Posted on: 06/10/2026
Position Summary :
The Senior SOC Analyst is a senior individual contributor within Inmar's Security Operations Center (SOC), responsible for advanced threat detection, investigation, incident response, threat hunting, and detection engineering.
Technical Expertise (70%) :
Detection Engineering :
- Develop, test, implement, maintain, and optimize advanced security detection rules and logic.
- Develop SIEM use cases using YARA, Sigma, Splunk, Elastic, or Microsoft Sentinel.
- Analyze detection effectiveness and tune rules to reduce false positives.
Incident Detection and Response :
- Lead complex security investigations and coordinate containment, eradication, and recovery activities.
- Maintain accurate documentation of investigations and findings.
Threat Hunting :
- Conduct proactive threat-hunting using intelligence, behavioral analytics, and attack frameworks.
Security Platform Optimization :
- Partner with Cybersecurity Engineering to improve security monitoring platforms.
Vulnerability and Security Risk Analysis :
- Identify, assess, and communicate security weaknesses and provide risk-based recommendations.
Technical Leadership and Mentorship (20%) :
- Provide technical guidance and mentorship to SOC analysts.
- Develop training materials and share lessons learned from incidents.
- Improve SOC workflows, procedures, and playbooks.
Operational Excellence (10%) :
- Develop security reports and operational metrics for leadership.
- Implement changes to SOC technologies and workflows following change-management procedures.
- Collaborate with internal stakeholders across geographic boundaries.
Required Qualifications :
- Bachelor's degree in Computer Science, IT, Cybersecurity, or related field.
- 5+ years of professional experience in security operations, IR, or detection engineering.
- Experience developing detection logic using SIEM platforms like Splunk, Elastic, or Sentinel.
- Strong understanding of intrusion detection, malware analysis, and threat intelligence.
Preferred Qualifications :
- Experience in Cloud Security (AWS, Azure, GCP).
- Experience with SOAR platforms and automation (Python).
- Relevant cybersecurity certifications.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1676880