SOC & GRC Security Analyst (Hybrid Onsite) - Dallas, TX

Other Jobs To Apply

No other job posts for this day.

Job Title: SOC & GRC Security Analyst (Hybrid Onsite)

Location: Dallas, TX

Duration: 6 Months

Interview Type: Virtual / In-Person

Job Description:

We are seeking an experienced SOC & GRC Security Analyst to support Security Operations Center (SOC) monitoring, incident response, threat detection, vulnerability management, governance, risk, and compliance activities. The ideal candidate will combine hands-on cybersecurity operations experience with a strong understanding of security governance frameworks, regulatory requirements, risk assessments, and audit management.

The analyst will collaborate with cybersecurity teams, IT stakeholders, business leaders, auditors, and third-party vendors to identify and respond to security threats, evaluate security risks, maintain compliance, and improve the organization’s overall security posture.

Key Responsibilities:

Security Operations Center (SOC):

  • Monitor security events and alerts using Security Information and Event Management (SIEM) platforms.
  • Investigate suspicious activities, security alerts, and potential cybersecurity incidents.
  • Perform initial incident triage, analysis, escalation, and response coordination.
  • Analyze security logs and correlate events across endpoints, networks, cloud platforms, and applications.
  • Support threat detection, threat hunting, and incident investigation activities.
  • Document incidents, findings, root cause analysis, and remediation recommendations.
  • Collaborate with security engineering, infrastructure, and IT teams to contain and resolve security incidents.

Incident Response & Threat Analysis:

  • Support incident response activities throughout identification, containment, eradication, recovery, and post-incident review.
  • Analyze indicators of compromise, attack patterns, malicious activities, and suspicious behaviors.
  • Apply the MITRE ATT&CK framework and cyber kill chain concepts to support threat analysis.
  • Assist with developing and improving incident response procedures and playbooks.
  • Coordinate with internal teams and external stakeholders during significant security events.
  • Prepare incident reports and communicate findings to appropriate stakeholders.

Vulnerability Management & Security Monitoring:

  • Support vulnerability identification, assessment, prioritization, and remediation tracking.
  • Review vulnerability scan results and coordinate mitigation activities with technical teams.
  • Monitor endpoint, network, email, and cloud security controls.
  • Identify weaknesses in security configurations, access controls, and protective technologies.
  • Support security posture improvement initiatives and remediation validation.
  • Assist with tracking security metrics, risk indicators, and remediation progress.

Endpoint, Network & Cloud Security:

  • Support endpoint detection and response activities using EDR platforms.
  • Investigate endpoint alerts and suspicious endpoint behavior.
  • Apply knowledge of network security technologies, including firewalls, Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), and email security.
  • Support endpoint protection, malware detection, and security configuration reviews.
  • Analyze security events across Azure, AWS, and/or Google Cloud Platform (GCP) environments.
  • Collaborate with infrastructure and cloud teams to address security findings and configuration risks.

Governance, Risk & Compliance:

  • Support the development, implementation, and monitoring of security governance and compliance processes.
  • Evaluate and document IT General Controls (ITGCs).
  • Support compliance activities related to ISO/IEC 27001, GDPR, and the NIST Cybersecurity Framework.
  • Assist with Risk Management Framework (RMF) activities and security control assessments.
  • Conduct security risk assessments and document risks, impacts, likelihood, and mitigation strategies.
  • Support Third-Party and Vendor Risk Management activities.
  • Review vendor security documentation, assessments, questionnaires, and compliance evidence.
  • Assist with audit preparation, evidence collection, control testing, and audit response activities.
  • Track compliance gaps, remediation plans, risks, findings, and corrective actions.
  • Prepare compliance reports, risk registers, dashboards, and executive-level presentations.
  • Collaborate with auditors, business stakeholders, technical teams, and vendors to address compliance requirements.

