SOC Analyst
Hybrid in Richmond, VA, US • Posted 2 days ago • Updated 2 days ago

Triumph Services
Dice Job Match Score™
👤 Reviewing your profile...
Job Details
Skills
- Security
- cybersecurity
- SIEM
Summary
Incident Responder / SOC Analyst
Richmond, VA (ONSITE 3-4 days / week) - MUST BE IN RICHMOND, VA
ONGOING, Long Term Contract (Auto renew every 6 months)
An organization is seeking a skilled Incident Responder / SOC Analyst to support and enhance its cybersecurity operations. This role plays a critical part in protecting the confidentiality, integrity, and availability of sensitive systems and data.
The analyst will investigate cybersecurity threats, respond to incidents, and strengthen ongoing detection and response capabilities. Responsibilities align with Tier 1 and Tier 2 SOC functions under the NICE framework.
Key Responsibilities
Monitoring & Detection
- Monitor and triage alerts from SIEM, EDR, and NDR tools to identify and validate true security events.
- Conduct incident investigations, assessing severity, scope, and impact.
- Analyze attack telemetry and convert raw data into actionable threat intelligence.
Incident Response & Containment
- Coordinate with senior cybersecurity staff or advanced analysts on complex investigations requiring deeper forensic analysis or malware reverse engineering.
- Utilize threat intelligence sources—IOCs, updated detections, frameworks like MITRE ATT&CK, and relevant advisories—to strengthen detection capabilities.
- Assist in designing and implementing containment strategies, including device isolation, account lockdown, and segmentation.
- Support recovery activities to restore systems securely and prevent recurrence.
Operational Excellence
- Update and refine incident response playbooks, procedures, and documentation based on lessons learned.
- Assist with SIEM tuning, detection rule optimization, and reduction of false positives.
- Prepare detailed incident reports for stakeholders, ensuring clarity and completeness.
- Thoroughly document investigation steps, evidence, timestamps, and actions taken in case management systems.
- Collect and preserve digital evidence according to standard operating procedures.
- Manage ticketing workflows, ensuring SLA compliance and effective handoff between shifts.
- Collaborate with leadership and engineering teams to improve alert quality and operational efficiency.
Minimum Qualifications
Candidates must meet the following essential requirements:
- 2–5 years of experience in cybersecurity operations, incident response, or a SOC environment.
- Strong understanding of:
- Incident Response Lifecycle (e.g., NIST 800-61)
- Threat intelligence & IOC correlation
- Network protocols (TCP/IP, DNS, HTTP) and log analysis
- Proficiency with:
- SIEM platforms (Splunk, QRadar, Microsoft Sentinel, etc.)
- EDR tools (CrowdStrike, Microsoft Defender, Cisco Secure Endpoint, etc.)
- Threat intelligence platforms and IOC feeds
- Familiarity with incident handling concepts and identity management (Active Directory, Azure AD).
- Scripting experience using PowerShell or Python for automation and data parsing.
- Ability to contain and remediate incidents using established playbooks.
- Strong communication and documentation skills for technical and non-technical audiences.
Preferred Qualifications
These skills and credentials are not required but are highly desirable:
Education
- Bachelor’s degree in Cybersecurity, IT, Computer Science, or a related field.
Certifications (earned or in progress)
- CompTIA Security+, CySA+
- GIAC certifications (e.g., GCIA, GCIH, GCFA)
- CISSP (in progress acceptable)
- Microsoft security certifications (SC-900, SC-200)
- Splunk Core User or equivalent
Additional Experience
- SOAR automation for incident response workflows
- Packet capture and analysis (e.g., Wireshark)
- Cloud security concepts and tooling (Azure, AWS)
- Dice Id: 10408029
- Position Id: SC001
- Posted 2 days ago
Company Info
About Triumph Services
What sets us apart from other IT staffing agencies?
Our process, our values and our experience.
We ve spent the last 15 years crafting a process that integrates our core values quality, integrity, execution into everything we do.
When we deliver candidates, we re focused on quality over quantity that s why every candidate meets face-to-face with a senior partner at Triumph. Even simple tasks, like returning phone calls and emails, or providing accurate, honest feedback, are tackled with a strong sense of urgency and an unwavering commitment to our clients and candidates.
We might be biased, but we think these things are pretty important. And we think that s what makes Triumph stand out from the rest.
Successful Staffing. It s What Drives Us.
We understand. Some jobs are difficult to fill. And finding highly qualified candidates isn t any easier. That s why we take great satisfaction matching top candidates with great clients and challenging jobs. We accept each assignment and each candidate with the same high level of commitment reflecting our proven process and our steadfast values.
When a client tells us they ve chosen our candidate, we know we ve done our job well. And that s how we got our name. We feel that when we make a successful placement, it s a triumph for everyone involved.
At Triumph Services, we know our market. Our network of clients and candidates is second to none. Being able to tap into the best employees in the area is an invaluable asset one that enriches our client relationships.
We stand by the philosophy that our relationships are the most important part of our business. So we talk in depth to each candidates and have open conversations with every client.
Triumph Services is based in Richmond, Virginia, and the founding partners have more than 20 years of experience in the IT staffing industry.
If you d like to start a successful partnership with an honest, exceptional staffing agency, contact us.
Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs