Назад
Company hidden
обновлено 1 день назад

Senior SOC Analyst (Cybersecurity)

Формат работы
onsite/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior SOC Analyst (Cybersecurity): Detecting threats, investigating complex security incidents, and leading incident response within a Security Operations Center with an accent on Microsoft Sentinel, threat hunting, detection engineering, and malware analysis. Focus on coordinating high-severity response, developing detection rules and playbooks, mentoring analysts, and improving SOC processes and automation.

Location: Marlborough, MA / client site in Boston, MA. Training requires onsite work in the office five days per week; a hybrid option is available after the training period.

Company

hirify.global provides cybersecurity, data operations, systems integration, intelligence mission support, and software modernization services for intelligence, defense, civil, and commercial customers.

What you will do

  • Monitor and correlate alerts from SIEM, IDS/IPS, EDR, and other security tools.
  • Lead advanced threat hunting, security investigations, and high-severity incident response.
  • Analyze incidents, conduct malware analysis and reverse engineering, and determine scope, impact, and root cause.
  • Develop and tune detection rules, use cases, playbooks, and standard operating procedures.
  • Advise leadership on security risks, coordinate with SOC and IT teams, and provide technical reports and executive summaries.
  • Mentor junior and mid-level analysts and contribute to SOC process improvement and automation.

Requirements

  • 5+ years of cybersecurity or SOC experience, including 3+ years of hands-on SIEM experience with Microsoft Sentinel required.
  • Proven incident response and threat-hunting experience, including experience with EDR tools and complex investigations.
  • Experience managing a SOC, providing cybersecurity consultation, and contributing to process improvements or automation.
  • Strong knowledge of network protocols, architecture, log analysis, security event correlation, malware analysis, forensics, Windows, Linux, and cloud environments.
  • Experience with Python, PowerShell, or Bash and familiarity with MITRE ATT&CK and the Cyber Kill Chain.
  • Ability to work onsite during training and participate in on-call support when required.

Nice to have

  • GSEC, GCIH, CISSP, GCTI, CEH, or equivalent industry certification.
  • Cloud security experience with AWS, Azure, or GCP.
  • Experience with SOAR platforms, security automation, and threat intelligence platforms.
  • Project management experience and budgetary or risk-management awareness.

Culture & Benefits

  • Collaborative environment focused on teamwork and solving complex cybersecurity and intelligence challenges.
  • Fast-paced, high-pressure work during active security incidents.
  • Hybrid work option available after the onsite training period.
  • On-call participation may be required for surge support or incident investigations.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →