> Markdown version of [/jobs/ext/1448982-senior-security-operation-center-soc-analyst-l2](https://www.wearedevelopers.com/jobs/ext/1448982-senior-security-operation-center-soc-analyst-l2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Operation Center (SOC) Analyst - L2 - **Company:** Richemont - **Location:** New York, NY, United States - **Experience:** Expert - **Salary:** $135,000.0 - $140,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Computer Networks, Intrusion Detection Systems, Log Analysis, Security Information and Event Management, Software Vulnerability Management, Cloud Platform System, Cyber Threat Analysis, GWAPT, Information Technology, Security Orchestration, Automation & Response - **Published:** July 26, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c74c1074f86bbe8a ## About the Role * Strong knowledge of networking, systems, identity, and cloud environments, including investigation and troubleshooting. * Strong understanding of cybersecurity principles, including threat intelligence, incident response, forensics, vulnerability management, and cyber awareness. * Practical experience in log analysis, endpoint investigation, and understanding attacker techniques (e.g., lateral movement, persistence, privilege escalation). * Experience with security tools such as SOAR, SIEM, IDS/IPS, EDR, mail gateway, and other relevant technologies. * Ability to handle complex incidents in a fast-paced environment and manage multiple tasks simultaneously. * Strong analytical and problem-solving skills, with attention to detail. * Good interpersonal skills, with the ability to work collaboratively with cross-functional teams. * Strong communication skills and ability to effectively communicate technical information to both technical and non-technical stakeholders. * Experience supporting or guiding less experienced analysts is an advantage. * Excellent proficiency in English. Fluency in additional languages is a strong asset. * Industry-recognized security certifications, including but not limited to: CISSP, CEH, CISA, GSEC, GCIA, GCIH, GCFA, GCFE, GPEN, GWAPT, GMOB, GREM, GASF, GCTI or equivalent certifications, are a strong asset. ## Description We are looking for a Senior SOC Analyst, within the Cyber Incident Response team to be an L2 : this is a professional responsible for protecting computer systems, networks, and sensitive data from cyber-attacks, hacking attempts, and other security threats with past experience working in a SOC. The profile is responsible for analyzing and responding to cybersecurity events within the Group and its Maisons, including more complex and high-impact incidents. The role works with a team to identify, contain, investigate, and remediate cybersecurity threats in real-time, while also acting as a senior point of reference for investigation approaches and incident handling practices. This includes performing deeper technical analysis across multiple data sources (e.g., endpoint, network, identity, and cloud) and supporting more advanced investigations where required. In the context of Cyber Incidents, the role collaborates with other security and IT teams, leveraging available technology and systems to provide Incident Response services. In addition, the role contributes to other activities, such as participating in Group projects and initiatives with implications on IR services. The Senior Associate also supports knowledge sharing within the team, including guiding less experienced analysts and contributing to continuous improvement in playbooks, service operating model, and Group tools and processes. Responsibilities * Monitor and analyze network traffic, system logs, and alerts to detect cybersecurity incidents. * Investigate and respond to cybersecurity incidents in real-time, including handling more complex and high-severity cases. * Work with a team of analysts to determine the scope, root cause, attack techniques, and impact of attacks. * Perform detailed analysis across endpoint, network, identity, and cloud data sources, including log analysis, process activity, and authentication events. * Support basic forensic investigations, including evidence collection, timeline reconstruction, and analysis of suspicious files or activities. * Develop, implement, and maintain incident response plans, playbooks, and SOPs to contain and mitigate cybersecurity incidents. * Develop and enhance incident detections and triggers, aligned with the evolving threat landscape and leveraging available technology (e.g., SIEM correlation, EDR detections). * Operate with various systems in real-time to investigate, maintain, and track incidents across their lifecycle. * Perform deeper analysis and correlation across multiple data sources to identify threats and potential lateral movement. * Collaborate with other teams, including IT, security risk, forensics, and legal, to ensure a coordinated response to incidents. * Communicate security incidents, findings, and recommendations to management, stakeholders, and relevant parties. * Participate and provide value in projects and initiatives with implications on Incident Response services. * Support and guide junior analysts during investigations, including reviewing analysis, suggesting approaches, and providing hands-on assistance when required. * Contribute to team knowledge development through documentation, training sessions, and sharing investigation techniques and lessons learned. * Stay up to date with the latest security threats, vulnerabilities, and attack techniques to proactively identify and mitigate potential risks. * Manage and coordinate Cyber Security initiatives in the region, where required. * Support projects from a Cyber Security perspective and ensure liaison with other Group Security departments. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Progressive Delivery in Kubernetes](https://www.wearedevelopers.com/videos/949-progressive-delivery-in-kubernetes) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Leveraging Large Language Models for Legacy Code Translation: Challenges and Solutions](https://www.wearedevelopers.com/videos/1157-leveraging-large-language-models-for-legacy-code-translation-challenges-and-solutions) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Software Developer Salary in Switzerland [2023]](https://www.wearedevelopers.com/magazine/215-software-developer-salary-in-switzerland-2023) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)