SOC Analyst
Washington, DC
Category: Security
Industry: Government
Reference ID: JN -062026-107227
Date Posted: 06/02/2026
Shortcut: http://careers.eliassen.com/ghGP2J
Description:
Hybrid 2 Days Onsite/3 Days Remote in Washington, DC
Our client seeks a SOC Analyst to support continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid cloud and on-premises environments. The analyst will triage security alerts, investigate incidents, and ensure timely escalation and resolution aligned to incident response procedures. The role operates within a modern enterprise leveraging Splunk, Microsoft Sentinel, Microsoft Defender, and related platforms across M365 G5, cloud services, and enterprise applications. The position supports a 24x7 SOC model and partners with infrastructure, cloud, and application teams.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $50.00 to $55.00/hr. w2
Responsibilities:
- Monitor security events and alerts generated by SIEM, EDR/XDR, and other security platforms.
- Perform initial triage and analysis of alerts to determine severity, impact, and required response actions.
- Identify false positives versus legitimate threats using defined use cases and threat intelligence.
- Create, update, and manage incident tickets in systems such as Jira.
- Escalate confirmed or high-risk incidents to appropriate Tier 2/3 analysts or incident response teams.
- Support containment, eradication, and recovery efforts in coordination with cybersecurity teams.
- Utilize Splunk and Microsoft Sentinel for log analysis, correlation, and event investigation.
- Assist in tuning SIEM alerts and dashboards to improve detection capabilities and reduce noise.
- Contribute to log onboarding, data normalization, and use case development.
- Analyze alerts from EDR/XDR solutions such as Microsoft Defender.
- Monitor identity-related risks across platforms including Okta, Entra ID, and Privileged Identity Management.
- Investigate suspicious authentication patterns, privilege escalations, and anomalous behavior.
- Review and support findings from vulnerability management tools such as Rapid7 InsightVM and Veracode.
- Validate and correlate vulnerabilities with active threats or incidents and coordinate remediation tracking.
- Document incident details, investigation steps, and resolution actions per security policies.
- Maintain accurate reporting within ticketing and knowledge management systems such as Jira and Confluence.
- Contribute to incident reports, after-action reviews, and audit artifacts.
Experience Requirements:
- Hands-on experience with security monitoring and alert triage.
- Experience with incident ticketing, tracking, and escalation processes.
- Proficiency with SIEM platforms such as Splunk and/or Microsoft Sentinel.
- Experience with EDR/XDR tools, including Microsoft Defender.
- Experience with security event documentation and reporting.
- Familiarity with enterprise IT environments spanning on-premises and cloud infrastructures.
- Preferred: Experience with Microsoft 365 G5, Okta, Entra ID, CyberArk, Rapid7 InsightVM, Device42, and Veracode.
- Preferred: Exposure to AWS, hybrid architectures, GRC tools such as Xacta, and enterprise platforms such as Appian or Oracle.
- Preferred: Experience working with formal incident response frameworks and playbooks.
Education Requirements:
- Bachelor’s degree in Cybersecurity, Information Technology, or related field, or equivalent experience.
- Relevant certifications such as CompTIA Security+, GIAC (GSEC, GCIA, etc.), or Microsoft Security certifications.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact fraud@eliassen.com.
-
Automation / SOAR Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks an Automation / SOAR Engineer to design, develop, and implement automation solutions within a federal cybersecurity operations environment. The role focuses on building ...
Date Posted: 06/02/2026 Recommended
-
SIEM Engineer
Washington, DC
Description:Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SIEM Engineer to support enterprise security monitoring, detection engineering, and log management within a federal SOC environment. The role administers SIEM platforms...
Date Posted: 06/02/2026 Recommended
-
Tier 2 Senior Cyber Security Analyst
Tustin, CA
Description: Santa Ana, CA | Onsite at OC Data Center Our client seeks a Tier 2 Senior Cyber Security Analyst to support a 24x7x365 Security Operations Center. The analyst will create, tune, monitor, and investigate SIEM alerts and support incident res...
Date Posted: 06/19/2026 Recommended
-
Lead Cybersecurity Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Cybersecurity Engineer to design and implement enterprise security solutions across a hybrid federal environment. The role will lead engineering initiatives spann...
Date Posted: 06/04/2026 Recommended
-
SOC/NOC Operations Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC/NOC Operations Manager to lead 24x7 cybersecurity and network operations within a complex federal enterprise environment. The manager will oversee security and net...
