SOC Analyst
Washington, District of Columbia, 20022, USA
Listed on 2026-09-30
-
IT/Tech
Cybersecurity, Security Management & Operations
Position Description
Valiant Solutions is seeking a SOC Analyst to join our rapidly growing and innovative cybersecurity team!
The SOC Analyst is the senior Tier III analyst on the Security Operations Center floor, providing advanced triage, forensic analysis, and escalation for SIEM alerts and incidents that exceed Tier I and Tier II capability. The analyst is the escalation point for the shift, maintains situational awareness of SOC tools and telemetry, drives shift handovers so incoming analysts inherit full context, and contributes to standard operating procedure and playbook updates that keep detection and response current.
The role also supports Red Team and Purple Team exercises, using those engagements to test and improve detection coverage.
Named one of the Best Places to Work in the Washington DC area for 12 consecutive years
, Valiant is proud of our employee-centric culture and commitment to excellence.
Location: The SOC Analyst can expect 100% telework. Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below.
Eligibility Requirements: U.S. Citizenship is required due to federal contract obligations, along with the ability to successfully pass a federal background investigation.
Required Experience:
- Six or more years of Security Operations Center experience, with demonstrated time in a Tier II or Tier III analyst role.
- At least one of the following certifications: GCIH, GCIA, CEH, or Security+.
- Hands-on experience with SIEM platforms and endpoint telemetry, including alert tuning, correlation rule review, and use of EDR agents for investigation.
- Working knowledge of operating systems (Windows and Linux internals, event and audit logs, process and memory artifacts) and networking (TCP/IP, DNS, HTTP/S, common protocols, packet capture analysis).
- Experience with AWS native capabilities and telemetry, including Cloud Trail, Guard Duty, VPC Flow Logs, and Cloud Watch, in a monitoring or investigation context.
- Ability to lead a shift and drive handover discipline across analyst tiers.
- Strong written and verbal communication skills, including the ability to write clear incident write-ups and shift handover notes.
- Required to obtain and maintain a Non-Sensitive / High Risk (Public Trust) security clearance, Tier 4/6c.
Preferred Qualifications:
- Additional certifications such as GCFA, GCFE, GNFA, or GREM.
- Experience with malware reverse engineering, memory forensics, and network forensics.
- Familiarity with MITRE ATT&CK and the ability to map alerts and hunt findings to ATT&CK techniques.
- Working knowledge of NIST SP 800-61 Rev. 2, NIST SP 800-86, and NIST SP 800-137.
- Experience with SOAR platforms and playbook automation.
- Familiarity with AWS Gov Cloud and hybrid cloud detection patterns.
Responsibilities:
- Provide Tier III support for SIEM alert triage, in-depth forensic analysis, and escalation, including malware reverse engineering, memory forensics, and campaign correlation across the SOC and partner SOC environments.
- Serve as the shift escalation point for complex or high-severity events raised by Tier I and Tier II analysts, and analyze them within 4 hours per contract SLA.
- Maintain situational awareness of SOC tools and telemetry, including SIEM, SOAR, EDR, NDR, and CDM data flows, and alert the SOC Manager when tool health or coverage gaps put detection at risk.
- Lead shift handovers, providing incoming analysts with a written and verbal summary of open incidents, active hunts, tuning changes, and outstanding follow-up items.
- Contribute to SOC standard operating procedure and playbook updates, with revisions reviewed at least semi-annually and refreshed sooner when new threats, tools, or gaps require it; major changes…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).