Security Operations Analyst
San DiegoLast seen today
Summary
Security Operations Analyst role monitoring and triaging alerts across endpoint, cloud, identity, network, and SaaS using enterprise SIEM and XDR platforms. Responsibilities include investigating alerts, performing root-cause analysis, tuning detections, owning initial response for mid-tier incidents, participating in on-call rotation, running targeted threat hunts, and contributing to playbooks and post-incident reviews. Requires 2–5 years of hands-on SecOps, SOC, or incident response experience; proficiency with enterprise SIEM query languages, EDR tooling, and scripting in Python/PowerShell/Bash; and solid understanding of MITRE ATT&CK and network fundamentals.
CybersecurityData ScienceIT SupportAWSAzurePythonAlert TriageBashBtl1Btl2CI CD SecurityCisspCysaDetection EngineeringDNSEdrEndpoint TelemetryFirewallGcdaGcfaGcfeGciaGiac GcihGsomHTTP HttpsIncident ResponseMitre Att CkNist Sp 800 171Nist Sp 800 53OscpPlaybook DevelopmentPowershellProxy LogsRoot Cause AnalysisRunbook DevelopmentSiemSoarTCP IpThreat HuntingXdr