Security Operations Analyst
Core
Monitor, analyze, and triage security events and alerts to support the Security Operations Center.
Role type
SOC Analyst
Builds
Incident response and threat detection capabilities
Domain
Cybersecurity / Security Operations
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM platform experience, EDR tooling familiarity, cloud security concepts, identity threat pattern analysis, log interpretation, incident documentation
Preferred skills
CSPM/CWPP platform exposure, log schema familiarity, Python scripting
Technologies
Chronicle, Google SecOps, CrowdStrike Falcon, SOCRadar, AWS, GCP
Responsibilities
Monitor and triage security alerts across SIEM, EDR, cloud security, and identity platforms; Perform initial investigation on escalated events by collecting and correlating evidence; Execute containment and remediation actions; Author and maintain SOC runbooks and triage playbooks; Review and act on threat intelligence feeds; Investigate identity anomalies including suspicious login patterns and MFA bypass attempts
Seniority
Mid-level, hands-on IC