Security Operations Center Analyst, Senior

Booz Allen HamiltonUsa, MD

About The Position

Join a team of advanced cybersecurity analysts working to protect the systems that support one of the world’s most critical hubs for global trade and supply chain operations. As a Tier III SOC Analyst and Shift Lead, you’ll combine deep technical expertise with operational leadership in a 24×7 Security Operations Center. You’ll hunt for advanced threats, lead complex incident investigations, analyze suspicious activity, and continuously improve detection capabilities using Microsoft Sentinel, KQL, threat intelligence, and other security technologies. You’ll also lead SOC operations during your assigned shift, serving as the senior technical escalation point for other analysts and helping ensure incidents are effectively investigated, prioritized, communicated, and handed off between teams. You’ll work across cybersecurity, cloud, network, and operational technology environments and collaborate directly with technical SMEs and client stakeholders. This is an opportunity to apply advanced cybersecurity skills to a mission where cyber resilience directly supports operational continuity and global commerce. We’re looking for someone who can think like an adversary, lead through complex situations, communicate clearly, and help continuously improve how the SOC detects and responds to threats.

Requirements

  • 8+ years of experience with cybersecurity including SOC operations, incident response, threat hunting, or detection engineering
  • Experience with Microsoft Sentinel and KQL
  • Experience with SIEM detection engineering, tuning, and security investigations
  • Experience with scripting languages such as Python
  • Experience providing technical leadership or mentoring cybersecurity analysts
  • Knowledge of malware analysis, digital forensics, networking, and cloud security concepts
  • Knowledge of MITRE ATT&CK, NIST SP 800-53, and NIST SP 800-82
  • Ability to communicate technical findings to technical and non-technical stakeholders
  • Secret clearance
  • HS diploma or GED

Nice To Haves

  • Experience supporting critical infrastructure, operational technology, or industrial control system environments
  • Experience with Red Canary or comparable MDR capabilities
  • Microsoft Certification such as Security Operations Analyst Associate, GCIH, GSOC, GICSP, GRID, GCIA, CCNA, or CISSP Certification

Responsibilities

  • Hunt for advanced threats
  • Lead complex incident investigations
  • Analyze suspicious activity
  • Continuously improve detection capabilities using Microsoft Sentinel, KQL, threat intelligence, and other security technologies
  • Lead SOC operations during assigned shifts
  • Serve as the senior technical escalation point for other analysts
  • Ensure incidents are effectively investigated, prioritized, communicated, and handed off between teams
  • Work across cybersecurity, cloud, network, and operational technology environments
  • Collaborate directly with technical SMEs and client stakeholders

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service