Security Analyst (Tier 2 SOC)
Boost your chances before you apply.
TGIPOWER LLC
New York, NY, US
Summary
The Tier 2 SOC Analyst is responsible for investigating escalated security incidents, conducting threat analysis, and performing proactive threat hunting. They also manage client security onboarding, optimize security platforms, and mentor Tier 1 analysts.
Job Description
Job DetailsJob Location: Brooklyn, NY 11231Salary Range: $75,000.00 - $95,000.00 Salary
Security Analyst (Tier 2 SOC)
Department: Technical Operations / SOC
Reports to: Director of Technical Operations
Position Summary:
The Tier 2 SOC Analyst plays a critical role in defending clients from cyber threats through proactive monitoring, incident response, threat analysis, and effective management of client security services. This position is responsible for investigating escalated alerts, mentoring Tier 1 analysts, tuning and maintaining security platforms, supporting the onboarding and offboarding of clients across SOC applications and solutions, and enhancing the overall security posture of client environments.
Roles and Responsibilities:
Incident Response & Threat Analysis
Investigate security incidents escalated from Tier 1 SOC Analysts.
Conduct root cause analysis on recurring or advanced threats.
Identify and respond to phishing, malware, unauthorized access, insider threats, and other security events.
Assist with incident containment, remediation, documentation, and reporting.
Escalate significant incidents in accordance with established incident response procedures.
Security Platform Optimization
Tune SIEM, XDR, endpoint security, and other SOC platforms to improve detection accuracy and reduce false positives.
Recommend and implement enhancements to detection rules, alerting, and response playbooks.
Review security platform health, integrations, and data ingestion to identify configuration or coverage gaps.
Work closely with engineering and NOC to ensure security alerts are actionable and prioritized.
Client Security Onboarding & Offboarding
Perform technical onboarding of new clients into SOC-managed security applications, platforms, and solutions.Configure client environments, integrations, policies, alerting, monitoring, and required access according to established SOC standards and service requirements.Validate that required security tools, agents, integrations, log sources, and monitoring services are properly deployed and reporting as expected.
Coordinate with internal teams to ensure onboarding requirements and dependencies are completed accurately and on schedule.
Document client-specific configurations, integrations, contacts, escalation requirements, and operational procedures.
Perform technical offboarding of clients from SOC applications and solutions, including removal of integrations, agents, access, monitoring, and client-specific configurations as appropriate.
Validate completion of onboarding and offboarding activities using established checklists and quality-control procedures.
Identify gaps, inconsistencies, or opportunities to improve SOC onboarding and offboarding standards, documentation, and automation.
Threat Hunting & Research
Perform proactive threat hunting across client environments.
Analyze logs, endpoint telemetry, and network activity for indicators of compromise (IOCs).
Maintain awareness of emerging threats, vulnerabilities, attack techniques, and threat actor activity.
Recommend appropriate mitigations and detection improvements based on identified threats.
Mentorship & Collaboration
Guide and mentor Tier 1 SOC Analysts on investigation techniques, tools, documentation, and escalation procedures.
Assist Tier 1 analysts with complex or ambiguous security events.
Participate in internal tabletop exercises, training sessions, and knowledge-sharing activities.
Contribute to the development and maintenance of incident response runbooks, SOC procedures, and technical documentation.
Collaborate with NOC, Service Desk, Engineering, and other technical teams when security issues cross operational boundaries.
Tool Proficiency
SentinelOne and Microsoft Defender for Endpoint/XDR.
SIEM platforms such as Microsoft Sentinel, Splunk, LogRhythm, or equivalent.
Security monitoring, endpoint protection, vulnerability management, email security, and related SOC technologies.
PowerShell or other basic scripting and automation technologies.
ConnectWise Manage or comparable ITSM platforms for ticket tracking, workflow, and documentation.
Qualifications & Skills
Required Skills & Experience:
Bachelor's degree in Cybersecurity, Information Security, Information Technology, or related field, or equivalent practical experience.
2–4 years of experience in SOC, cybersecurity operations, or managed security services.
Hands-on experience with SIEM, XDR, endpoint protection, or related security platforms.
Experience configuring, deploying, or administering security tools across multiple environments.
