Haystack
← Back to Jobs
Technology
AS

SOC Analyst Level 2 with Security Clearance

Agiletek Solutions LLCReston, VA🇺🇸United StatesPosted Sep 28, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Reston, VA, United States
Posted
22 hours ago
Splunk

Job Description

About the Team Our Security Operations Center (SOC) provides advanced monitoring and response capabilities for enterprise and U.S. Government SaaS environments. Analysts serve as technical investigators and escalation points within the SOC, helping protect critical systems and customer environments.

About the Role The SOC Analyst Level 2 is responsible for in-depth investigation of escalated alerts and security incidents. This role performs log analysis, correlates events across multiple platforms, and validates potential security incidents using tools such as Splunk and endpoint detection platforms. The successful candidate will support proactive threat hunting activities, contribute to detection engineering and playbook improvements, and assist with tuning detection logic to reduce false positives. This role will also mentor junior analysts and help drive operational maturity within the SOC. This role will support one or more direct or indirect contracts with the U.S. Federal Government and requires an active TS/SCI with CI Polygraph security clearance.

Basic Qualifications ● Active TS/SCI with CI Polygraph security clearance required ● 5+ years of experience in cybersecurity operations, security monitoring, or incident response ● Hands-on experience with Splunk and advanced query development ● Experience analyzing endpoint, network, and cloud security logs ● Strong understanding of incident response procedures and methodologies ● Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience Other Qualifications ● Experience conducting threat hunting activities ● Familiarity with MITRE ATT&CK framework and adversary behavior mapping ● Experience using SOAR platforms (such as Tines) for workflow automation ● Ability to perform root cause analysis and impact assessments ● Strong documentation, reporting, and briefing skills ● Experience mentoring junior analysts and supporting team development ● Certifications meeting DoD 8570 IAT Level II requirements

Preferred Qualifications ● Experience supporting federal, intelligence community, or defense environments ● Experience with endpoint detection and response (EDR) platforms ● Experience supporting cloud security monitoring and investigations ● Familiarity with detection engineering, SIEM content development, and use case tuning Experience supporting continuous monitoring and security operations maturity initiatives

Similar jobs