Summary
Dragonfli Group is a cybersecurity and IT consulting firm serving federal agencies and Fortune 100 enterprises by securing mission-critical systems. The company is hiring a Tier 1 SOC Analyst for its overnight security operations team to monitor SIEM and EDR alerts, triage and escalate incidents, track vulnerabilities, maintain documentation, and support reporting.
Responsibilities
- Monitor SIEM alerting (for example Microsoft Sentinel or Splunk) and triage events by severity against established runbooks
- Review and action endpoint detection and response (EDR) alerts across client tenants
- Track and validate vulnerability findings (Tenable) and route them into the correct workflow
- Escalate incidents through the defined path with clear, documented handoffs
- Open, update, and close tickets with accurate, auditable notes, and maintain clean shift logs
- Communicate clearly with clients and the on-call lead during overnight events
- Follow and help improve standard operating procedures, and flag detection gaps and tuning opportunities
- Support monthly reporting with accurate event and response data
Skills
- Ability to pass a drug screening and a full background investigation, including verification of references, employment history, education, and certifications
- 0–2 years of experience in security operations, IT, or a related technical field
- Working knowledge of SIEM alerting and EDR alert triage concepts
- Solid networking and operating-system fundamentals across Windows, macOS, and Linux
- Understanding of the incident lifecycle: detection, triage, containment, and escalation
- Ability to work overnight shifts reliably on a rotation that includes weekends
- Clear written communication and disciplined documentation habits
- Hands-on exposure to Microsoft Sentinel, Splunk, CrowdStrike or comparable EDR, and Tenable
- Security+ or a similar entry-level security certification
- Basic scripting for triage or automation (Python or PowerShell)
- Coursework, internship, or lab experience in a SOC or IT security environment
- Residency in the Hampton Roads, Virginia area
Qualifications
Must Haves
- Ability to pass a drug screening and a full background investigation, including verification of references, employment history, education, and certifications
- 0–2 years of experience in security operations, IT, or a related technical field
- Working knowledge of SIEM alerting and EDR alert triage concepts
- Solid networking and operating-system fundamentals across Windows, macOS, and Linux
- Understanding of the incident lifecycle: detection, triage, containment, and escalation
- Ability to work overnight shifts reliably on a rotation that includes weekends
- Clear written communication and disciplined documentation habits
Nice to Haves
- Hands-on exposure to Microsoft Sentinel, Splunk, CrowdStrike or comparable EDR, and Tenable
- Security+ or a similar entry-level security certification
- Basic scripting for triage or automation (Python or PowerShell)
- Coursework, internship, or lab experience in a SOC or IT security environment
- Residency in the Hampton Roads, Virginia area
Benefits
- Medical – Multiple POS health plan options including an HSA-compatible plan
- Dental – PPO coverage for preventive, basic, and major services
- Vision – Annual exam, frames, lenses, and contact lens allowance
- 401(k) – Employer match up to 5% of eligible compensation
- Long-Term Disability – 100% employer-paid coverage at 50% of pre-disability earnings
- Life Insurance & AD&D – 100% employer-paid coverage valued at $10,000 each
- PTO – 15–25 days annually based on tenure
- Paid Federal Holidays – All 11 federal holidays observed