Security Analyst - Tier 2.
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+12 more
Job description
Experteer Overview As a Tier 2 SOC Analyst, you will act as a subject matter expert in our security stack, refining detection workflows and mentoring junior analysts.You’ll investigate escalated incidents, determine attack vectors, and shape remediation strategies in a multi-client SOC environment.You will drive continuous improvement through AI-assisted analysis, tools, and playbooks, while ensuring service quality and customer satisfaction.Compensaciones / Beneficios - Escalate and manage cases from Tier 1 analysts to resolution - Optimize SIEM rules and detection logic to reduce false positives - Respond to tickets within SLA and document actions for internal and client communication - Mentor Security Engineers and Analysts to improve investigation techniques - Support rules factory program and rollout of new rule sets for clients - Qualify data source requests and support product teams in service design - Perform threat hunting and advanced threat investigations using SIEM/EDR/ETD data - Provide 24/7 on-call support for critical incidents - Use AI tools to summarize incident timelines and accelerate investigations - Contribute to incident templates and automation to improve operation efficiency - Ensure adherence to policies, procedures, and security best practices - Maintain smooth client transitions via Go-to-Prod gates and Go-to-Active reviewsResponsabilidades - 4+ years of hands-on cybersecurity operations, incident response, or threat analysis - Proven SOC experience in international/global environments - Advanced proficiency with SIEM platforms (Splunk, QRadar, Microsoft Sentinel, etc.) - Extensive experience with EDR/XDR solutions (CrowdStrike, SentinelOne, Microsoft Defender, etc.) - Strong understanding of network security, firewalls, IDS/IPS, and monitoring - Solid Windows and Linux/Unix knowledge, plus forensics basics - Cloud security experience (AWS, Azure, GCP) and containerization - Scripting skills (Python, PowerShell, Bash) for automation - Familiarity with threat intelligence and MITRE ATTu**CK - Fluent in English and strong communication skillsRequisitos principales - Competitive compensation with a benefits package - Tuition reimbursement - Generous paid time off - Career growth opportunities - Global team collaboration - Security-focused culture
Requirements
Maintain smooth client transitions via Go-to-Prod gates and Go-to-Active reviewsResponsabilidades - 4+ years of hands-on cybersecurity operations, incident response, or threat analysis - Proven SOC experience in international/global environments - Advanced proficiency with SIEM platforms (Splunk, QRadar, Microsoft Sentinel, etc.) - Extensive experience with EDR/XDR solutions (CrowdStrike, SentinelOne, Microsoft Defender, etc.) - Strong understanding of network security, firewalls, IDS/IPS, and monitoring - Solid Windows and Linux/Unix knowledge, plus forensics basics - Cloud security experience (AWS, Azure, GCP) and containerization - Scripting skills (Python, PowerShell, Bash) for automation - Familiarity with threat intelligence and MITRE ATTu**CK - Fluent in English and strong communication skillsRequisitos principales - Competitive compensation with a benefits package - Tuition reimbursement - Generous paid time off - Career growth opportunities - Global team collaboration - Security-focused culture
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.buscojobs.com.esGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Top-Paying Tech Jobs (with Salaries)
Data Analyst Salary in the UK
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.