SIGN IN
Senior Security Operations Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

nuHarbor · 1 week ago

Senior Security Operations Analyst

nuHarbor is a company focused on enhancing cybersecurity for organizations. They are seeking a Senior Security Operations Analyst to lead complex investigations, mentor fellow analysts, and improve the quality of security operations within their Security Operations Center.
ConsultingCyber SecurityEnterprise SoftwareEnterpriseNetwork SecuritySecurity
check
Culture & Values
badNo H1Bnote

Responsibilities

Lead investigations from initial alert through root cause analysis, attack chain reconstruction, and final client reporting
Correlate data across SIEM, EDR, identity, and security telemetry sources to identify threats and uncover risks that automated tooling may miss
Independently pursue complex, high-priority, or ambiguous investigations with minimal direction
Support Security Analysts with alert triage, classification, escalation, and incident response activities
Identify security gaps and provide actionable recommendations aligned to client risk and business objectives
Communicate proactively with leadership regarding active threats, escalations, and emerging concerns
Facilitate client-facing discussions, including incident reviews, threat briefings, and security consultations
Produce high-quality documentation that clearly communicates findings, evidence, analyst reasoning, and client impact
Stay current on emerging threats, attacker tactics, vulnerabilities, and industry trends
Support the onboarding and operational success of new managed security clients
Mentor and train analysts on investigation methodology, documentation standards, and client communication best practices
Review analyst escalations and ensure investigative completeness and quality prior to client delivery
Contribute to automation initiatives that improve analyst efficiency and reduce operational noise
Partner with Detection Engineering teams to improve alert fidelity, tuning, and threat detection effectiveness
Develop recommendations that help clients mature their cybersecurity programs and security operations capabilities
Coordinate with clients and internal stakeholders throughout incident response and post-incident activities

Qualification

SOC operationsSecurity event triagingSecurity event tuningRunbook writingMonitoring and ResponseContainmentEradicationRecoverySIEMEDRCrowdStrikeMicrosoft DefenderMicrosoft SentinelSplunk Enterprise SecurityScripting - PythonScripting - PowerShellTechnical supportCISSPGCIHGCFACEHSOAR platformsLinux administrationMacOS administrationWindows administrationMemory forensicsDisk forensicsMalware analysisStatic malware analysisDynamic malware analysis

Required

Bachelor's Degree and five (5) years of experience. Experience should be in a cybersecurity field and should include relevant industry certifications
In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required
Demonstrated experience with SOC operations, executing security event triaging and tuning
Demonstrated experience writing runbooks and support procedures
Demonstrated experience executing Monitoring and Response across multiple phases, containment, eradication, and recovery, in a SOC or MSSP environment
Demonstrated experience with security event triaging and threat hunting executed through both a SIEM and EDR toolset
Hands on experience with at least two of the following Endpoint Detection and Response (EDR) and Security Orchestration Automation and Response solutions: CrowdStrike, Microsoft Defender, Microsoft Sentinel, Splunk Enterprise Security
Demonstrated experience with scripting in at least one language (Python, PowerShell, or equivalent) in a manner that supports automation solutions
Excellent written and verbal communication skills
Previous experience in technical support or security-focused role
Willing and able to work Sunday - Thursday, 8:30am - 5:00pm
Must be authorized to work within the United States

Preferred

7+ years of progressive responsibility within SOC, MDR, MSSP, or incident response environments
Industry certifications such as CISSP, GCIH, GCFA, CEH, or similar
Presenting technical findings and strategic recommendations to executive stakeholders
Technical writing, reporting, and client-facing communications
SOAR platforms and automated response workflows
Linux, macOS, and Windows operating systems, including command-line and system administration experience
Memory forensics, disk forensics, and malware analysis
Static and dynamic malware analysis techniques
Translating complex technical findings into business-focused narratives
Data analysis techniques such as anomaly detection, clustering, and normalization
General systems administration and infrastructure experience
Applying the MITRE ATT&CK framework during investigations, reporting, and threat analysis
Experience across multiple cybersecurity disciplines including threat detection, incident response, penetration testing, security engineering, or information assurance

Benefits

Performance-based bonus opportunities
Generous paid time off
Comprehensive benefits
Eligibility for nuHarbor's annual bonus program with a target opportunity of 10%

Company

nuHarbor

twitterlinkedincrunchbase
company-logo
nuHarbor is a U.S.-based cybersecurity firm trusted by public sector and critical infrastructure organizations nationwide.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Rupal Patel
Chief Financial Officer
linkedin
Company data provided by crunchbase