SOC Operations Analyst II: Threat Detection & Response

Deloitte France

Columbus (OH)

Hybrid

USD 105,000 - 208,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Deloitte is seeking a Managed Services Engineer III for its Cyber Operate Offering team. You will analyze monitoring results, validate alerts, and support escalation through a structured incident response framework.

Responsibilities include deep threat analysis, malware study, and signature creation; develop detection content; and help maintain playbooks and SLAs while collaborating with shifts and engineering teams. Travel and on-site presence are required.

Qualifications

  • Bachelor's degree in CS/IT or equivalent experience.
  • 2+ years of experience in cybersecurity or security operations.
  • Experience with security technologies such as: SIEM, IDS/IPS, DLP, Proxy, WAF, EDR, Anti-Virus, Sandboxing, firewall products, Threat Intelligence, Penetration Testing, etc.
  • Knowledge of Advanced Persistent Threats (APT) tactics, techniques, and procedures; understanding of possible attack activities such as network probing/scanning, DDOS, malicious code activity.
  • Understanding of networking protocols such as TCP/IP, DNS, and HTTP; knowledge in system security architecture and security solutions
  • Ability to travel 10%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Work shifts on a rotating basis for 24/7 support of clients and work 50% of time from a Deloitte office.
  • Limited immigration sponsorship may be available.

Responsibilities

  • Conduct advanced analysis of the results of monitoring solutions, assess escalated outputs and alerts from Level 1 Analysts, and ensure that all identified events are promptly validated and thoroughly investigated.
  • Perform root cause analysis and ad hoc searches related to relevant threat intelligence or emerging threats; assist the Threat Hunting team with advanced investigations as needed; and perform continuous monitoring of new threat sources and intel.
  • Analyze network data (e.g., packets and logs) and endpoint data (e.g., logs and malicious artifacts) using SIEM and various tools; analyze malware (executables, scripts, and documents) to determine indicators of compromise; and create signatures for future detection of similar samples.
  • Advise on development of detection engineering content and testing; provide guidance on response action plans for information risk events and incidents based on incident type and severity; and provide end-to-end event analysis, incident detection, and escalations to Shift Lead/Engineering/SDMs and SOC Manager using documented procedures.
  • When necessary, and with the SOC Manager's approval, devise and document new procedures and runbooks/playbooks; comply with and update processes, runbooks, templates, and procedures based on experience and best practice; track and report SOC SLAs; maintain individual certifications and learning requirements; and assist Shift Leads and fulfill Shift Lead responsibilities in their absence.

Skills

Teamwork
Communication
Analytical thinking
Project leadership
Time management
Interpersonal skills
Deadline-driven
Guidance

Education

Bachelor's degree in Computer Science or related IT discipline

Tools

SIEM
IDS/IPS
DLP
WAF
EDR
Firewalls
Threat Intelligence
Penetration Testing

Job description

Deloitte is seeking a Managed Services Engineer III for its Cyber Operate Offering team. You will analyze monitoring results, validate alerts, and support escalation through a structured incident response framework.

Responsibilities include deep threat analysis, malware study, and signature creation; develop detection content; and help maintain playbooks and SLAs while collaborating with shifts and engineering teams. Travel and on-site presence are required.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Operations Analyst II — Threat Detection & Response
SOC Operations Analyst II — Threat Detection & Response

Deloitte France • Richmond (VA)

On-site
USD 105,000 - 208,000
SOC Operations Engineer II: Threat Detection & Response
SOC Operations Engineer II: Threat Detection & Response

Deloitte France • San Jose (CA)

On-site
USD 105,000 - 208,000
Threat Detection Engineer — Managed Services
Threat Detection Engineer — Managed Services

Deloitte France • United States

On-site
USD 83,000 - 163,000
SOC Operate L2 Cyber Analyst
SOC Operate L2 Cyber Analyst

Deloitte France • New York (NY)

Hybrid
USD 105,000 - 208,000
SOC L1 Analyst: Cyber Ops & Incident Response
SOC L1 Analyst: Cyber Ops & Incident Response

Deloitte France • Columbus (OH)

Hybrid
USD 83,000 - 163,000
Senior SOC Analyst, Cyber Operate (L2)
Senior SOC Analyst, Cyber Operate (L2)

Deloitte France • United States

On-site
USD 105,000 - 208,000
SOC Operations Analyst II: Cyber Defense & Incident Response
SOC Operations Analyst II: Cyber Defense & Incident Response

Deloitte France • San Jose (CA)

Hybrid
USD 83,000 - 163,000
SOC Operations Analyst: Real-Time Cyber Defense
SOC Operations Analyst: Real-Time Cyber Defense

Deloitte France • Raleigh (NC)

Hybrid
USD 83,000 - 163,000
Cyber Operate Detection Engineer (Consultant)
Cyber Operate Detection Engineer (Consultant)

Deloitte France • Columbus (OH)

On-site
USD 83,000 - 163,000
SOC Operations L1 Analyst - Cyber Defense
SOC Operations L1 Analyst - Cyber Defense

Deloitte France • United States

Hybrid
USD 83,000 - 163,000