Company
Cybersecurity
SecurityOperationsAnalyst
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Operations Analyst. Skills: Incident response, Malware analysis, Threat hunting, Security operations. Triage security alerts. Investigate security alerts”
What You'll Achieve.
Improve processes; Improve tools; Improve security outcomes
Industry & Context.
Root cause analysis
On-call compensation, Call-in compensation
What They're Looking For.
Must Have
2+ years SOC experience, 2+ years incident response experience, 2+ years DFIR experience, Familiarity with Windows environments, Familiarity with Linux environments, Familiarity with macOS environments, Working knowledge of MITRE ATT&CK, Experience analyzing malware behavior, Understanding of Windows administration, Understanding of enterprise environments, Solid grasp of networking fundamentals, Knowledge of web technologies, Knowledge of common vulnerabilities, Communication skills, Curiosity-driven mindset
Nice to Have
Cloud activity investigation, Productivity suite investigation, Tuning existing rules, Improving alert fidelity
What You'll Do.
Triage security alerts
Investigate security alerts
Respond to security alerts
Perform deep-dive analysis
Analyze EDR telemetry
Analyze forensic artifacts
Recommend remediation actions
Conduct malware analysis
Support threat identification
Support containment efforts
Investigate suspicious cloud activity
Investigate suspicious productivity suite activity
Provide remediation guidance
Support escalation workflows
Contribute to detection engineering
Improve alert fidelity
Participate in collaborative SOC initiatives
How You'll Work.
Team & Collaboration
Cross-functional teams; Collaborative SOC initiatives
Communication Scope
Translate technical findings
Full Job Description
## Accountabilities Triage, investigate, and respond to security alerts generated by SOC platforms and detection systems, ensuring timely and accurate incident handling. Perform deep-dive analysis of endpoint detection and response (EDR) telemetry, logs, and forensic artifacts to determine root cause and recommend remediation actions. Conduct malware analysis (static and dynamic) to support threat identification and containment efforts. Investigate suspicious cloud and productivity suite activity (including Microsoft M365) and provide remediation guidance. Support escalation workflows from product support and cross-functional teams on security-related incidents and inquiries. Contribute to detection engineering efforts, including tuning existing rules and helping improve alert fidelity. Participate in collaborative SOC initiatives aimed at improving processes, tools, and overall security outcomes. Requirements: 2+ years of experience in a SOC, incident response, or digital forensics (DFIR) role. Strong familiarity with Windows, Linux, and macOS environments as potential attack surfaces. Working knowledge of attacker techniques aligned with the MITRE ATT&CK framework, including persistence, privilege escalation, lateral movement, and defense evasion. Experience analyzing malware behavior using static and dynamic methods. Understanding of Windows administration and enterprise environments (Active Directory, Group Policy, domain architecture). Solid grasp of networking fundamentals (TCP/IP, DNS, ports/protocols, NAT, VLANs, routing concepts). Knowledge of web technologies and common vulnerabilities (OWASP Top 10 awareness). Strong communication skills with the ability to translate technical findings into clear, actionable insights for diverse audiences. Curiosity-driven mindset with a passion for continuous learning and threat research. Benefits: 100% remote work environment with flexibility in a US-based Pacific Time Zone schedule. Competitive base salary range of $10
Applying for this Security Operations Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about this company?
Real rants from real employees. Read before you apply.