Job Title: Senior SOC Analyst
Location: Cincinnati, OH (Hybrid / Remote eligible based on experience)
Position Type: Full-Time
Salary: $95,000 – $125,000 / year (dependent on experience)
Company Overview
IronRoad is conducting a confidential search for a Senior SOC Analyst on behalf of our Cincinnati-based client. In this role, you will act as a lead analyst on the floor, owning the assessment of security events and incidents across client environments, mentoring newer analysts, and delivering scheduled security briefings directly to executive stakeholders.
What You'll Do
- Threat Hunting: Run proactive threat hunts across client environments to surface anomalous activity, active/prior compromises, and misconfigurations.
- Triage & Investigation: Investigate alerts across multiple detection technologies, scope incidents, and guide clients toward rapid remediation.
- Log & Event Monitoring: Continuously monitor SIEM platforms and log data for threats, intrusions, and security anomalies.
- Threat Intelligence Integration: Collaborate with the Cyber Threat Intelligence team to apply global threat trends directly to client data analysis.
- Incident Support & Remediation: Support containment and post-incident remediation efforts.
- Executive Reporting: Write clear, concise incident reports tailored for C-suite executive review.
- Detection & Tuning: Partner with detection engineering to validate detections and tune logic to reduce false positives without compromising coverage.
- Data Flow Optimization: Ensure security-relevant data reaches designated platforms and collaborate with cross-functional teams to resolve data pipeline gaps.
- Process & Workflow Ownership: Run sprint reviews for your workstream while maintaining current documentation, workflows, and SOC processes.
- Mentorship & Metrics: Mentor junior analysts and gather metrics to support daily, weekly, and monthly executive briefings.
What You Need
- Experience: 4+ years as a SOC Analyst, Detection Engineer, Security Content Developer, or Security Engineer.
- Network Analysis: Deep skills in PCAP data analysis, network traffic interpretation, indicator extraction, network protocols, and network architecture.
- EDR Expertise: Hands-on experience with major EDR platforms (CrowdStrike Falcon, SentinelOne, Carbon Black, or Microsoft Defender for Endpoint).
- Log & Dashboarding Tools: Proficiency with log analysis tooling, pattern recognition, and building/maintaining operational dashboards.
- Communication Skills: Ability to clearly communicate technical concepts to both technical staff (e.g., Network Engineers) and executive leadership (e.g., CFOs).
- Leadership & Attention to Detail: Proven capability to mentor others and a strong focus on high-precision incident investigation.
- Education: Bachelor's degree in computer science, Information Security, or a related field (or equivalent hands-on experience).
- Work Authorization: Must be eligible to work in the United States without sponsorship (Open strictly to US citizens physically residing in the US).
Nice to Have
- 6+ years of relevant security experience.
- Prior SOC or CSIRT experience on a 24x7 watch desk.
- Working knowledge of attacker tooling, malware families, and threat actor TTPs mapped to the MITRE ATT&CK framework.
- Strong foundation in incident response frameworks and root cause analysis (RCA).
- Track record of hunting unknown threats and tracking active threat campaigns/adversaries.
- Experience delivering managed network security monitoring (MSSP format) across multi-client environments.
- Hands-on experience configuring and managing firewalls, routers, and network security appliances.
- Process optimization mindset with a focus on cycle-time reduction.
Logistics & Benefits
- Schedule: Flexible schedule with occasional non-traditional hours and after-hours on-call rotations.
- Work Location: Cincinnati office or remote (determined during interview process by hiring manager).
- Contingencies: Offer contingent upon passing background, drug screen, and reference checks.
- Benefits: Full corporate benefits package (Medical, Dental, Vision, 401(k), Paid Time Off).