Everforth ECS is seeking a SOC Tier 2 Analyst to work in our Portland, OR office. Note: This position is contingent upon contract award. The SOC Analyst 2 supports the organization's security operations by conducting dee…
Everforth ECS is seeking a Senior Security Engineer to work in our Portland, OR office. Note: This position is contingent upon contract award. The Senior Security Engineer plays a critical role in designing, implementing…
ECS is seeking a Cyber Forensics Analyst to work in our Portland, OR office. Note: This position is contingent upon contract award. The Forensics Analyst Mid performs hands-on forensic analysis and malware investigation …
Help Create Pathways that Empower Thriving Young Adults. At Friends of the Children, we are committed to breaking the cycle of generational poverty through long-term, salaried, professional mentoring relationships. Our m…
Skills: People Management, Program Implementation, Data-Driven Decision Making, Youth Development, Coaching
Patient Sitter at Providence Health Plaza Building in NE Portland- Full-Time, Day Schedule Providence offers a fantastic benefits package which include but is not limited to: Free, convenient, and ample parking TriMet an…
CDL A Local Driver — Portland Average Weekly Pay: $1,550 - $1,800+ Bonus Opportunities Home Daily: Home after every route Call a Recruiter Directly: 888-959-6357 No Car-Hauling Experience? No Problem. We provide fully pa…
Skills: CDL Class A, Vehicle Transport, Load Securing, Safety Compliance, Driver Log Maintenance
Everforth ECS is seeking an OT Control Assessor to work in our Portland,OR office. Note: This position is contingent upon contract award. The Operational Technology (OT) Control Assessor supports the execution of securit…
Skills: OT Control Assessment, Industrial Control Systems, Cybersecurity Risk Management, NIST SP 800-82, IEC 62443
Everforth ECS is seeking a Security Engineer to work in our Portland, OR office or remotely. Note: This position is contingent upon contract award. The Security Engineer supports the design, implementation, configuration…
Skills: Cybersecurity Engineering, System Hardening, SIEM, EDR, Vulnerability Management
Everforth ECS is seeking a SOC Threat Hunter to work in our Portland, OR office. Note: This position is contingent upon contract award. The Threat Hunter proactively identifies, investigates, and helps mitigate advanced …
At Headlands Research, we are dedicated to enhancing clinical trial delivery within our communities. As a leading network of advanced clinical trial sites, we leverage cutting-edge technology and exceptional support serv…
Skills: Peripheral IV Initiation, Clinical Assessment, Infusion Monitoring, Patient Health Assessment, Medication Administration
Department Overview To be considered for this position, please submit the following documents: A CV that contains the months and years listed for each employment and education experience Your cover letter that includes: …
Additional Location(s): N/A Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance At Boston Scientific, we’ll give you the opportunity to harness all that’s within you by working in t…
Responsibilities Cedar Hills Hospital has an opportunity for a Mental Health Technician to join our intake team! We are looking for people who will be dedicated to serving our patients with a high quality of care. Come j…
We are seeking to add a Tasting Room Attendant to our Portland Airport location! This position will often start at 3am and will require some weekend schedules. Pay is $18 plus tips! Please see more below. General Summary…
HOTEL NAME is currently seeking a Room Attendant to join our growing team! As our Room Attendant, you will be responsible for cleaning and supplying all assigned guest rooms/suites according to the standards established …
Water Mitigation Technician Kennedy Restoration, the premier restoration company in the Pacific NW is hiring a full-time Water Mitigation Technician. The Water Mitigation Technician is responsible for the completion of w…
Skills: Cleaning, Deodorization, Inventory Management, Packing and Unpacking, Coordination
The Territory Manager, based in the Greater Seattle, WA or Greater Portland, OR area, is responsible for the overall management of Sentec's respiratory care products within the assigned territory. Key Tasks: Sell capital…
Skills: Capital Sales, Disposable Product Sales, Pipeline Management, KOL Relationship Management, CRM Management
Our home health and hospice agencies are located throughout California, Hawaii, Oregon and Washington. They serve the entire community and offer personalized in-home care, and many have been recipients of Home Care Elite…
Join Dribbler Soccer: Transform Your Passion for Soccer Into a Rewarding Career! ⚽ Dribbler Soccer is a leading name in private soccer training across the United States. We’re expanding our team and looking for professio…
Skills: Soccer Coaching, Lesson Planning, Player Assessment, Communication, Child Engagement
Are you looking for an Outside Sales position with unlimited earning potential in a flourishing industry? Are you looking for an opportunity where you can earn uncapped commissions while still having a base salary with f…
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
Posted 30d ago
~40 hrs/week
Responsibilities
Conduct deep investigations of escalated security alerts and correlate telemetry across platforms to identify attack paths and business impact. Support incident response activities including containment and recovery while providing input for detection tuning and process improvements.
