SOC Tier 3 Analyst & Engineer
Core
Senior security analyst and engineer responsible for investigating escalated cyber incidents, performing threat hunting, and optimizing SOC operations using AI-driven SIEM and OT security tools.
Role type
Senior IC SOC Tier 3 Analyst & Engineer
Builds
Real-time threat detection, incident response, and resilient cyber operations for enterprise clients
Domain
Cybersecurity, Operational Technology (OT), SIEM, Threat Intelligence
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
Log analysis, threat hunting, incident response, IOC ingestion, SOP creation, network forensics, scripting (Python/PowerShell/Bash), OT security (SCADA/ICS), SIEM/IDS/IPS configuration
Preferred skills
CIRT/CSIRT experience, SANS certifications (GCIA/GCED/GPEN/GCIH)
Technologies
Splunk ES, CrowdStrike Falcon, Palo Alto Cortex XSIAM, Microsoft Azure Sentinel, IBM QRadar, ManageEngine Log360, Nozomi Networks, SNORT, Yara, Active Directory, Cisco IOS, MS Server
Responsibilities
Scrutinize and analyze escalated cyber security events from Tier 1 & 2; identify undetected threats via proactive log and network data search; ingest indicators of compromise (IOCs) into security tools; formulate technical best-practice SOPs and Runbooks; coordinate technical support for enterprise-wide staff; report trends and propose process improvements; resolve inbound technical assistance requests independently.
Seniority
Senior, hands-on IC