обновлено 1 день назад
Senior SOC Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior SOC Analyst (Cybersecurity): Detecting threats, investigating complex security incidents, and leading incident response within a Security Operations Center with an accent on Microsoft Sentinel, threat hunting, detection engineering, and malware analysis. Focus on coordinating high-severity response, developing detection rules and playbooks, mentoring analysts, and improving SOC processes and automation.
Location: Marlborough, MA / client site in Boston, MA. Training requires onsite work in the office five days per week; a hybrid option is available after the training period.
Company
provides cybersecurity, data operations, systems integration, intelligence mission support, and software modernization services for intelligence, defense, civil, and commercial customers.
What you will do
- Monitor and correlate alerts from SIEM, IDS/IPS, EDR, and other security tools.
- Lead advanced threat hunting, security investigations, and high-severity incident response.
- Analyze incidents, conduct malware analysis and reverse engineering, and determine scope, impact, and root cause.
- Develop and tune detection rules, use cases, playbooks, and standard operating procedures.
- Advise leadership on security risks, coordinate with SOC and IT teams, and provide technical reports and executive summaries.
- Mentor junior and mid-level analysts and contribute to SOC process improvement and automation.
Requirements
- 5+ years of cybersecurity or SOC experience, including 3+ years of hands-on SIEM experience with Microsoft Sentinel required.
- Proven incident response and threat-hunting experience, including experience with EDR tools and complex investigations.
- Experience managing a SOC, providing cybersecurity consultation, and contributing to process improvements or automation.
- Strong knowledge of network protocols, architecture, log analysis, security event correlation, malware analysis, forensics, Windows, Linux, and cloud environments.
- Experience with Python, PowerShell, or Bash and familiarity with MITRE ATT&CK and the Cyber Kill Chain.
- Ability to work onsite during training and participate in on-call support when required.
Nice to have
- GSEC, GCIH, CISSP, GCTI, CEH, or equivalent industry certification.
- Cloud security experience with AWS, Azure, or GCP.
- Experience with SOAR platforms, security automation, and threat intelligence platforms.
- Project management experience and budgetary or risk-management awareness.
Culture & Benefits
- Collaborative environment focused on teamwork and solving complex cybersecurity and intelligence challenges.
- Fast-paced, high-pressure work during active security incidents.
- Hybrid work option available after the onsite training period.
- On-call participation may be required for surge support or incident investigations.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Senior Cyber Threat Analyst (Cybersecurity)
110 000 - 160 000$
4 дня назад
SOC Analyst (Cybersecurity)
4 дня назад
Security Engineer (Cybersecurity)
3 дня назад
Senior Detections Engineer (Cybersecurity)
100 000 - 180 000$
4 дня назад
Manager / Sr. Manager, SecOps & Cyber Defense (Cybersecurity)
185 000 - 235 000$
4 дня назад
SOC Analyst (Cybersecurity)
96 086 - 111 683$