Senior SOC Analyst

Posted 1 day ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Guide and mentor L1 and L2 incident responders.

• Collaborate with internal and external stakeholders during critical incidents.

• Create, enhance, and validate incident response playbooks and procedures.

• Execute advanced threat hunting activities.

• Work alongside threat intelligence and vulnerability management teams.

• Offer insights on root cause analysis and post-incident evaluations.

• Develop and optimize detection rules.

• Utilize MITRE ATT&CK to classify threat actor tactics, techniques, and procedures.

• Promote continuous improvement within the Security Operations Center (SOC).

• Produce metrics and reports for leadership regarding incident response activities and trends.

• Update leadership on security incidents and emerging trends.

• Create and sustain automation scripts for incident response processes.

• Perform comprehensive malware analysis.

• Link malware findings to threat actor operations.

• Suggest improvements for detection and prevention mechanisms.

• Lead digital forensics investigations, including memory forensics.

• Supervise network forensics tasks.

• Act as a subject matter expert for DeepSeas and client leadership.


⛳️ Requirements

• Over 5 years of experience in security operations, incident response, or threat detection, including senior (L3) or investigation-lead roles; or an equivalent mix of education and experience.

• Proven experience in managing high-severity incident responses through containment, eradication, and recovery phases.

• Proficient in SIEM, EDR/XDR, and SOAR platforms.

• Skilled in writing and adjusting detection content, including KQL, SPL, Sigma, and YARA.

• Familiarity with MITRE ATT&CK and the incident response lifecycle, including NIST SP 800-61.

• Experience with host, memory, and network forensics.

• Background in static and dynamic malware analysis.

• Proficiency in scripting using Python, PowerShell, or Bash.

• Experience mentoring or guiding junior analysts.

• Excellent written and verbal communication skills suitable for technical, executive, and client audiences.

• Must be a U.S. citizen residing within the United States.

• Preferred: GCIH, GCFA, GREM, GNFA, OSCP, or CISSP certifications.

• Preferred: Experience in MDR or MSSP supporting multiple clients.

• Preferred: Knowledge of reverse engineering and memory forensics tools such as Ghidra, IDA Pro, x64dbg, and Volatility.

• Preferred: Background in threat-hunting or detection engineering programs.

• Preferred: Bachelor's degree in Cybersecurity, Computer Science, or a related field.


🏝️ Benefits

• A supportive team of colleagues and ample opportunities for career growth.

• Emphasis on personal health and well-being.

• A workplace committed to diversity.

• Active engagement in information security initiatives and awareness.

• Random background and drug screenings may be conducted for data security purposes.

People also viewed

HiddenLayer19 hours ago

Security Operations Specialist

US flagUnited States OnlyFull-timeSecurity Operations
ApplyView job
secupay AG20 hours ago

SOC Analyst, SIEM Engineer

DE flagGermany OnlyFull-timeSecurity Operations
ApplyView job
OSIbeyond3 days ago

Security Operations Center (SOC) Analyst

US flagMaryland OnlyFull-timeSecurity Operations
ApplyView job
It4us Cyber Security4 days ago

SOC Analyst N2/N3

BR flagBrazil OnlyFreelanceSecurity Operations
ApplyView job
Magna54 days ago

Senior SOC Analyst

US flagUnited States OnlyFull-timeSecurity Operations
ApplyView job
CFA Institute4 days ago

Security Operations Analyst II

US flagFlorida, +3 more statesFull-timeSecurity Operations$83k – $110k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers