RAJ
Verified from Jobgether's careers page · Lever

Senior Cyber Operations Analyst

JobgetherUs6 YearsPosted Sep 23, 2026

Apply faster

Fill most application fields automatically from your RealAnalystJobs profile. You review, you submit.

Included with the from $2 for 30 days unlock

About this role

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Cyber Operations Analyst based in United States. The Senior Cyber Operations Analyst will play a key role in monitoring, detecting, investigating, and responding to cybersecurity threats in a fast-paced security operations environment. The position combines advanced security analysis with automation, AI, and machine learning to improve threat detection and response capabilities. You will work across SIEM, SOAR, endpoints, applications, networks, cloud infrastructure, identity systems, and threat intelligence platforms. As a senior team member, you will handle complex incidents, serve as an escalation point, and help strengthen the capabilities of other analysts. The role also involves developing detections, tuning alerts, improving security workflows, and identifying opportunities to automate repetitive activities. You will collaborate with engineering, data science, incident response, and IT teams to enhance security operations and AI-enabled capabilities. This is a fully remote or hybrid opportunity with a strong focus on continuous improvement, emerging threats, and resilient security operations. Accountabilities: • Serve as a subject matter expert for analysts supporting 24/7/365 security monitoring and incident response operations. • Investigate, triage, and respond to cybersecurity incidents, including participation in off-hours and on-call rotations. • Act as an escalation point for complex SOC investigations and day-to-day security operations while identifying opportunities for automation. • Evaluate security operations capabilities, identify strengths and gaps, and recommend AI-enabled solutions that improve team performance and knowledge. • Monitor emerging cybersecurity threats, vulnerabilities, AI developments, and adversary techniques that may affect the organization and its services. • Automate repetitive security operations tasks within SOAR environments using cloud technologies, machine learning, and AI. • Develop and enhance detection capabilities aligned with the MITRE ATT&CK framework, incorporating automation and AI where appropriate. • Validate security alerts by interpreting confidence scores, risk ratings, recommended actions, and relevant threat intelligence. • Use NLP and AI-powered tools to analyze security events, logs, incident data, and intelligence. • Improve AI model performance and alert quality by labeling events and validating true and false positives. • Use multi-agent collaboration and MCP-based solutions within security investigation and response workflows. • Collaborate with data science and engineering teams to improve AI models and technologies used in SOC operations. • Refine security playbooks, policies, procedures, and guidelines in line with industry best practices and evolving AI capabilities. • Partner with security engineering, incident response, and IT teams to improve monitoring, detection, workflows, and response processes. • Support the development and tracking of security metrics, KPIs, and service-level objectives. • Participate in tabletop exercises and review findings from exercises, vulnerability assessments, and penetration tests to identify and address security gaps. • Evaluate logging coverage and examine data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments. • Recommend security-tool adjustments to improve detection quality and reduce false positives. • Provide guidance on monitoring, logging, identity, data protection, detection strategies, and preventive controls. • Report on SOC performance, security posture, trends, and improvement opportunities to cybersecurity leaders and stakeholders. • Mentor junior analysts and contribute to strengthening the overall capabilities and resilience of the security operations team. Requirements • Bachelor’s degree and at least 6 years of related experience; equivalent additional directly related experience may be considered in lieu of a degree. • Professional experience in SOC monitoring, cybersecurity operations, incident response, or a related field. • Strong working knowledge of machine learning and AI and their practical application within security operations. • Experience using NLP, query construction, and AI-powered tools to analyze logs, threat intelligence, and incident data. • Experience with MCP servers, purpose-built agents, and AI assistants or platforms supporting security investigation and response. • Demonstrated understanding of emerging cybersecurity threats, including adversaries’ use of AI-enabled attack techniques. • Experience developing security detections aligned with the MITRE ATT&CK framework and relevant open-source AI frameworks. • Proficiency with scripting languages such as Python, Bash, JavaScript, or PowerShell, along with experience using KQL. • Hands-on experience with SOAR, SIEM, threat intelligence platforms, identity systems, sandboxes, vulnerability management, and EDR/XDR technologies. • Strong understanding of cybersecurity threats, vulnerabilities, incident response principles, and security monitoring practices. • Familiarity with security frameworks or regulations such as CMMC, NIST CSF, CIS, GDPR, or CCPA. • Experience with Azure, AWS, and GCP; experience with government cloud environments is a plus. • Experience managing or collaborating with Managed Security Service Providers (MSSPs). • Strong analytical and problem-solving abilities, with the judgment to make timely decisions during complex and time-sensitive incidents. • Excellent written and verbal communication skills, including the ability to explain cybersecurity incidents clearly and document post-incident reviews and root cause analyses. • Strong organizational and time-management skills, with the ability to manage multiple priorities and deadlines in a fa

Description from Jobgether's public careers feed, reproduced so you can read the role here. Apply on the company's own site; RealAnalystJobs never submits anything for you.

Raj