Requirements
Requires 3-5 years of experience in SOC operations or incident response and the ability to obtain a DOE 'L' clearance. Candidates must possess intermediate knowledge of OS, networking, and cloud security, along with strong analytical and communication skills.
Full job description
Everforth ECS is seeking a SOC Tier 2 Analyst to work in our Portland, OR office. Note: This position is contingent upon contract award.
The SOC Analyst 2 supports the organization's security operations by conducting deeper investigation of escalated alerts, correlating security telemetry, supporting incident response activities, and preparing incident summaries and recommendations. This role is the mid-level investigation and response-support tier within the SOC Analyst role family.
The ideal candidate has hands-on SOC or security operations experience, understands common attack techniques and defensive technologies, and can independently investigate security events while coordinating with SOC Analyst 1, SOC Analyst 3, threat intelligence, threat hunting, forensics, engineering, and business stakeholders.
This role involves shift work schedule to support our 24/7 operation, including weekends and holidays. Candidates must be flexible in their availability. While we make every effort to accommodate individual preferences, it's essential to understand that specific shift requests are not guaranteed and are assigned based on operational needs.
Key Responsibilities
Escalated Alert Investigation & Correlation
Review and investigate alerts escalated by SOC Analyst 1 or automated SOC workflows to validate severity, scope, potential impact, and required response actions.
Analyze suspicious activity, indicators of compromise, anomalous behavior, and policy violations using logs, endpoint telemetry, network data, identity data, cloud events, and other evidence.
Correlate evidence across security platforms to identify affected assets, affected accounts, attack paths, timeline of activity, and potential business or mission impact.
Map observed behaviors to applicable frameworks and threat models such as MITRE ATT&CK when useful for investigation, reporting, or detection improvement.
Incident Response & Coordination Support
Support containment, eradication, and recovery activities for standard or moderate incidents in alignment with incident response plans and approved playbooks.
Coordinate with system owners, security engineers, senior analysts, and other technical teams to gather evidence, validate impact, and support response actions.
Escalate complex, high-impact, evidence-sensitive, or ambiguous incidents to SOC Analyst 3, SOC leadership, Forensics, Threat Hunter, Threat Intelligence Analyst, or other specialized roles as appropriate.
Maintain accurate incident status, action tracking, and communications during investigation and response activities.
Detection, Tuning & Process Improvement Input
Analyze recurring alerts, false positives, attack patterns, threat intelligence, vulnerabilities, and emerging tactics to identify opportunities to improve detection and response.
Recommend updates to correlation rules, alert logic, dashboards, use cases, response playbooks, and triage procedures based on investigation outcomes.
Operationalize threat intelligence in triage and investigation workflows by applying relevant indicators, adversary behaviors, vulnerabilities, and contextual reporting.
Provide operational requirements and validation feedback to SOC Analyst 3, SOC Threat Hunter, Senior Splunk Engineer, Splunk Architect/Lead, Security Engineer, and SOC Technical Writer as appropriate.
Reporting & Documentation
Document investigation activities, evidence, decisions, response actions, and outcomes clearly and accurately.
Prepare incident summaries, ticket updates, timelines, shift handoff notes, and supporting information for after-action documentation.
Communicate technical findings in clear operational, business, and risk language for SOC leadership and affected stakeholders.
Provide evidence summaries and analysis notes that can be used by Forensics or specialized teams when deeper analysis is required.
Mentorship & Continuous Improvement
Provide escalation guidance, quality feedback, and informal mentoring to SOC Analyst 1 personnel.
Participate in lessons-learned activities, tabletop exercises, detection reviews, and SOC process improvement efforts.
Stay current with evolving cyber threats, vulnerabilities, detection techniques, and security operations best practices.
Contribute to continuous improvement of SOC workflows, investigation checklists, documentation practices, and escalation procedures.
Qualifications
U.S. Citizenship with ability to obtain and maintain a DOE “L” clearance after start.
3-5 years of experience in SOC operations, incident response, security monitoring, threat monitoring, or related technical cybersecurity roles.
Experience triaging escalated alerts and investigating security events using SIEM, EDR, ticketing, case management, and log analysis tools.
Intermediate knowledge of Windows, Linux, networking, cloud, identity, endpoint, and application security concepts.
Working knowledge of common attack techniques, incident response lifecycle activities, escalation procedures, playbooks, and evidence-handling practices.
Ability to correlate evidence across multiple tools, develop incident timelines, and determine recommended response actions.
Strong analytical, written documentation, communication, and collaboration skills, including the ability to guide SOC Analyst 1 personnel.