> Markdown version of [/jobs/ext/607528-senior-soc-analyst](https://www.wearedevelopers.com/jobs/ext/607528-senior-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior SOC Analyst - **Company:** Eisner Advisory Group LLC - **Location:** San Francisco, CA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Microsoft Azure, Bash Shell, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Intrusion Detection Systems, Python (Programming Language), Log Analysis, Windows PowerShell, Security Information and Event Management, Software Vulnerability Management, Mitre Att&ck, Azure Security Center, Kubernetes, Information Technology, Devsecops - **Published:** June 16, 2026 - **Apply:** https://eisneramper.wd1.myworkdayjobs.com/EisnerAmper_External/job/San-Francisco/Senior-SOC-Analyst_Req-9063 ## About the Role * 5+ years of experience in information security, with at least 2-3 years in a SOC analyst role (Tier 2 or above) with hands-on experience with Google SecOps SIEM, Microsoft Defender for Endpoint (EDR), ReliaQuest GreyMatter, and log analysis from network, endpoint, and cloud sources * Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent work experience) Preferred/Desired Skills: * Strong understanding of cloud security (Azure, AWS), using tools like Microsoft Defender for Cloud, and AWS GuardDuty * Demonstrated ability to lead incident response end-to-end, including forensics and root cause analysis * Familiarity with scripting/automation (Python, PowerShell, Bash) and SOAR platforms * Working knowledge of frameworks such as MITRE ATT&CK and NIST CSF * Excellent written and verbal communication skills, with the ability to convey technical details to various stakeholders * Certifications relevant to cybersecurity and enterprise IT systems * Experience with IDS/IPS, DLP, IAM, or vulnerability management tools in large-scale environments * Knowledge of DevSecOps, container security (e.g., Kubernetes), and SaaS/cloud application protection * Prior experience in a regulated or professional services environment (e.g., finance, audit, advisory) ## Description * Lead threat detection and incident response efforts, including containment, recovery, and root cause analysis for high-severity incidents * Monitor SIEM, EDR, cloud platforms, and other tools to identify, triage, and investigate potential security threats * Proactively hunt for threats using threat intelligence and MITRE ATT&CK framework to surface risks and enhance monitoring * Develop and optimize SOC use cases, detection rules, and response playbooks * Act as a point of escalation for junior analysts and ensure efficient alert handling and incident escalation * Mentor SOC team members, review investigation reports, and lead by example in documentation and best practices * Collaborate with IT, audit, compliance, and business teams to remediate issues and improve defenses * Support audit, compliance, and regulatory needs with detailed and accurate incident documentation ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)