nuHarbor · 1 week ago
Senior Security Operations Analyst
nuHarbor is a company focused on enhancing cybersecurity for organizations. They are seeking a Senior Security Operations Analyst to lead complex investigations, mentor fellow analysts, and improve the quality of security operations within their Security Operations Center.
ConsultingCyber SecurityEnterprise SoftwareEnterpriseNetwork SecuritySecurity
Responsibilities
Lead investigations from initial alert through root cause analysis, attack chain reconstruction, and final client reporting
Correlate data across SIEM, EDR, identity, and security telemetry sources to identify threats and uncover risks that automated tooling may miss
Independently pursue complex, high-priority, or ambiguous investigations with minimal direction
Support Security Analysts with alert triage, classification, escalation, and incident response activities
Identify security gaps and provide actionable recommendations aligned to client risk and business objectives
Communicate proactively with leadership regarding active threats, escalations, and emerging concerns
Facilitate client-facing discussions, including incident reviews, threat briefings, and security consultations
Produce high-quality documentation that clearly communicates findings, evidence, analyst reasoning, and client impact
Stay current on emerging threats, attacker tactics, vulnerabilities, and industry trends
Support the onboarding and operational success of new managed security clients
Mentor and train analysts on investigation methodology, documentation standards, and client communication best practices
Review analyst escalations and ensure investigative completeness and quality prior to client delivery
Contribute to automation initiatives that improve analyst efficiency and reduce operational noise
Partner with Detection Engineering teams to improve alert fidelity, tuning, and threat detection effectiveness
Develop recommendations that help clients mature their cybersecurity programs and security operations capabilities
Coordinate with clients and internal stakeholders throughout incident response and post-incident activities
Qualification
Required
Bachelor's Degree and five (5) years of experience. Experience should be in a cybersecurity field and should include relevant industry certifications
In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required
Demonstrated experience with SOC operations, executing security event triaging and tuning
Demonstrated experience writing runbooks and support procedures
Demonstrated experience executing Monitoring and Response across multiple phases, containment, eradication, and recovery, in a SOC or MSSP environment
Demonstrated experience with security event triaging and threat hunting executed through both a SIEM and EDR toolset
Hands on experience with at least two of the following Endpoint Detection and Response (EDR) and Security Orchestration Automation and Response solutions: CrowdStrike, Microsoft Defender, Microsoft Sentinel, Splunk Enterprise Security
Demonstrated experience with scripting in at least one language (Python, PowerShell, or equivalent) in a manner that supports automation solutions
Excellent written and verbal communication skills
Previous experience in technical support or security-focused role
Willing and able to work Sunday - Thursday, 8:30am - 5:00pm
Must be authorized to work within the United States
Preferred
7+ years of progressive responsibility within SOC, MDR, MSSP, or incident response environments
Industry certifications such as CISSP, GCIH, GCFA, CEH, or similar
Presenting technical findings and strategic recommendations to executive stakeholders
Technical writing, reporting, and client-facing communications
SOAR platforms and automated response workflows
Linux, macOS, and Windows operating systems, including command-line and system administration experience
Memory forensics, disk forensics, and malware analysis
Static and dynamic malware analysis techniques
Translating complex technical findings into business-focused narratives
Data analysis techniques such as anomaly detection, clustering, and normalization
General systems administration and infrastructure experience
Applying the MITRE ATT&CK framework during investigations, reporting, and threat analysis
Experience across multiple cybersecurity disciplines including threat detection, incident response, penetration testing, security engineering, or information assurance
Benefits
Performance-based bonus opportunities
Generous paid time off
Comprehensive benefits
Eligibility for nuHarbor's annual bonus program with a target opportunity of 10%
Company
nuHarbor
nuHarbor is a U.S.-based cybersecurity firm trusted by public sector and critical infrastructure organizations nationwide.
Funding
Current Stage
Growth StageRecent News
2026-04-10
2026-04-07
Company data provided by crunchbase