SOC Analyst
Summary
Remote, full-time SOC Analyst monitoring security alerts across enterprise systems, networks, and endpoints; triaging and investigating incidents, reviewing logs, and working with SIEM, EDR, and IDS/IPS tools. Shifts fall between 7 AM and 7 PM CST. Note: the posting is for talent pooling via TeamFicient's Ready-to-Hire Portal, not an immediate vacancy.
This is a remote position.
Company: TeamFicient
Location: Remote
Employment Type: Full-Time
Salary Range: Up to $1,500
Work Schedule:
Time Range: Between 7 AM and 7 PM CST
Working Hours: 9 hours per day (8 working hours + 1-hour break)
Days Off: TBD (2 days per week)
What we are looking for?
We are looking for a skilled, motivated, and curious SOC Analyst to join our cybersecurity team. We are seeking someone who is detail-oriented, proactive, and passionate about cybersecurity, comfortable working under pressure, investigating ambiguous security events, and collaborating with IT and security teams to monitor events, investigate potential threats, and protect organizational assets.
The ideal candidate should have a strong understanding of cybersecurity concepts, security monitoring, incident response, and SIEM tools, with a keen eye for identifying suspicious activity and potential security threats.
Key Responsibilities
Monitor security alerts and events across enterprise systems, networks, endpoints, and applications.
Analyze and investigate potential security incidents and suspicious activities.
Perform initial triage, validation, and classification of security alerts.
Escalate confirmed or high-severity incidents according to established procedures.
Support incident response, containment, and remediation activities.
Review and analyze logs from firewalls, IDS/IPS, EDR, servers, applications, and other security controls.
Work with SIEM platforms to identify threats, correlations, and unusual activity.
Conduct basic threat intelligence and investigation activities.
Document security incidents, investigations, findings, and recommended actions.
Assist with vulnerability and security monitoring activities where required.
Contribute to improving detection rules, alert tuning, and SOC processes.
Stay informed about emerging cybersecurity threats, attack techniques, and industry best practices.
Required Qualifications
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience.
Experience in a SOC, cybersecurity, IT security, or related role.
Good understanding of networking concepts, TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, and common network protocols.
Knowledge of security monitoring and incident response processes.
Hands-on experience with SIEM, EDR, IDS/IPS, or other security monitoring technologies.
Familiarity with Windows and Linux operating systems and their security logs.
Understanding of common cyber threats, attack techniques, malware, phishing, and credential-based attacks.
Strong analytical, troubleshooting, and problem-solving skills.
Good written and verbal communication skills.
Preferred Qualifications
Experience with platforms such as Microsoft Sentinel, Splunk, IBM QRadar, Elastic, or similar SIEM solutions.
Familiarity with MITRE ATT&CK and common threat-hunting methodologies.
Relevant certifications such as Security+, CySA+, CEH, GCIH, or equivalent.
Experience with EDR/XDR solutions and endpoint investigations.
Basic scripting or automation knowledge using Python, PowerShell, or similar technologies.
Experience working in a 24/7 SOC environment is a plus.