Talent.com
Senior SOC Analyst
Senior SOC AnalystKeenLogic • Merrifield, VA, US
Senior SOC Analyst

Senior SOC Analyst

KeenLogic • Merrifield, VA, US
19 days ago
Job type
  • Full-time
Job description

Job Description

Job Description

Senior SOC Analyst and Incident Responder

KeenLogic is seeking to hire a Senior SOC Analyst & Incident Responder to join our team at the Drug Enforcement Administration. All the duties listed support one or more of the following cybersecurity- related functions; information security, SPAA, incident response, cyber security, insider threat, computer forensics, vulnerability assessment and management, network data capture, intrusion detection, log management, auditing, security incident and event management (SIEM), and penetration testing.

This is a full-time position offering Fortune 500-level health / dental / vision, PTO, 401k, and Life Insurance. This onsite role, with a daily schedule from 7 AM to 3 PM, based in Merrifield, VA .

Position Summary

The Senior SOC Analyst is a key member of the 24 / 7 / 365 Security Operations Center, which serves as the escalation point for advanced investigations, incident response, and proactive threat hunting. This role conducts higher-level analysis than other analysts on the team. A senior SOC analyst performs deep forensic investigations, correlates multi-source threat intelligence information, and guides containment and remediation strategies. The Senior SOC Analyst identifies and mitigates advanced threats across enterprise IT endpoints, cloud environments, and OT systems. They leverage frameworks like the MITRE ATT&CK framework and others to detect, disrupt, and prevent malicious activity from occurring in the enterprise environment.

They work closely with the SOC manager and leads. They mentor junior staff, assist to refine SOC processes, and ensures the organization maintains a strong cybersecurity posture. They collaborate with engineers, threat intelligence and forensics teams to enhance detection capabilities, improve incident response readiness, and deliver actionable security insights to leadership. Required Qualifications

  • Active Secret or Top Secret clearance
  • Master’s degree and 8 years or Bachelor's degree and 11 years

Documented work experience performing any combination of Information System Security, Security Assessment & Authorization, Cybersecurity, Computer Forensics, or Insider Threat

  • One of the following required :
  • CBROPS

  • CFR
  • CompTIA : CySA+, Security + CE, CASP+CE
  • FITSP-O
  • SANS : GCFA, GCIA, GDSA, GICSP
  • CCNA-Security, CCNP Security
  • CISSP (or associate), CCSP
  • CISA
  • SSCP
  • CND
  • Duties and Responsibilities

  • Lead advanced incident detection, investigation, and analysis efforts.
  • Correlate SIEM, EDR, IDS / IPS, and firewall data to identify and analyze potential incidents.

    Perform deep-dive investigations to determine root cause, scope, and impact of incidents.

  • Apply MITRE ATT&CK and other frameworks for adversary TTP identification.
  • Conduct kill-chain and supply chain analysis to understand and counter threats.
  • Coordinate and direct complex incident response activities.
  • Guide preparation, identification, containment, eradication, and recovery actions in collaboration with SOC, forensics, and engineering teams.

  • Serve as the primary escalation point for high-impact or advanced incidents.
  • Ensure incident handling aligns with established guidelines, response plans, and playbooks.
  • Conduct proactive threat hunting to identify emerging risks.
  • Analyze telemetry, logs, and behavioral patterns for indicators of compromise or attack.

  • Hunt for advanced persistent threats and undiscovered vulnerabilities.
  • Use advanced queries in SOC cybersecurity tools to detect anomalous or suspicious activity.
  • Work with forensic teams to ensure proper forensic collection, preservation, and analysis of digital evidence.
  • Coordinate with forensics teams to ensure chain-of-custody and evidence integrity.

  • Extract and analyze relevant artifacts to support investigations and post-incident reviews.
  • Document and communicate forensic findings to stakeholders.
  • Develop and enhance SOC processes, playbooks, and detection capabilities.
  • Refine detection rules, alert thresholds, and automation workflows in SIEM / SOAR platforms and other cybersecurity tools.

  • Create SOPs, knowledge base articles, and training materials for SOC staff.
  • Recommend and guide implementation of new detection and analysis tools.
  • Perform threat intelligence collection, analysis, and dissemination.
  • Gather threat data from internal, classified, and open-source intelligence feeds.

  • Analyze and contextualize intelligence to produce actionable recommendations.
  • Share relevant threat information with SOC, leadership, and partner teams.
  • Mentor and train SOC analysts to improve investigative capabilities and analytical thought process.
  • Provide real-time guidance during active incidents.

  • Conduct regular training sessions, tabletop exercises, and red / blue team drills.
  • Validate analyst findings and provide feedback to designed to provoke thought, improve accuracy, and investigative thoroughness.
  • Collaborate with stakeholders to strengthen overall cybersecurity posture.
  • Work with engineering, IT, and cloud teams to address identified vulnerabilities.

  • Participate in tool evaluations, recommending solutions that enhance SOC capabilities and identify capability overlap.
  • Support internal coordination with DEA sections, divisions, and external entities.
  • Maintain documentation and reporting for SOC operations.
  • Record investigative steps, evidence, and incident timelines in case management systems.

