SOC Tier One Analyst

Strategic Operational Solutions•Fort Liberty, NC
•Onsite

About The Position

Strategic Operational Solutions (STOPSO) is seeking a SOC Tier 1 Analyst to support the U.S. Army Reserve Command (USARC) Defensive Cyberspace Operations Mission Support Services (DCOMSS) program at Fort Bragg, North Carolina. Monitor cyber defense telemetry during assigned watches, triage alerts, document incidents, and escalate activity that requires deeper investigation. This is the first tier of the DCOMSS security operations workflow.

Requirements

  • Minimum 1 years of documented relevant experience. Relevant cyber defense or network security monitoring experience; SIEM triage, network traffic analysis, accurate incident records, and shift handoff.
  • DoD Cyber Workforce Framework (DCWF) 511, Cyber Defense Analyst. Recruit for Intermediate proficiency; Basic eligibility is subject to Government confirmation for this position.
  • Meet DoDM 8140.03 qualification requirements for every assigned work role and proficiency through an approved education, training, certification, or authorized experience route before independent cyber work. Document work-role appointment and qualification; maintain required residential qualification and continuing learning. A higher-level approved option may qualify the same role at a lower level.
  • Current matrix-listed certification options for 511 Intermediate: CEH(P), Cloud+, FITSP-O, GCED, GDSA, GMON, GRID, GSEC, PenTest+, Security+.
  • Demonstrated knowledge of SIEM monitoring, alert triage, network traffic fundamentals, incident documentation, and escalation procedures.
  • Proficiency with SIEM, IDS/IPS, EDR, packet or network analysis tools, and Windows and Linux systems appropriate to assigned duties and approved access.
  • Ability to produce accurate records, explain findings and decisions, and follow approved procedures and security requirements.
  • Strong written and verbal communication skills and sound judgment when coordinating with technical staff and Government stakeholders.
  • Strong organizational skills, confidentiality, and ability to work independently and collaboratively in a mission-focused environment.

Nice To Haves

  • Experience in a 24/7 security operations center or DoD network environment.
  • Relevant DoD or enterprise IT experience with mission tooling and operational reporting.

Responsibilities

  • Monitor SIEM alerts, sensor events, host detections, and approved watch queues for suspicious activity.
  • Triage events using approved playbooks, correlate basic evidence, and distinguish actionable activity from false positives.
  • Create accurate tickets, identify applicable incident categories, preserve supporting artifacts, and maintain timely status updates.
  • Escalate events to Tier 2 under documented thresholds and communicate context during shift handoffs.
  • Follow approved response procedures and maintain records needed for operational reporting and quality review.
  • Support exercises and surge work within assigned qualification, system access, and authority.
  • Perform other duties as assigned consistent with the position's responsibilities, qualifications, clearance, and authorized scope.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service