Senior Security Operations Center Analyst
$108,500–$154,000 year
RemoteCalifornia, United States or Arizona, United States
Job Summary
Monitor SIEM/SOAR, EDR, and IDS/IPS alert channels for malicious activity, investigating, containing, triaging, and mitigating incidents while tuning rules to reduce false positives. Design, develop, and maintain detection content mapped to MITRE ATT&CK, collaborating with Red Team to validate coverage gaps and leveraging AI to automate triage and enrichment. Partner with security engineering teams to build automation workflows and mature the threat intelligence program, providing postmortem analyses and policy recommendations to continuously improve the enterprise security posture.
Required Qualifications
- Proficient operator of security tools such as endpoint protection/EDR, SIEM, IPS/IDS, HIDS/NIDS, WAFs, Edge/DNS security, vulnerability scanning, malware analysis tools, networking tool for full packet analysis, data loss prevention (DLP), etc.
- Hands-on experience developing, tuning, and validating detection content (e.g., SIEM correlation/analytics and EDR detections), and familiarity with a detection framework such as MITRE ATT&CK
- 2+ of the following certifications: CEH, CISM, GIAC, GCIH, GCIA, GSLC, GICSP, GSEC, CEH, GWAP, CompTIA Net+, CompTIA A+, CompTIA Security+, CASP CE, SEC+, Splunk Core, OSCP, etc.
- Linux/Unix OS, Windows and Mac administration skills
- Intimate understanding of technology and be motivated to constantly learn new technologies
- Strong ability to learn and research new things, including tools, languages, frameworks, etc.
- This position may be eligible for a bonus incentive, health benefits, a 401K program, and other employee perks. More details about our company benefits can be found at https://shutterflyinc.com/benefits/.
Desired Qualifications
- Programming/scripting experience (bash, python, PowerShell)
- Forensics or malware analysis experience
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.