Senior Cyber Operations Lead (AI-Driven SOC)

CDM Smith

Lake Charles (LA)

Remote

USD 110,000 - 150,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

CDM Smith is seeking a Senior Cyber Operations Analyst to monitor, detect and respond to cybersecurity threats in a fast‑paced environment. You will triage investigations, apply AI/automation to repetitive tasks, and support escalation workflows across SOAR/SIEM, endpoints, cloud, and network devices.

The role demands strong communication, cross‑functional collaboration and mentoring junior staff. The ideal candidate will work with Azure/AWS/GCP, develop detections aligned with MITRE ATT&CK, and

Qualifications

  • Bachelor's degree.
  • 6 years of related experience.
  • Equivalent additional directly related experience will be considered in lieu of a college degree.

Responsibilities

  • Serve as a subject matter expert for a team of analysts supporting managed 24/7/365 monitoring and response operations.
  • Investigate and respond to cybersecurity incidents, including participating in off-hours and on-call rotations.
  • Act as an escalation point for day-to-day SOC operations and identify opportunities to automate.
  • Assess program strengths and weaknesses and recommend AI solutions to improve team skills and knowledge.
  • Stay current on emerging cybersecurity threats, AI developments, risks and vulnerabilities that may impact services.
  • Automate repetitive tasks within SOAR environments using Cloud technologies, ML and AI to improve efficiency.
  • Develop detection capabilities aligned with the MITRE ATT&CK framework and enhance them using automation/AI.
  • Validate alerts by interpreting confidence scores, risk ratings and recommended actions.
  • Use NLP tools to analyze events alongside threat intelligence data.
  • Improve AI model performance and alert tuning by labeling events and validating true and false positives.
  • Use multiple-agent collaboration using MCP solutions within security workflows.
  • Collaborate with data science and engineering teams to improve AI models used in SOC operations.
  • Refine playbooks, policies, procedures and guidelines in alignment with industry best practices and AI capabilities.
  • Partner with security engineering, incident response and IT teams to improve monitoring, workflows and response processes.
  • Support the development and tracking of metrics, KPIs and service-level objectives for security events.
  • Participate in tabletop exercises to identify gaps, improve skills and strengthen communication.
  • Review reports from tabletop exercises, vulnerability assessments and penetration tests to drive improvements.
  • Evaluate logging coverage to identify potential gaps in detection capabilities.
  • Examine log data across endpoints, databases, applications, identity systems, networks, mobile platforms and cloud environments.
  • Recommend adjustments to security tools to reduce false positives.
  • Provide guidance on monitoring, logging, identity, data protection and detection strategies, including preventive controls.
  • Report on SOC performance and posture to cybersecurity leaders and stakeholders as needed.

Skills

SOC monitoring
ML & AI in security
NLP & threat data analysis
Communication skills
Analytical thinking
Team collaboration
Experience with MSSPs
Decision making under pressure

Education

Bachelor's degree
6 years of related experience
Equivalent related experience in lieu of degree

Tools

SOAR
SIEM
MCP servers
AI platforms
Python
Bash
JavaScript
PowerShell
KQL
Azure
AWS
GCP
Threat intelligence platforms

Job description

CDM Smith is seeking a Senior Cyber Operations Analyst to monitor, detect and respond to cybersecurity threats in a fast‑paced environment. You will triage investigations, apply AI/automation to repetitive tasks, and support escalation workflows across SOAR/SIEM, endpoints, cloud, and network devices.

The role demands strong communication, cross‑functional collaboration and mentoring junior staff. The ideal candidate will work with Azure/AWS/GCP, develop detections aligned with MITRE ATT&CK, and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Operations Analyst - Remote AI-Driven SOC Lead
Senior Cyber Operations Analyst - Remote AI-Driven SOC Lead

CDM Smith • Raleigh (NC)

Remote
USD 120,000 - 150,000
Senior Cyber Operations Lead - AI-Driven Security (Remote)
Senior Cyber Operations Lead - AI-Driven Security (Remote)

CDM Smith • Charlotte (NC)

Remote
USD 120,000 - 170,000
Senior Cyber Operations Analyst – AI-Driven SecOps
Senior Cyber Operations Analyst – AI-Driven SecOps

CDM Smith • South Carolina

On-site
USD 102,000 - 179,000
Senior Cyber Operations Analyst - AI-Driven SOC (Remote)
Senior Cyber Operations Analyst - AI-Driven SOC (Remote)

CDM Smith • Fayetteville (NC)

On-site
USD 120,000 - 170,000
Senior Cyber Operations & AI Automation Analyst
Senior Cyber Operations & AI Automation Analyst

Trinnex Inc. • United States

On-site
USD 102,000 - 179,000
Senior Remote Cyber Operations Analyst
Senior Remote Cyber Operations Analyst

ATLVets Inc. • Baton Rouge (LA), Northern (KY)

Hybrid
USD 120,000 - 180,000
Remote Senior Cyber Operations Analyst — AI-Driven Defense
Remote Senior Cyber Operations Analyst — AI-Driven Defense

CDM Smith • Tallahassee (FL)

Remote
USD 102,000 - 179,000
Senior Cyber Defense Analyst — Automation & Threat Hunting
Senior Cyber Defense Analyst — Automation & Threat Hunting

CME Group • Chicago (IL)

On-site
USD 104,000 - 173,000
Senior Cyber Security Analyst — DevSecOps for Critical Infra
Senior Cyber Security Analyst — DevSecOps for Critical Infra

Trinnex • Wilmington (NC)

On-site
USD 102,000 - 179,000
Senior Security Operations Analyst
Senior Security Operations Analyst

Prosegur Security USA, Inc • Lowell (MA), Northern (KY)

Hybrid
USD 90,000 - 140,000