Cybersecurity Analyst – Tier 2
Core
Lead complex security incident investigations, coordinate response efforts, and drive continuous improvement in threat detection capabilities for customer environments.
Role type
Senior IC cybersecurity analyst (SOC Tier 2)
Builds
SOC detection rules, incident response playbooks, and forensic analysis outputs
Domain
Cybersecurity / Security Operations Center
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Advanced SIEM/EDR/forensic tool expertise, MITRE ATT&CK framework knowledge, threat hunting, malware reverse engineering, scripting (Python/PowerShell), incident response leadership, access management, patch management validation
Preferred skills
Bachelor's degree in IT/Cybersecurity/CS, CompTIA Security+, Microsoft SC-200, CEH, CySA+, GIAC certifications, experience with IDS/IPS, SOAR workflows, threat intelligence platforms
Technologies
SIEM, EDR, forensic tools, Python, PowerShell, SOAR, IDS/IPS, threat intelligence platforms
Responsibilities
Perform advanced analysis of escalated security incidents, develop and tune detection rules, conduct forensic analysis and malware reverse engineering, mentor junior analysts, validate complex alerts, determine incident scope and severity, implement containment and remediation actions, process user access requests, monitor patch status, generate incident reports
Seniority
Senior, hands-on IC with mentorship responsibilities