Inmar Intelligence Logo

Inmar Intelligence

Senior SOC Analyst

Job Posted 17 Days Ago Posted 17 Days Ago
Remote
Senior level
Remote
Senior level
The Senior SOC Analyst leads advanced threat detection, performs incident management, mentors junior analysts, and optimizes detection processes.
The summary above was generated by AI

The Senior SOC Analyst is a critical member of the Security Operations Center (SOC) team, responsible for leading advanced threat detection and response activities, contributing to the development of detection engineering capabilities, and mentoring junior SOC analysts. This role involves the proactive identification of security vulnerabilities, real-time monitoring of security events, and implementation of solutions to strengthen the organization's security posture.
The Senior Analyst acts as a technical expert, bridging gaps between operational SOC activities and strategic initiatives. This includes developing advanced detection rules, conducting threat hunts, and contributing to the continuous improvement of the SOC’s operational processes. The incumbent also collaborates with the Cyber Security Engineering team to optimize the deployment and configuration of detection platforms.

Technical Expertise (70%)

  • Detection Engineering: Develop, test, and implement advanced detection rules and logic (e.g., SIEM use cases, YARA rules, Sigma rules) to identify and mitigate security threats.
  • Incident Management: Lead high-priority investigations, ensuring rapid containment and remediation of incidents while maintaining detailed documentation of activities and findings.
  • Threat Hunting: Perform proactive threat-hunting activities to identify advanced persistent threats (APTs), leveraging threat intelligence and behavioral analytics.
  • Platform Optimization: Partner with security engineers to refine security tool configurations, ensuring maximum efficiency and reliability in threat detection and response.
  • Vulnerability Assessment: Assess and report on potential vulnerabilities in systems, networks, and applications, providing actionable recommendations for risk mitigation.

Leadership & Mentorship (30%)

  • Team Collaboration: Act as a mentor to junior SOC analysts, providing guidance on investigations, tool utilization, and professional growth.
  • Knowledge Sharing: Develop and deliver training materials to enhance team proficiency in incident detection, response techniques, and detection engineering.
  • Process Improvement: Lead the development and refinement of SOC workflows and playbooks, ensuring alignment with industry best practices and organizational goals.
  • Operational Excellence (20%)
  • Metrics and Reporting: Generate and present detailed security reports to leadership, summarizing key findings, operational trends, and recommendations.
  • Change Management: Implement changes to SOC tools and processes in alignment with established change control procedures.
  • Stakeholder Engagement: Collaborate with cross-functional teams to align security efforts with business objectives and ensure seamless communication during incidents.

Required Qualifications:

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related technical field, or equivalent experience and certifications.
  • 5 years of experience in SOC operations, cybersecurity analysis, or a similar role.
  • Demonstrated expertise in detection engineering, including the use of tools like Splunk, Elastic, or Sentinel for rule development and optimization.
  • Strong understanding of security concepts, including intrusion detection/prevention, malware analysis, and threat intelligence integration.
  • Experience with incident response, including containment, eradication, and recovery.

Preferred Qualifications:

  • Detection Engineering: Proficiency in developing detection logic (e.g., YARA, Sigma) and utilizing platforms like Splunk or Elastic for advanced alert creation.
  • Incident Response: Advanced capability to lead investigations and manage complex incidents.
  • Threat Hunting: Strong ability to leverage tools and intelligence to proactively identify hidden threats.
  • Cloud Security: Familiarity with securing and monitoring cloud environments (AWS, Azure, Google Cloud).
  • Automation: Knowledge of automating SOC workflows using SOAR platforms and scripting languages (e.g., Python).

Individual Competencies:

  • Integrity:  Gains the trust of others by taking responsibility for their own actions and telling the truth. Follows through on commitments and agreements; Respects confidentiality; Maintains confidentiality regardless of pressure from others.
  • Teamwork:  Builds relationships and works cooperatively with others, inside and outside the organization, to accomplish objectives to build and maintain mutually beneficial partnerships, leverage information and achieve results.
  • Curious: A desire to inquire and learn, to seek new knowledge and wisdom, and to listen to the contributions of others with a genuine interest to better self, the team, and the organization.
  • Analytical and Critical Thinking: Ability to tackle a problem by using a logical, systematic, sequential approach.
  • Problem Solving: Gathers and analyzes information to generate and evaluate potential solutions to problems, issues and challenges while weighing the accuracy and relevance of the facts, data and information.
  • Collaboration: Works collaboratively with others to achieve group goals and objectives.

The physical demands described here are representative of those that must be met by an associate to successfully perform the major job responsibilities (essential functions) of this job.  Reasonable accommodations may be made to enable individuals with disabilities to perform the major job responsibilities. This job description is not intended to be an exhaustive list of all duties, responsibilities, or qualifications associated with the job. Duties responsibilities and activities may change, or new ones may be assigned at any time with or without notice.

While performing the duties of this job, the associate is: 

  • Regularly required to use hands to finger, handle or feel objects, tools or controls, and reach with hands or arms.
  • Regularly required to talk or hear and read instructions on a computer monitor and/or printed on paper.
  • Occasionally required to stand, kneel or stoop, and lift and/or move up to 10 pounds.
  • Regularly required to view items at an extremely close range and must be able to adjust and readjust focus.
  • Regularly required to remain in a stationary position.

We are an Equal Opportunity Employer, including disability/vets.

This position is not eligible for student visa sponsorship, including F-1 OPT or CPT. Candidates must have authorization to work in the U.S. without the need for employer sponsorship now or in the future.

Top Skills

AWS
Azure
Elastic
GCP
Python
Sentinel
Sigma
Splunk
Yara

Similar Jobs

14 Days Ago
Remote
USA
90K-115K Annually
Senior level
90K-115K Annually
Senior level
Information Technology
Monitor, analyze, and respond to cybersecurity alerts in a global SOC. Assist junior analysts, execute playbooks, and report on security events.
Top Skills: CspmEdrItsmSIEM
21 Days Ago
Remote
Newco, FL, USA
Mid level
Mid level
Cloud • HR Tech • Information Technology
The Senior SOC Analyst will enhance security operations by analyzing security alerts, conducting incident investigations, and developing automation tools in a cybersecurity team.
Top Skills: AWSAzureCrowdstrikeDefenderEdrGCPPowershellPythonQradarSentinelSIEMSoar
Yesterday
Easy Apply
Remote
2 Locations
Easy Apply
157K-217K Annually
Senior level
157K-217K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Social Impact • Software
As a Senior Offensive Security Engineer, you'll build and lead the Offensive Security program, test Upstart's controls, and collaborate with various security teams.
Top Skills: AWSCi/CdEksKubernetesmacOSOktaPython

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account