×
Register Here to Apply for Jobs or Post Jobs. X

Tier 2 Security Operations Center; SOC) Analyst

Job in Seaside, Monterey County, California, 93955, USA
Listing for: Leidos Inc
Full Time position
Listed on 2026-09-06
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations, Network Security, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 87000 - 157000 USD Yearly USD 87000.00 157000.00 YEAR
Job Description & How to Apply Below
Position: Tier 2 Security Operations Center (SOC) Analyst

Description

Leidos is seeking an experienced Tier 2 Security Operations Center (SOC) Analyst to support the Defense Manpower Data Center (DMDC)
CyberPRIMESprogram. Leidos is a major partner on the contract and will provide a substantialportionof the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC.

The Tier 2 SOC Analyst will perform advanced analysis of cybersecurity events escalated from Tier 1 oridentifiedthrough enterprise monitoring capabilities. This position will correlate security data, determine the scope and potential impact of suspicious activity, support incident triage and containment, preserve evidence, and coordinate with incident responders and other cybersecurity teams to protect DHRA systems and networks.

Work Locations:
  • Mark Center, Alexandria, Virginia - 3 positions
  • Department of Defense Center - Monterey Bay, Seaside, California - 3 positions

Clearance:
Active Secret security clearance required at time of consideration. U.S. Citizen is a must.

Mission Environment

DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense's largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data. The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS).

The Tier 2 SOC Analystsoperatewithin a 24x7 security operations environment responsible for detecting, analyzing, escalating, and supporting response to cybersecurity activity affecting DHRA systems and networks. Tier 2 analysts provide the deeper technical analysisrequiredwhen events cannot be resolved throughinitial

Tier 1 triage.

Primary Responsibilities:
  • Perform advanced analysis of cybersecurity events escalated from Tier 1 analysts oridentifiedthrough endpoint, user-activity, network, and other enterprise monitoring capabilities.
  • Correlate alerts, security telemetry, and supporting technical data todeterminethe nature, scope, severity, and potential impact of cybersecurity activity.
  • Distinguish legitimate activity, false positives, policy violations, suspicious behavior, and potential cybersecurity incidents.
  • Determine appropriate nextactions based on approved SOC procedures, playbooks, and escalation criteria.
  • Recommend orinitiateauthorized actions tocontainor mitigateidentifiedthreats.
  • Support cybersecurity incident triage, escalation, and containment in coordination with the incident-response team.
  • Preserve relevant technical evidence and supporting information required for further investigation and incident response.
  • Document investigative actions, analysis, findings, and conclusions in Government-approved systems.
  • Maintain complete andaccurateevent records, tickets, timelines, and supporting evidence.
  • Contribute to required SOC event reporting and operational status information.
  • Perform Tier 2 troubleshooting of cybersecurity tools, alerts, security data, and related technical issues.
  • Use approved Commercial-Off-The-Shelf (COTS) security-analysis tools to investigate cybersecurity events.
  • Support security testing, mitigation activities, and cybersecurity compliance checking as required by SOC operations.
  • Coordinate analysis with incident responders, network engineers, endpoint-security personnel, cybersecurity-tool teams, system administrators, and other cybersecurity stakeholders.
  • Identify recurring false positives, detection gaps, or ineffective alerting and recommend improvements tomonitoringand detection capabilities.
  • Support tuning of cybersecurity monitoring capabilities to improve detection accuracy and analyst effectiveness.
  • Contribute to SOC procedure, playbook, and process improvements based on operational experience and lessons learned.
  • Support knowledge transfer across SOC analysts to improve consistent…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary