5 дней назад
Security Operations Center (SOC) Lead - L3 (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Center (SOC) Lead - L3 (Cybersecurity): Leading advanced threat detection, incident response, and security monitoring across endpoint, network, cloud, and identity environments with an accent on detection engineering, threat hunting, and SOC optimization. Focus on investigating complex incidents, coordinating containment and recovery, mentoring analysts, and building automation and operational improvements.
Location: Plano, Texas, United States. Applicants must already have the right to work in the United States and must not require current or future immigration support or visa sponsorship.
Company
North America provides mobility, finance, and insurance solutions through and Financial Services.
What you will do
- Lead advanced monitoring, threat detection, threat hunting, and analysis of security events across multiple platforms.
- Investigate complex incidents across endpoint, network, cloud, and identity environments, including root cause, scope, impact, and severity analysis.
- Coordinate containment, eradication, and recovery with internal and external stakeholders.
- Develop and optimize detection logic, use cases, correlation rules, alerting content, and security monitoring technologies.
- Support log-source and security-tool integrations, SOC automation, playbooks, processes, and operational standards.
- Mentor Tier 1 and Tier 2 analysts, act as an escalation point, prepare reports, and drive continuous improvement.
Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
- At least 5 years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
- Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
- Strong understanding of attacker tactics, techniques, and procedures and frameworks such as MITRE ATT&CK.
- Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms, plus strong analytical and troubleshooting skills.
- Industry certification such as CISSP, GCIH, GCFA, GCIA, CySA+, or equivalent.
Nice to have
- Experience with cloud security and monitoring in hybrid environments.
- Experience developing detection content, threat-hunting methodologies, and automation workflows.
- Familiarity with PowerShell, Python, or similar scripting and automation technologies.
- Experience supporting regulatory, compliance, or security framework requirements.
Culture & Benefits
- Team-oriented, flexible, and respectful work environment.
- Professional development programs and tuition reimbursement.
- Comprehensive healthcare and wellness plans, including tax-advantaged accounts.
- 401(k) plan with company matching and an annual retirement contribution, where applicable.
- Paid holidays, paid time off, vehicle purchase and lease programs, and family support referral services.
- Relocation assistance may be available, where applicable.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
12 дней назад
Cyber Detection Event Analyst (Cybersecurity)
6 дней назад
Manager / Sr. Manager, SecOps & Cyber Defense
185 000 - 235 000$
11 дней назад
Senior Cybersecurity Engineer (Cyber Threat Intelligence & Response)
10 дней назад
Senior Incident Response Analyst (Cybersecurity)
135 000 - 175 000$
7 дней назад
Senior Manager – Cybersecurity Operations (Cybersecurity)
6 дней назад