
SOC Investigation Specialist Talent Network | $70-$95/hr Remote
Listing checked August 29, 2026 · pay as published by Mercor
Overview
This role is with a confidential company seeking experienced SOC analysts to help shape next-generation security automation and AI-driven investigation systems. You'll apply your real-world investigative judgment to review, validate, and build high-quality security cases across SIEM, endpoint, cloud, and identity environments. It's a remote, part-time position paying $70–$95/hr, ideal for analysts who want to influence how security teams detect and respond to threats.
What You'll Do6
- 1Review and evaluate SOC alerts and investigation outputs against predefined scenarios, separating genuine threats from false positives.
- 2Run end-to-end security investigations—including log analysis, entity pivoting, timeline reconstruction, and evidence correlation—when needed.
- 3Assess the accuracy, completeness, and quality of investigations produced by automated systems or other analysts.
- 4Use Splunk extensively to pivot across logs, entities, and timelines, including reading and reasoning about SPL queries.
- 5Produce clear, detailed documentation of investigative steps, assumptions, evidence, and conclusions.
- 6Collaborate with program leads and fellow annotators to maintain high standards, and mentor other analysts when serving in a lead role.
Requirements6
- 13+ years of hands-on SOC analyst experience in a production environment, ideally at Tier 2 or above.
- 2Strong understanding of alert triage, incident investigation workflows, and evidence-based decision-making under time pressure.
- 3Mandatory practical experience with Splunk, including conducting investigations, reading and reasoning about SPL queries, and pivoting across logs and timelines.
- 4Proven ability to evaluate SOC investigations and determine whether conclusions are valid, incomplete, or incorrect.
- 5Solid investigative judgment and comfort making decisive evaluations in ambiguous situations.
- 6Fluent English (verbal and written) with strong documentation and communication skills.
Who Should Apply
This role is for seasoned SOC analysts who thrive on dissecting alerts, validating evidence, and making tough judgment calls. You should be comfortable working independently on a remote, part-time basis and have a deep appreciation for how automation and AI can augment—but not replace—human expertise. If you're looking to apply your investigative skills to improve the next generation of security tools, this is the opportunity for you.
Salary Insight
The role offers an hourly rate between $70 and $95, based on experience and qualifications.
Pay and demand for Talent Acquisition & Recruiting roles
AggregatedTypical pay
$70/hour
This role
$70–$95/hr
Most Talent Acquisition & Recruiting roles pay $50–$85 per hour. This role's pay falls inside that range.
Based on 286 similar roles that publish pay · 39 publish only a top rate; those count at the rate they gave
Rates shown per hour. Yearly and monthly pay converted; one-time fees and non-USD pay are not included.
- Live similar roles
- 352
- Listed in last 30 days
- 149
- Remote
- 94%
Hiring most right now: micro1 (149) · Mercor (46) · Turing (28)
Most requested skills · share of roles
- python19%
- technical writing9%
- data analysis7%
- AWS6%
Figures from Talent Acquisition & Recruiting roles live on NearSkill when this page loaded. A role can close before you apply, so check the listing itself.
Compare your resume against these rolesLocation
Compensation
$70–95/hr
Application Tip
When applying, prepare a concrete example of a complex investigation you led—detail how you used Splunk to pivot across logs and entities, and how you determined the final verdict. Highlighting your decision-making process will set you apart.
See NearSkill jobs more often in your search
Application & verification flow
1Instant rubric match
Your resume is scanned against this role’s requirements to check qualification fit.
2Screened before the employer sees it
Only profiles that clear screening are passed on.
3Outcome by email
We notify you at the address on your resume once the screening is reviewed.
Similar open positions
Explore active roles that match your skills and interests.

AfterQuery
VerifiedInformation Security Analyst Expert - Remote
AfterQuery needs an information security analyst to build realistic detection engineering and incident response scenarios that frontier AI labs use to test model judgment. You will work 10 hours per week on a remote contract, choose your own schedule, and receive weekly pay through Stripe at $90 to $135 per hour. The scenarios cover SIEM, EDR, and vulnerability scanner workflows from alert triage through remediation. Your depth in threat hunting, detection engineering, or GRC will shape how models reason about security operations.

Micro1
VerifiedCyber Security Analyst
This role lets you put your cybersecurity expertise to work in a unique way—helping train next-generation AI systems. You won't need any prior AI experience; your domain knowledge in security is what counts. As a part-time, remote contractor, you'll test and guide AI models through hands-on prompts and analysis.

Micro1
VerifiedNetwork Security Engineer
This role is a unique opportunity to apply your network security expertise to train cutting-edge AI systems. You'll provide real-world knowledge that helps models learn and reason more effectively. No AI background is needed—your hands-on security skills are what count. This is a remote contract position with flexible hours.

Mercor
VerifiedCybersecurity Research Expert – Offensive Security & Vulnerability Research
Mercor is hiring experienced Cybersecurity Research Experts to test how well frontier AI models handle advanced security reasoning, vulnerability analysis, and exploit development. In this remote, hourly contract role, you'll review AI-generated security assessments, validate root-cause findings, and help build benchmarks that push AI security capabilities forward. This is a fit for practitioners with a strong track record in offensive security and a public portfolio of technical contributions.

Micro1
VerifiedVulnerability Researcher and Staff Security Engineer
Remote role for a vulnerability researcher and staff-level security expert who operates as an internal adversary to uncover novel attack paths. You’ll study threats across AI agents, cloud infrastructure, developer platforms, and production systems, then collaborate with engineering to raise the stack’s resilience. Expect to build offensive tooling and publish internal research to shape security strategy. The position is full-time and focused on practical, hands-on security work in a remote setting. Bold Multi-Cloud, Red Teaming, AI security.

AfterQuery
VerifiedSecurity Engineer - Cryptanalysis (Remote Contract)
AfterQuery is assembling a research cohort of senior security experts who work across cryptanalysis and reverse engineering. The job centers on AI evaluation: you design hard problems that mirror real expert work, write reference solutions and grading rubrics, then judge how frontier models handle those problems. This is research and evaluation, not production engineering. The contract runs remote and asynchronous at about 4 hours per week, with pay between $100 and $170 per hour.