Date Posted: 06/02/2026 Recommended
-
Cyber Digital Forensics Analyst
Orange County, CA
Description: On-site in Orange County, CA Our client seeks a Cyber Digital Forensics Analyst to support a 24x7x365 Security Operations Center. The analyst will conduct digital media forensics, contribute to incident response, maintain and enhance the S...
Date Posted: 06/21/2026 Recommended
-
Cybersecurity Firewall Analyst
Charlotte, NC
Description: Hybrid 3 on in Charlotte, NC Our client seeks a Cybersecurity Firewall Analyst to support next-generation firewall administration, operations, and policy governance across enterprise and regulated environments. The role includes incident r...
Date Posted: 06/20/2026 Recommended
-
Senior Cybersecurity Analyst
Anywhere
Description: Remote Our client seeks a Senior Cybersecurity Analyst to lead proactive defense, guide security architecture, and drive incident response and risk mitigation. The role manages and configures enterprise security tools while advancing best ...
Date Posted: 06/09/2026 Recommended
-
Sr. Site Reliability Engineer III
Washington dc, DC
Description: Onsite in Washington, DC our client seeks a Sr. Site Reliability Engineer III to design, automate, and operate mission-critical systems for federal environments. The role focuses on Kubernetes or VMWare platforms, CI/CD enablement, observa...
Date Posted: 06/10/2026 Recommended
-
NOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a NOC Analyst to support enterprise network and infrastructure monitoring within a 24x7 federal operations environment. The role encompasses real-time monitoring, event ...
Date Posted: 06/02/2026 Recommended
-
Sr. Solutions Architect III - Cyber
Washington, DC
Description: On-site in Washington, DC Our client seeks a Sr. Solutions Architect III - Cyber to design, implement, and manage scalable cybersecurity solutions across multiple domains. You will lead the implementation of a Security Operations Center an...
Date Posted: 06/17/2026 Recommended
-
Associate Network Security Engineer
Fenton Cary, NC
Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12‑month contract, with potential for permanent conversion, to support the Information Security organization. This role f...
Date Posted: 05/31/2026 Recommended
-
Sr. Software Engineer II
Washington dc, DC
Description:On-site in Washington, DC Our client seeks a Sr. Software Engineer II to design and manage enterprise endpoint security solutions across DoD and IC environments. The role requires deep expertise with Trellix and Windows/Linux systems, leade...
Date Posted: 06/01/2026 Recommended
-
Cybersecurity Architect
Orange, CA
Description:On-site in Orange, CA Our client seeks a Cybersecurity Architect to support the Orange County Sheriff’s Department. This role provides technical leadership for enterprise security architecture, safeguarding assets, systems, and data against...
Date Posted: 06/22/2026 Recommended
-
IAM/RBAC Engineer
New York, NY
Description: Hybrid 4 days onsite in either New York, NY or Pitt, PA or Lake Mary, FL Our client seeks an IAM/RBAC Engineer to design, implement, and administer access controls in Microsoft Entra ID and Azure RBAC. The contractor will enforce least-pri...
Date Posted: 06/23/2026 Recommended
-
Lead Software Engineer BaaS Team
Anywhere
Description: Remote Our client seeks a Lead Software Engineer for the BaaS team to support partner onboarding and platform enhancements. The role focuses on building scalable, secure, and high-performance systems that enable embedded financial services...
Date Posted: 06/11/2026 Recommended
-
Lead Privileged Access Management (PAM) Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Privileged Access Management (PAM) Engineer to design, implement, and operate enterprise PAM solutions across a complex federal hybrid cloud environment. The role...
Date Posted: 06/02/2026 Recommended
-
Tier II Helpdesk Specialist
Denver, CO
Description: On-site 5 days/week in Overland Park, KS Our client seeks a Tier II Helpdesk Specialist to provide onsite technical support for desktops, laptops, printers, peripherals, and core applications. The specialist will record, triage, and resolv...
Date Posted: 05/28/2026 Recommended
-
Senior Help Desk Technician
Washington, DC
Description: On-site 5 days/week in Washington, DC Our client seeks a Senior Help Desk Technician to deliver advanced frontline technical support across enterprise systems. The role supports end users with hardware, software, mobile devices, and cloud ...
Date Posted: 06/22/2026 Recommended
-
Tactical Network - Engineer
Fort Irwin, CA
Description: On-site in Fort Irwin, CA Our client seeks a Field Tactical Network Engineer to serve as a subject matter expert for Program Manager C2 Transport supporting PdM Network Modernization across At-the-Halt, On-the-Move, and SATCOM networks. Th...
