Senior Advanced Cyber Security Architect

Jobtailor

Duluth (GA)

On-site

USD 120,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Jobtailor in Duluth, GA seeks a seasoned SOC professional to lead security operations, automate using Python and SOAR, and drive incident response. You will design playbooks, tune detection, and mentor junior analysts while staying current with evolving threats and regulations.

The role emphasizes strong collaboration with IT and business teams; you will produce actionable reports and remediation guidance for stakeholders.

Qualifications

  • 7+ years in IT/cybersecurity or related field.
  • 5+ years in SOC, cybersecurity operations, incident response, or related security function.
  • 5+ years with SIEM or SOAR technologies.
  • 5+ years developing security automation with Python or SOAR platforms.
  • U.S. Person requirement or ability to obtain export authorization.

Responsibilities

  • Monitor SIEM, trouble tickets, email notifications, escalations, and logs from infrastructure, apps, and network devices.
  • Design, implement, and test SOAR processes and procedures; develop playbooks.
  • Examine escalated tickets to determine true/false positives; malware analysis and threat hunting.
  • Assist forensic investigations with reports and data; root cause analysis.
  • Develop remediation recommendations for business owners; tune signatures, rules, and alerts.
  • Mentor Level 1 SOC Analysts; create manuals and knowledge-base entries.
  • Stay updated on security laws, threats, and regulatory advisories; maintain product knowledge.

Skills

SOC Operations
SIEM
SOAR
Python for Security
Malware Analysis
Threat Hunting
Incident Response
Threat Modeling
Security Automation
Root Cause Analysis
Mentoring

Education

Bachelor’s degree in Computer Science or related field

Tools

Swimlane
Sentinel
Google SecOps

Job description

  • Monitor SIEM, trouble tickets, email notifications, in-person escalations, and logs from IC infrastructure, applications, and network devices
  • Design, implement, and test SOAR processes and procedures
  • Develop SOAR playbooks and troubleshoot automation capabilities
  • Examine escalated tickets to determine true positives or false positives
  • Perform malware analysis, threat hunting, and threat modeling
  • Assist forensic investigations by providing reports and other information
  • Review and suggest improvements to control deployment processes and installation procedures
  • Develop and document remediation recommendations for business owners in understandable language
  • Recommend and direct tuning of signatures, rules, alerts, parsers, and custom scripts
  • Participate in root cause analysis and help orchestrate remediation
  • Apply defense-in-depth strategies to client environments
  • Create and disseminate security notifications for internal staff
  • Act as the Level 2 escalation layer in the SOC
  • Mentor Level 1 SOC Analysts
  • Create manuals, guides, and knowledge‑base entries
  • Monitor current security and privacy legislation, emerging threats, regulations, advisories, alerts, and vulnerabilities
  • Maintain knowledge of the company’s solution portfolio and technical offerings
Requirements
  • 7+ years of experience in Information Technology, cybersecurity, or a related technical field
  • 5+ years of experience working in a Security Operations Center (SOC), cybersecurity operations, incident response, or a related security function
  • 5+ years of experience working with Security Information and Event Management (SIEM) or Security Orchestration, Automation and Response (SOAR) technologies
  • 5+ years of experience developing or implementing security automation using Python, SOAR platforms, or similar technologies
  • U.S. Person requirement: U.S. citizen, U.S. permanent resident, protected status in the U.S. under asylum or refugee status, or ability to obtain an export authorization
  • Bachelor’s degree in Computer Science, Computer Information Systems, Electronics, or a related field (valued/preferred)
  • ITIL Foundation certification or a cybersecurity certification such as CompTIA Security+, GCIH, CCNA, GCFA, or CEH (valued/preferred)
  • Experience with SIEM platforms and security logging solutions such as Swimlane, Sentinel, or Google SecOps (valued/preferred)
Core Competencies

Demonstrates extensive experience in Security Operations Center (SOC) functions, including incident response, threat hunting, and security automation. Proficient in developing and implementing SOAR processes and playbooks, with a strong focus on security monitoring and compliance.

Highest-signal resume keywords
  • Security Operations Center (SOC) Experience
  • Security Information and Event Management (SIEM)
  • Security Orchestration, Automation and Response (SOAR)
  • Malware Analysis and Threat Hunting
  • Python for Security Automation
Hard Skills
  • Incident Response
  • Threat Modeling
  • Security Automation
  • Malware Analysis
  • Root Cause Analysis
  • Control Deployment Processes
  • Remediation Recommendations
  • Security Notifications
  • Defense-in-Depth Strategies
  • Troubleshooting Automation Capabilities
Soft Skills
  • Mentoring Level 1 SOC Analysts
  • Effective Communication
  • Collaboration
  • Problem Solving
  • Report Writing
Certifications & Qualifications
  • ITIL Foundation
  • CompTIA Security+
  • GCIH
  • CCNA
  • GCFA
  • CEH
Industry Keywords
  • Cybersecurity
  • Information Technology
  • Security Operations
  • Threat Intelligence
  • Compliance Regulations
Tools & Technologies
  • SIEM Platforms
  • SOAR Technologies
  • Swimlane
  • Sentinel
  • Google SecOps
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Security Architect
Senior Cyber Security Architect

Jobtailor • Duluth (GA)

On-site
USD 90,000 - 120,000
Security Engineer
Security Engineer

Jobtailor • Town of Montana (WI)

On-site
USD 85,000 - 125,000
Security Operations Lead
Security Operations Lead

Jobtailor • Pennsylvania

On-site
USD 120,000 - 160,000
Senior Information Technology Security Analyst
Senior Information Technology Security Analyst

Jobtailor • Philadelphia

On-site
USD 110,000 - 160,000
Cybersecurity Threat Analyst I
Cybersecurity Threat Analyst I

Jobtailor • Sioux Falls (SD)

On-site
USD 45,000 - 65,000
Tier 2 Security Operations Center (SOC) Analyst
Tier 2 Security Operations Center (SOC) Analyst

Jobtailor • California (MO)

On-site
USD 95,000 - 125,000
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Senior Incident Responder, Global CSIRT
Senior Incident Responder, Global CSIRT

Jobtailor • United States

On-site
USD 120,000 - 180,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000