Назад
Company hidden
5 дней назад

SOC Analyst (Cybersecurity)

88 000 - 121 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Analyst (Cybersecurity): Monitoring, investigating, and responding to security activity across endpoints, identity, cloud services, networks, and mission-support environments with an accent on alert triage, incident investigation, vulnerability evidence, and compliance documentation. Focus on analyzing SIEM and telemetry data, scoping and escalating incidents involving CUI, preserving evidence, and supporting remediation across regulated aerospace infrastructure.

Location: Los Angeles, United States; in-person collaboration at the Playa Vista office

Salary: $88,000–$121,000 annual base salary, excluding additional benefits

Company

Develops and manufactures satellite buses at scale through software, vertical integration, and manufacturing-focused hardware for earth observation, communications, and other space applications.

What you will do

  • Monitor and triage security alerts from CrowdStrike, Elastic SIEM, Microsoft Identity, AWS, and Palo Alto.
  • Investigate suspicious logins, phishing emails, privilege changes, and unusual network events.
  • Scope and escalate incidents based on affected systems, severity, and CUI impact.
  • Collaborate with IT, cybersecurity, and network teams on findings involving systems and infrastructure.
  • Document incidents, resolutions, affected assets, evidence, and vulnerability-management findings.
  • Maintain recurring logging reviews and incident-response documentation supporting compliance reporting.

Requirements

  • Active TS/SCI clearance required at the time of hire.
  • US Citizenship required.
  • At least 2 years of hands-on experience in a SOC, incident response, threat detection, endpoint security, vulnerability management, or related cybersecurity operations role.
  • Experience investigating events with EDR, SIEM, identity, cloud, or network telemetry.
  • Working knowledge of Windows, Linux, authentication, endpoint behavior, networking fundamentals, attacker techniques, and cloud logging.
  • Ability to write SIEM or log-analysis queries and document investigations, including triage, containment, evidence preservation, escalation, vulnerability prioritization, and remediation.

Nice to have

  • Experience with CrowdStrike Falcon, Palo Alto, Tenable, Elastic Security, Microsoft GCC High, Entra ID, AWS security telemetry, or similar tools.
  • Experience with detection engineering, threat hunting, MITRE ATT&CK, or scripting in Python, PowerShell, or Bash.
  • Security+, CySA+, GCIH, GCIA, or comparable security operations certification.
  • Experience in aerospace, defense, national security, ATO, RMF, or other regulated technical environments.

Culture & Benefits

  • Equity participation and a fast-growing startup environment.
  • Company-paid medical, dental, and vision insurance for employees and dependents, plus life insurance.
  • Paid vacation, company holidays, paid parental leave, and childcare reimbursement for work-related travel.
  • 401(k) plan with employer matching.
  • Daily catered lunch, unlimited snacks, office socials, sports activities, and family gatherings.
  • Playa Vista office, in-person collaboration, work-life flexibility, and a fully equipped workspace.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →