Intermediate SOC Analyst (Fort Bragg, NC) in Fort Bragg, North Carolina at Akira Technologies Inc.
Explore Related Opportunities
Job Description
Akira Technologies is seeking an Intermediate SOC Analyst to support the U.S. Army Reserve Command (USARC) in cyberspace operations supporting Army and joint requirements. The Intermediate SOC Analyst will perform Tier 1 and Tier 2 Blue Team functions, including real-time security monitoring, event triage, incident documentation, initial investigation, and standardized response actions. The analyst will continuously review SIEM alerts, sensor events, and host-based detections during assigned watch shifts and escalate significant or complex events in accordance with established procedures.
This is an onsite position at Fort Bragg, NC supporting a mission-focused U.S. Army Reserve Command cyberspace operations environment. An active Secret clearance or higher is required.
Key Responsibilities
- Conduct continuous monitoring and review of SIEM alerts, network sensor events, host-based detections, and other security telemetry during assigned watch shifts.
- Perform initial event triage, determine event relevance and severity, create incident tickets, and assign appropriate CJCSM 6510.01B incident categories.
- Execute approved Tier 1 incident-response playbook actions in accordance with established SOPs.
- Escalate events meeting documented thresholds to Tier 2 personnel within established SOP timelines.
- Perform Tier 2 multi-source correlation across SIEM, EDR, NetFlow, PCAP, proxy, authentication, and other available telemetry to characterize event scope and potential impact.
- Analyze network, host, endpoint, and security-event data to identify suspicious or malicious activity.
- Recommend containment and eradication actions in coordination with the affected mission owner, Information System Security Officer (ISSO), and appropriate operational personnel.
- Manage assigned incident records through closure, ensuring accurate and timely documentation and currency within applicable ARCYBER operational portals.
- Conduct quality-control reviews of Tier 1 tickets prior to closure when performing Tier 2 responsibilities.
- Support incident investigation and response activities in accordance with established cybersecurity procedures and playbooks.
- Support development and refinement of event-triage processes, incident-response procedures, analytic scripts, and analyst playbooks.
- Participate in monthly DCO-specific internal training sessions.
- Contribute to the shared knowledge base of adversary tactics, techniques, and procedures (TTPs), troubleshooting guides, incident lessons learned, and analyst reference materials.
- Support cyberspace exercises, training events, and other operational activities as directed.
- Scale exercise and training support as required while maintaining steady-state operational coverage.
- Maintain effective shift turnover and communicate significant events, open incidents, pending actions, and operational concerns to incoming personnel.
- Identify and escalate significant cyber events through established notification and reporting procedures.
- Perform other SOC, Blue Team, and DCO support duties as required by the mission.
Required Qualifications
- DoD Manual 8140.03 qualification for DCWF Work Role 511, Cyber Defense Analyst, Intermediate.
- Active Secret security clearance at a minimum; TS/SCI eligibility/access where required by the assigned work role or supported network.
- Demonstrated experience working with SIEM platforms, host-based security solutions, and basic network traffic analysis.
- Experience performing security-event monitoring, alert triage, incident documentation, or related SOC activities.
- Familiarity with CJCSM 6510.01B incident categories and standard incident-response procedures.
- Ability to analyze and correlate information from multiple security data sources.
- Ability to follow established SOPs, playbooks, escalation procedures, and incident-response processes.
- Strong analytical, technical documentation, and communication skills.
- Ability to work effectively in a mission-focused, classified operational environment.
- Ability to work onsite at Fort Bragg, NC.
- Ability to work rotating shifts in a 24/7/365 operational environment.
Preferred Qualifications
- Experience supporting Army, Army Reserve, ARCYBER, or joint cyberspace operations.
- Experience working in a 24/7 Security Operations Center (SOC), Network Operations Center (NOC), or defensive cyberspace operations environment.
- Experience with Elastic, Splunk, Microsoft Defender, CrowdStrike, or comparable SIEM/EDR platforms.
- Familiarity with network monitoring and analysis tools such as Wireshark, Zeek, tcpdump, or similar technologies.
- Familiarity with MITRE ATT&CK, common adversary TTPs, and indicators of compromise (IOCs).
- Experience supporting cybersecurity incident response, threat hunting, or network defense activities.
- Experience supporting DoD cybersecurity assessments, exercises, or Cybersecurity Readiness Inspections (CCRI).
- Relevant cybersecurity certifications such as Security+, CySA+, or equivalent are a plus.
Salary Range: $80,000 to $90,000
Akira’s pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
General Description of Benefits
Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement.
Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees.
About Akira Technologies
Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers.
Akira is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.