Ability to troubleshoot security platform integrations, agents, alerting, and data collection.
Knowledge of NIST, ISO 27001, and CIS security frameworks.
Strong understanding of incident response processes and security operations practices.
Preferred Experience / Certifications:
Experience working within an MSP, MSSP, or multi-client SOC environment.
Experience onboarding customers into managed security platforms or services.
CompTIA Security+ or CySA+.
GIAC certifications such as GCIA or GCIH, CEH, or other relevant vendor-neutral certifications.
Experience with scripting or automation used to improve SOC operational efficiency.
Soft Skills:
Strong analytical and investigative thinking.
Strong attention to detail and ability to follow standardized processes.
Ability to clearly document and communicate technical findings.
Ability to manage multiple client environments and priorities.
Strong sense of ownership and accountability for assigned work.
Collaborative mindset with a willingness to share knowledge and improve team processes.
Ability to communicate effectively with technical teams and internal stakeholders.
Job Type: Full-time (40 hours per week), Monday to Friday with participation in on-call rotation or extended shift coverage as needed.
Salary: $75,000 - $95,000 (based on experience)
Benefits: Dental insurance, Health insurance, Vision insurance, Life Insurance PTO, and 401(k)
Work Location: In-person (Cherry Hill, NJ, OR, West Caldwell, NJ, OR Boca Raton, FL
Disclaimer: This document outlines the key responsibilities and expectations for the Security Analyst (Tier 2 SOC) role. Responsibilities may evolve based on company priorities, technical operation needs, and business requirements.
EEO: We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by the law.
Qualifications
iPower Technologies, founded in 2009, is a multi-million dollar computer networking managed service provider. We service and support computer and network systems for our clients nationwide across all verticals: including legal, healthcare, financial, hospitality and professional sports. We focus heavily on data center technologies for larger SMB and mid-market customers.
Our strongest asset is our people, and we are proud that they are some of the sharpest minds in infrastructure design, deployment, and service.
As of July 1st 2020, TGI Office Automation acquired iPower Technologies. TGI has been in business since 1969 and has a national presence in the technology industry, specifically office equipment and document solutions. Like TGI, customer service is the top priority at iPower. Service is never outsourced to third party vendors. Every Managed Services agreement is customized to the customer’s specific application, workflow, software, and compliance requirements. We focus on providing organizations with a custom solution to their unique business problems. iPower Technologies will keep your infrastructure functional so you can concentrate on running your business and addressing your client’s needs & requirements.
iPower Technologies is here to help your company achieve its technology goals.
Our flexible packages assist you in controlling your costs while still providing solutions to the computer and network problems that can adversely impact your productivity. Regardless of the complexity of your problems you'll find computer help is available with our expert IT consultants.
Founded
2009
Company size
201-500 employees
Industry
IT Services and IT Consulting
Org type
Privately Held
Headquarters
Boca Raton, Florida
iPower Technologies, founded in 2009, is a multi-million dollar computer networking managed service provider. We service and support computer and network systems for our clients nationwide across all verticals: including legal, healthcare, financial, hospitality and professional sports. We focus heavily on data center technologies for larger SMB and mid-market customers.
Our strongest asset is our people, and we are proud that they are some of the sharpest minds in infrastructure design, deployment, and service.
As of July 1st 2020, TGI Office Automation acquired iPower Technologies. TGI has been in business since 1969 and has a national presence in the technology industry, specifically office equipment and document solutions. Like TGI, customer service is the top priority at iPower. Service is never outsourced to third party vendors. Every Managed Services agreement is customized to the customer’s specific application, workflow, software, and compliance requirements. We focus on providing organizations with a custom solution to their unique business problems. iPower Technologies will keep your infrastructure functional so you can concentrate on running your business and addressing your client’s needs & requirements.
iPower Technologies is here to help your company achieve its technology goals.
Our flexible packages assist you in controlling your costs while still providing solutions to the computer and network problems that can adversely impact your productivity. Regardless of the complexity of your problems you'll find computer help is available with our expert IT consultants.
Founded
2009
Company size
201-500 employees
Industry
IT Services and IT Consulting
Org type
Privately Held
Headquarters
Boca Raton, Florida