Full-Time

SOC Analyst

Tier 3 Shift Lead

True Zero Technologies

True Zero Technologies

11-50 employees

Splunk-based security and tech-management solutions

No salary listed

Topeka, KS, USA

In Person

Category
IT & Security (1)
Requirements
  • Onsite is required
  • Prior experience as a SOC Analyst or Senior Analyst
  • Demonstrated ability to lead or coordinate investigations
  • Experience mentoring or supervising analysts
  • Strong knowledge of SIEM platforms (Splunk or equivalent), EDR tools, Network, authentication, and endpoint telemetry
  • Strong documentation and communication skills
  • Ability to make sound decisions in time-sensitive situations
  • CompTIA Security+ or CySA+ (or equivalent)
  • Experience in incident response or threat hunting
  • Familiarity with NIST, CIS, CJIS, or similar frameworks
  • Experience with case management across multiple platforms
  • Scripting/query experience (SPL, KQL, SQL, Python)
  • Experience in regulated or government environments
  • GCIH, GCIA, GCED or equivalent
  • Core Competencies include: Technical leadership, operational accountability, coaching and mentorship, analytical problem-solving, process discipline, clear written and verbal communication, ability to lead under pressure
Responsibilities
  • Supervise and mentor SOC Analysts
  • Assign and balance workload across analysts and shifts
  • Monitor queue health, SLA compliance, and alert backlog
  • Conduct regular performance check-ins
  • Address quality gaps and provide corrective guidance
  • Reinforce adherence to documented playbooks and procedures
  • Primary Focus: Ensure consistent and effective analyst performance
  • Hands-On Monitoring & Investigation
  • Perform daily alert triage alongside SOC Analysts
  • Conduct investigations on moderate to high-severity alerts
  • Lead or directly support complex or multi-system investigations
  • Validate alert classifications and case documentation
  • Participate in shift coverage as needed
  • Primary Focus: Maintain technical engagement and operational credibility
  • Serve as the first escalation point for analysts
  • Lead investigations for high-severity incidents
  • Coordinate response actions with internal stakeholders
  • Ensure timely and accurate communication during incidents
  • Drive investigations to clear, defensible conclusions
  • Primary Focus: Maintain operational control during critical events
  • Investigation Quality & Case Governance
  • Review analyst investigations for accuracy and completeness
  • Approve or return cases prior to closure
  • Ensure proper evidence collection and timeline documentation
  • Enforce consistent tagging, classification, and case hygiene
  • Primary Focus: Protect the integrity of SOC output
  • Process & Continuous Improvement
  • Maintain and update SOC playbooks and workflows
  • Identify inefficiencies in monitoring or case handling
  • Provide feedback on alert tuning and automation improvements
  • Capture and integrate lessons learned
  • Stakeholder Coordination
  • Respond to formal information requests within defined SLAs
  • Serve as liaison between SOC analysts and leadership
  • Support audits, reporting, and compliance requirements
  • Participate in shift handoffs and operational planning
  • Primary Focus: Maintain trust and communication across teams.
  • Workload Segmentation (Approximate)
  • 30% – Direct Monitoring & Investigation Work
  • 25% – Escalation & High-Severity Incident Leadership
  • 20% – Team Management & Performance Oversight
  • 15% – Investigation Quality Review & Case Governance
  • 10% – Process Improvement & Documentation
  • Percentages may shift during major incidents or staffing changes.
True Zero Technologies

True Zero Technologies

View

True Zero Technologies provides security and technology management services by implementing Splunk-based data analytics for organizations in sectors like healthcare, finance, and government. These solutions work by collecting and analyzing large amounts of machine data to help clients monitor their IT systems and detect cybersecurity threats in real-time. As a veteran-owned business, the company differentiates itself by using a team of seasoned industry experts to deliver repeatable, standardized service models rather than one-off custom fixes. Their goal is to ensure long-term customer success through managed services while actively supporting the veteran community through educational scholarships.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

Fair Oaks, Virginia

Founded

2016

Simplify Jobs

Simplify's Take

What believers are saying

  • ServiceNow partnership unites AI-driven platforms for enhanced cybersecurity operations.
  • Wiz integration strengthens client cloud security postures via managed services.
  • September 26, 2025 federal award expands government cybersecurity contracts.

What critics are saying

  • Splunk's Q2 2026 agentless pivot obsoletes agent-heavy professional services.
  • Tanium commoditization by Splunk's Terminus acquisition erodes hybrid demand.
  • Booz Allen's January 2026 DoD contract captures public sector Tanium deals.

What makes True Zero Technologies unique

  • True Zero delivers Splunk-based solutions for mission-critical security across sectors.
  • Veteran-owned status secures federal MAS contract worth $571,354 through 2030.
  • Partners with ServiceNow, Wiz, and Tanium for AI-driven cybersecurity services.

Help us improve and share your feedback! Did you find this helpful?

Your Connections

People at True Zero Technologies who can refer or advise you

Benefits

Health Insurance

Paid Vacation

Paid Holidays

401(k) Retirement Plan

401(k) Company Match

Phone/Internet Stipend

Parental Leave