Remote job
Senior Security Analyst – AI SOC
Job details
About this role
Role overview Investigate escalated security alerts and incidents in a SOC where AI agents handle much of the initial enrichment and event correlation. You will validate agent findings, investigate unresolved activity, communicate response guidance, and help improve detections and automation.
Responsibilities - Investigate alerts across SIEM, EDR/XDR, email, identity, and cloud telemetry. - Validate AI-generated triage decisions and investigation summaries, reporting errors for improvement. - Scope incidents, recommend containment steps, and communicate clearly with clients. - Analyze malware and phishing attempts to identify indicators of compromise. - Correlate activity across systems and hunt for related events. - Improve detection rules, tuning, and investigation playbooks. - Mentor L1 analysts, review their work, and prepare client incident reports.
Requirements - 3–5 years in SOC analysis, incident response, or threat analysis. - Hands-on experience with a SIEM and an EDR platform. - Good knowledge of attacker techniques mapped to MITRE ATT&CK. - Solid understanding of Windows, Linux, networking, and at least one cloud platform. - Clear, accurate documentation and communication skills. - Bachelor's degree in computer science or information systems, or equivalent experience. - Willingness to work rotational shifts in a 24×7 environment.