Security Operations Center Analyst

Booz Allen HamiltonColumbia, MD
Remote

About The Position

The Security Operations Center Analyst role is a strategic position in cyber defense for U.S. Cyber Command, focused on protecting critical warfighter infrastructure from cyber threats. This role utilizes extensive threat analysis skills to perform advanced threat identification and complex incident response. The analyst will examine logs, forensic data, and threat intelligence to detect advanced threats that evade standard detection methods. By leveraging a deep understanding of customer networks and cybersecurity experience, the analyst will analyze patterns to understand attacker goals and prevent their success. The position involves identifying adversaries in the SIEM's blind spots and advising on network hardening strategies.

Requirements

  • Experience with SIEM Fundamentals, including Splunk
  • Knowledge of basic networking fundamentals
  • Knowledge of the basic functions and configurations of Bro or Zeek
  • Knowledge of Suricata or Snort
  • Ability to review Nessus scans and Firewall configurations
  • Ability to review Linux hosts for indicators of compromise and hardening of Linux systems
  • Ability to navigate nix-based systems via CLI
  • Ability to find, read, and analyze various logs
  • TS/SCI clearance with a polygraph
  • HS diploma or GED and 6+ years of experience with incident response procedures and analysis, OR Bachelor's degree and 2+ years of experience with incident response procedures and analysis

Nice To Haves

  • Experience with correlating threat intelligence to determine the threat actor, the attack's scope, and the affected systems
  • Experience with AI Fundamentals
  • Knowledge of Splunk Phantom or SOAR

Responsibilities

  • Analyze logs, forensic data, and threat intelligence to find advanced threats.
  • Perform advanced threat identification and complex incident response.
  • Analyze patterns to understand attackers' goals and stop them from succeeding.
  • Advise on ways to close gaps and harden networks.
  • Review Nessus scans and Firewall configurations.
  • Review Linux hosts for indicators of compromise and hardening of Linux systems.
  • Navigate nix-based systems via CLI.
  • Find, read, and analyze various logs.

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service