Security Operations Analyst II

Divvy Cloud Corp.

Northern (KY)

Hybrid

USD 82,000 - 110,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Rapid7 is seeking a Security Operations Analyst to review alert data and identify malicious activity within the Rapid7 environment. You will lead investigations, collect evidence, and document technical analyses to support remediation efforts.

You will perform rotational threat hunting, assist Incident Response engagements, and provide high-quality threat detection services. Candidates should be proficient with Windows, macOS, Linux, and SIEM tools such as Rapid7's platform or Splunk.

Qualifications

  • Experience with SIEM tools (Rapid7 or Splunk) and security monitoring.
  • Strong background in SOC functions: incident response, threat hunting, and forensics.
  • Proven ability to lead investigations, document findings, and drive remediation actions.

Responsibilities

  • Review alert data to identify malicious activity in the Rapid7 environment.
  • Lead investigations spanning evidence collection, analysis, intrusion vector determination, and misuse detection.
  • Create detailed Incident Reports with findings and remediation steps.
  • Perform rotational threat hunting to uncover unknown threats.
  • Assist Incident Response engagements by analyzing forensic artifacts and tracking threat actor movements.
  • Provide high-quality threat detection services to secure the organization.
  • Research current attack methods to enhance detection capabilities.
  • Offer feedback to product teams to improve security features.

Skills

Windows
macOS
Linux
SIEM tools
Threat hunting
Incident response
Forensic investigations

Tools

Rapid7 Platform
Splunk

Job description

About the Team


Our Information security team is tasked with enhancing our security posture and elevating customer confidence in Rapid7 products and services. Together, we lead the effective delivery of business outcomes, and program maturation through standardization and iterative improvement. As part of our team, you'll work with highly engaged and capable colleagues to build and implement complex, cross-functional initiatives that secure our business, our employees, and our customers.


About the Role


As a Security Operations Analyst, your primary responsibility will be to review alert data to pinpoint malicious activity within the Rapid7 environment. Specifically, your focus will be to:



  • Lead and drive investigations spanning evidence collection, analysis, intrusion vector determination, and malicious activity identification.


  • Create detailed Incident Reports documenting technical analysis, findings, and recommended remediation steps.


  • Conduct rotational threat hunting activities to proactively uncover unknown threats.


  • Assist in Incident Response engagements by analyzing forensic artifacts to track threat actor movements.


  • Provide high-quality threat detection services to secure the organization.


  • Research current attack methodologies to enhance threat detection capabilities.


  • Offer continuous technical feedback to Rapid7 product development teams.



The skills and qualities you'll bring include:



  • Bring strong problem-solving ability, critical thinking skills, and technical ingenuity to drive efficient incident investigations.


  • Demonstrate required familiarity with Windows, macOS, and Linux operating systems.


  • Apply essential hands-on experience using SIEM tools, such as the Rapid7 command platform or Splunk.


  • Leverage experience in core Security Operations Center functions, including incident response, threat hunting, and forensic investigations.


  • Identify areas for process improvement and successfully execute sustainable solutions.


  • Execute decision-making by making efficient choices during investigations that resolve security challenges and enable momentum.


  • Demonstrate accountability by taking full ownership of incident analyses, findings, and remediation tracking.


  • Drive cross-functional collaboration by partnering across security teams and product developers to elevate security capabilities.


  • Embody our core values to foster a culture of excellence that drives meaningful impact and collective success.



We know that the best ideas and solutions come from multi-dimensional teams. That’s because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact,




About Rapid7

At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what’s possible and drive extraordinary impact. We’re building a dynamic and collaborative workplace where new ideas are welcome.




Protecting 11,500+ customers against bad actors and threats means we’re continuing to push the envelope just like we’ ve been doing for the past 20 years. If you ’re ready to solve some of the toughest challenges in cybersecurity, we’re ready to help you take command of your career. Join us.




Rapid7, Inc. is committed to fair and equitable compensation practices. A candidate’s salary is determined by various factors including, but not limited to, relevant work experience, skills, and certifications. We evaluate compensation decisions on a case-by-case basis, and it is not typical for an individual to be hired at the very top of the salary range.




The annual salary range for this role, depending on location, is:


United States: $81,500.00 - 110,300.00 USD Annual




Salary ranges may vary based on geographical location. This range does not include variable/incentive compensation, equity and benefits (where applicable/eligible).


All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or any other status protected by applicable national, federal, state or local law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection & Response Analyst
Detection & Response Analyst

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 85,000 - 115,000
Lead Detection & Response Analyst
Lead Detection & Response Analyst

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 140,000 - 210,000
Analyst, Strategy & Transformation
Analyst, Strategy & Transformation

Divvy Cloud Corp. • Northern (KY)

Hybrid
USD 78,000 - 106,000
Senior Business Systems Analyst
Senior Business Systems Analyst

Divvy Cloud Corp. • Boston (MA)

On-site
USD 102,000 - 138,000
Threat Hunter & Incident Response Analyst
Threat Hunter & Incident Response Analyst

Divvy Cloud Corp. • Northern (KY)

Hybrid
USD 82,000 - 110,000
Security Operations Analyst
Security Operations Analyst

NextGenEnergyJobs • Vienna (VA), Northern (KY)

Hybrid
USD 90,000 - 140,000
Health benefits
401(k) and profit-sharing
Paid holidays
+1
Senior Security Analyst
Senior Security Analyst

Yardi Systems • Santa Barbara (CA)

Hybrid
USD 97,000 - 110,000
Flexible work arrangements
100% paid employee medical premiums
Company profit-sharing plan
Senior Cyber Threat Defense - Security Operations Engineer
Senior Cyber Threat Defense - Security Operations Engineer

Segment (Twilio) • Draper (UT)

On-site
USD 110,000 - 160,000
Competitive compensation
Comprehensive benefits
Flexible work environment
+1
Staff Information Security Engineer - Threat Defense & Automation
Staff Information Security Engineer - Threat Defense & Automation

Proofpoint • Sunnyvale (CA)

Hybrid
USD 188,000 - 275,000
Competitive compensation
Comprehensive benefits
Career growth on your terms
+4
Senior Security Analyst
Senior Security Analyst

Yardi • Santa Barbara (CA)

On-site
USD 97,000 - 110,000