SOC Analyst

S R InternationalHarrisburg, PA
Onsite

About The Position

The SOC Analyst 2 performs event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of the Commonwealth’s information technology assets through prompt and accurate threat handling, while also identifying and closing security gaps through detection engineering, threat hunting, intelligence gathering, and investigation, thereby contributing to the continuous improvement of network and security monitoring. This role involves ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems. The analyst will capture, log, and respond to events from various communication and security systems, ensuring accurate documentation. They will perform security investigations for escalated alerts, determine the full scope, root cause, and potential impact of security incidents, and contribute to the improvement of established playbooks and SOPs. Documentation of security incidents and responses is crucial, as is the analysis of advanced logs, network captures, and endpoint telemetry to identify malicious activity and indicators of compromise (IOCs). The role includes conducting initial threat hunting, tuning and optimizing detection rules and alerts, and participating in root cause analysis sessions. Monitoring external event sources for security intelligence and providing incident response support are also key responsibilities. The position requires flexibility to work various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.

Requirements

  • Create queries, reports and scripts leveraging current security coding and SIEM query languages
  • Prioritize tasks effectively.
  • Working knowledge of troubleshooting tools (software)
  • Analyze and interpret various information
  • Selected candidates will be required to work full-time, onsite at 1 Technology Park | Harrisburg, PA 17110.

Nice To Haves

  • security coding
  • SIEM query languages
  • troubleshooting tools
  • Analyze and interpret
  • Prioritize tasks

Responsibilities

  • Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
  • Capture, log, and respond to events received from email, chat, telecommunication systems, and other security systems, ensuring accurate documentation of incoming data.
  • Perform security investigation for alerts escalated within the Security Operation Center, determining full scope, potential root cause, and potential impact.
  • Follow, create, and improve established playbooks and SOPs used by the SOC.
  • Document security incidents, responses, and related information in accordance with established procedures.
  • Analyze advanced logs, network capture, end-point telemetry to identify malicious activity and indicators of compromise (IOCs).
  • Conduct initial threat hunting to proactively identify security anomalies and adversary activity.
  • Conduct tuning and optimization of existing detection rules, alerts, and correlation logic to reduce false positives and improve detection fidelity.
  • Participate in root cause analysis or lessons learned sessions.
  • Monitor external event sources for security intelligence and actionable incidents.
  • Provide incident response support as needed and directed during network and security events providing support for incident resolution.
  • Maintain flexibility to work in various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.
  • Performs other related duties as required.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service