Haystack
← Back to Jobs
Remote
Technology
RA

Security Operations Center (SOC) Analyst with Security Clearance

RazorSeaside, CA🇺🇸United StatesPosted 14 Jul 2026

Why This Role Stands Out

This remote Security Operations Center Analyst role offers a fantastic opportunity to safeguard critical Department of Defense infrastructure, fostering significant career growth through exposure to complex enterprise environments and advanced threat analysis. You'll thrive here if you possess a strong cybersecurity foundation, relevant certifications, and an active DoD Secret clearance, making a real impact on national security while enjoying flexibility in your work.

Quick Overview

Seniority
Mid Senior
Work mode
Remote
Location
Seaside, CA, United States
Posted
1 month ago
Splunk

Job Description

Razor is looking for a Security Operations Center (SOC) Analyst to support the Defense Client Data Center (DMDC) Cyber PRIMES program by monitoring, analyzing, and responding to cybersecurity events across complex Department of Defense enterprise environments. The role focuses on threat detection, incident response, security monitoring, vulnerability analysis, and continuous improvement of enterprise cybersecurity operations supporting thousands of network and endpoint devices. Education & Certification Requirements: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience). Relevant DoD 8140 certifications and industry certifications are preferred and may be required based on program requirements.

Clearance Requirements: Active DoD Secret clearance required. Some positions may require Top Secret/SCI clearance. U.S. Citizenship required.

Location: Seaside, CA or Alexandria, VA (Mark Center). Flexible for occasional telework; candidates must reside locally.

Estimated Salary Range: $ - $ annually, depending on experience, certifications, clearance level, geographic location, and shift requirements.

Responsibilities

  • Monitor enterprise security events and alerts using Security Information and Event Management (SIEM) and other cybersecurity monitoring tools
  • Investigate, analyze, and respond to cybersecurity incidents, suspicious activity, and potential threats
  • Perform triage, containment, escalation, and documentation of security incidents in accordance with established procedures
  • Analyze logs, endpoint activity, network traffic, and security telemetry to identify indicators of compromise and malicious activity
  • Support vulnerability management, threat detection, and continuous monitoring activities across enterprise IT environments
  • Collaborate with cybersecurity engineers, incident responders, system administrators, and network teams to investigate and resolve security events
  • Develop and maintain incident reports, security documentation, and operational metrics
  • Support implementation of security monitoring use cases, detection logic, and response procedures
  • Recommend risk reduction and remediation actions based on analysis of cybersecurity events and trends
  • Assist with cybersecurity compliance, reporting, and operational readiness initiatives
  • Support continuous improvement of SOC processes, procedures, and monitoring capabilities Qualifications:
  • Experience working in a Security Operations Center (SOC), Cyber Defense, or enterprise security monitoring environment
  • Experience monitoring and analyzing cybersecurity events using SIEM platforms
  • Knowledge of cybersecurity incident response processes and security operations best practices
  • Experience investigating security alerts, log analysis, and threat detection
  • Familiarity with Windows, Linux, enterprise networking, and endpoint security technologies
  • Understanding of common cyber threats, attack techniques, and defensive security controls
  • Experience documenting incidents, preparing reports, and communicating technical findings
  • Strong analytical, troubleshooting, and problem-solving skills
  • Ability to work effectively in a fast-paced, mission-critical environment
  • Strong written and verbal communication skills

Desired Skills

  • Top Secret/SCI clearance
  • Security, CySA, GCIH, GCIA, CISSP, CEH, or other DoD 8140-compliant certifications
  • Experience with Microsoft Sentinel, Splunk, Elastic, QRadar, ArcSight, or other SIEM platforms
  • Experience using EDR technologies such as Microsoft Defender, CrowdStrike, HBSS, or similar endpoint security tools
  • Knowledge of MITRE Telecommunication&CK, threat intelligence, malware analysis, and threat hunting methodologies
  • Experience supporting Department of Defense or Federal cybersecurity operations
  • Experience supporting 24x7 SOC operations or shift-based environments
  • Familiarity with eMASS, ACAS, RMF, and DoD cybersecurity compliance requirements Employer Information: Razor is an EEO Employer. Razor is an

Equal Opportunity Employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected characteristic.

Benefits Overview: Razor offers a comprehensive benefits package which may include medical, dental, and vision insurance, paid time off, holidays, 401(k) with company match, professional development opportunities, and other competitive benefits designed to support the health and well-being of our employees.

Similar jobs