Lead SOC Analyst/Threat Hunter

Swift Software

California (MO)

On-site

USD 121,564 - 225,762

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) matching
Bonus opportunities
Medical/dental/vision

Job summary

Swift Software seeks a Lead SOC Analyst for our Cyber Fusion Centre to oversee threat hunting, support incident response, and provide strategic guidance to junior staff.

You will lead a formal Threat Hunting program, participate in 24x7 SOC operations, and collaborate with the Red Team to enhance detection capabilities. Requires 8+ years in SOC/IR/Threat Hunting with cloud and SIEM/EDR/SOAR experience.

Qualifications

  • Minimum 8+ years in a SOC, Incident Response, or Threat Hunting role.
  • Experience leading threat hunting initiatives and IR activities.
  • Proficiency with cloud technologies (Azure, AWS, Google Cloud).
  • Experience with security tooling (SIEM, IDS/IPS, EDR/XDR, SOAR).
  • Strong written and verbal communication; ability to document investigations concisely.

Responsibilities

  • Oversee threat hunting initiatives and drive formal Threat Hunting program.
  • Participate in a 24x7 SOC schedule with rotation; on-call during certain periods.
  • Provide expertise to junior team members and guide IR/TD activities.
  • Support IR and Threat Detection development and report to Senior Management.
  • Lead integration of new capabilities and IR processes within the Cyber Fusion Centre.
  • Coordinate with Red Team to enhance detection capabilities and run IR simulations.
  • Perform triage, identification, scoping, containment actions for incidents.
  • Develop and communicate IOCs; coordinate eradication with stakeholders.
  • Tune tools to efficiently manage large security event datasets.

Skills

Threat hunting
Incident Response
Team leadership
Cloud platforms
Effective communication

Education

Bachelor’s degree in Computer Science/IT or related field

Tools

SIEM
IDS/IPS
EDR/XDR
SOAR

Job description

We are seeking a Lead SOC (Security Operations Center) Analyst to join our Cyber Fusion Centre.

Job Summary

The Lead SOC Analyst will oversee threat hunting initiatives, support incident response activities, and provide strategic guidance to junior staff.

Responsibilities
  • Lead the creation and operationalization of a formalized Threat Hunting program.
  • Participate in a 24x7 SOC schedule, including one week per month Monday – Sunday, 11AM – 7PM, and occasional holiday work.
  • Provide expertise and guidance to less senior team members.
  • Support Incident Response (IR) and Threat Detection development activities and report to Senior Management.
  • Support the introduction and implementation of new capabilities and IR processes within the Cyber Fusion Centre.
  • Interact closely with Swift’s Red Team to enhance detection capabilities.
  • Lead and participate in IR simulation exercises from a blue team perspective.
  • Perform proper triage, identification, and scoping of incidents, including containment actions.
  • Participate in the identification, development and communication of IOCs.
  • Coordinate eradication and remediation actions with stakeholders.
  • Enhance and tune tools for efficiently managing large collections of security events.
  • Stay abreast of changing technologies, emerging cyber threats, and attack methodologies.
Qualifications
  • Bachelor’s degree in Computer Science, IT, or related field.
  • 8+ years of experience in a SOC, Incident Response, or Threat Hunting role.
  • Experience performing or leading threat hunting activities.
  • Experience with cloud technologies such as Azure, Google Cloud, or AWS.
  • Experience with security tools such as SIEM, IDS/IPS, EDR/XDR, SOAR, etc.
  • Ability to learn quickly in a fast-paced, multi-dimensional, technical environment.
  • Strong verbal and written communication skills, with the ability to document technical investigations concisely.
Preferred Qualifications
  • Familiarity with scripting languages such as PHP, Perl, or Python and databases such as MySQL.
  • Knowledge of Unix and Windows operating systems.
  • Security certifications such as GIAC GCIA/GCIH, CISSP, or other relevant certifications.
  • Knowledge of penetration testing and vulnerability assessment capabilities and tools.
Salary

Estimated range: $121,564.00USD – $225,762.00USD per year for a new hire in Virginia.

Benefits

Medical, dental, vision, and life insurance at no employee premium; retirement plan with 401(k) matching; bonus opportunities contingent on performance.

Swift is unable to sponsor an employment authorization for this position now or in the future.
Equal Employment Opportunity

Swift is committed to an inclusive and accessible recruitment process. For accessibility accommodations, please contact accessibility-Sysgroup@swift.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead SOC Analyst/Threat Hunter
Lead SOC Analyst/Threat Hunter

Swift • Culpeper (VA)

On-site
USD 121,564 - 225,762
Medical, dental, vision insurance
Life insurance
401(k) with employer match
+1
Lead SOC Analyst: Threat Hunting & IR Leader
Lead SOC Analyst: Threat Hunting & IR Leader

Swift • Culpeper (VA)

On-site
USD 121,000 - 226,000
Medical, dental, vision insurance
Life insurance
401(k) with employer match
+1
Lead SOC Analyst: Cyber Threat Hunter & IR Leader
Lead SOC Analyst: Cyber Threat Hunter & IR Leader

Swift Software • Culpeper (VA)

On-site
USD 121,000 - 226,000
Medical Insurance
Dental Insurance
Vision Insurance
+1
Senior SOC Lead: Threat Hunting & Incident Response
Senior SOC Lead: Threat Hunting & Incident Response

Swift Software • California (MO)

On-site
USD 121,000 - 226,000
401(k) matching
Bonus opportunities
Medical/dental/vision
Lead SOC Analyst
Lead SOC Analyst

Swift Software • Culpeper (VA)

On-site
USD 121,000 - 226,000
Medical Insurance
Dental Insurance
Vision Insurance
+1
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Airswift • Houston (TX)

On-site
USD 85,000 - 110,000
Threat Hunt Lead
Threat Hunt Lead

Agile Defense • Reston (VA)

Hybrid
USD 165,000 - 200,000
Lead, Cyber Defense & Response
Lead, Cyber Defense & Response

Prudential Annuities Distributors (PAD) • Newark (NJ)

On-site
USD 123,700 - 204,100
Yearly bonus potential
Medical, dental, and vision insurance
401(k) plan with company match
+2
Sr. Cyber Defense Analyst
Sr. Cyber Defense Analyst

Patriot Talent Solutions • United States

On-site
USD 120,000 - 190,000
Configuration Hardening Specialist
Configuration Hardening Specialist

Swift Software • Manassas (VA)

On-site
USD 59,000 - 111,000
Medical insurance
Dental insurance
Vision insurance
+2