Senior Analyst, Information Security
Core
Senior technical leader in a global law firm's Security Operations Center (SOC), responsible for 24/7 monitoring, detection, incident response, and proactive threat hunting.
Role type
Senior IC Information Security Analyst (SOC)
Builds
Security monitoring capabilities, detection rules, incident response playbooks, and automated SOAR workflows for a global legal services firm.
Domain
Cybersecurity / Legal Services
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Incident triage and response, Threat hunting, Detection engineering, Security automation (SOAR), Identity threat detection, Cloud security monitoring, Endpoint security, Forensic analysis, Scripting (PowerShell/Python), SIEM management
Preferred skills
Advanced threat intelligence analysis, AI-assisted detection validation, SOC process improvement, Mentorship
Technologies
Microsoft 365 Defender, Microsoft Sentinel, ServiceNow, Sigma, KQL, MITRE ATT&CK, Active Directory, Entra ID, Azure, AWS, GCP, Zscaler, Mimecast, Proofpoint, Cisco, EDR, DLP, Firewalls, IDS/IPS
Responsibilities
Operate and manage security incidents to SLA guidelines, Monitor and triage alerts across endpoints, cloud, and network, Lead structured incident response and digital forensics, Conduct proactive hypothesis-driven threat hunting, Design and tune detection rules and SOAR playbooks, Mentor junior analysts and own SOC process improvements
Seniority
Senior, hands-on IC with technical leadership