L3 SOC ANALYST

Inchcape

Colorado

Hybrid

USD 120,000 - 170,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Learning & Development
Career Growth
Skills Advancement
Flexible Work
Health & Wellbeing
Special Leave
Work Tools

Job summary

Inchcape Digital is seeking a skilled L3 SOC Analyst to join our security operations team in a fast‑growing global setting. You will lead complex investigations, drive threat hunting initiatives, and advance detection engineering across SIEM, EDR, cloud, and network security.

You will mentor junior analysts and help shape incident response strategies. The role emphasizes hands‑on technical leadership, collaboration with internal and external stakeholders, and ongoing improvements to security

Qualifications

  • 4‑5+ years of hands‑on SOC experience in Incident Response, Threat Hunting, or Detection Engineering.
  • Deep expertise in SIEM, EDR, SOAR and enterprise monitoring platforms.
  • Proven experience leading investigations in complex security incidents.
  • Strong detection engineering skills and threat modelling experience.

Responsibilities

  • Lead investigation and response to complex, high‑severity cybersecurity incidents as senior technical escalation point.
  • Coordinate containment, eradication and recovery during major security incidents with stakeholders.
  • Develop and enhance detection rules, models, and monitoring across SIEM/EDR/cloud/network/identity endpoints.
  • Perform proactive threat hunting to identify advanced threats and gaps in monitoring.
  • Build and optimize SOAR playbooks, automations and integrations to accelerate response.
  • Conduct deep technical investigations to determine attack paths and business impact.
  • Mentor junior SOC analysts and participate in on‑call escalations as needed.

Skills

SOC experience
SIEM
EDR
SOAR
Cloud security
Identity security
Endpoint security
Email security

Job description

Select how often (in days) to receive an alert:

Are you looking to accelerate your career path in a stimulating, fast-growing business? At Inchcape, we’re pursuing an exciting strategy to evolve our global business and lead our industry’s transformation. Join Inchcape Digital, part of Inchcape global network. You’ll explore and develop cutting-edge technology and data solutions that are driving our innovation and unique market position. Thrive as part of a highly collaborative and supportive team of diverse and talented colleagues. Our Security platform is seeking a L3 SOC ANALYST to join our team. This role will lead the investigation and response to complex cybersecurity incidents, act as the highest technical escalation point, and drive improvements across threat detection, incident response, threat hunting, and security automation. The ideal candidate will have strong expertise in SIEM, EDR, cloud and network security, along with hands‑on experience developing detection rules, SOAR workflows, and proactive threat‑hunting initiatives in a mature SOC environment. Strong technical leadership, problem‑solving skills, and a passion for advancing cybersecurity operations are essential for success in this role.

What you'll do
  • Lead the investigation and response to complex and high‑severity cybersecurity incidents, acting as the senior technical escalation point within the SOC.
  • Coordinate containment, eradication, and recovery activities during major security incidents while collaborating with internal and external stakeholders.
  • Develop and enhance detection rules, threat models, and monitoring capabilities across SIEM, EDR, cloud, identity, network, and endpoint security platforms.
  • Perform proactive threat hunting to identify advanced threats, detection gaps, and opportunities to strengthen security monitoring.
  • Build and optimize SOAR playbooks, automations, and integrations to improve efficiency and accelerate incident response.
  • Conduct deep technical investigations to determine attack paths, root causes, and business impact across enterprise environments.
  • Mentor junior SOC analysts (L1/L2), contribute to SOC strategy and continuous improvement initiatives, and participate in on‑call escalations when required.
About you
  • 4‑5+ years of hands‑on SOC experience, including senior‑level work in Incident Response, Threat Hunting, or Detection Engineering.
  • Deep expertise in SIEM, EDR, SOAR, Cloud Security, Identity Security, Endpoint Security, Email Security, and enterprise monitoring platforms.
  • Proven experience leading the investigation and response to major cybersecurity incidents in complex environments.
  • Strong detection engineering skills, including creating, tuning, and optimizing detection rules, behavioral analytics, and monitoring content.
  • Practical experience with threat hunting methodologies, threat intelligence, and frameworks such as MITRE ATT&CK.
  • Strong knowledge of operating systems, networking, Active Directory, Entra ID, cloud technologies, authentication protocols, and enterprise infrastructure.
  • Excellent communication and leadership skills, with the ability to mentor analysts, manage high‑pressure incidents, and clearly communicate technical findings to both technical and non‑technical stakeholders.
We offer you
  • Learning & Development: Access leading learning platforms with tailored pathways for every role, including technical and leadership training and certifications.
  • Career Growth:Receive ongoing career support, regular performance reviews, and opportunities for promotion, with access to senior leadership for guidance and mentorship.
  • Skills Advancement: Continuously upgrade your expertise through training in the latest technologies and industry advancements.
  • Flexible Work:Benefit from hybrid or remote work arrangements, with a remote work bonus to recognise your contribution.
  • Health & Wellbeing:Enjoy Health Maintenance Organization HMO coverage with free dependent inclusion and life insurance for added peace of mind.
  • Special Leave:Celebrate your birthday with a dedicated day off just for you.
  • Work Tools:Get the equipment you need to perform your role effectively.
Opportunity for everyone

