Security Operations Analyst
Saronic Technologies - Austin, TX
Hiring: Security Operations Analyst Company: Saronic Technologies Location: Austin, TX Job Posted Time: 2026-09-17 11:20:54 Employment Type: Internship Target Skills & Keywords : AWS, Azure, Bash, CI/CD, DNS, Data Lake, PowerShell, Python, SIEM, SOC, SaaS, Security Clearance, TCP/IP About the job Experience: •5 years of hands-on Security Operations, alert triage/SOC, or incident response experience, or an equivalent combination of experience and demonstrated ability; we are open to strong early-career talent Required Skills: •Monitor and triage alerts across endpoint, cloud, identity, network, and SaaS telemetry using enterprise SIEM and XDR platforms •Investigate alerts and perform root-cause analysis, documenting clear timelines and impact assessments •Tune existing detections to reduce false positives, and surface gaps and tuning needs to Detection Engineering •Own initial response for well-scoped, mid-tier incidents across endpoint, cloud, and identity to contain, eradicate, recover •Participate in the on-call rotation and communicate status and findings to security leadership and stakeholders •Contribute to post-incident reviews, surfacing gaps in detection, response, and containment •Coordinate with Security Engineering and IT during active incidents to accelerate response •Support security leadership and senior engineers in building response playbooks, runbooks, and analyst workflow documentation Qualifications: •2–5 years of hands-on Security Operations, alert triage/SOC, or incident response experience, or an equivalent combination of experience and demonstrated ability; we are open to strong early-career talent •Working proficiency with an enterprise SIEM platform and its query language; able to write investigative queries and tune existing detections •Applied hands-on capability in EDR tooling to triage, hunt, and respond using endpoint telemetry •Solid understanding of attacker TTPs mapped to MITRE ATT&CK, applied during investigations •Scripting proficiency in Python, PowerShell, or Bash for enrichment, automation, or triage •Strong network fundamentals: TCP/IP, DNS, HTTP/S, firewall and proxy logs, and lateral-movement patterns •Clear, structured written and verbal communication skills and can brief a non-technical stakeholder and write a thorough incident report •Ownership mindset: follows incidents through to closure and flags what needs fixing, not just what needs documenting •Hands-on learning signals such as a home lab, CTF participation, personal detection/hunting projects, or public writeups/blogs •Internship, rotational, or help-desk-to-SOC experience with a clear security operations trajectory Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!