Назад
Company hidden
3 дня назад

Senior Security Operations Center (SOC) Analyst

139 000 - 151 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Operations Center (SOC) Analyst (Cloud Security and Detection Engineering): Protecting Alteryx products, infrastructure, and applications by triaging alerts, investigating incidents, and improving detection coverage across endpoint, identity, SaaS, and multi-cloud environments with an accent on incident response, threat hunting, forensics, and cloud security investigations. Focus on leading containment and remediation, developing and tuning SIEM detections, analyzing AWS/Azure/GCP telemetry, and providing 24x7 escalation coverage.

Location: Remote within the United States

Salary: $139,000–$151,000 per year

Company

hirify.global develops products focused on data, automation, and AI for business decision-making.

What you will do

  • Triage and investigate security alerts and incidents across enterprise and product environments, including on-premises and multi-cloud infrastructure.
  • Lead incident response activities, communications, stakeholder coordination, containment, and remediation with IT, Cloud/Platform, and Engineering teams.
  • Document incidents with timelines, evidence, hypotheses, indicators of compromise, actions, and lessons learned.
  • Conduct hypothesis-driven threat hunts mapped to MITRE ATT&CK and translate findings into detections, playbooks, and telemetry improvements.
  • Develop, test, tune, and maintain SIEM correlation rules and other detection content while reducing false positives.
  • Perform endpoint and cloud forensics, malware triage, cloud threat investigations, and participate in a 24x7 on-call rotation.

Requirements

  • Bachelor’s degree in computer science or a related field, or equivalent experience or training.
  • 4+ years of relevant security operations or incident response experience.
  • Strong understanding of the security incident management lifecycle and operational response practices.
  • Experience with SIEM or log management platforms such as Microsoft Sentinel, Splunk, ELK, or similar, including querying and telemetry analysis.
  • Hands-on experience with cloud-native security services and logs across AWS, Azure, or GCP, plus scripting with Python, PowerShell, or shell.
  • Strong analytical, problem-solving, written, and verbal communication skills.

Nice to have

  • Depth in endpoint or cloud forensics, evidence handling, artifact interpretation, or malware triage.
  • Experience leading threat hunts and operationalizing results through ATT&CK mapping, detections, playbooks, and coverage tracking.
  • Experience owning the detection lifecycle from development and testing through deployment, tuning, and retirement.
  • Master’s degree.

Culture & Benefits

  • Remote work arrangement within the United States.
  • Benefits may include bonus or commission, medical, retirement, financial, wellness, paid time off, and employee discounts.
  • Access to benefits available to all hirify.global associates.
  • Work includes access to technology subject to U.S. export controls, with offers contingent on compliance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →