SlipstreamJobsFresh Startup & VC-Backed Jobs

Security Operations Center (SOC) Analyst

Apex - Los Angeles, CA, USA - In-office - posted 2026-09-15

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Apex manufactures satellite buses at scale for the commercial aerospace industry, enabling earth observation, communications, and other critical space-based services. The company combines software, vertical integration, and hardware design to serve the rapidly growing market of payload companies launching to orbit. As a SOC Analyst, you will be the frontline defender of Apex's security posture. You will monitor, investigate, and respond to security activity across endpoints, identity, cloud services, networks, and mission-support environments. Most of your time will be spent working directly with alerts, logs, vulnerabilities, and investigations to determine what happened and what needs to happen next. Key responsibilities include: - Monitor and triage security alerts from CrowdStrike, Elastic SIEM, Microsoft Identity, AWS, and Palo Alto - Investigate suspicious logins, phishing emails, privilege changes, and unusual network events - Escalate incidents based on affected systems, severity, and CUI (Controlled Unclassified Information) impact - Collaborate with IT, Cybersecurity, and Network teams on security findings involving systems and infrastructure - Document incidents, required resolutions, and potentially affected assets - Maintain recurring logging reviews and incident response documentation; collect evidence to support vulnerability management and compliance reporting Apex is a fast-growing startup that has raised over $500M in funding. The company offers competitive benefits including equity, 100% company-paid healthcare, comprehensive PTO (15-20+ days vacation plus 10 paid holidays), 401(k) matching, 8 weeks paid parental leave, catered lunches, and a vibrant office culture in Playa Vista with flexibility for work-life integration. REQUIREMENTS: - Active TS/SCI (Top Secret/Sensitive Compartmented Information) clearance required at time of hire - US Citizenship required - 2+ years of hands-on experience in a SOC, incident response, threat detection, endpoint security, vulnerability management, or related cybersecurity operations role - Experience investigating events using EDR (Endpoint Detection & Response), SIEM, identity, cloud, or network telemetry - Working knowledge of Windows and Linux, authentication, endpoint behavior, networking fundamentals, common attacker techniques, and cloud logging - Ability to write useful search queries and filters in a SIEM or log-analysis platform and document investigations for continuity - Understanding of incident triage, scoping, containment, evidence preservation, escalation, vulnerability prioritization, and post-incident remediation PREFERRED QUALIFICATIONS: - Experience with CrowdStrike Falcon, Palo Alto, Tenable, Elastic Security, Microsoft GCC High, Entra ID, AWS security telemetry, or similar tools - Experience with detection engineering, threat hunting, MITRE ATT&CK, or scripting in Python, PowerShell, or Bash - Security+, CySA+, GCIH, GCIA, or comparable security operations certification - Experience supporting aerospace, defense, national security, ATO (Authority to Operate), RMF (Risk Management Framework), or other regulated technical environments

Similar roles