Company

Cybersecurity

SecurityOperationsAnalyst

$100–125k Bulgaria FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Security Operations Analyst. Skills: Incident response, Malware analysis, Threat hunting, Security operations. Triage security alerts. Investigate security alerts”

What You'll Achieve.

Improve processes; Improve tools; Improve security outcomes

Industry & Context.

Cybersecurity
Problems you'll solve

Root cause analysis

Eligibility Requirements

On-call compensation, Call-in compensation

What They're Looking For.

Must Have

2+ years SOC experience, 2+ years incident response experience, 2+ years DFIR experience, Familiarity with Windows environments, Familiarity with Linux environments, Familiarity with macOS environments, Working knowledge of MITRE ATT&CK, Experience analyzing malware behavior, Understanding of Windows administration, Understanding of enterprise environments, Solid grasp of networking fundamentals, Knowledge of web technologies, Knowledge of common vulnerabilities, Communication skills, Curiosity-driven mindset

Nice to Have

Cloud activity investigation, Productivity suite investigation, Tuning existing rules, Improving alert fidelity

What You'll Do.

Triage security alerts

Investigate security alerts

Respond to security alerts

Perform deep-dive analysis

Analyze EDR telemetry

Analyze forensic artifacts

Recommend remediation actions

Conduct malware analysis

Support threat identification

Support containment efforts

Investigate suspicious cloud activity

Investigate suspicious productivity suite activity

Provide remediation guidance

Support escalation workflows

Contribute to detection engineering

Improve alert fidelity

Participate in collaborative SOC initiatives

How You'll Work.

Team & Collaboration

Cross-functional teams; Collaborative SOC initiatives

Communication Scope

Translate technical findings

Full Job Description

## Accountabilities Triage, investigate, and respond to security alerts generated by SOC platforms and detection systems, ensuring timely and accurate incident handling. Perform deep-dive analysis of endpoint detection and response (EDR) telemetry, logs, and forensic artifacts to determine root cause and recommend remediation actions. Conduct malware analysis (static and dynamic) to support threat identification and containment efforts. Investigate suspicious cloud and productivity suite activity (including Microsoft M365) and provide remediation guidance. Support escalation workflows from product support and cross-functional teams on security-related incidents and inquiries. Contribute to detection engineering efforts, including tuning existing rules and helping improve alert fidelity. Participate in collaborative SOC initiatives aimed at improving processes, tools, and overall security outcomes. Requirements: 2+ years of experience in a SOC, incident response, or digital forensics (DFIR) role. Strong familiarity with Windows, Linux, and macOS environments as potential attack surfaces. Working knowledge of attacker techniques aligned with the MITRE ATT&CK framework, including persistence, privilege escalation, lateral movement, and defense evasion. Experience analyzing malware behavior using static and dynamic methods. Understanding of Windows administration and enterprise environments (Active Directory, Group Policy, domain architecture). Solid grasp of networking fundamentals (TCP/IP, DNS, ports/protocols, NAT, VLANs, routing concepts). Knowledge of web technologies and common vulnerabilities (OWASP Top 10 awareness). Strong communication skills with the ability to translate technical findings into clear, actionable insights for diverse audiences. Curiosity-driven mindset with a passion for continuous learning and threat research. Benefits: 100% remote work environment with flexibility in a US-based Pacific Time Zone schedule. Competitive base salary range of $10

Free ATS check

Applying for this Security Operations Analyst role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Lever

  • Lever uses a streamlined one-page form — apply in under 5 minutes.
  • LinkedIn import works well; review parsed data before submitting.
  • The cover letter field is optional but visible to reviewers — use it to differentiate.
  • Referral codes from employees can significantly boost visibility of your application.

ANONYMOUS · UNFILTERED

What do employees actually say about this company?

Real rants from real employees. Read before you apply.

Read Company Rants →