Tier 1 SOC Analyst
Listed on 2026-08-16
-
IT/Tech
Cybersecurity, Security Management & Operations
Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.
Dragonfli is hiring a Tier 1 SOC Analyst to join our overnight security operations team. In this role, you will monitor SIEM alerting (Microsoft Sentinel or Splunk) and EDR detections across client tenants, triage events against established runbooks, and elevate through a clear, documented path. You will track and validate vulnerability findings, keep auditable ticket notes and shift logs, and help flag detection gaps and tuning opportunities.
This position is well suited to candidates with 0–2 years of security operations or IT experience who are ready to build a strong foundation in SOC monitoring and incident triage.
This is a contract position involving a large commercial enterprise in the transportation/logistics (critical infrastructure) sector. Candidates with previous consulting or contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.
Responsibilities:
- Monitor SIEM alerting (for example Microsoft Sentinel or Splunk) and triage events by severity against established runbooks
- Review and action endpoint detection and response (EDR) alerts across client tenants
- Track and validate vulnerability findings (Tenable) and route them into the correct workflow
- Escalate incidents through the defined path with clear, documented handoffs
- Open, update, and close tickets with accurate, auditable notes, and maintain clean shift logs
- Communicate clearly with clients and the on-call lead during overnight events
- Follow and help improve standard operating procedures, and flag detection gaps and tuning opportunities
- Support monthly reporting with accurate event and response data
Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.
Dragonfli is hiring a Tier 1 SOC Analyst to join our overnight security operations team. In this role, you will monitor SIEM alerting (Microsoft Sentinel or Splunk) and EDR detections across client tenants, triage events against established runbooks, and elevate through a clear, documented path. You will track and validate vulnerability findings, keep auditable ticket notes and shift logs, and help flag detection gaps and tuning opportunities.
This position is well suited to candidates with 0–2 years of security operations or IT experience who are ready to build a strong foundation in SOC monitoring and incident triage.
This is a contract position involving a large commercial enterprise in the transportation/logistics (critical infrastructure) sector. Candidates with previous consulting or contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.
Responsibilities:
- Monitor SIEM alerting (for example Microsoft Sentinel or Splunk) and triage events by severity against established runbooks
- Review and action endpoint detection and response (EDR) alerts across client tenants
- Track and validate vulnerability findings (Tenable) and route them into the correct workflow
- Escalate incidents through the defined path with clear, documented handoffs
- Open, update, and close tickets with accurate, auditable notes, and maintain clean shift logs
- Communicate clearly with clients and the on-call lead during overnight events
- Follow and help improve standard operating procedures, and flag detection gaps and tuning opportunities
- Support monthly reporting with accurate event and response data
Must‑Have:
- Ability to pass a drug screening and a full background investigation, including verification of references, employment history, education, and certifications
- 0–2 years of experience in…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).