{"id":2097102,"url":"https://alion.io/job/peraton-soc-analyst","title":"SOC Analyst","company":{"id":722,"name":"Peraton","domain":"peraton.com","url":"https://alion.io/company/peraton","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"iCIMS","truth_index":{"grade":"A","score":100,"open_postings":10,"ghost_share":0,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":6,"computed_at":"2026-10-09T06:01:00Z"}},"role":"Security","role_family":"Security","seniority":"junior","employment_type":null,"work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"board_field","remote_working_hours":{"label":"EST","utc_offset_min":-5,"utc_offset_max":-5},"hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":["US"],"hiring_countries_total":1,"salary":{"min":80000,"max":128000,"currency":"USD","period":"year","gross":null,"usd_annual":128000},"salary_estimate":null,"experience_years_min":2,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Microsoft Sentinel","optional":false},{"name":"SIEM","optional":false},{"name":"Splunk","optional":false},{"name":"TCP/IP","optional":false},{"name":"MITRE ATT&CK","optional":true},{"name":"Windows","optional":true}],"status":"live","first_seen_at":"2026-10-08T17:12:43Z","employer_posted_date":"2026-10-08","last_verified_at":"2026-10-09T22:54:06Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"Responsibilities\nPeraton is seeking a SOC Analyst to join our team of qualified and diverse individuals on our Department of State (DOS) Bureau of Diplomatic Technology (DT) Consular Affairs Enterprise Infrastructure Operations (CAEIO) program. CAEIO provides IT Operations and Maintenance to modernize the legacy networks, applications, and databases supporting consular applications and services globally.\nCore Work Schedule: Third shift: 11:00PM - 7:30AM EST, Thursday - Monday\nLocation: This position is fully remote; however, preference will be given to candidates local to the Washington, DC, metropolitan area (DMV) for occasional onsite meetings, training sessions, or customer support activities at the Washington, DC, customer location or the Peraton office in Sterling, VA.The number of days the SOC Analyst works on-site in Washington, DC, or Sterling, VA, is subject to change based on government/program requirements (for example, surge support might require the individual to be in the office five days per week).\nDay-to-Day Responsibilities:\nMonitor and investigate security alerts, perform threat hunting, and notify designated managers, cyber incident responders, and cybersecurity service provider personnel of suspected incidents. Clearly articulate event history, status, and potential impact in accordance with the organization’s cyber incident response plan.\nAnalyze and characterize network traffic to identify anomalous activity and potential threats to network resources.\nCreate advanced ad hoc SPL queries.\nCoordinate with internal and external teams to investigate threats, assess risks, and conduct forensic analysis.\nReview and analyze log files from various sources (host logs, network traffic logs, firewall logs, IDS logs) to identify potential security threats.\nUtilize SIEM and EDR tools to monitor the operational environment.\nDevelop and document configuration standards, policies, and procedures to operate, manage, and secure system infrastructure.\nAdvise management and team members on technology risks and recommend mitigation strategies.\nEngage with multiple levels of management, providing technical expertise and thought leadership.\nPrepare reports detailing investigations, incidents, and other security-related activities.\nIdentify and classify attack tactics and techniques.\nRecommend and implement enhancements to improve system performance, security, and reliability.\nBuild and refine SOC processes and procedures, including documenting work in SOPs.\nTrain and mentor junior SOC team members.\nPlan and execute SOC-related projects and initiatives.\nCommunicate clearly and professionally with managers and colleagues.\nDemonstrate flexibility and an eagerness to take on additional responsibilities as needed.\nQualifications\nBasic Qualifications:\nBachelors degree and 2 years of experience or an Associates degree and 4 years of experience or a High School diploma/equivalent and 6 years of experience.\nU.S. citizenship and an active SECRET security clearance\n2+ years of cybersecurity, SOC, or systems security experience in a federal government environment supporting business critical, high availability systems.\n2+ years of SOC or cybersecurity related experience.\nExperience working with a SIEM platform, preferably Splunk.\nExperience using Splunk dashboards and Microsoft Sentinel for security monitoring and analysis.\nExperience querying and analyzing security data, including SPL, with a working understanding of data types, conditions, and regular expressions.\nWorking knowledge of system, network, and application security threats and vulnerabilities, with the ability to support the development and improvement of monitoring solutions.\nUnderstanding of Boolean logic and event correlation.\nExperience identifying logging and monitoring gaps and supporting efforts to improve security monitoring.\nWorking knowledge of cybersecurity incidents, anomaly analysis, log analysis, digital forensics, and common threat vectors.\nUnderstanding of TCP/IP, UDP, network ports, protocols, and traffic flow.\nSecurity+ CE or other DoD 8570 IAT Level II certification.\nFamiliarity with cybersecurity frameworks and specifications, including RMF and NIST standards, such as NIST SP 800-53.\nFamiliarity frameworks and specifications, including RMF and NIST standards (e.g., NIST SP 800-53)\n\nPreferred Qualifications:\nExperience with Splunk data normalization (field aliases, calculated fields, field extractions)\nSplunk Power User certification or higher\nExperience tracking incidents using the MITRE ATT&CK framework\nKnowledge of cloud security\nExperience with system administration, networking, and operating system hardening techniques\nMixed OS experience (Linux, Windows)\nExperience troubleshooting storage-related issues\nScripting or coding experience\nKnowledge of Web Application Firewall (WAF) security features\nPeraton Overview\nPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.\nTarget Salary Range\n$80,000 - $128,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEO\nEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.","description_format":"text","description_chars":6330,"description_truncated":false,"requirements":{"experience_years_min":2,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"high_school","optional":false},"security_clearance":true,"languages":[]},"benefits":[],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Incident Response","Cybersecurity","National Security","Homeland Security"],"lifecycle":[{"event":"open","at":"2026-10-08T17:12:43Z"}],"visa":[],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":0,"expected_fill_days":6,"reasons":["conf:2","velocity","win:early","comp:junior,brand"],"computed_at":"2026-10-09T06:01:00Z"},"pay":{"stated_usd_annual":128000,"is_top_pay":true},"html_url":"https://alion.io/job/peraton-soc-analyst","json_url":"https://alion.io/job/peraton-soc-analyst.json","meta":{"generated_at":"2026-10-10T00:11:32Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":207,"day_limit":5000,"remaining_today":4793,"minute_limit":60,"resets_at":"2026-10-11T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":722},"rest":"https://alion.io/mcp/rest/get_company?id=722"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fperaton-soc-analyst"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fperaton-soc-analyst"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fperaton-soc-analyst"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/peraton-soc-analyst\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fperaton-soc-analyst"}]}