Logo for Dragonfli Group

Tier 1 SOC Analyst

Role overview

Qualifications

  • 0–2 years of experience in security operations, IT, or a related technical field
  • Working knowledge of SIEM alerting and EDR alert triage concepts
  • Solid networking and operating-system fundamentals across Windows, macOS, and Linux
  • Ability to work overnight shifts reliably on a rotation that includes weekends

Responsibilities

  • Monitor SIEM alerting (for example Microsoft Sentinel or Splunk) and triage events by severity against established runbooks
  • Review and action endpoint detection and response (EDR) alerts across client tenants
  • Track and validate vulnerability findings (Tenable) and route them into the correct workflow
  • Communicate clearly with clients and the on-call lead during overnight events

About the company

Dragonfli Group logo

Dragonfli Group

Cybersecurity

The Dragonfli Group is a Washington, DC based LLC specializing in management and technology consulting. Dragonfli transforms its clients’ businesses by leveraging high impact strategic planning and technology solutions coupled with our deep expertise in infrastructure, corporate strategy and operations. The Dragonfli Group's passionate and experienced consultants take a collaborative approach to provide strategic planning and information security solutions to organizations looking to increase profitability, streamline operations, manage risk, meet regulatory demands and build market share.

Company details

Company typeTPE
IndustryCybersecurity
Company size11 - 50

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Description

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.


Dragonfli is hiring a Tier 1 SOC Analyst to join our overnight security operations team. In this role, you will monitor SIEM alerting (Microsoft Sentinel or Splunk) and EDR detections across client tenants, triage events against established runbooks, and escalate through a clear, documented path. You will track and validate vulnerability findings, keep auditable ticket notes and shift logs, and help flag detection gaps and tuning opportunities. This position is well suited to candidates with 0–2 years of security operations or IT experience who are ready to build a strong foundation in SOC monitoring and incident triage.


This is a contract position involving a large commercial enterprise in the transportation/logistics (critical infrastructure) sector. Candidates with previous consulting or contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.


Responsibilities:

  • Monitor SIEM alerting (for example Microsoft Sentinel or Splunk) and triage events by severity against established runbooks
  • Review and action endpoint detection and response (EDR) alerts across client tenants
  • Track and validate vulnerability findings (Tenable) and route them into the correct workflow
  • Escalate incidents through the defined path with clear, documented handoffs
  • Open, update, and close tickets with accurate, auditable notes, and maintain clean shift logs
  • Communicate clearly with clients and the on-call lead during overnight events
  • Follow and help improve standard operating procedures, and flag detection gaps and tuning opportunities
  • Support monthly reporting with accurate event and response data



Requirements

Must-Have:

  • Ability to pass a drug screening and a full background investigation, including verification of references, employment history, education, and certifications
  • 0–2 years of experience in security operations, IT, or a related technical field
  • Working knowledge of SIEM alerting and EDR alert triage concepts
  • Solid networking and operating-system fundamentals across Windows, macOS, and Linux
  • Understanding of the incident lifecycle: detection, triage, containment, and escalation
  • Ability to work overnight shifts reliably on a rotation that includes weekends
  • Clear written communication and disciplined documentation habits


Preferred / Nice-to-Have:

  • Hands-on exposure to Microsoft Sentinel, Splunk, CrowdStrike or comparable EDR, and Tenable
  • Security+ or a similar entry-level security certification
  • Basic scripting for triage or automation (Python or PowerShell)
  • Coursework, internship, or lab experience in a SOC or IT security environment
  • Residency in the Hampton Roads through Richmond, VA corridor


Skill(s)

Technical Skills:

  • SIEM monitoring (Microsoft Sentinel, Splunk)
  • EDR alert triage
  • Vulnerability tracking (Tenable)
  • Ticketing and shift documentation
  • Windows, macOS, and Linux fundamentals
  • Networking fundamentals
  • Incident lifecycle knowledge


Soft Skills:

  • Attention to detail
  • Clear written communication
  • Reliability on an overnight/weekend rotation
  • Discipline under SLA pressure
  • Collaboration with on-call leads



Benefits

Medical – Multiple POS health plan options including an HSA-compatible plan

Dental – PPO coverage for preventive, basic, and major services

Vision – Annual exam, frames, lenses, and contact lens allowance

401(k) – Employer match up to 5% of eligible compensation

Long-Term Disability – 100% employer-paid coverage at 50% of pre-disability earnings

Life Insurance & AD&D – 100% employer-paid coverage valued at $10,000 each

PTO – 15–25 days annually based on tenure

Paid Federal Holidays – All 11 federal holidays observed


Travel


Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Other jobs at Dragonfli Group

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.