Security Operations Center (SOC) Analyst

LeidosShiloh, IL
$87,100 - $157,450Onsite

About The Position

We are seeking proactive defenders for a critical role safeguarding the nation's most sensitive digital landscapes. As a Security Operations Center (SOC) Analyst on our 24x7 front-line security operations team, you will be directly responsible for defending mission environments against the world's sophisticated and persistent cyber threats. This role demands exceptional critical thinking, a deep-seated adversary mindset, and a self-motivated drive to excel in a high-stakes mission.

Requirements

  • Must have an active DoD Top Secret security clearance.
  • Current DoD 8570 IAT Level II (or higher) certification, such as CompTIA Security+ CE, ISC2 SSCP, or SANS GSEC (or equivalent 8140 requirements).
  • Ability to obtain a DoD 8570 CSSP-Analyst level certification (e.g., CEH, CySA+, GCIA, or equivalent) within 180 days of hire.
  • Solid foundation in networking principles, including packet analysis, common ports/protocols, traffic flow, the OSI model, and defense-in-depth architecture.
  • Bachelor's degree and 4+ years of relevant experience (Equivalent professional work or military experience will be considered in lieu of a degree)
  • Commutable distance (within 2 hours) or ability to self-relocate to Scott AFB, IL.

Nice To Haves

  • Prior experience working within a TS/SCI operational environment, DISA, or other specialized DoD agencies.
  • Experience applying intelligence-driven defense strategies utilizing the MITRE ATT&CK or Cyber Kill Chain frameworks against known APT intrusion sets.
  • In-depth experience utilizing SIEM/SOAR platforms to perform behavioral and statistical analysis across multiple log types within a classified network.
  • Knowledge or experience in defending classified cloud environments (e.g., AWS Secret/Top Secret, Azure Government Secret/Top Secret).
  • Basic scripting and programming skills (e.g., Python, PowerShell) to automate routine analytical tasks.

Responsibilities

  • Conduct investigation and triage of security alerts from endpoints, IDS/IPS, NetFlow, and custom sensors to identify and neutralize threats within our mission spaces.
  • Perform deep-dive analysis of extensive, highly-classified log files, pivoting between disparate datasets and correlating evidence to support complex incident investigations against nation-state actors.
  • Produce detailed technical findings and reports for high-level stakeholders, documenting adversary tactics, techniques, and procedures (TTPs).
  • Integrate and operationalize highly-classified threat intelligence feeds and Indicators of Compromise (IOCs) into security sensors and SIEM platforms.
  • Collaborate closely with specialized incident response teams and ensure timely, precise communication of security incidents to mission partners.

Benefits

  • Predictable Work-Life Balance
  • Shift Options to Fit Your Lifestyle
  • Flexibility in shift preferences
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service