Lead SOC Incident Commander & Threat Hunter

UKG

United States

On-site

USD 145,600 - 209,300

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Performance-based bonus
Restricted stock units (RSUs)

Job summary

UKG is seeking a Senior Staff SOC Analyst to join the Global Security Operations team. You will lead incident response, digital forensics, and threat hunting across endpoints, cloud, and workloads, coordinating major incidents and mentoring junior staff.

Strong scripting and GenAI-enabled investigation work are expected. You will collaborate with Legal, Privacy, and business stakeholders, translating findings into executive-ready summaries and durable detections to improve overall security

Qualifications

  • 5+ years of direct hands-on digital forensics and incident response experience.
  • Experience leading or supporting major cyber incident command and coordination.
  • Hands-on threat hunting across SIEM, EDR, cloud telemetry, networks, and endpoints.
  • Strong scripting skills in Python, PowerShell, or Bash for automation.
  • Ability to mentor, train, and influence technical analysts.
  • Experience applying GenAI-assisted workflows to investigations and hunt development.
  • Knowledge of forensic collection standards and executive-ready reporting.
  • Experience with one or more major cloud providers.

Responsibilities

  • Provide hands-on digital forensics and incident response across endpoints, cloud, and networks.
  • Lead major incident command activities: coordinating response, tracking actions, and briefing stakeholders.
  • Perform threat hunting across SIEM, EDR, cloud, identity, and network sources.
  • Support and lead complex investigations as a technical contributor across SOC teams.
  • Mentor analysts during incidents, post-incident reviews, and exercises.
  • Develop incident strategies, timelines, and technical summaries for leadership.
  • Create training materials, playbooks, and exercises for command and response.
  • Utilize scripting to accelerate investigations and standardize responses.

Skills

Digital forensics
Incident response
Threat hunting
Scripting (Python/PowerShell/Bash)
Leadership / mentoring
Forensic artifacts knowledge
GenAI-assisted workflows
Executive communication

Tools

SIEM
EDR
SOAR
Cloud telemetry tools

Job description

UKG is seeking a Senior Staff SOC Analyst to join the Global Security Operations team. You will lead incident response, digital forensics, and threat hunting across endpoints, cloud, and workloads, coordinating major incidents and mentoring junior staff.

Strong scripting and GenAI-enabled investigation work are expected. You will collaborate with Legal, Privacy, and business stakeholders, translating findings into executive-ready summaries and durable detections to improve overall security

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Commander - Cyber Defense & Threat Hunting
Senior Incident Commander - Cyber Defense & Threat Hunting

UKG (Ultimate Kronos Group) • Montpelier (VT)

On-site
USD 146,000 - 209,000
Senior Incident Commander - Cyber Security Lead
Senior Incident Commander - Cyber Security Lead

UKG (Ultimate Kronos Group) • Helena (MT)

On-site
USD 146,000 - 209,000
Senior Security Incident Commander & Forensics Lead
Senior Security Incident Commander & Forensics Lead

UKG (Ultimate Kronos Group) • Salem (OR)

On-site
USD 126,000 - 209,000
Senior Security Incident Commander & IR Leader
Senior Security Incident Commander & IR Leader

UKG (Ultimate Kronos Group) • Jackson (MS)

On-site
USD 146,000 - 209,000
Senior Incident Commander - Security Operations & Forensics
Senior Incident Commander - Security Operations & Forensics

UKG (Ultimate Kronos Group) • Carson City (NV)

On-site
USD 146,000 - 209,000
Bonus plan
Restricted stock units
Healthcare benefits
Senior Incident Commander, Security Operations
Senior Incident Commander, Security Operations

UKG (Ultimate Kronos Group) • Cheyenne (WY)

On-site
USD 146,000 - 209,000
Lead SOC Analyst: Threat Hunting & IR Leader
Lead SOC Analyst: Threat Hunting & IR Leader

Swift • Culpeper (VA)

On-site
USD 121,000 - 226,000
Medical, dental, vision insurance
Life insurance
401(k) with employer match
+1
Senior SOC Analyst - Lead Incident Response & Threat Hunting
Senior SOC Analyst - Lead Incident Response & Threat Hunting

Confidential • United States

Hybrid
USD 120,000 - 180,000
Senior SOC Analyst: Threat Hunting & Incident Response
Senior SOC Analyst: Threat Hunting & Incident Response

Logicalis GmbH • Beachwood (OH)

On-site
USD 78,000 - 100,000
Senior SOC Lead: Threat Hunting & Incident Response
Senior SOC Lead: Threat Hunting & Incident Response

Swift Software • California (MO)

On-site
USD 121,000 - 226,000
401(k) matching
Bonus opportunities
Medical/dental/vision