Senior SOC Analyst
USA-PA-Harrisburg-614 North Front Street, United States
USD 95K-192K Senior-level Full Time
Tasks
- Automate enrichment and triage with SOAR
- Conduct quality reviews of case handling
- Conduct root cause analysis
- Create after-action reports and lessons learned
- Deliver containment and remediation guidance
- Deliver technical briefings and workshops
- Develop and maintain prompt templates
- Evaluate AI output accuracy
- Identify detection gaps
- Incorporate enrichment sources and threat intel
- Integrate AI agents into SOC workflows
- Lead high-severity incident investigations
- Maintain runbooks and knowledge bases
- Mentor junior analysts
- Optimize workflows to reduce MTTR
- Perform threat hunting and proactive analysis
- Produce incident and executive reports
- Propose process and monitoring improvements
- Provide technical incident liaison
- Recommend new hunts
- Reconstruct incident timelines
- Translate hunt findings into detections
- Tune detection content
- Use AI for case triage and enrichment
- Validate automation logic prior to deployment
- Validate detections with live telemetry
Perks/Benefits
- N/A
Skills/Tech-stack
Cause analysis | Detection engineering | EDR | Elastic | Incident Response | KQL | Log Analysis | MITRE ATT&CK | Root Cause Analysis | Root cause | SIEM | SOAR | Scripting | Sigma | Splunk | Splunk SPL | Telemetry Analysis | Threat hunting | XDR
Education
Regions
Countries
States
Cities
Related jobs
-
Entry-level Full TimeMenlo Park, CA17h ago
-
Asset Management | Bash | CMDB | Code Automation | Compliance401k program | Dental benefits | Discounts | Employee assistance program | Health benefitsMid-level Full TimeFort Worth, TX, US20h ago
-
AWS | Azure | CIS Controls | DNS | ELKCompany sponsored retirement savings program | Dental insurance | Flexible work environment | Life insurance | Medical insuranceSenior-level Full TimeUnited States1d ago
-
Access Control | Analytics reporting | Crisis Intelligence Platforms | Crisis management | Critical Event CommunicationsEmergency response team participation | Hybrid work model | Mentorship programs | On-call rotation | Online learning and development coursesSenior-level Full TimeBoston, MA Headquarters - (NB), United …1d ago
-
Cyber Security Analyst (10a-7p Shift) USD 95K-125KCause analysis | Compliance Auditing | Computer forensics | Cyber Threat | Cyber Threat Intelligence401k company match | Disability insurance | Employee assistance program | Flexible spending account | Health savings accountMid-level Full TimeHoover, AL - Riverchase Operations Center …1d ago
-
Principal/Senior Principal Cybersecurity Analyst USD 98K-184K800-53 | Automation | Cloud Security | Compliance Frameworks | Control ImplementationCompany-Paid Holidays | Disability insurance | Health insurance | Life insurance | Paid time offSenior-level Full TimeUTRO02, United States1d ago
-
Systems Engineer II - Identity Access Management USD 99K-145KAWS IAM | Access Management | Active Directory | Automation | Bash401k match | Dental coverage | HSA contributions | Healthcare coverage | Paid HolidaysMid-level Full TimeScottsdale, United States1d ago
-
Cyber Security Analyst USD 104K-166K800-53 | ATO | Authority to Operate | Cause analysis | Configuration Management401k matching | Dental insurance | Education assistance | Health insurance | Life insuranceSenior-level Full TimeBethesda, MD1d ago
-
Cybersecurity Engineering Associate USD 111K-196K.NET | Access Management | Business Continuity | Cloud Security | Cybersecurity401k plan | Commuter benefits | Disability benefits | Health benefits | Life insuranceMid-level Full Time102462-AZ-B Building, Chandler Campus, United States1d ago
-
Cause analysis | Control Design | Controls Testing | Dashboards | Data AnalysisEarly career development program | On-site workMid-level Full TimeBerkeley Heights, New Jersey, United States1d ago
-
Principal Technology Risk Analyst USD 129K-137KAWS | AWS CloudTrail | Artifactory | Azure | CI/CDHybrid work scheduleSenior-level Full Time245 Summer St, Boston MA, United …1d ago
-
Senior Systems Analyst USD 89K-167KAgile | Atlassian Jira | CSS | Confluence | DatadogHybrid work scheduleSenior-level Full TimeTwo Destiny Way, Westlake TX, United …1d ago
-
Cloud Security Solutions & Advisory, VP USD 145K-185KAPI Security | Cloud Native | Cloud Risk Management | Cloud Security | Cloud riskExecutive-level Full TimeTampa - 4050 West Boy Scout …1d ago
-
Senior IT Security Analyst USD 127K-191KApplication Security | Automation | CI/CD | Cloud Security | DevSecOpsDental insurance | Disability coverage | Discounted tuition | Flexible paid time off | Flexible spending accountSenior-level Full TimeSalt Lake City Office, United States1d ago
-
Database Security Manager, Vice President USD 145K-185KAWS | Activity monitoring | Big Data | Cause analysis | DAMSEducational assistance | Health and wellness benefits | Paid Holidays | Paid sick days | Paid vacationExecutive-level Full TimeNew Jersey Office - 210 Hudson …1d ago
-
Data Security Specialist, VP USD 140K-185KAI Governance | Access Management | Compliance Management | Continuous Monitoring | Cybersecurity frameworksExecutive-level Full TimeNew Jersey Office - 210 Hudson …1d ago
-
Senior-level Full TimeOne Destiny Way, Westlake TX, United …1d ago
-
Senior-level Full TimeRemote Canada | Remote United States R1d ago
-
Security Engineer USD 145K-165KAI Security | AWS | Agentic Workflows | Application Security | Azure401k retirement plan | Dental insurance | Flexible paid time off | Life insurance | Long-term disability insuranceSenior-level Full TimeMountain View, CA, United States1d ago
-
Information System Security Officer USD 85K-158KAccess Control | Active Directory | COMPUSEC | COMSEC | Computer Security24x7 coverage | On-call supportEntry-level Full TimeLangley AFB, VA1d ago
-
Staff Security Engineer, Threat Detection & Response USD 168K-240KAccess Control | Access Management | Application Security | CCPA | Cloud Security401k matching | Discretionary annual bonus | Flexible time off | Health plans | Long Term Incentive Equity GrantSenior-level Full TimeNew York, New York; San Francisco, …1d ago
-
Associate Information Security Engineer USD 74K-118KAccess Control | Application Security | Incident Response | Logical Access | Logical Access ControlHybrid work remote work | On site campus occasionalMid-level Full TimeRochester, MN, United States1d ago
-
AWS | Automation | Azure | Cause analysis | Cloud SecurityBenefits | Bonus | Employee travel credits | Equity | Remote work eligibleSenior-level Full TimeUSA - Remote R1d ago
-
Principal Security & Infrastructure Engineer USD 175K-250KAccess Control | Access Management | Access reviews | Ansible | Configuration ManagementDental insurance | Health insurance | Paid time off | Professional development | Vision insuranceSenior-level Full TimeEmeryville, California, United States; Hybrid (2-3 … R1d ago
-
Staff Security Engineer USD 161K-200KAccess Management | Application Security | Cloud Security | Cloud infrastructure | GCPFlexible time off | Health benefits | Meaningful equity program | Paid parental leave | Quarterly Team Off-SitesSenior-level Full TimeUnited States1d ago