{"schemaVersion":"jobsearcher.job.v1","id":"f3cffd77331e2e11ef55901c","url":"https://jobsearcher.com/jobs/f3cffd77331e2e11ef55901c","canonicalUrl":"https://jobsearcher.com/jobs/f3cffd77331e2e11ef55901c","title":"SOC Analyst","description":"Mantis Security is seeking an experienced Security Operations Center (SOC) Analyst to support the monitoring, detection, investigation, and response to cybersecurity threats within a mission-focused environment. This position will work as part of a security operations team responsible for protecting both traditional and AWS cloud-based infrastructure.\n\nThe ideal candidate will have a strong foundation in security operations and incident response, with hands-on experience analyzing security events across AWS environments. This role requires someone who can move beyond simply reviewing alerts to determine what happened, assess the potential impact, document findings, and support appropriate response and remediation actions.\n\nAs a SOC Analyst at Mantis Security, you'll help protect critical customer environments by monitoring, investigating, and responding to cybersecurity threats across both traditional and AWS cloud infrastructure.\n\nMonitor and investigate security alerts across enterprise and AWS environments\nTriage potential threats, determine impact, and support incident response and remediation\nAnalyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch\nInvestigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise\nConduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats\nDocument investigations, communicate findings, and escalate incidents when necessary\nHelp improve SOC detection capabilities, playbooks, processes, and alerting\n\nRequirements\n\nWHAT WE'RE LOOKING FOR:\n\n7+ years of cybersecurity, SOC, incident response, or related experience\nHands-on experience investigating security events in AWS environments\nExperience working with SIEM and endpoint detection and response (EDR) platforms\nWorking knowledge of AWS IAM, EC2, S3, VPC, CloudTrail, GuardDuty, Security Hub, and related security concepts\nStrong understanding of network security, common attack techniques, and incident response\nAbility to analyze complex technical information and clearly communicate findings\nFamiliarity with MITRE ATT&CK, threat intelligence, and vulnerability management\nSecurity+ or equivalent cybersecurity certification\nActive TS/SCI security clearance required.\n\nNICE TO HAVE:\n\nExperience supporting DoD, Intelligence Community, or other federal environments\nAWS security or architecture certification\nExperience with Splunk and AWS GovCloud\nBasic Python, PowerShell, or Bash scripting experience\n\nQPciGRaBGo","company":"Mantis Security","rawCompany":"mantis security","city":"Reston","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-09-06T07:49:22.295Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"SOC Analyst","description":"Mantis Security is seeking an experienced Security Operations Center (SOC) Analyst to support the monitoring, detection, investigation, and response to cybersecurity threats within a mission-focused environment. This position will work as part of a security operations team responsible for protecting both traditional and AWS cloud-based infrastructure.\n\nThe ideal candidate will have a strong foundation in security operations and incident response, with hands-on experience analyzing security events across AWS environments. This role requires someone who can move beyond simply reviewing alerts to determine what happened, assess the potential impact, document findings, and support appropriate response and remediation actions.\n\nAs a SOC Analyst at Mantis Security, you'll help protect critical customer environments by monitoring, investigating, and responding to cybersecurity threats across both traditional and AWS cloud infrastructure.\n\nMonitor and investigate security alerts across enterprise and AWS environments\nTriage potential threats, determine impact, and support incident response and remediation\nAnalyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch\nInvestigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise\nConduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats\nDocument investigations, communicate findings, and escalate incidents when necessary\nHelp improve SOC detection capabilities, playbooks, processes, and alerting\n\nRequirements\n\nWHAT WE'RE LOOKING FOR:\n\n7+ years of cybersecurity, SOC, incident response, or related experience\nHands-on experience investigating security events in AWS environments\nExperience working with SIEM and endpoint detection and response (EDR) platforms\nWorking knowledge of AWS IAM, EC2, S3, VPC, CloudTrail, GuardDuty, Security Hub, and related security concepts\nStrong understanding of network security, common attack techniques, and incident response\nAbility to analyze complex technical information and clearly communicate findings\nFamiliarity with MITRE ATT&CK, threat intelligence, and vulnerability management\nSecurity+ or equivalent cybersecurity certification\nActive TS/SCI security clearance required.\n\nNICE TO HAVE:\n\nExperience supporting DoD, Intelligence Community, or other federal environments\nAWS security or architecture certification\nExperience with Splunk and AWS GovCloud\nBasic Python, PowerShell, or Bash scripting experience\n\nQPciGRaBGo","datePosted":"2026-09-06T07:49:22.295Z","dateModified":"2026-09-06T07:49:22.295Z","hiringOrganization":{"@type":"Organization","name":"Mantis Security","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Reston","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"f3cffd77331e2e11ef55901c"},"url":"https://jobsearcher.com/jobs/f3cffd77331e2e11ef55901c"}}