Senior SOC Analyst (Incident Response)
San Salvador, El Salvador
Applaudo Studios
We are a software development company that develops and deploys custom software solutions for organizations that want to make an impact through technology.Job Description
About you:
You are someone who wants to influence your own development. You’re looking for a company where you have the opportunity to pursue your interests and be able to grow professionally.
The Senior SOC Analyst is responsible for conducting in-depth analysis and response to critical security incidents, utilizing advanced tools and methodologies to ensure timely containment, eradication, and recovery. This role focuses on transforming raw telemetry data into actionable intelligence, leveraging threat intelligence and advanced analytics to mitigate threats effectively. The Senior SOC Analyst plays a key role in guiding the incident response process, collaborating with junior analysts, and enhancing SOC procedures and playbooks.
You bring to Applaudo the following competencies:
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related discipline, or equivalent professional experience.
- 2–3 years of hands-on experience in SOC operations or incident response roles.
- Expertise in investigating and mitigating security incidents across diverse environments, including on-premises, cloud, and hybrid infrastructures.
- Proficiency with SOC technologies, including SIEM (e.g., Chronicle, Splunk, IBM QRadar), EDR/XDR (e.g., Trellix, CrowdStrike, SentinelOne), and SOAR platforms (e.g., Chronicle, FortiSOAR, Splunk SOAR).
- Strong understanding of threat intelligence integration, adversary TTPs, and the MITRE ATT&CK framework.
- Advanced analytical and problem- solving skills for in-depth threat assessment.
- Strong leadership and mentorship abilities to guide junior SOC analysts.
- Clear and concise communication skills, both written and verbal, for reporting and collaboration.
- Advanced English (required).
- Desirable: CompTIA Cybersecurity Analyst (CySA+) Certification.
- Desirable: EC-Council Certified Incident Handler (ECIH).
- Desirable: GIAC Certified Incident Handler (GCIH).
- SIEM or EDR certifications are a plus (e.g., Splunk, Chronicle, SentinelOne)
You will be accountable for the following responsibilities:
- Conduct thorough analysis of critical incidents escalated from initial triage, using raw attack telemetry, Indicators of Compromise (IoCs), and advanced forensic data.
- Understand the scope of attacks, identify affected systems, and determine the extent of compromise.
- Coordinate and implement containment strategies, eradication procedures, and recovery plans to mitigate ongoing threats.
- Incorporate threat intelligence feeds, updated detection rules, and IoC databases to enhance response effectiveness.
- Analyze adversary tactics, techniques, and procedures (TTPs) to develop actionable insights and improve detection capabilities.
- Consult with additional senior analysts or escalate unresolved incidents to specialized teams, such as forensic experts or SOC engineering teams, as needed.
- Collaborate with stakeholders, including IT and security teams, to ensure a cohesive and efficient response to incidents.
- Utilize tools such as SIEM platforms (e.g., Chronicle, Splunk, IBM QRadar, FortiSIEM), EDR/XDR solutions (e.g., Trellix, CrowdStrike, SentinelOne, FortiXDR), and SOAR platforms (e.g., Chronicle, FortiSOAR, Splunk SOAR) to perform advanced threat analysis and automate response actions.
- Assist in tuning detection rules and optimizing monitoring tools for improved incident detection and response.
- Document the full incident lifecycle, including root cause analysis, actions taken, and lessons learned.
- Generate detailed incident reports and provide recommendations to enhance security posture and prevent future occurrences.
Additional Information
Here at Applaudo Studios values as trust, communication, respect, excellence and team work are our keys to success. We know we are working with the best and thus treat each other with respect and admiration without asking.
Submit your application today, and don't miss this opportunity to join the Best Digital team in the Region!
We truly appreciate all the hard and outstanding work our team makes every day at Applaudo Studios, and that's why the perks that we offer, are deeply thought and designed as a way to thank them for their commitment and excellence.
Some of our perks and benefits:
- Work from home
- Flexible schedule
- Celebrations
- Special discounts
- Entertainment area
- Flexible work spaces
- Great work environment
- Private medical insurance
*Benefits may vary according to your location and/or availability. Request further information when applying.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Cloud CompTIA Computer Science CrowdStrike CySA+ EDR GCIH GIAC Incident response MITRE ATT&CK Monitoring QRadar SIEM SOAR SOC Splunk Threat intelligence TTPs XDR
Perks/benefits: Flex hours Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.