  • Generate incident reports, trend analyses, and post-mortem summaries.
  • Provide executive-level briefings on security events and SOC performance.
  • Powered by JazzHR

    ODdWLDG3oO

    Create a job alert for this search

    Soc Analyst • Merrifield, VA, US

    Related jobs
    Insider Threat Program Systems SME

    Insider Threat Program Systems SME

    Leidos • Oxon Hill, MD, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for a Systems Management SME supporting the HEITS Contract as part of an Insider Threat Program (ITP). This is an exciting opportu...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Architect / Engineer

    Cybersecurity Architect / Engineer

    Leidos • Springfield, VA, US
    Full-time
    Join us in improving and shaping the future of smart mobility with a group of intelligent, motivated, and dedicated individuals! The Leidos Surface Transportation group focuses on improving transpo...Show more
    Last updated: 30+ days ago • Promoted
    OBIEE / OAS Admin

    OBIEE / OAS Admin

    Accenture • Washington, DC, United States
    Full-time
    At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared pu...Show more
    Last updated: 1 day ago • Promoted
    SOC Analyst

    SOC Analyst

    Fusion Technology • Herndon, VA, USA
    Temporary
    Quick Apply
    Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation's...Show more
    Last updated: 30+ days ago
    Insider Threat Program User Activity Monitor Engineer

    Insider Threat Program User Activity Monitor Engineer

    Leidos • Annandale, VA, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for User Activity Monitor (UAM) Engineer supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insid...Show more
    Last updated: 30+ days ago • Promoted
    Oracle ERP System Analyst 3 - HCM

    Oracle ERP System Analyst 3 - HCM

    Inova Health System • Falls Church, VA, United States
    Full-time
    Inova Oracle ERP is looking for a dedicated Oracle ERP System Analyst 3 - HCM to join the Team.This remote role will be full-time working Monday - Friday day shift. The Oracle ERP System Analyst 3 -...Show more
    Last updated: 30+ days ago • Promoted
    Senior Backup Engineer

    Senior Backup Engineer

    KPMG • Ashburn, VA, United States
    Full-time
    Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...Show more
    Last updated: 1 day ago • Promoted
    Senior InfoSec Consultant

    Senior InfoSec Consultant

    Ernst & Young Oman • Washington, DC, United States
    Full-time
    At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 30+ days ago • Promoted
    Network Security Engineer

    Network Security Engineer

    Shimadzu Scientific Instruments • Columbia, MD, United States
    Full-time
    Established in 1975, Shimadzu Scientific Instruments is one of the largest suppliers of analytical instrumentation, physical testing, and environmental monitoring systems in the world.Ground-breaki...Show more
    Last updated: 27 days ago • Promoted
    Iridium Systems & Mission Operations Internship - Summer 2026 (Virginia)

    Iridium Systems & Mission Operations Internship - Summer 2026 (Virginia)

    Iridium Satellite LLC • Leesburg, VA, United States
    Internship
    Iridium Systems & Mission Operations Internship - Summer 2026 (Virginia).Iridium is an award-winning and innovative satellite communications company with bragging rights to the only network that of...Show more
    Last updated: 25 days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Foxhole Technology • Leesburg, VA, United States
    Full-time
    Job Title : Lead Security Engineer.Location : Leesburg, VA -Hybrid (Onsite 3 days per week).Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defe...Show more
    Last updated: 25 days ago • Promoted
    SOC Analyst

    SOC Analyst

    ALTA IT Services • Chantilly, VA, US
    Full-time
    SOC Analyst 100% remote Compensation : $70,000-75,000 Contractor Work Model : Remote Hours : (3) 12-hour shifts a week on consecutive days (though days may shift to ensure team coverage from time to t...Show more
    Last updated: 13 days ago • Promoted
    FIPS 140 Security Engineer

    FIPS 140 Security Engineer

    ALTA IT Services • Columbia, MD, US
    Permanent
    Job Title : FIPS 140 Security Engineer Location : Columbia, Maryland Type : Contract To Hire Compensation : $62.Contractor Work Model : Remote Security Clearance : No active clearance is required.Citizen...Show more
    Last updated: 25 days ago • Promoted
    CSOC Analyst Lead

    CSOC Analyst Lead

    CSEngineering • Rockville, MD, United States
    Full-time
    Constellation Software Engineering (CSE) is seeking a dynamic and experienced CSOC Technical Lead to join our team.In this pivotal role, you will lead a talented group of Tier 1 and Tier 2 personne...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Legal & General America • Frederick, MD, United States
    Full-time
    At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live. As a recognized market leader of term li...Show more
    Last updated: 30+ days ago • Promoted
    SOC Analyst

    SOC Analyst

    VirtualVocations • Alexandria, Virginia, United States
    Full-time
    A company is looking for a SOC Analyst.Key Responsibilities Follow standard operating procedures for real-time security event intake Monitor infrastructure with SIEM to identify security inciden...Show more
    Last updated: 30+ days ago
    FOIA Analyst III

    FOIA Analyst III

    Goldschmitt and Associates LLC • Washington, DC, United States
    Full-time
    At Goldschmitt and Associates LLC (G&A), we’re not just another company—we’re a catalyst for innovation and impact, and we’re inviting passionate, forward-thinking individuals to join us on this jo...Show more
    Last updated: 1 day ago • Promoted
    Configuration Management

    Configuration Management

    Leidos • Aldie, VA, US
    Full-time
    The Configuration Manager will be responsible for establishing and maintaining the documentation baseline for the program, ensuring consistent, accurate, and timely documentation across all contrac...Show more
    Last updated: 6 days ago • Promoted