Source Job

US Australia

  • Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
  • Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
  • Create detailed incident reports and collaborate with threat intelligence and incident response teams.

Network Security Threat Intelligence Incident Response EDR Python

20 jobs similar to SOC Analyst

Jobs ranked by similarity.

Global 1w paternity

  • Monitor and triage security alerts from SIEM, EDR, and other sources to identify threats.
  • Perform initial investigations to validate alerts, assess severity, and determine root cause.
  • Document findings and communicate with clients and internal teams for effective incident response.

Netrix Global provides holistic IT solutions to help businesses run and scale securely. The company is a top system integrator ranked in the CRN VAR500, with a culture focused on ownership, collaboration, and respect.

US

  • Perform incident response and forensic analysis of compromised systems, identifying and recommending remediation.
  • Formulate and direct incident response efforts, prioritizing actions and creating detailed reports on compromise vectors and attacker methodologies.
  • Build incident response plans, playbooks, and attack scenarios for customer tabletop exercises, maintaining sandbox environments to evaluate malicious code.

Check Point Software Technologies is the world's leading vendor of cyber security, facing sophisticated threats and attacks. Honored by Time Magazine as one of the World's Best Companies and on Forbes' list of the World's Best Places to Work, we have a global team of driven and innovative people.

$65–$75/hr
United States

  • Monitor, investigate, and respond to security detections across the SIEM, driving alerts to resolution.
  • Develop, tune, and maintain SIEM use cases and correlation rules to improve detection coverage.
  • Build and deliver operational reports and dashboards from available SIEM log source data.

Authentic8 provides Silo, a cloud-native platform that enables digital analysts to conduct secure, anonymous investigations across the globe. They serve over 750 of the world's most sophisticated organizations, from government agencies to commercial entities, with a culture of integrity, collaboration, and transparency.

India

  • Investigate and analyze security alerts and incidents across endpoint, network, cloud, and identity environments.
  • Conduct proactive threat hunting, malware analysis, and deobfuscation of suspicious scripts.
  • Collaborate with senior analysts, document findings, and provide remediation recommendations.

The company operates a global Managed Detection and Response environment, protecting organizations from cyber threats. It has a remote-first culture with a collaborative team and opportunities for professional growth.

$103,600–$148,000/yr
US

  • Perform investigations into detected threats using EDR, Network, and Identity telemetry to analyze, contain, and remediate threats in customer environments
  • Identify, scope, and manage ongoing customer incidents, developing remediation plans and providing thorough reports
  • Collaborate with Detection Engineering, Intelligence, Research, and Product Management teams to develop new approaches to threat remediation

Zscaler provides a cloud-native Zero Trust Exchange platform that secures users, devices, and applications from cyberattacks and data loss. They foster a culture of transparency, collaboration, and customer obsession with a focus on impact and accountability.

$152,000–$152,000/yr
US

  • You will hunt for and analyze adversary capabilities targeting ICS/OT networks.
  • You will develop tools and scripts for capability analysis and inform detection strategies.
  • Your work directly enhances Dragos' ability to defend against advanced threats.

Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The company is a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.

$113,800–$139,000/yr
US

  • Monitor and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, and other platforms.
  • Perform incident response, threat hunting, and log analysis to identify vulnerabilities and improve security controls.
  • Provide practical security guidance and participate in initiatives to ensure compliance with industry standards.

The company provides enterprise information security services for the real estate industry. They value integrity, kindness, and grit, and emphasize long tenure and career development.

US

  • Responsible for daily incident management of customer incidents, including incident response and forensic analysis of compromised systems.
  • Formulate and direct incident response efforts, prioritize response actions, and create legible incident reports describing compromise vectors and attacker methodologies.
  • Build and maintain incident response plans, playbooks, and sandbox/test lab environments to evaluate malicious code.

We protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation with a prevention-first approach. We are recognized by TIME, Newsweek, and Forbes for our excellence and workplace culture, and we value ownership, curiosity, and solving complex problems.

Global

  • Handle complex security incidents, leading deep investigations and driving remediation actions.
  • Participate in a 24/7 on-call rotation to ensure timely response to critical security incidents.
  • Mentor L1/L2 analysts and drive improvements in detection capabilities and incident readiness.

Eurofins is an international life sciences company providing analytical testing services to ensure products are safe and authentic. With over 65,000 staff across 950+ laboratories in 59 countries, it offers a multicultural and entrepreneurial work environment.

$103,600–$148,000/yr
US

  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments.
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies.
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation.

Zscaler accelerates digital transformation by providing a cloud-native Zero Trust Exchange platform that secures users, devices, and applications from cyberattacks and data loss. The company fosters a culture of execution centered on customer obsession, collaboration, ownership, and accountability, with a focus on innovation and transparency.

