SOC Analyst L3
Staffing Solutions Enterprises · Cleveland, OH · 2 wk ago
Information Technology$80k–$90k/yrFull-time
Salary Range: $80K-$90K
Location: 100% Remote
Schedule
- 1-2nd shift 5PM-1AM
- 1-3rd shift 1AM-9AM
About the role
We’re seeking an experienced SOC Analyst Level 3 to join a dynamic team dedicated to defending client environments from sophisticated cyber threats. As a key leader in the SOC, you'll spearhead complex investigations, craft proactive threat hunts, and ensure the highest standards of case quality and client service. This role offers a unique opportunity to leverage your expertise across diverse security domains while mentoring junior analysts and shaping incident response strategies.
Responsibilities
- Lead and drive complex, escalated investigations, ensuring swift containment and remediation of threats.
- Analyze cyber incidents to determine root cause, scope, and impact, producing detailed incident reports for clients.
- Manage client communication during active incidents through calls, emails, and video interactions, providing expert guidance and updates.
- Design and execute targeted threat hunts across varied environments, delivering comprehensive reports to inform client security posture.
- Oversee case quality reviews, identify systemic issues, and coordinate improvements across the analyst team.
- Maintain and update alert playbook documentation, flag detection gaps for engineering teams, and ensure alignment with customer-specific procedures.
- Review system and security data regularly to identify vulnerabilities, recommend remediation, and enhance detection coverage.
- Lead AI case reviews, analyze security metrics, and generate insightful weekly and monthly reports.
- Serve as the senior point of contact during shifts, providing guidance and decision-making support for the team.
- Conduct structured handoffs at shift boundaries to ensure continuity and clarity.
Requirements
- 3 to 5+ years of SOC or security operations experience, with proven leadership in incident investigations.
- Deep expertise in at least one core area: malware analysis, cloud security (AWS, Azure, GCP), identity and access management (Entra ID, Okta), or network forensics.
- Strong ability to lead investigations from detection to resolution, including root cause analysis and client communication.
- Hands-on experience designing and executing threat hunts, not just executing predefined ones.
- Proficiency in writing complex queries using KQL, EQL, or similar languages.
- Excellent incident report writing skills that set industry standards.
- Experience communicating with clients during high-pressure security incidents.
- Availability to provide phone coverage and support during escalated incidents on designated shifts.
- Ability to operate independently, take initiative, and surface problems proactively.
- Willingness to participate in ongoing training and certification to stay current with evolving threats.
Qualifications
- Bachelor’s Degree in Cybersecurity, Information Technology, or related field (preferred).
- 3+ years in a SOC environment with hands-on incident response and threat hunting experience.
- Demonstrated leadership in managing complex security investigations and mentoring team members.
Skills
- Certification in relevant security disciplines (e.g., CISSP, GIAC, CEH) (nice to have).
- Familiarity with SIEM and EDR tools (nice to have).
- Knowledge of scripting or automation to improve detection and investigation processes (nice to have).
- Experience with security frameworks and compliance standards (nice to have).
- Ability to analyze security metrics and contribute to strategic improvement initiatives (nice to have).