Documentation & Reporting:

  • Maintain accurate security operations, risk, compliance, and audit documentation.
  • Develop process flows, security procedures, incident reports, risk assessments, and control documentation.
  • Prepare management reports and presentations summarizing security incidents, compliance status, risks, and remediation activities.
  • Communicate technical security issues and compliance risks clearly to technical and non-technical audiences.
  • Support continuous improvement of cybersecurity processes, policies, and procedures.

Required Qualifications:

  • Hands-on experience in SOC monitoring, incident response, threat detection, and vulnerability management.
  • Experience working with SIEM platforms such as:
  • Microsoft Sentinel
  • Splunk
  • IBM QRadar
  • LogRhythm
  • Experience with Endpoint Detection and Response (EDR) tools such as:
  • Microsoft Defender
  • CrowdStrike
  • SentinelOne
  • Strong knowledge of network security, firewalls, IDS/IPS, email security, and endpoint protection.
  • Experience investigating security incidents and performing threat analysis.
  • Experience supporting vulnerability management and remediation activities.
  • Working knowledge of the MITRE ATT&CK framework and cyber kill chain concepts.
  • Familiarity with cloud security concepts across Azure, AWS, and/or GCP.
  • Strong understanding of IT General Controls (ITGC).
  • Knowledge of ISO/IEC 27001, GDPR, and the NIST Cybersecurity Framework.
  • Understanding of Risk Management Frameworks and security risk assessment methodologies.
  • Experience supporting Third-Party/Vendor Risk Management.
  • Experience with audit management, compliance reporting, and security documentation.
  • Strong analytical, investigative, and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to work effectively with auditors, business stakeholders, cybersecurity teams, technical teams, and vendors.
  • Experience preparing executive-level reports and presentations.

Preferred Qualifications:

  • Experience working in enterprise SOC, cybersecurity, or GRC environments.
  • Experience integrating SOC operations with governance, risk, and compliance processes.
  • Knowledge of security control testing, evidence collection, and remediation tracking.
  • Experience with security dashboards, compliance metrics, and risk reporting.
  • Familiarity with cloud-native security monitoring and cloud compliance controls.
  • Experience developing incident response playbooks, security procedures, and audit-ready documentation.
  • Relevant cybersecurity, risk, or compliance certifications are beneficial.

Skill Matrix:

  • SOC Monitoring: Required
  • SIEM Platforms: Microsoft Sentinel, Splunk, QRadar, or LogRhythm
  • Incident Response: Required
  • Threat Detection & Threat Analysis: Required
  • Vulnerability Management: Required
  • EDR Platforms: Microsoft Defender, CrowdStrike, or SentinelOne
  • Network Security: Required
  • Firewalls / IDS / IPS: Required
  • Email Security: Required
  • Endpoint Protection: Required
  • MITRE ATT&CK: Required
  • Cyber Kill Chain: Required
  • Cloud Security: Azure, AWS, and/or GCP
  • IT General Controls (ITGC): Required
  • ISO/IEC 27001: Required
  • GDPR: Required
  • NIST Cybersecurity Framework: Required
  • Risk Management Frameworks: Required
  • Security Risk Assessments: Required
  • Third-Party / Vendor Risk Management: Required
  • Audit Management & Compliance Reporting: Required
  • Executive Reporting & Presentations: Required
  • Security Documentation & Process Flows: Required

Deliverables:

  • Develop and document cybersecurity, SOC, GRC, and compliance process flows.
  • Provide mentoring and knowledge transfer to project team members.
  • Participate as a primary, co-author, or contributing author on project deliverables within assigned areas of responsibility.
  • Participate in data conversion and data maintenance activities where applicable.
  • Provide cybersecurity best practices and industry-specific solutions.
  • Recommend alternative and out-of-the-box security, risk, and compliance solutions.
  • Provide thought leadership and hands-on technical configuration or development support as required.
  • Participate as a member of the cybersecurity, SOC, and GRC teams.
  • Prepare security incident reports, risk assessments, audit documentation, compliance reports, and remediation tracking updates.
  • Perform other duties as assigned.

