
Senior SOC Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Guide and mentor L1 and L2 incident responders.
• Collaborate with internal and external stakeholders during critical incidents.
• Create, enhance, and validate incident response playbooks and procedures.
• Execute advanced threat hunting activities.
• Work alongside threat intelligence and vulnerability management teams.
• Offer insights on root cause analysis and post-incident evaluations.
• Develop and optimize detection rules.
• Utilize MITRE ATT&CK to classify threat actor tactics, techniques, and procedures.
• Promote continuous improvement within the Security Operations Center (SOC).
• Produce metrics and reports for leadership regarding incident response activities and trends.
• Update leadership on security incidents and emerging trends.
• Create and sustain automation scripts for incident response processes.
• Perform comprehensive malware analysis.
• Link malware findings to threat actor operations.
• Suggest improvements for detection and prevention mechanisms.
• Lead digital forensics investigations, including memory forensics.
• Supervise network forensics tasks.
• Act as a subject matter expert for DeepSeas and client leadership.
• Over 5 years of experience in security operations, incident response, or threat detection, including senior (L3) or investigation-lead roles; or an equivalent mix of education and experience.
• Proven experience in managing high-severity incident responses through containment, eradication, and recovery phases.
• Proficient in SIEM, EDR/XDR, and SOAR platforms.
• Skilled in writing and adjusting detection content, including KQL, SPL, Sigma, and YARA.
• Familiarity with MITRE ATT&CK and the incident response lifecycle, including NIST SP 800-61.
• Experience with host, memory, and network forensics.
• Background in static and dynamic malware analysis.
• Proficiency in scripting using Python, PowerShell, or Bash.
• Experience mentoring or guiding junior analysts.
• Excellent written and verbal communication skills suitable for technical, executive, and client audiences.
• Must be a U.S. citizen residing within the United States.
• Preferred: GCIH, GCFA, GREM, GNFA, OSCP, or CISSP certifications.
• Preferred: Experience in MDR or MSSP supporting multiple clients.
• Preferred: Knowledge of reverse engineering and memory forensics tools such as Ghidra, IDA Pro, x64dbg, and Volatility.
• Preferred: Background in threat-hunting or detection engineering programs.
• Preferred: Bachelor's degree in Cybersecurity, Computer Science, or a related field.
• A supportive team of colleagues and ample opportunities for career growth.
• Emphasis on personal health and well-being.
• A workplace committed to diversity.
• Active engagement in information security initiatives and awareness.
• Random background and drug screenings may be conducted for data security purposes.
HiddenLayer
secupay AG
OSIbeyond
It4us Cyber Security
Get handpicked remote jobs straight to your inbox weekly.