SOC Analyst - Tier 2

FiservBerkeley Heights, NJ
$90,000 - $158,400Onsite

About The Position

This role is a Tier 2 Security Operations Center (SOC) analyst position on Fiserv's Cyber Threat Management team, serving as an escalation point when a routine security event becomes a true incident. This is a regular Monday–Friday, 9:00 a.m.–5:00 p.m. role, with occasional on-call work. You'll bring hands-on EDR/incident response experience, step in as incident commander to coordinate cross-functional response, communicate clearly with everyone from application teams to executives, and mentor Tier 1 analysts using real incidents as teaching moments.

Requirements

  • Approximately 5+ years of hands-on SOC or incident response experience, including working with EDR tools – CrowdStrike experience preferred, though comparable tool experience is acceptable.
  • Demonstrated experience serving as an incident lead or commander, including remediation, containment, and stakeholder communication during active incidents.
  • Strong communication skills, with the ability to work diplomatically with other teams, executives, and application managers while taking charge and assigning responsibilities.
  • Ability to write clear after-action reports and summaries tailored to technical and non-technical audiences.
  • Demonstrated ability to mentor or coach junior analysts on both technical methods and soft skills.
  • Ability to perform under pressure, take charge of a situation, and make sound decisions with incomplete information.
  • A collaborative mindset with genuine curiosity about cybersecurity fundamentals, adversaries, threats, and their potential impact on the environment.
  • Willingness to participate in occasional on-call coverage outside of standard business hours.

Nice To Haves

  • Recent or in-progress cybersecurity certifications such as Security+, CISSP, or SANS credentials.
  • Active engagement with the cybersecurity community, signaling curiosity and ongoing learning about current threats.
  • Experience crafting Splunk queries or similar SIEM searches to support investigations and mentoring.
  • Prior experience partnering with a globally distributed SOC or incident response team.
  • Familiarity with additional EDR/XDR, SIEM, or SOAR platforms beyond CrowdStrike.

Responsibilities

  • Act as incident commander when an event is escalated to a true incident, coordinating with application and cybersecurity teams to contain issues such as removing an unauthorized user from a server or isolating malware.
  • Assess and triage incoming alerts, distinguish routine events from incidents, develop hypotheses on how incidents occurred, and provide direction during incident bridges.
  • Communicate diplomatically with application managers, executives, and cross-functional stakeholders during high-pressure incidents, tailoring the level of technical detail to each audience.
  • Write after-action reports and incident summaries for audiences ranging from executives and sales to technical and management teams.
  • Mentor Tier 1 SOC analysts using completed incidents as case studies, covering both soft skills (e.g., calming an application team) and technical methods (e.g., crafting Splunk queries).
  • Use CrowdStrike and comparable EDR platforms to contain network assets, remotely access affected systems, and collect system information during investigations.
  • Participate in occasional on-call coverage, keeping your phone nearby to be engaged first when an incident occurs outside of standard business hours.
  • Build rapport quickly with incident participants and partner effectively with application teams, executives, and other cybersecurity functions.

Benefits

  • Annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service