Position Requirements:

  • Hybrid onsite position in Dallas, TX.
  • Resource must work onsite at the Dallas office at least three days per week.
  • Required onsite days are Tuesday, Wednesday, and Thursday.
  • Remote-only candidates will not be considered.
  • Virtual and/or in-person interview process.
  • Duration: 6 months.

About GSK Solutions Inc:

GSK Solutions Inc. is a leading IT services company specializing in consulting solutions and staff augmentation. We deliver high-quality, on-time, and cost-effective solutions, consistently exceeding client expectations with superior execution.

#GSKIT

Pay: $55.00 - $60.00 per hour

Expected hours: 40.0 per week

Work Location: Hybrid remote in Dallas, TX 75244

Back to blog

Other Jobs To Apply

Entry-Level Online Chat Jobs - Remote Opportunities Earning $25-$35 Per Hour

Entry‑Level IT Support Associate – Dedicated Chat & Remote Technical Assistance Specialist

Legal Assistant - Insurance Defense job at Progressive in Atlanta, GA

Prior Authorization Specialist – Work from Home

Virtual RN Job at reputed company Cross Health in Silver Spring

Warehouse Operations

Warehouse Operations

Amazon Warehouse

amazon flex $15+/ Hour

Work from Home as a Game Tester in the United States

[Remote] Epic- Clinical Service Desk Specialist-REMOTE

Medical Scribe (Remote - Full Time) - Full-time

Game Tester / Community Moderator

[Remote] Epic- Clinical Service Desk Specialist-REMOTE

Work from Home as a Game Tester in the United States

Game Tester / Community Moderator

amazon flex $15+/ Hour

Part Time Package Handler (Twilight) - YVR Area

Class 5 Delivery Drivers - Permanent position

REMOTE CHAT REP – Up to $10,000 per month – FLEXIBLE HOURS! Hiring ASAP!

PACS Admin with Site co-ordinator (reputed company and Divrad)

Freelance Data Entry Work From Home (Remote Position)

Direct Hire Physical Therapist Role $76,000 to $103,000 per year in Seaford, Delaware

Social Media Lead (m/w/d) | Strategie & Performance | 100 % remote

Remote Customer Support Specialist- Part Time & Full Time

Ramp Agent - Evening Shift

Junior Level/ Entry Level Software Engineer (Remote)

**Experienced Online Customer Support Specialist – reputed company Chat Support (Remote) – Part-Time Opportunity**

Portuguese Speaking Complaints Officer

Amazon Warehouse

Warehouse Associate - Night Shift- Immediate Hiring

Call Center Representative- Reno, Nevada- Remote (Any city, NV, US, 99999)

Nurse Consultant (Nursing Home Surveyor)

Amazon Warehouse

reputed company Careers - Find flexible, work-from-home jobs helping customers while earning $25-$35 per hour.

Work from Home Overnight Jobs Late Night Customer Experience Specialist $25-$35/hr ? Enhance customer experiences during late-night hours in a home-based role.

Amazon Warehouse

Remote Part‑Time Customer Service Representative – Flight Operations & Passenger Support – Earn $27/hr at arenaflex

Live Chat Jobs - Remote Position (Up to $35/hour) - No Degree Required, No Experience Necessary

[Remote] DR Systems PACS Administrator / Specialist

Instacart Shopper - Delivery Driver

Remote Physical Therapist in ID

Flexible Part-Time Remote Data Entry Specialist | Flexible Hours & Training Provided | Join arenaflex Team

SOC Analyst I (Remote)

-Work From Home Position | Entry-Level | Flexible Hours

reputed company RN – Clinical Documentation Specialist – CDIP CCDS Required – 100% Remote, GA

Overnight Positions Near Me Online – Non-Phone Digital Chat Role | $25–$35/hr

School Nurse

Entry Level Financial Protection Specialist (Remote)

HelpDesk (Customer Support)

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...