This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Senior SOC Analyst to lead advanced security monitoring, incident response, and forensic investigations within a Security Operations Center (SOC). The ideal candidate will have deep technical expertise in threat detection, forensics, and cyber threat intelligence, supported by advanced industry certifications and strong hands-on experience with enterprise SOC tools.
Job Responsibility:
Lead advanced incident response activities, including containment, eradication, and recovery
Perform digital and network forensic investigations to support incident analysis
Conduct proactive threat hunting and advanced detection engineering
Analyze threat intelligence and correlate with internal security events
Design, tune, and optimize SIEM and SOAR use cases and detection rules
Serve as an escalation point for complex security incidents
Provide mentorship and technical leadership to junior and intermediate SOC analysts
Develop SOC playbooks, procedures, and post-incident reports
Collaborate with security architecture and risk teams to improve security posture
Requirements:
Bachelor’s degree in Cybersecurity, Information Technology, or a related field
3–5 years of experience in SOC operations, incident response, or advanced security monitoring roles
One or more of the following advanced certifications: GIAC GCFA (Forensic Analyst) or GNFA (Network Forensics Analyst) GIAC GCTI (Cyber Threat Intelligence) GIAC GSOC (Security Operations Certified) CREST Registered Intrusion Analyst (CRIA) Advanced tool/vendor certifications (e.g., Splunk Enterprise Security Admin, Elastic Security Specialist)
Strong expertise in digital forensics, incident handling, and threat intelligence
Advanced knowledge of MITRE ATT&CK and threat actor TTPs
Proficiency in SIEM query languages (SPL, KQL, Lucene)
Experience working in 24×7 enterprise or MSSP SOC environments
Strong reporting, documentation, and stakeholder communication skills