Senior Cyber Operations Analyst
Core
Senior Cyber Operations Analyst monitoring, detecting, investigating, and responding to cybersecurity threats using automation, AI, and machine learning.
Role type
Senior IC Cyber Operations Analyst
Builds
SOC operations, automated threat detection, and AI-enabled security workflows
Domain
Cybersecurity / Security Operations Center (SOC)
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
SOC monitoring, incident response, threat intelligence analysis, SIEM/SOAR/EDR/XDR proficiency, Python/Bash/PowerShell scripting, KQL, MITRE ATT&CK framework alignment, NLP for security events, cloud infrastructure (Azure/AWS/GCP), vulnerability management, identity systems, MSSP collaboration
Preferred skills
GIAC certifications (GCED/GCIH/GDAT), Microsoft Security Operations Analyst Associate, forensic investigation experience, IDS/IPS management, DLP, file integrity monitoring, network/system monitoring, government cloud experience
Technologies
SIEM, SOAR, EDR/XDR, MITRE ATT&CK, Python, Bash, JavaScript, PowerShell, KQL, Azure, AWS, GCP, NLP tools, MCP servers, AI assistants
Responsibilities
Investigate and respond to cybersecurity incidents; act as escalation point for complex SOC investigations; develop and tune detections aligned with MITRE ATT&CK; automate repetitive tasks using SOAR and AI; validate security alerts and interpret confidence scores; collaborate with data science and engineering to improve AI models; mentor junior analysts; report on SOC performance and security posture; refine security playbooks and policies.
Seniority
Senior, hands-on IC with mentorship responsibilities