Senior SOC Analyst
USA-PA-Harrisburg-614 North Front Street, United States
USD 95K-192K Senior-level Full Time
Tasks
- Automate enrichment and triage with SOAR
- Conduct quality reviews of case handling
- Conduct root cause analysis
- Create after-action reports and lessons learned
- Deliver containment and remediation guidance
- Deliver technical briefings and workshops
- Develop and maintain prompt templates
- Evaluate AI output accuracy
- Identify detection gaps
- Incorporate enrichment sources and threat intel
- Integrate AI agents into SOC workflows
- Lead high-severity incident investigations
- Maintain runbooks and knowledge bases
- Mentor junior analysts
- Optimize workflows to reduce MTTR
- Perform threat hunting and proactive analysis
- Produce incident and executive reports
- Propose process and monitoring improvements
- Provide technical incident liaison
- Recommend new hunts
- Reconstruct incident timelines
- Translate hunt findings into detections
- Tune detection content
- Use AI for case triage and enrichment
- Validate automation logic prior to deployment
- Validate detections with live telemetry
Perks/Benefits
- N/A
Skills/Tech-stack
Cause analysis | Detection engineering | EDR | Elastic | Incident Response | KQL | Log Analysis | MITRE ATT&CK | Root Cause Analysis | Root cause | SIEM | SOAR | Scripting | Sigma | Splunk | Splunk SPL | Telemetry Analysis | Threat hunting | XDR
Education
Regions
Countries
States
Cities
Related jobs
-
Operations/C2C Analyst USD 90K-124KASA | Access Control | Alerting | Architecture Diagrams | Brocade switchesInterim Secret Clearance Process | Secret Clearance or Better | Shift workMid-level Full TimeSierra Vista, AZ, United States1h ago
-
Access Records Analysis | Boot Disk | Computer Software | Computer hardware | Data AnalysisDental, vision, life insurance | Education Development Funds | Flex Time | Medical coverage | Paid HolidaysEntry-level Full TimeUnited States of America-OHIO-Franklin County-Columbus4h ago
-
Manager, Cybersecurity Engineering USD 119K-160KAccess Controls | Change Management | Cloud Security | Cybersecurity | EDRMid-level Full TimeUSA-Texas-Houston4h ago
-
Information Security Systems Analyst USD 84K-131KAccess Control | Authentication | Authorization | Documentation | HIPAA401k matching | Dental insurance | Employee assistance program | Health insurance | Life insuranceMid-level Full Time100% Remote, United States R17h ago
-
Asset Management Analyst - Cybersecurity USD 76K-97KAsset Inventory | Asset Inventory Management | Automation | CSRD | Data MiningMid-level Full TimeLas Vegas, NV, United States18h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KDevOps | Endpoint Management | Event Correlation | Firewall | Incident ResponseMid-level Full TimePewaukee, WI, US18h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KAnalytics rules | Endpoint Management | Event Correlation | Firewall Management | Incident ResponseCustomer facing managed services | Mentoring support | On-call rotationMid-level Full TimeSpringfield, MO, US18h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KAnalytics rules | Cybersecurity | Detection engineering | DevOps repositories | Endpoint ManagementCustomer facing managed services | On-call rotationMid-level Full TimeLittle Chute, WI, US18h ago
-
Associate Information Security Engineer USD 74K-120KAccess Control | Incident Response | Logical Access | Logical Access Control | Network SecurityContinuing education | Dental insurance | FSA | HSA | Hybrid workMid-level Full TimeRochester, MN, United States20h ago
-
Senior AI Security & Automation Engineer USD 110K-120KAccess Management | Azure Logic | Azure Logic Apps | Azure OpenAI | Bash401k matching | Dental insurance | Flexible working arrangements | Health insurance | Paid time offSenior-level Full TimeNew York, NY, United States22h ago
-
AI Security Engineer USD 153K-239KAPI Security | Access Management | Application Security | CASB | CSPMSenior-level Full TimeBoca Raton, FL, United States22h ago
-
800-53 | AD Connect | AWS IAM | AWS Identity | AWS Identity Center401k plan with company matching | Bereavement | Employee assistance program | Health, dental, and vision care | HolidaysSenior-level Full TimeRemote - Nationwide, United States R1d ago
-
All-source intelligence | Basic IT | Basic IT troubleshooting | Geopolitical Analysis | IT troubleshootingRemote work | Training and development | Weekend shift coverageSenior-level Full TimeBoca Raton, FL, US R1d ago
-
Mid-level Full TimeBoulder, CO1d ago
-
Cyber Security Engineer USD 117K-155KAccess Control | Access Management | Cause analysis | CyberArk | DLPHybrid workMid-level Full TimeAtlanta, Georgia, United States1d ago
-
Bash | Cortex XSIAM | Linux | Mitre Attack | Powershell100 percent remoteSenior-level Full TimeColumbia, SC, United States R1d ago
-
Bash | Incident Response | JSON | MITRE ATT CK | PowershellFully remoteSenior-level Full TimeColumbia, SC, United States R1d ago
-
Awareness Training | Control Assessment | Excel | Governance | Incident ResponseSenior-level Full TimeColumbia, SC, United States1d ago
-
Director IT Security, Infrastructure, & Operations USD 150K-195KAccess Management | Asset Management | CIS | CapEx | Cloud ComputingExecutive-level Full TimeColumbus, Ohio, United States1d ago
-
Security Analyst USD 87K-124KContinuous Monitoring | EMASS | EMASSter | Incident Response | Management FrameworkMid-level Full TimeChina Lake, CA1d ago
-
Authentication | Compliance | Encryption | Firewall | Incident ResponseMid-level ContractPhoenix, United States1d ago
-
Temporary- Cyber Security Analyst USD 40K-40KCIS Controls | Detection Systems | FERPA | Incident Response | Intrusion DetectionBackground check | Flexible work arrangementsEntry-level TemporaryNashville1d ago
-
Incident Response Expert USD 111K-177KAWS | Azure | Cloud platform | CrowdStrike | DNSCareer growth | Mentorship | Travel opportunitiesSenior-level Full TimeNew York, NY, US1d ago
-
Senior Security Engineer USD 145K-247KAWS | AWS Security | AWS Security Hub | Access Management | Active DirectoryHybrid work | Sponsorship available | Work from home optionSenior-level Full TimeNew Haven, CT1d ago
-
Software Engineer, Security & Privacy USD 170K-230KAWS | AWS CDK | Authentication | Authorization | COPPAFlexible PTO | Hybrid work model | Medical/Dental/Vision insuranceSenior-level Full TimeNew York, NY1d ago