waypointjobs

Confidential

SOC Analyst for AI-Driven Security Investigations

Decatur, GA

Check who can apply and the requirements below before continuing.

About this opportunity

Confidential lists this SOC Analyst for AI-Driven Security Investigations opportunity in Decatur, Georgia. Review the employer’s description below for duties, qualifications and application requirements.

Job description

Role Overview

Help advance SOC automation and AI-driven investigation systems by applying real-world security operations expertise to validate alerts, assess investigation quality, and build reliable ground-truth cases across SIEM, endpoint, cloud, and identity environments.

Key Responsibilities

Review, monitor, and evaluate SOC alerts and investigation outputs against defined scenarios and criteria.

Validate evidence and alert context to distinguish true positives from false positives.

Conduct end-to-end investigations as needed, including log analysis, entity pivoting, timeline reconstruction, and evidence correlation.

Assess whether investigations produced through automated or human workflows are correct, complete, and high quality.

Apply consistent investigative judgment while recognizing that an alert may have more than one valid investigation path.

Make clear binary determinations, such as accept or pass, and produce detailed ground-truth investigations when required.

Use Splunk extensively to pivot across logs, entities, and timelines, including reading and reasoning about SPL queries.

Document investigative steps, assumptions, evidence, and conclusions clearly and accurately.

Collaborate with program leads and fellow expert annotators to maintain strong investigation and annotation standards.

Mentor or support other analysts when applicable, particularly in long-term or lead annotator assignments.

Qualifications

At least 3 years of hands-on experience as a SOC analyst in a production SOC environment. Tier 2 or higher experience is strongly preferred.

Strong knowledge of alert triage, incident investigation workflows, and evidence-based decision-making under time constraints.

Hands-on Splunk experience, including conducting investigations, reading and reasoning about SPL queries, and pivoting among logs, entities, and timelines.

Demonstrated ability to evaluate SOC investigations and determine whether conclusions are valid, incomplete, or incorrect.

Sound investigative judgment and confidence making decisive evaluations.

Fluent written and spoken English, with strong documentation and communication skills.

Preferred Qualifications

Experience with EDR tools such as CrowdStrike Falcon, Microsoft Defender for Endpoint, or SentinelOne.

Experience analyzing AWS CloudTrail and GuardDuty, Azure Activity Log and Defender for Cloud, or GCP Cloud Audit Logs.

Familiarity with identity and access management platforms such as Okta Identity Cloud or Microsoft Entra ID.

Experience with email security tools such as Proofpoint or Mimecast.

SOC leadership or mentoring experience.

Basic Python or similar scripting experience.

Optional security certifications, including GCIA, GCIH, GCED, Splunk certifications, Security+, CCNA, or cloud security certifications.

Work Terms

Remote hourly engagement.

Compensation

$70 to $95 per hour.

Opportunity

Contribute to high-impact investigative evaluations and security cases while collaborating with SOC practitioners, security engineers, and AI teams.

Apply practical SOC expertise to help shape how future security teams investigate and respond to threats.

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs

Sunrise Senior Living Mgmt Inc

WhatJobs

Med Care Manager

greeley, CO

Salary not specified

About Dignity: Dignity is committed to providing compassionate, respectful care while fostering a supportive workplace for our team members. …

Last received from source 2026-10-07View job

BJC Healthcare

WhatJobs

Inpatient Pharmacy Tech 3

saint peters, MO

Salary not specified

Additional Information About the Role Are you a nationally certified Pharmacy Technician looking to take the next step in your career? Barnes-J…

Last received from source 2026-10-07View job

BJC Healthcare

WhatJobs

Sr. Cardiac Sonographer - PRN

saint peters, MO

Salary not specified

Additional Information About the Role Join our dynamic Cardiac Sonography Team where everyone has a role in providing extraordinary care! Apply …

Last received from source 2026-10-07View job

BJC Healthcare

WhatJobs

Inpatient Pharmacy Tech 2

saint louis, MO

Salary not specified

Additional Information About the Role Are you nationally certified pharmacy technician looking for your next adventure? Our experienced home in…

Last received from source 2026-10-07View job

BJC Healthcare

WhatJobs

Nuc Med Technologist (CNMT) - PRN

shiloh, IL

Salary not specified

Additional Information About the Role Are you looking for a career as a Nuclear Medicine Technologist?   Look no further than BJC! This positio…

Last received from source 2026-10-07View job

BJC Healthcare

WhatJobs

Inpatient Pharmacy Tech 3

saint louis, MO

Salary not specified

Additional Information About the Role Are you a Certified Pharmacy Technician looking to make a meaningful impact on patient care? Join the…

Last received from source 2026-10-07View job