SOC Analyst Cyber Security Analyst
Core
Proactive monitoring, detection, investigation, and response to security threats using industry-leading solutions.
Role type
SOC Analyst (L1/L2) and Lead
Builds
Robust organizational security workflows and systems
Domain
Cybersecurity, Threat Intelligence, Incident Response
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM platforms and alert investigation, incident response, malware analysis, root cause analysis, endpoint and network security tools, threat hunting, forensic investigation, vulnerability management, DLP/email security, threat intelligence platforms, TTP mapping
Preferred skills
Scripting/automation (Python, PowerShell, Shell), SOAR platform experience, regulatory compliance awareness (PCI DSS, GDPR, HIPAA, ISO 27001), continuous improvement and policy development
Technologies
Palo Alto, Splunk, Microsoft MDE, Sentinel, IBM QRadar, LogRhythm, ArcSight, Elastic SIEM, Microsoft Defender for Endpoint, Qualys, Fortinet, Cisco ASA
Responsibilities
Monitor network, endpoint, and cloud environments for anomalous activity; Triage and prioritize alerts, investigate suspicious activity, and conduct malware analysis; Perform root cause analysis and drive incident response flows; Operate Microsoft Defender for Endpoint and conduct threat hunting via EDR telemetry; Analyze network traffic and manage perimeter security using firewalls; Ingest and correlate IOCs and map attacker TTPs to active threats
Seniority
Mid-level (4-6 years experience), hands-on IC with potential for lead/mentorship