Senior Security Operations Center (SOC) Analyst

Alteryx Inc.

Northern (KY)

Hybrid

USD 139,000 - 151,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Bonus or commission
Medical benefits
Retirement plan
Time off
Employee discounts

Job summary

Alteryx is seeking a Senior Security Operations Analyst in the United States to join the SOC team protecting Alteryx products, infrastructure, and applications. You will triage alerts, lead incident response, and improve detection across endpoints, identity, SaaS, and multi-cloud environments (AWS, Azure, GCP).

The role emphasizes forensics, threat hunting, and detection engineering, with on-call responsibilities and collaboration with IT, Cloud/Platform, and Engineering to close gaps and drive

Qualifications

  • Bachelor’s degree in computer science or related field (or equivalent experience/training).
  • A master’s degree is a plus.
  • 4+ years of relevant security operations / incident response experience.
  • Strong understanding of the security incident management lifecycle and operational response practices.
  • Strong experience with SIEM/log management platforms (e.g., Microsoft Sentinel, Splunk, ELK, Snowflake-based analytics, or similar).
  • Ability to analyze and interpret security-relevant data including security event logs, system logs, application logs, cloud logs, and device logs.
  • Hands-on investigation experience using cloud-native security services (e.g., AWS Security Hub, Defender for Cloud, GCPSC) and cloud logs.
  • Experience with scripting languages (Python, PowerShell, shell).
  • Strong written and verbal communication skills including clear ticket documentation and stakeholder updates.
  • Excellent analytical and problem-solving skills with a bias toward action.

Responsibilities

  • Triage and respond to security alerts and incidents across on-prem and multi-cloud environments, leading in-depth investigations using SIEM, EDR, cloud logs, identity telemetry, and network data.
  • Lead incident communications with stakeholders and executives when needed.
  • Coordinate containment and remediation with IT, Cloud/Platform, and Engineering teams; escalate when necessary.
  • Produce incident documentation with timelines, evidence, hypotheses, IOCs, actions, and lessons learned.
  • Conduct hypothesis-driven threat hunts mapped to common adversary behaviors (e.g., ATT&CK).
  • Translate hunt findings into detections, playbooks, and telemetry improvements.
  • Develop, tune, and maintain detection content (rules, analytics, alert logic).
  • Validate detections via testing and retrospective analysis; improve alert fidelity and response workflows.
  • Collaborate with stakeholders to define monitoring and detection use cases to reduce risk.
  • Perform basic endpoints/cloud forensics during escalated incidents and preserve evidence.

Skills

SIEM
Incident response
Cloud security
Python scripting
Communication

Education

Bachelor’s degree in computer science or related field
Master’s degree

Tools

Microsoft Sentinel
Splunk
ELK
Cloud security services

Job description

Meet the Moment with Alteryx We're living through a once-in-a-generation shift in how work gets done. Data, automation, and AI are quickly becoming the center of every business decision - and Alteryx is leading the transformation. You'll be working on the challenges that sit at the heart of modern business. No matter your role, the work you do will help organizations move faster, see more clearly, and tackle questions that used to feel impossible. If you're ready to meet the moment with innovation, curiosity, and excellence, there's a place for you here.

Senior Security Operations Center (SOC) Analyst Alteryx is searching for a Senior Security Operations Analyst in the United States. We’re looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you’re a high performer who’s an expert at your craft, constantly challenging the status quo. You value inclusivity and want to join a culture that empowers you to show up as your authentic self. You know that success hinges on commitment, that our differences make us stronger, and that the finish line is always sweeter when the whole team crosses together.

Position Overview

As a member of the Security Operations team, you will be on the front line of protecting Alteryx products, infrastructure, and applications. You will triage and investigate alerts, lead incident response activities, and improve detection coverage and response outcomes across endpoint, identity, SaaS, and multi-cloud environments (AWS, Azure, GCP). This role is SOC-focused and is intended for a Senior level analyst with demonstrated depth in one or more of the following areas: Forensics, Cloud Security Investigations (AWS/Azure/GCP audit logs and cloud-native security signals), Threat Hunting, and Detection Engineering.

