SOC Analyst
Listed on 2026-07-29
-
IT/Tech
Cybersecurity, Network Security
JAB Recruitment is seeking a SOC (Security Operations Center) Analyst on behalf of our client, a leading LNG company on the Texas Gulf Coast. This is an excellent opportunity for an early-career cybersecurity professional who enjoys identifying threats, investigating security events, and helping protect critical infrastructure.
The SOC Analyst will support day-to-day cybersecurity operations by monitoring security alerts, investigating potential threats, and assisting with incident response activities across enterprise technology environments. The ideal candidate has experience working in a Security Operations Center (SOC) and possesses strong analytical and problem-solving skills.
Key Responsibilities
- Monitor security alerts generated by SIEM, EDR, IDS/IPS, and other cybersecurity monitoring tools.
- Investigate, triage, and validate security events to identify potential threats and indicators of compromise.
- Assist with cybersecurity incident response activities, including documentation, escalation, and remediation support.
- Analyze system logs, network traffic, and endpoint activity to identify suspicious behavior.
- Collaborate with IT Infrastructure, Network, and Cybersecurity teams to investigate and resolve security incidents.
- Document investigations, response actions, and lessons learned in accordance with established procedures.
- Help improve security monitoring capabilities by identifying opportunities to enhance detection rules and alert quality.
- Maintain awareness of emerging cyber threats, vulnerabilities, and industry best practices.
- Support vulnerability management, threat intelligence, and continuous improvement initiatives as assigned.
- Participate in after-hours incident response activities when required.
Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related technical discipline preferred.
- Approximately 2-5 years of experience in a Security Operations Center (SOC), Cybersecurity Operations, Information Security, or related technical role.
- Experience monitoring and responding to cybersecurity events using SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or similar technologies.
- Familiarity with Endpoint Detection and Response (EDR) tools such as Crowd Strike, Microsoft Defender, Carbon Black, or Sentinel One.
- Understanding of networking fundamentals including TCP/IP, DNS, VPNs, firewalls, and common network protocols.
- Knowledge of cybersecurity concepts including malware, phishing, ransomware, vulnerability management, and incident response.
- Experience analyzing Windows and Linux system logs is preferred.
- Familiarity with cloud security concepts (Azure, AWS, or Microsoft 365) is a plus.
- Excellent analytical, troubleshooting, and documentation skills.
- Strong communication skills with the ability to work effectively across technical and business teams.
Preferred Certifications
Candidates with one or more of the following certifications are encouraged to apply:
- CompTIA Security+
- CySA+
- GSEC
- GCIH
- Splunk Core Certified User
- Microsoft Security Certifications
- GIAC Certifications
- Experience supporting industrial, manufacturing, energy, utility, or operational technology (OT/ICS) environments is highly desirable but not required.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).