Назад
Company hidden
5 дней назад

Security Operations Center (SOC) Lead - L3 (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Operations Center (SOC) Lead - L3 (Cybersecurity): Leading advanced threat detection, incident response, and security monitoring across endpoint, network, cloud, and identity environments with an accent on detection engineering, threat hunting, and SOC optimization. Focus on investigating complex incidents, coordinating containment and recovery, mentoring analysts, and building automation and operational improvements.

Location: Plano, Texas, United States. Applicants must already have the right to work in the United States and must not require current or future immigration support or visa sponsorship.

Company

hirify.global North America provides mobility, finance, and insurance solutions through hirify.global and hirify.global Financial Services.

What you will do

  • Lead advanced monitoring, threat detection, threat hunting, and analysis of security events across multiple platforms.
  • Investigate complex incidents across endpoint, network, cloud, and identity environments, including root cause, scope, impact, and severity analysis.
  • Coordinate containment, eradication, and recovery with internal and external stakeholders.
  • Develop and optimize detection logic, use cases, correlation rules, alerting content, and security monitoring technologies.
  • Support log-source and security-tool integrations, SOC automation, playbooks, processes, and operational standards.
  • Mentor Tier 1 and Tier 2 analysts, act as an escalation point, prepare reports, and drive continuous improvement.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • At least 5 years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
  • Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
  • Strong understanding of attacker tactics, techniques, and procedures and frameworks such as MITRE ATT&CK.
  • Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms, plus strong analytical and troubleshooting skills.
  • Industry certification such as CISSP, GCIH, GCFA, GCIA, CySA+, or equivalent.

Nice to have

  • Experience with cloud security and monitoring in hybrid environments.
  • Experience developing detection content, threat-hunting methodologies, and automation workflows.
  • Familiarity with PowerShell, Python, or similar scripting and automation technologies.
  • Experience supporting regulatory, compliance, or security framework requirements.

Culture & Benefits

  • Team-oriented, flexible, and respectful work environment.
  • Professional development programs and tuition reimbursement.
  • Comprehensive healthcare and wellness plans, including tax-advantaged accounts.
  • 401(k) plan with company matching and an annual retirement contribution, where applicable.
  • Paid holidays, paid time off, vehicle purchase and lease programs, and family support referral services.
  • Relocation assistance may be available, where applicable.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →