Role Overview
We are looking for a SOC L3 Analyst to lead advanced threat detection, incident response, threat hunting, and security operations for enterprise environments.
Key Responsibilities
- Lead investigation and resolution of complex security incidents and advanced threats
- Perform threat hunting, malware analysis, forensic investigation, and root-cause analysis
- Monitor and tune SIEM, SOAR, EDR, NDR, IDS/IPS, and other security tools
- Develop detection rules, correlation searches, playbooks, use cases, and response procedures
- Handle major incidents, coordinate containment and recovery, and prepare post-incident reports
- Mentor L1/L2 SOC analysts and provide technical guidance and escalation support
- Conduct vulnerability review, threat intelligence analysis, and security-risk assessments
- Collaborate with infrastructure, cloud, network, application, and compliance teams
- Support audits, security metrics, incident documentation, and continuous SOC improvement
Required Skills
- Strong hands-on experience with SIEM, SOAR, EDR/XDR, threat hunting, and incident response
- Knowledge of Windows, Linux, networking, cloud security, malware, and attack frameworks such as MITRE ATT&CK
- Experience creating detection rules, analyzing logs, investigating alerts, and performing digital forensics
- Strong understanding of TCP/IP, DNS, HTTP/S, authentication, IAM, firewalls, and endpoint security
- Excellent communication, documentation, leadership, and problem-solving skills
Experience
- 7–15 years of experience in SOC, cybersecurity operations, incident response, or threat detection
Preferred
- Certifications such as CISSP, GCIA, GCIH, GCFA, CEH, Security+, or CySA+
- Experience with Splunk, Microsoft Sentinel, QRadar, ArcSight, CrowdStrike, Defender, or similar tools
- Knowledge of Python, PowerShell, or Bash for security automation
- Experience leading 24/7 SOC operations and supporting ISO 27001, SOC 2, PCI DSS, or SOX compliance
Join us and be part of the exciting journey