hirly

Globalalliant

Soc Tier 3 Analyst

Crownsville, Maryland

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Globalalliant first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.5M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

Apply from your AI assistant

Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.

Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.

hirly's read of this role

Seniority
Mid level
Country
US
Work mode
On-site / unstated
First seen by hirly
22 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Job Title: SOC Tier 3 Analyst

  • Location: Crownsville, MD – Local Candidates Only
  • Onsite Address: DoIT HQ, 100 Community Place, Crownsville, MD
  • Employment Type: Full-Time
  • Work Arrangement: Hybrid

Criteria- Need US citizenship because of federal regulations and the sensitive nature of the work involved

Summary of Key Responsibilities

Incident Response & Forensics: Plan, initiate, and conduct forensic investigations on compromised systems; perform root cause and scope-of-impact analysis; create detailed forensic reports.

Malware & Tool Analysis: Support malware analysis of attacker tools and techniques; identify and analyze malicious payloads.

Tool & Process Development: Train SOC analysts on SIEM tools (e.g., Sentinel), develop and tune detection rules, and assist in creating new SOC monitoring processes.

Threat Intelligence & Hunting: Correlate actionable security events, review threat data, develop custom detection signatures, and conduct threat hunting to identify advanced threats.

Technical Leadership: Contribute to technical briefings, develop incident response procedures, and ensure adherence to operational and technical standards.

On-Call Support: May require availability outside regular hours or on weekends to respond to critical incidents.

Additional Job Description

Assists with the development of Security Operation Center (SOC) tiered monitoring and escalation processes.

Provides support for SOC Analyst Tier 1 & 2 personnel.

Provides technical expertise in the development of existing Cybersecurity projects and initiatives to include but not limited to: End Point Protection and Response, Vulnerability Management, Security Operations Expansion.

Provides technical expertise & support in Cybersecurity monitoring and analysis tool engineering and implementation.

Reviews, evaluates, and triages security alerts in Sentinel using dashboards, reports, and custom queries.

Uses tools, such as captured network traffic, intrusion detection software and Sentinel instrumentation to investigate possible cyber incidents.

Other security program development, documentation, security monitoring, threat hunting, vulnerability management, technical and risk assessment, and security engineering duties assigned by OSM SOC and senior management.

Required Qualifications

Education:

Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related technical/scientific discipline.

Experience:

10+ years of relevant experience in cybersecurity, digital forensics, or incident response.

Skills:

Proficiency with forensic tools.

SIEM platforms ( Sentinel ).

Malware analysis.

Network traffic analysis.

Threat intelligence gathering.

Certifications:

GREM, CEH, CHFI, GCFE, GIAC, or similar cybersecurity/forensics credentials are preferred.

Additional Requirements

Hybrid position – Must be able to work at the Crownsville office 2–3 times a week or rotation schedule with other Tier 3 Analysts.

Strong leadership and communication skills.

If interested in applying for the position, please reach out to me at [email protected]

Original posting on Globalalliant's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job