Security Analyst - Tier 3

Nebius

United States

Hybrid

USD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive compensation
Career growth and learning
Flexibility and ownership
Collaborative and innovative culture
Impactful AI projects
International environment

Job summary

Nebius is seeking a deeply experienced Security Analyst - Tier 3 for its Security Operations Center (SOC). This senior individual-contributor will lead challenging investigations, reporting to the SOC Manager under the Detection and Response function within the CISO Office.

Your responsibilities include guiding multi-domain investigations, mentoring junior analysts, and collaborating with Security Engineering, Threat Intelligence, and related teams to strengthen detection and response across

Qualifications

  • Around 8-10 years of hands-on experience in security operations or incident response, with a track record of leading complex investigations.

Responsibilities

  • Lead complex, multi-stage investigations end to end across multiple domains (endpoint, identity, cloud, network).
  • Serve as senior escalation point and quality gate for investigations.
  • Support Incident Response during incidents with continued telemetry investigation and scoping.
  • Mentor Tier 1/2 analysts through case reviews and coaching.
  • Partner with Security Engineering, Platform Security, Threat Intelligence, SOC Automation and more to improve detection and response.

Skills

Senior SOC leadership
Incident response
English communication
Mentoring

Tools

EDR
SIEM
Kubernetes

Job description

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

The role

Nebius is seeking a deeply experienced Security Analyst - Tier 3 for its Security Operations Center (SOC). This role is a senior individual-contributor position, leading challenging investigations, setting the standards the SOC operates by. This role reports to the SOC Manager, under the Detection and Response function within the CISO Office.

Your responsibilities will include:

  • Lead complex, multi-stage, multi-domain investigations end to end, from scoping through deep technical analysis to a clear determination of impact and root cause.
  • Serve as the SOC's senior escalation point and the quality gate for investigations across the team.
  • Support the Incident Response team during confirmed incidents with continued telemetry investigation, scoping, and analytical depth.
  • Continuously sharpen how the SOC investigates, identifying gaps in methods, runbooks, and tooling through daily casework and turning them into concrete improvements.
  • Mentor Tier 1 and Tier 2 analysts through case reviews, coaching, and pairing during investigations.
  • Partner with Security Engineering, Platform Security, Threat Intelligence, SOC Automation, and additional teams to turn what the SOC learns into stronger detection and response across Nebius.
  • Participate in readiness activities - tabletops, post-incident reviews, and purple-team engagements.
  • Participate in the on-call rotation as the senior point of contact outside business hours.

We expect you to have:

Experience

  • Around 8-10 years of hands-on experience in security operations or incident response, with a track record of leading complex investigations.

Technical Expertise

  • Expert-level investigation capability across multiple domains: endpoint, identity, cloud, and network.
  • Solid understanding of cloud-native environments, including containers, Kubernetes.
  • Deep practical fluency with EDR, SIEM query languages, and log analysis.
  • Deep knowledge of Windows and Linux internals, applied to artifact and behavioral analysis.
  • Fluency in attacker TTPs (MITRE ATT&CK), including the Cloud and Containers matrices.
  • Strong scripting and data-analysis skills (Python, SQL/KQL) for investigation at scale, with the ability to validate findings independently and challenge assumptions.
  • Advanced certifications such as GCIH, GCFA, GNFA, GCFE, or OSCP are an advantage.

Leadership & Communication

  • Technical leadership through credibility, raising the team's bar without relying on formal authority.
  • Calm and structured during high-severity incidents, making sound decisions amid uncertainty.
  • Excellent written communication, turning complex investigations to clear narratives others can act on.
  • Fluent in English, written and verbal, comfortable working with international teams and stakeholders.

Benefits & Perks:

  • Competitive compensation
  • Career growth and learning opportunities
  • Flexibility and ownership
  • Collaborative and innovative culture
  • Opportunity to work on impactful AI projects
  • International environment and talented teams

What's it like to work at Nebius:

Fast moving- Bold thinking- Constant growth- Meaningful impact- Trust and real ownership- Opportunity to shape the future of AI

Equal Opportunity Statement:

Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law.

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire.

If you need accommodations during the application process, please let us know.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Software Engineer, Observability
Senior Software Engineer, Observability

Nebius • United States

On-site
USD 130,000 - 170,000
100% company-paid health insurance
401(k) match
Parental leave
+1
Delivery Manager - Data Center, Physical Security
Delivery Manager - Data Center, Physical Security

Socket.dev • United States

On-site
USD 107,000 - 134,000
Health insurance
401(k) plan
Parental leave
+2
Physical Security Systems Technician - IT & Infrastructure
Physical Security Systems Technician - IT & Infrastructure

Nebius • United States

On-site
USD 50,000 - 70,000
Competitive compensation
Career growth opportunities
Collaborative culture
Infrastructure Site Reliability Engineer
Infrastructure Site Reliability Engineer

Socket.dev • United States

On-site
USD 180,000 - 224,000
Competitive compensation
Career growth
Flexibility and ownership
+3
Colocation Physical Security Manager
Colocation Physical Security Manager

Nebius • United States

On-site
USD 107,000 - 134,000
Health insurance
401(k) plan with company match
Parental leave
+1
Field Network Technician
Field Network Technician

Socket.dev • New Jersey

On-site
USD 83,000 - 100,000
Competitive compensation
Career growth and learning
Flexibility and ownership
+4
IT Risks & Control Manager
IT Risks & Control Manager

Nebius • United States

On-site
USD 140,000 - 190,000
Competitive compensation
Career growth
Flexible and ownership mindset
IT Risks & Control Manager
IT Risks & Control Manager

Nebius • Berlin (NH)

On-site
USD 140,000 - 170,000
Competitive pay
Career growth
Flexibility & ownership
+3
Software Engineer in Infrastructure
Software Engineer in Infrastructure

Socket.dev • United States

On-site
USD 180,000 - 224,000
Competitive compensation
Career growth and learning
Flexibility and ownership
+3
SFO - Office Site Security Manager
SFO - Office Site Security Manager

Nebius • United States

On-site
USD 86,000 - 107,000
Health insurance
401(k) plan
Parental leave
+2