Summary
The Senior SOC Analyst is part of the Cyber Incident Response team and protects systems, networks, and data by investigating and responding to cybersecurity events. This role handles complex, high-impact incidents and supports continuous improvement of incident response practices while guiding less experienced analysts.
Responsibilities
- Monitor network traffic, system logs, and alerts to detect and investigate cybersecurity incidents.
- Analyze endpoint, network, identity, and cloud data to determine incident scope, root cause, techniques, and impact.
- Contain and mitigate incidents, support forensic investigations, and maintain incident response plans, playbooks, and procedures.
- Improve detections and coordinate incident response with IT, security, forensics, legal, and other teams.
- Communicate findings and recommendations, contribute to security initiatives, and guide junior analysts through investigations.
- Document and share investigation methods, lessons learned, and emerging threat information.
Requirements
- Strong knowledge of networking, systems, identity, cloud environments, cybersecurity principles, and incident response.
- Practical experience in log analysis, endpoint investigations, and identifying attacker techniques such as lateral movement and privilege escalation.
- Experience with security tools such as SOAR, SIEM, IDS/IPS, EDR, and mail gateways.
- Strong analytical, problem-solving, communication, and collaboration skills, with the ability to manage complex incidents and multiple tasks.
- Excellent English proficiency; experience guiding analysts and industry-recognized security certifications are assets.