$140,000–$200,000/yr
Canada India US Unlimited PTO

  • Monitor the threat landscape and deliver actionable intelligence through Flash Reports.
  • Administer the Threat Intelligence Platform and automate intelligence collection with Python.
  • Support incident response and collaborate on Purple Team exercises to improve defenses.

GitLab provides an intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity and improve security. With over 50 million users and more than 50% of the Fortune 100 as customers, GitLab fosters a high-performance culture driven by values and continuous knowledge exchange.

$54,400–$120,750/yr
US

  • Investigate security alerts using tools such as CrowdStrike Falcon Suite and Microsoft Sentinel to determine scope and impact.
  • Support incident response activities, including containment, remediation, and post-incident documentation.
  • Collaborate with cross-functional teams to improve detection quality, workflows, and response readiness.

Commvault is the gold standard in cyber resilience, empowering customers to uncover, take action, and rapidly recover from cyberattacks. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks and improve governance.

$113,800–$139,000/yr
US

  • Protect on-premise and cloud infrastructure, detect and respond to advanced threats, and improve security posture through risk analysis and vulnerability management.
  • Manage and optimize security tools like SIEM, EDR, and IDS/IPS, and perform proactive threat hunting to anticipate new attack techniques.
  • Assess security controls for compliance, analyze threat trends, and participate in infrastructure initiatives to adhere to industry best practices.

Clear Capital is a national real estate analytics, data solutions, and valuation technology company. Since 2001, the company has focused on building confidence in real estate decisions, with a team that values integrity, kindness, and attention to detail.

US

  • Analyze, investigate, document, and report on security alerts or potential incidents in customer environments.
  • Process security investigation cases thoroughly and timely, and serve as an incident coordinator for urgent response and remediation.
  • Provide continuous feedback on process improvements and stay up-to-date on security training and emerging threats.

CyberSheath is a rapidly growing managed security services provider focused on cybersecurity for the Defense Industrial Base. They have a small but expanding team and emphasize a fully remote work culture.

Global

  • Lead and mentor a remote team of SOC analysts while driving resolution for high-priority security incidents.
  • Architect sophisticated detection strategies using CrowdStrike Query Language (CQL) and oversee proactive threat-hunting operations.
  • Collaborate with cross-functional teams to strengthen security controls and document actionable remediation recommendations.

Arista Networks is a leader in data-driven, client-to-cloud networking for large data center, campus, and routing environments. The company is profitable with over $9 billion in revenue and a global, engineering-centric culture that values diversity, inclusion, and innovation.

$65,000–$75,000/yr
US

  • Monitor and investigate security alerts and events across enterprise environments
  • Perform proactive threat hunting and support incident response efforts
  • Use Splunk SIEM for log analysis and work with EDR technologies like CrowdStrike and Cisco AMP

Cyderes builds practical Identity & Access Management and Exposure Management programs, helping organizations stop active threats fast with Managed Detection & Response integrated with existing tools. The company is a Great Place to Work® Certified™ global team operating across the United States, Canada, United Kingdom, and India.

Philippines

  • Monitor customer environments on the ERM intelligence platform and produce actionable intelligence alerts and reports.
  • Investigate urgent issues such as cyber attacks and incidents, including threat actors, attack tools, and techniques.
  • Resolve Tier 1 technical issues and answer customer follow-up requests regarding intelligence alerts.

Check Point protects over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. We are recognized by TIME, Newsweek, and Forbes for excellence and workplace culture, with smart, curious people who take ownership and solve complex problems.

Colombia

  • Safeguard customer digital assets by leveraging expertise in vulnerability identification, security implementation, and incident response.
  • Collaborate with cross-functional teams to assess risks, formulate security strategies, and ensure compliance with industry standards.
  • Stay at the forefront of emerging cyber threats and trends to proactively detect and mitigate security breaches.

Check Point is a world-leading cybersecurity vendor that provides cutting-edge technologies and services to protect against sophisticated threats. The company has a global team of innovative employees and has been recognized by Time Magazine and Forbes as one of the best companies to work for.

US

  • Deploy and support Scout products in real customer environments, building and improving deployment automations.
  • Prototype integrations with customer systems and turn repeatable issues into actionable product requirements.
  • Communicate clearly with technical and non-technical customers while researching cybersecurity trends.

Volexity is a cybersecurity company that builds products used in real-world security environments, including incident response and threat intelligence. The company values diversity and is an equal opportunity employer, hiring based on qualifications and merit.

Poland

  • Monitor IT infrastructure and analyze alerts from SIEM and EDR systems.
  • Perform malware analysis and behavioral analysis to detect anomalies.
  • Support proactive threat hunting using AI-based tools and document findings.

RTB House is a demand-side platform that uses proprietary Deep Learning AI algorithms to help brands grow. Founded in 2012, it operates in 90+ markets and embraces a private-by-design, innovative culture.