Security Operations Center (SOC) Tier 1 Analyst
Listed on 2026-08-01
-
IT/Tech
Cybersecurity
SOC Analyst I
Location:
Cincinnati, OH (Onsite)
Length: 6 months +
Pay Range: $48-$53
Position Summary
The Security Operations Center (SOC) provides 24x7x365 monitoring, detection, and response capabilities across enterprise environments. This includes event monitoring, cloud security monitoring, data loss prevention (DLP) monitoring, and participation in the incident response process. The Tier 1 SOC Analyst serves as the primary point of initial triage and investigation within the SOC. This role is responsible for proactively monitoring security alerts and incidents, conducting initial investigations to identify potential malicious activity, and escalating incidents in accordance with established procedures.
The analyst works with senior cybersecurity personnel and cross-functional technology teams to support threat detection, response, and continuous improvement efforts.
Security Operations Center Analysis (80%)
- Monitor security incidents and alerts across endpoint, network, and cloud environments through Security Information and Event Management (SIEM) tools and ticketing platforms.
- Perform initial triage and investigation of incidents assigned through the ticketing system, utilizing established playbooks and response procedures for specific incident types.
- Respond to, mitigate, and assist in the eradication of security threats under the guidance of Tier 2 and Tier 3 analysts and SOC leadership.
Documentation and Operational Support (10%)
- Maintain accurate, consistent, and high-quality documentation of all actions taken during incident triage and investigations.
- Assist senior team members with the development and maintenance of SOC documentation and knowledge management resources.
- Handle sensitive information in accordance with established information protection policies and security standards.
- Collaborate with engineering and operations teams to troubleshoot issues, improve response processes, and enhance threat detection capabilities.
Additional Responsibilities (10%)
- Perform other duties and responsibilities as assigned.
Education
Minimum Requirements
- High School Diploma or GED
- Plus two (2) years of relevant and/or transferable experience
Preferred
- Bachelor's degree in Computer Science, Engineering, Information Systems, Cybersecurity, or a related field
Experience
Required
- Two (2) years of relevant and/or transferable work experience
Preferred
- Less than one (1) year of experience utilizing operating systems and industry-standard monitoring, logging, alerting, and investigation processes
Certifications
Preferred
- Foundational cybersecurity and/or IT certifications, including but not limited to:
- CompTIA Network+
- CompTIA Security+
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Certified Incident Handler (GCIH)
- GIAC Reverse Engineering Malware (GREM)
- GIAC Penetration Tester (GPEN)
Required Knowledge, Skills, and Abilities
- Understanding of cybersecurity concepts, principles, and frameworks.
- Analytical and problem-solving skills.
- Working knowledge of security technologies and tools, including:
- SIEM platforms
- IT ticketing systems
- Endpoint Detection and Response (EDR) solutions
- Email security gateways
- Malware analysis sandboxes
- Understanding of networking concepts, including TCP/IP protocols and network communications.
- Understanding of phishing techniques, malware behavior, and common cyber threats.
- Written and verbal communication skills.
- Ability to produce clear and comprehensive documentation.
- Organizational and time-management skills
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).