
Senior SOC Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Oversee and assist in SOC operations, which encompass real-time monitoring, threat analysis, and incident response.
• Examine security incidents, perform root cause analysis, and propose mitigation strategies.
• Create and enhance security detection rules, playbooks, and operational procedures.
• Execute advanced threat hunting and proactive threat analysis utilizing SIEM, EDR, and various security tools.
• Serve as an escalation point for intricate security incidents and coordinate incident response activities.
• Offer mentorship and training to junior SOC analysts.
• Manage escalations from junior analysts.
• Conduct thorough alert analysis.
• Identify and pursue tuning opportunities.
• Collaborate with cross-functional teams to improve the organization’s cybersecurity posture.
• Must be authorized to work in the United States.
• An associate or bachelor’s degree, or equivalent experience in Information Technology, Computer Science, System Administration, or Cybersecurity.
• A minimum of 5 years of experience in a Security Operations Center (SOC).
• Strong proficiency with SIEM tools (e.g., Microsoft Sentinel, Secronix).
• Expertise in endpoint detection and response (EDR) tools (e.g., CrowdStrike, SentinelOne, Microsoft Defender).
• Comprehensive knowledge of Cloud Security (Azure/Microsoft365).
• Familiarity with threat actor tactics, including MITRE ATT&CK Framework, PowerShell, Command Prompt, WMIC, Scheduled Tasks, Windows Domain and Host Enumeration Techniques, Lateral Movement Techniques, Persistence Mechanisms, and Defense Evasion Techniques.
• Demonstrated experience on platforms such as HackTheBox, TryHackMe, etc.
• Preferred: 5+ years of experience with SentinelOne or CrowdStrike.
• Preferred: 5+ years of experience with a SIEM.
• Preferred: 5+ years of experience on platforms such as HackTheBox, TryHackMe, etc.
• Preferred: 5+ years of experience in incident response/management.
• Preferred: 5+ years of experience with Cloud Security (Azure/Microsoft365) and managing business email compromises (BEC).
• Availability Monday-Friday, 8am–5pm EST, with the possibility of after-hours incident work and participation in an on-call rotation.
• 100% permanently remote position with no plans to return to an office.
• Paid time off, including paid holidays and float holidays.
• Highly competitive and flexible medical, dental, and vision benefits plans.
• 401(k) with employer match.
• Customized Life and Disability insurance plans.
• Full reimbursement for approved professional certifications and career-enhancing opportunities.
• Monthly stipend for mobile phone plans and internet service.
OSIbeyond
It4us Cyber Security
CFA Institute
Invicti
Get handpicked remote jobs straight to your inbox weekly.