and investigations.
Assist senior team members with the development and maintenance of SOC documentation and knowledge management resources.
Handle sensitive information in accordance with established information protection policies and security standards.
Collaborate with engineering and operations teams to troubleshoot issues, improve response processes, and enhance threat detection capabilities.
Additional Responsibilities (10%)
Perform other duties and responsibilities as assigned.
Qualifications
Education
Minimum Requirements
High School Diploma or GED
Plus two (2) years of relevant and/or transferable experience
Preferred
Bachelor's degree in Computer Science, Engineering, Information Systems, Cybersecurity, or a related field
Experience
Required
Two (2) years of relevant and/or transferable work experience
Preferred
Less than one (1) year of experience utilizing operating systems and industry-standard monitoring, logging, alerting, and investigation processes
Certifications
Preferred
Foundational cybersecurity and/or IT certifications, including but not limited to:
-
CompTIA Network+
CompTIA Security+
GIAC Certified Intrusion Analyst (GCIA)
GIAC Certified Incident Handler (GCIH)
GIAC Reverse Engineering Malware (GREM)
GIAC Penetration Tester (GPEN)
Required Knowledge, Skills, and Abilities
Understanding of cybersecurity concepts, principles, and frameworks.
Analytical and problem-solving skills.
Working knowledge of security technologies and tools, including:
SIEM platforms
IT ticketing systems
Endpoint Detection and Response (EDR) solutions
Email security gateways
Malware analysis sandboxes
Understanding of networking concepts,