Date Posted: 06/10/2026 Recommended
-
Senior Cloud/DevOps Engineer
Fort Meade, MD
Description: On-site in Fort Meade, MD Our client seeks a Senior Cloud/DevOps Engineer to design, automate, secure, and operate enterprise cloud and hybrid platforms in support of a DISA Citadel mission within a secure DoD environment. The role impleme...
Date Posted: 06/18/2026 Recommended
-
System Administrator - Mid
Cambridge, MA
Description: Hybrid 2 days/ WK in Cambridge, MA Our client seeks a System Administrator - Mid to support a federal program in Cambridge, MA. The role will manage day-to-day administration of Windows-centric infrastructure across on-prem and cloud envir...
Date Posted: 06/18/2026 Recommended
-
Security Engineer - Software 3
Tysons Corner, VA
Description: Hybrid 3 days onsite / 2 days remote in either Tysons Corner, VA or Rockville, MD Our client seeks a senior application security engineer to plan, coordinate, and implement application security practices across the software development lif...
Date Posted: 06/15/2026 Recommended
-
Tactical Network - Engineer
Colorado Springs, CO
Description: Onsite in Colorado Springs, CO Our client seeks a Field Tactical Network Engineer to serve as the focal point and subject matter expert for Program Manager C2 Transport efforts across PdM Network Modernization, At-the-Halt, On-the-Move, an...
Date Posted: 06/10/2026 Recommended
-
Senior Software Engineer - Risk Team
Los Angeles, CA
Description: Hybrid in Los Angeles, CA Our client seeks a Senior Software Engineer for the Risk Team to design and deliver scalable, secure, and resilient backend services supporting fraud detection, risk scoring, and compliance automation. The role re...
Date Posted: 06/10/2026 Recommended
-
Tactical Network - Engineer
Augusta, GA
Description: On-site in Augusta, GA Our client seeks a Tactical Network Engineer to serve as the focal point and subject matter expert for Program Manager C2 Transport supporting PdM Network Modernization, At-the-Halt, On-the-Move, and SATCOM networks....
Date Posted: 06/10/2026 Recommended
-
Insider Threat Analyst Lead
Washington, DC
Description: Hybrid in Washington, DC Our client seeks an Insider Threat Analyst Lead to support a federal cybersecurity program focused on identifying, analyzing, and mitigating insider threats. The lead will direct insider threat analysis efforts, le...
Date Posted: 06/03/2026 Recommended
-
Cloud Database Engineer
Westlake, TX
Description: On-site Every Other Week onsite / 5 days in Westlake, TX Our client seeks a Cloud Database Engineer to design, implement, and operate scalable, resilient, and secure database platforms supporting operational and analytical workloads. The r...
Date Posted: 06/17/2026 Recommended
-
Desktop Technician
Fort Totten, ND
Description: On-site in either Fort Totten, ND or Espanola, NM or Aberdeen, SD Our client seeks a Desktop Technician to support Department of the Interior/Indian Affairs users across enterprise environments. The role provides Tier II/III support, insta...
Date Posted: 05/25/2026 Recommended
-
Site Reliability Engineer
Westlake, TX
Description: Hybrid (50-75% on site) We are seeking a Site Reliability Engineer to join a large‑scale enterprise infrastructure organization within the financial services industry. This team is responsible for ensuring the reliability, scalability, and...
Date Posted: 05/28/2026 Recommended
Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Eliassen Group’s Affirmative Action Plan (AAP) is available for inspection by any employee or applicant for employment upon request, during normal business hours of Monday through Friday, 8:30am to 5:30pm EST. Interested persons should contact Phaedra Wells at pwells@eliassen.com for assistance. It is unlawful in Massachusetts and Maryland to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Applicants with disabilities that believe they require an accommodation or assistance with a position, please email our HR team at hradmin@eliassen.com. This email inbox is designed exclusively to assist job seekers whose disability prevents them from being able to apply online. Emails sent for other purposes will not receive a response.
Please be advised that a number of fraudulent job postings have been released under the Eliassen Group brand.
Unfortunately, fraudulent job postings can happen. If anyone reaches out to you about an open position connected with Eliassen Group, never provide personal or financial information to anyone who is not clearly associated with Eliassen Group
If anyone seemingly from Eliassen Group has ever requested this personal information in the past or does so in the future, please contact fraud@eliassen.com.
Please ensure that you are working directly with us by confirming the following:
- When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
- Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group, as indicated above