Primary Responsibilities
  • Triage and respond to security alerts and incidents across on-prem and multi-cloud enterprise and product environments, leading in-depth investigations using SIEM, EDR, cloud audit logs, identity telemetry, and network data to determine scope, root cause, attacker TTPs, and business impact.
  • Lead incident communications (severity updates, stakeholder coordination, executive-ready summaries as needed).
  • Execute incident response activities through containment and remediation coordination with partner teams (IT, Cloud/Platform, Engineering), including clear escalation when needed.
  • Produce high-quality incident documentation (timelines, evidence collected, hypotheses tested, IOCs, actions taken, lessons learned) and ensure follow-ups are tracked to completion.
  • Conduct hypothesis-driven threat hunts mapped to common adversary behaviors (e.g., MITRE ATT&CK).
  • Translate hunt findings into actionable improvements: new detections, tuning, playbooks, and telemetry/visibility recommendations.
  • Develop, tune, and maintain detection content (correlation rules, SIEM analytics, alert logic) to improve coverage and reduce false positives.
  • Validate detections with testing and retrospective analysis; continuously improve alert fidelity and response workflows.
  • Collaborate with stakeholders to define and maintain monitoring and detection use cases that drive risk reduction and operational effectiveness.
  • Perform basic endpoints and/or cloud forensics during escalated incidents and preserve evidence appropriately.
  • Support malware triage and artifact analysis as needed during investigations.
  • Investigate cloud-related threats and anomalies using cloud-native security signals and audit telemetry (AWS/Azure/GCP).
  • Partner with Cloud/Platform teams to close investigation gaps (logging, retention, telemetry coverage) and validate remediation actions.
  • Participate in an on-call rotation to provide 24x7 incident response coverage and serve as an escalation point for high-severity events.
Required Qualifications
  • Bachelor’s degree in computer science or related field (or equivalent experience/training).
  • A master’s degree is a plus.
  • 4+ years of relevant security operations / incident response experience.
  • Strong understanding of the security incident management lifecycle and operational response practices.
  • Strong experience with SIEM/log management platforms (e.g., Microsoft Sentinel, Splunk, ELK, Snowflake-based analytics, or similar) and demonstrated ability to query and analyze telemetry.
  • Ability to analyze and interpret security-relevant data including security event logs, system logs, application logs, cloud logs, and device logs.
  • Hands-on investigation experience using cloud-native security services (e.g., AWS Security Hub, Microsoft Defender for Cloud, Google Security Command Center) and cloud logs.
  • Experience with one or more scripting languages (Python, PowerShell, shell) to support investigations, enrichment, and analysis.
  • Strong written and verbal communication skills, including clear ticket documentation, incident reporting, and stakeholder updates.
  • Excellent analytical and problem-solving skills with a bias toward action and operational rigor.
Preferred Qualifications (One or More Areas of Depth)
  • Forensics: Endpoint or cloud forensics, evidence handling, artifact interpretation, malware triage.
  • Threat Hunting: Demonstrated experience leading hypothesis-driven hunts and operationalizing results into detections, playbooks, and response improvements (e.g., ATT&CK mapping and coverage tracking).
  • Detection Engineering: Detection lifecycle ownership (build/test/deploy/tune/retire), alert quality improvement, playbook development.

Alteryx is committed to fair, equitable, and transparent compensation. Final compensation will be determined by various factors such as your relevant work experience, education, certifications, skills, and geographic location. The salary range for this role in the United States is $139,000 - $151,000.

Employees may also be eligible for a wide range of other benefits, such as a bonus or commission, medical, retirement, financial, wellness, time off, employee discounts, and others.

Benefits & Perks

Alteryx has amazing benefits for all Associates which can be viewed here.

For roles in San Francisco and Los Angeles

Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Alteryx will consider for employment qualified applicants with arrest and conviction records.

This position involves access to software/technology that is subject to U.S. export controls. Any job offer made will be contingent upon the applicant’s capacity to serve in compliance with U.S. export controls.

Who We Are

Alteryx is a leading AI-ready data and analytics company that powers actionable insights to help organizations drive smarter, faster decisions with AI-ready data. More than 8,000 customers around the world rely on Alteryx to automate analytics, improve revenue performance, manage costs, and mitigate risk across their businesses.

Disclaimers

If you require reasonable accommodation as part of the recruiting process, please contact Benefits@alteryx.com.

Alteryx, Inc. is an Equal Employment Opportunity Employer.

Unsolicited third party/agency profiles and resumes will not be considered.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations Center (SOC) Analyst
Senior Security Operations Center (SOC) Analyst

Alteryx, Inc. • Irvine (CA)

On-site
USD 139,000 - 151,000
Bonus eligibility
Medical benefits
Retirement plan
InfoSec Analyst
InfoSec Analyst

Alteryx Inc. • Northern (KY)

Hybrid
USD 121,000 - 132,000
Bonus or commission
Medical benefits
Retirement plan
+3
Lead Observability Engineer
Lead Observability Engineer

Alteryx, Inc. • Irvine (CA)

Hybrid
USD 165,000 - 185,000
Medical, dental, and vision coverage
401(k) with company match
Parental leave, caregiver leave, and F
Senior Manager, Product Telemetry & Analytics
Senior Manager, Product Telemetry & Analytics

Alteryx, Inc. • Massachusetts

Hybrid
USD 183,000 - 200,000
Annual bonus
Connectivity stipend
Home office reimbursement
+2
Sr Architect-Professional Services ( USA Remote)
Sr Architect-Professional Services ( USA Remote)

Alteryx Inc. • Northern (KY)

Hybrid
USD 120,000 - 135,000
Remote-friendly
Connectivity stipend
Home office stipend
+4
Senior Manager, Product Telemetry & Analytics
Senior Manager, Product Telemetry & Analytics

Alteryx • Maryland

Hybrid
USD 183,000 - 200,000
Connectivity Plus stipend
Home office reimbursement
Medical, dental, and vision coverage
+3
Senior Software Engineer - Orchestration & Job Execution
Senior Software Engineer - Orchestration & Job Execution

Alteryx • United States

On-site
USD 119,000 - 153,000
Bonus or commission
Medical benefits
Retirement plan
+1
Senior Manager, Product Telemetry & Analytics
Senior Manager, Product Telemetry & Analytics

Alteryx • Maine

Hybrid
USD 183,000 - 200,000
Connectivity Plus stipend
Home office reimbursement
Senior Manager, Product Telemetry & Analytics
Senior Manager, Product Telemetry & Analytics

Alteryx • Delaware

On-site
USD 183,000 - 200,000
Medical, dental, vision
401(k) with company match
Parental leave
Senior Manager, Product Telemetry & Analytics
Senior Manager, Product Telemetry & Analytics

Alteryx • Washington

On-site
USD 183,000 - 200,000
Medical, dental, and vision coverage
401(k) with company match
Parental leave and flexible time off