Lead SOC Analyst/Threat Hunter

Swift Software

California (MO)

On-site

USD 121,564 - 225,762

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

401(k) matching
Bonus opportunities
Medical/dental/vision

Job summary

Swift Software seeks a Lead SOC Analyst for our Cyber Fusion Centre to oversee threat hunting, support incident response, and provide strategic guidance to junior staff.

You will lead a formal Threat Hunting program, participate in 24x7 SOC operations, and collaborate with the Red Team to enhance detection capabilities. Requires 8+ years in SOC/IR/Threat Hunting with cloud and SIEM/EDR/SOAR experience.

Qualifications

  • Minimum 8+ years in a SOC, Incident Response, or Threat Hunting role.
  • Experience leading threat hunting initiatives and IR activities.
  • Proficiency with cloud technologies (Azure, AWS, Google Cloud).
  • Experience with security tooling (SIEM, IDS/IPS, EDR/XDR, SOAR).
  • Strong written and verbal communication; ability to document investigations concisely.

Responsibilities

  • Oversee threat hunting initiatives and drive formal Threat Hunting program.
  • Participate in a 24x7 SOC schedule with rotation; on-call during certain periods.
  • Provide expertise to junior team members and guide IR/TD activities.
  • Support IR and Threat Detection development and report to Senior Management.
  • Lead integration of new capabilities and IR processes within the Cyber Fusion Centre.
  • Coordinate with Red Team to enhance detection capabilities and run IR simulations.
  • Perform triage, identification, scoping, containment actions for incidents.
  • Develop and communicate IOCs; coordinate eradication with stakeholders.
  • Tune tools to efficiently manage large security event datasets.

Skills

Threat hunting
Incident Response
Team leadership
Cloud platforms
Effective communication

Education

Bachelor’s degree in Computer Science/IT or related field

Tools

SIEM
IDS/IPS
EDR/XDR
SOAR

Job description

We are seeking a Lead SOC (Security Operations Center) Analyst to join our Cyber Fusion Centre.

Job Summary

The Lead SOC Analyst will oversee threat hunting initiatives, support incident response activities, and provide strategic guidance to junior staff.

Responsibilities
  • Lead the creation and operationalization of a formalized Threat Hunting program.
  • Participate in a 24x7 SOC schedule, including one week per month Monday – Sunday, 11AM – 7PM, and occasional holiday work.
  • Provide expertise and guidance to less senior team members.
  • Support Incident Response (IR) and Threat Detection development activities and report to Senior Management.
  • Support the introduction and implementation of new capabilities and IR processes within the Cyber Fusion Centre.
  • Interact closely with Swift’s Red Team to enhance detection capabilities.
  • Lead and participate in IR simulation exercises from a blue team perspective.
  • Perform proper triage, identification, and scoping of incidents, including containment actions.
  • Participate in the identification, development and communication of IOCs.
  • Coordinate eradication and remediation actions with stakeholders.
  • Enhance and tune tools for efficiently managing large collections of security events.
  • Stay abreast of changing technologies, emerging cyber threats, and attack methodologies.
Qualifications
  • Bachelor’s degree in Computer Science, IT, or related field.
  • 8+ years of experience in a SOC, Incident Response, or Threat Hunting role.
  • Experience performing or leading threat hunting activities.
  • Experience with cloud technologies such as Azure, Google Cloud, or AWS.
  • Experience with security tools such as SIEM, IDS/IPS, EDR/XDR, SOAR, etc.
  • Ability to learn quickly in a fast-paced, multi-dimensional, technical environment.
  • Strong verbal and written communication skills, with the ability to document technical investigations concisely.
Preferred Qualifications
  • Familiarity with scripting languages such as PHP, Perl, or Python and databases such as MySQL.
  • Knowledge of Unix and Windows operating systems.
  • Security certifications such as GIAC GCIA/GCIH, CISSP, or other relevant certifications.
  • Knowledge of penetration testing and vulnerability assessment capabilities and tools.
Salary

Estimated range: $121,564.00USD – $225,762.00USD per year for a new hire in Virginia.

Benefits

Medical, dental, vision, and life insurance at no employee premium; retirement plan with 401(k) matching; bonus opportunities contingent on performance.

Swift is unable to sponsor an employment authorization for this position now or in the future.
Equal Employment Opportunity

Swift is committed to an inclusive and accessible recruitment process. For accessibility accommodations, please contact accessibility-Sysgroup@swift.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead SOC Analyst/Threat Hunter
Lead SOC Analyst/Threat Hunter

Swift • Culpeper (VA)

On-site
USD 121,564 - 225,762
Medical, dental, vision insurance
Life insurance
401(k) with employer match
+1
Lead SOC Analyst: Threat Hunting & IR Leader
Lead SOC Analyst: Threat Hunting & IR Leader

Swift • Culpeper (VA)

On-site
USD 121,564 - 225,762
Medical, dental, vision insurance
Life insurance
401(k) with employer match
+1
Lead SOC Analyst: Cyber Threat Hunter & IR Leader
Lead SOC Analyst: Cyber Threat Hunter & IR Leader

Swift Software • Culpeper (VA)

On-site
USD 121,564 - 225,762
Medical Insurance
Dental Insurance
Vision Insurance
+1
Senior SOC Lead: Threat Hunting & Incident Response
Senior SOC Lead: Threat Hunting & Incident Response

Swift Software • California (MO)

On-site
USD 121,564 - 225,762
401(k) matching
Bonus opportunities
Medical/dental/vision
Lead SOC Analyst/Threat Hunter
Lead SOC Analyst/Threat Hunter

Swift Software • Culpeper (VA)

On-site
USD 121,564 - 225,762
Medical Insurance
Dental Insurance
Vision Insurance
+1
Cyber Security Project Engineer
Cyber Security Project Engineer

The Swift Group, LLC • Chantilly (VA)

On-site
USD 50,000 - 290,000
Healthcare
Retirement plan
Education assistance
+1
Cyber Defense Analyst 3
Cyber Defense Analyst 3

The Swift Group, LLC • Maryland

On-site
USD 50,000 - 290,000
Healthcare benefits
Retirement planning options
Time off benefits
Cyber Security Engineer SME
Cyber Security Engineer SME

The Swift Group, LLC • Herndon (VA)

On-site
USD 50,000 - 290,000
Healthcare
Wellness programs
Retirement benefits
+2
Cryptologic Computer Scientist: Data & Security Innovator
Cryptologic Computer Scientist: Data & Security Innovator

OPS Consulting, LLC • Laurel (MD)

On-site
USD 49,996 - 290,004
Healthcare benefits
Wellness programs
Retirement benefits
+2
Lead AI Engineer – Vulnerability Management Specialist (Hybrid)
Lead AI Engineer – Vulnerability Management Specialist (Hybrid)

Swift • Manassas (VA)

On-site
USD 122,000 - 226,000
Medical insurance
Dental insurance
Vision insurance
+2