Senior Security Operations Analyst
San DiegoLast seen today
Summary
Lead detection operations, incident response, and security operations maturation for a growing security team. Operate SIEM/XDR across endpoint, cloud, identity, network, and SaaS telemetry; conduct complex investigations; tune detections; and drive root-cause analysis and post-incident improvements. Require 6+ years of hands-on security operations, detection engineering, or incident response experience with deep proficiency in SIEM/XDR query languages, EDR platforms, scripting (Python, PowerShell, Bash), and MITRE ATT&CK framework application. Mentor analysts, define playbooks and runbooks, lead threat hunts, and own SecOps metrics and operational-readiness reporting.
CybersecurityData ScienceIT SupportAWSAzurePythonAdversary EmulationBashBtl1Btl2CI CDCisspCloud SecurityCysaDetection EngineeringDNSEdrEndpoint TelemetryFirewall LogsGiac GcdaGiac GcfaGiac GcfeGiac GciaGiac GcihGiac GsomHttpsIdentity SecurityIncident ResponseMitre Att CkNetwork SecurityNist Sp 800 171Nist Sp 800 53OscpPlaybook DevelopmentPowershellProxy LogsPurple TeamRunbook DevelopmentSaas SecuritySiemSoarSupply Chain SecurityTCP IpThreat HuntingXdr