Cybersecurity SOC Analyst
plana technologies
Job Summary
Plan A Technologies is seeking a Cybersecurity SOC Analyst for daily monitoring, analysis, and documentation within the Security Operations Center. This role involves monitoring logs, escalating threats, maintaining SOC documentation, supporting audits, and strengthening security posture. The analyst will perform Tier 1 and Tier 2 SOC activities, investigate security events, and assist with vulnerability management and business resilience. Collaboration with other teams is essential to improve visibility, detection, and response.
Must Have
- 3+ years of experience in a SOC or related security role.
- BS in Computer Science, Software Engineering or equivalent practical experience.
- Perform Tier 1 and Tier 2 SOC activities, including log monitoring, alert analysis, and threat escalation.
- Investigate security events and escalate findings according to established runbooks and SLAs.
- Prepare and maintain SOC documentation required for SOC 1 and SOC 2 audits.
- Assist with vulnerability scanning, validation, prioritization, and tracking.
- Assist in cybersecurity phishing campaigns, including execution, tracking, reporting, and program improvements.
- Work closely with the Cybersecurity, IT, and Cloud Engineering teams to improve visibility, detection, and response.
Good to Have
- Foundational certifications such as Security+, CySA+, CC, or relevant GIAC certifications.
- Experience with cloud security monitoring (AWS preferred).
Perks & Benefits
- Generous vacation schedule
- Brand New Laptop
- Great colleagues and an upbeat work environment
Job Description
Threat Monitoring & SOC Operations
- Perform Tier 1 and Tier 2 SOC activities, including log monitoring, alert analysis, and threat escalation.
- Investigate security events and escalate findings according to established runbooks and SLAs.
- Maintain situational awareness of the security environment, emerging threats, and potential risks.
- Support daily operational tasks to ensure consistent 24/7 security coverage (as applicable).
Documentation, Reporting & Evidence Support
- Prepare and maintain SOC documentation required for SOC 1 and SOC 2 audits, ensuring accuracy and readiness.
- Provide ongoing support, documentation, and monitoring for SOC controls and evidence collection.
- Generate clear, detailed incident reports, threat findings, and vulnerability summaries.
- Maintain audit-ready documentation for 2025 assessments, penetration tests, and resilience exercises.
Vulnerability Management
- Assist with vulnerability scanning, validation, prioritization, and tracking.
- Document remediation recommendations and coordinate escalation with engineering teams.
- Support vulnerability management reporting and compliance-driven remediation timelines.
Business Resilience & Security Awareness
- Maintain SOC documentation related to business resilience and continuity readiness.
- Assist in cybersecurity phishing campaigns, including execution, tracking, reporting, and program improvements.
- Support internal stakeholders during audits, pen tests, and security review exercises.
Cross-Team Collaboration
- Work closely with the Cybersecurity, IT, and Cloud Engineering teams to improve visibility, detection, and response.
- Participate in meetings, ticket reviews, and knowledge-sharing sessions.
- Assist in maintaining and improving SOC runbooks, processes, and response playbooks.
EXPERIENCE
- BS in Computer Science, Software Engineering or equivalent practical experience
- 3+ years of experience in a SOC, cybersecurity operations, or related security role.
- Experience with security log monitoring, alert triage, and incident escalation.
- Familiarity with SIEM tools, detection systems, and ticketing workflows.
- Understanding of vulnerability management concepts and security scanning tools.
- Basic knowledge of common security frameworks and controls (SOC 1 / SOC 2, NIST CSF, ISO 27001).
- Experience supporting audits, evidence gathering, or compliance programs.
- Foundational certifications such as Security+, CySA+, CC, or relevant GIAC certifications are a plus.
- Familiarity with phishing campaigns, security training, or user awareness programs.
- Experience with cloud security monitoring (AWS preferred).
- Strong written communication skills for documentation and reporting.
- Detail-oriented, organized, and comfortable working in process-driven environments.
- Strong communication skills and ability to collaborate across cross-functional teams.
- Have solid written and verbal English skills.
- Ability to maintain a positive work attitude.
- Initiative and drive to do great things.
ABOUT THE COMPANY/BENEFITS
Plan A Technologies is an American software development and technology advisory firm that brings top-tier engineering talent to clients around the world. Our software engineers tackle custom product development projects, staff augmentation, major integrations and upgrades, and much more. The team is far more hands-on than the giant outsourcing shops, but still big enough to handle major enterprise clients.
Read more about us here: www.PlanAtechnologies.com .
Location: Work From Home 100% of the time, or come in to one of our global offices. Up to you.
Great colleagues and an upbeat work environment: You'll join an excellent team of supportive engineers and project managers who work hard but don't ever compete with each other.
Benefits: You’ll get a generous vacation schedule, Brand New Laptop, and other goodies.