At Inchcape, inclusion accelerates our success. We are committed to creating a workplace where everyone feels valued, heard, and empowered to thrive. We foster an inclusive culture that reflects the communities we serve, ensuring opportunitiesfor all.

About us

Our diverse global team of over 16,000 talented colleagues foster an inclusive and collaborative culture, delivering a brilliant experience for our customers and partners. We’re a dynamic and fast‑growing business, driving the transformation of our industry and redefining tomorrow. Find out more www.inchcape.com Inchcape’s Digital Delivery Centres drive innovation, empowering global mobility through advanced technology solutions. Our teams deliver impactful digital systems, ensuring long‑term business success with world‑class operations at scale. Learn more about us here.

Additional information request

Selected candidates will be contacted to initiate our hiring journey. We may request additional information from applicants to better understand your background, qualifications and experience for the role.

For any technical support please email to HRIS.Support@inchcape.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Analyst: Incident Response & Threat Hunting Lead
Senior SOC Analyst: Incident Response & Threat Hunting Lead

Inchcape • Colorado

Hybrid
USD 120,000 - 170,000
Learning & Development
Career Growth
Skills Advancement
+4
L3 SOC Analyst
L3 SOC Analyst

Hamilton Barnes ? • United States

Remote
AUD 127,000 - 184,000
Fully remote role
Collaborative SOC team
Opportunity to grow technical and leadership skills
L3 Security Analyst
L3 Security Analyst

Sphynx • Town of Greece (NY)

On-site
USD 110,000 - 165,000
Competitive remuneration
Excellent conditions
Professional development
+1
SOC Lead (Remote or Onsite)
SOC Lead (Remote or Onsite)

Crane Company • Stamford (CT)

On-site
USD 90,000 - 130,000
Cybersecurity Operations Lead
Cybersecurity Operations Lead

Insight Global • Lake Worth (TX)

On-site
USD 120,000 - 170,000
Senior SOC Engineer
Senior SOC Engineer

TRG • Westlake (OH)

Hybrid
USD 110,000 - 160,000
Security Operations Center Analyst
Security Operations Center Analyst

StevenDouglas • Miami (FL)

Hybrid
USD 100,000 - 140,000
Hybrid work arrangement
Principal Consultant – SOC Transformation and XSIAM Deployment
Principal Consultant – SOC Transformation and XSIAM Deployment

Palo Alto Networks • California (MO)

Remote
USD 163,000 - 184,000
Senior SOC Engineer
Senior SOC Engineer

Inversion6 • Westlake (OH)

Hybrid
USD 110,000 - 150,000
L1 Cyber Security Analyst
L1 Cyber Security Analyst

SPHYNX Group • Kentucky

On-site
USD 70,000 - 100,000