Principal SOC Analyst

IronRoad

Kentucky

On-site

USD 140,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
401(k)
Paid Time Off

Job summary

IronRoad is seeking a Principal SOC Analyst in Cincinnati, OH. You will own assessment of security events, mentor analysts, and deliver security briefings to executives.

Responsibilities include threat hunting, triage, log monitoring, threat intel collaboration, incident support, and leadership of SOC processes; you will work with cross-functional teams and ensure data flow.

Qualifications

  • 4+ years as a SOC Analyst or related role.
  • Strong PCAP and network traffic analysis skills.
  • Hands-on experience with major EDR platforms.
  • Experience with SIEM and dashboarding tools.
  • Clear communication to technical and executive stakeholders.
  • Leadership experience mentoring juniors.
  • Bachelor's degree in CS/InfoSec or equivalent hands-on.
  • Authorized to work in the United States without sponsorship.

Responsibilities

  • Lead analysis of security events across client environments.
  • Mentor junior analysts and provide guidance.
  • Perform threat hunting and incident investigations.
  • Prepare executive-ready incident reports.
  • Collaborate with threat intel and engineering teams.
  • Tune detections to minimize false positives.
  • Ensure data flows to security platforms and fix gaps.
  • Manage sprint reviews and SOC processes.
  • Deliver regular daily/weekly/monthly briefings.

Skills

SOC experience
PCAP analysis
EDR platforms
Log dashboards
Communication
Leadership
US work eligibility

Education

Bachelor's degree in CS/InfoSec or equivalent

Tools

CrowdStrike Falcon
SentinelOne
Carbon Black
Microsoft Defender for Endpoint

Job description

Location: Cincinnati, OH (CANDIDATES MUST BE OHIO RESIDENTS TO BE CONSIDERED FOR POSITION)

Position Type: Full-Time

Salary: $140,000 - $160,000 / year (dependent on experience)

Company Overview

IronRoad is conducting a confidential search for a Principal SOC Analyst on behalf of our Cincinnati-based client. In this role, you will act as a lead analyst on the floor, owning the assessment of security events and incidents across client environments, mentoring newer analysts, and delivering scheduled security briefings directly to executive stakeholders. (IMPORTANT TO NOTE: CANDIDATE MUST LIVE IN OHIO DUE TO CONTRACT STIPULATIONS)

What You'll Do
  • Threat Hunting: Run proactive threat hunts across client environments to surface anomalous activity, active/prior compromises, and misconfigurations.
  • Triage & Investigation: Investigate alerts across multiple detection technologies, scope incidents, and guide clients toward rapid remediation.
  • Log & Event Monitoring: Continuously monitor SIEM platforms and log data for threats, intrusions, and security anomalies.
  • Threat Intelligence Integration: Collaborate with the Cyber Threat Intelligence team to apply global threat trends directly to client data analysis.
  • Incident Support & Remediation: Support containment and post-incident remediation efforts.
  • Executive Reporting: Write clear, concise incident reports tailored for C-suite executive review.
  • Detection & Tuning: Partner with detection engineering to validate detections and tune logic to reduce false positives without compromising coverage.
  • Data Flow Optimization: Ensure security-relevant data reaches designated platforms and collaborate with cross-functional teams to resolve data pipeline gaps.
  • Process & Workflow Ownership: Run sprint reviews for your workstream while maintaining current documentation, workflows, and SOC processes.
  • Mentorship & Metrics: Mentor junior analysts and gather metrics to support daily, weekly, and monthly executive briefings.
What You Need
  • Experience: 4+ years as a SOC Analyst, Detection Engineer, Security Content Developer, or Security Engineer.
  • Network Analysis: Deep skills in PCAP data analysis, network traffic interpretation, indicator extraction, network protocols, and network architecture.
  • EDR Expertise: Hands‑on experience with major EDR platforms (CrowdStrike Falcon, SentinelOne, Carbon Black, or Microsoft Defender for Endpoint).
  • Log & Dashboarding Tools: Proficiency with log analysis tooling, pattern recognition, and building/maintaining operational dashboards.
  • Communication Skills: Ability to clearly communicate technical concepts to both technical staff (e.g., Network Engineers) and executive leadership (e.g., CFOs).
  • Leadership & Attention to Detail: Proven capability to mentor others and a strong focus on high‑precision incident investigation.
  • Education: Bachelor's degree in computer science, Information Security, or a related field (or equivalent hands‑on experience).
  • Work Authorization: Must be eligible to work in the United States without sponsorship (Open strictly to US citizens physically residing in the US).
Nice to Have
  • 6+ years of relevant security experience.
  • Prior SOC or CSIRT experience on a 24x7 watch desk.
  • Working knowledge of attacker tooling, malware families, and threat actor TTPs mapped to the MITRE ATT&CK framework.
  • Strong foundation in incident response frameworks and root cause analysis (RCA).
  • Track record of hunting unknown threats and tracking active threat campaigns/adversaries.
  • Experience delivering managed network security monitoring (MSSP format) across multi‑client environments.
  • Hands‑on experience configuring and managing firewalls, routers, and network security appliances.
  • Process optimization mindset with a focus on cycle‑time reduction.
  • Schedule: Flexible schedule with occasional non‑traditional hours and after‑hours on‑call rotations.
  • Work Location: Cincinnati office - OHIO RESIDENT REQUIRED.
  • Contingencies: Offer contingent upon passing background, drug screen, and reference checks.
  • Benefits: Full corporate benefits package (Medical, Dental, Vision, 401(k), Paid Time Off).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center Analyst
Security Operations Center Analyst

StevenDouglas • Miami (FL)

Hybrid
USD 100,000 - 140,000
Hybrid work arrangement
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
Senior SOC Analyst (Direct Hire EAD OKAY)
Senior SOC Analyst (Direct Hire EAD OKAY)

Confidential • United States

Hybrid
USD 120,000 - 180,000
Senior Security Operations Analyst - Onsite
Senior Security Operations Analyst - Onsite

Core specialty • Cincinnati (OH)

On-site
USD 105,000 - 145,000
Health insurance
Dental insurance
Vision insurance
+7
Senior SOC Analyst- Tuesday- Saturday
Senior SOC Analyst- Tuesday- Saturday

BNY Mellon • Town of Florida (NY)

On-site
USD 110,000 - 160,000
Senior SOC Analyst- Tuesday- Saturday
Senior SOC Analyst- Tuesday- Saturday

BNY Mellon • Pittsburgh

On-site
USD 110,000 - 150,000
Security Operations Center Analyst
Security Operations Center Analyst

Charter Solutions • Minneapolis (MN), Saint Paul (MN)

Hybrid
USD 70,000 - 100,000
Security Operations Center Manager
Security Operations Center Manager

MTI • Nashville (TN)

On-site
USD 120,000 - 150,000
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000