Sr Security Operations Center Analyst

Total Quality Logistics

Cincinnati (OH)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Total Quality Logistics in Cincinnati, OH is seeking a Senior Security Operations Center (SOC) Analyst to lead detection, investigation, and response to cybersecurity threats within a large freight brokerage tech environment. You will mentor junior analysts, drive incident playbooks, and collaborate with Infrastructure, Engineering, and IT teams to strengthen defenses.

The ideal candidate has 5+ years in security operations, hands-on experience with SIEM, EDR, Azure/M365 security, and strong

Qualifications

  • 5+ years in Security Operations or incident response.
  • Experience with malware/phishing/ransomware investigations.
  • Strong SIEM, log analytics, and threat hunting capabilities.
  • Hands-on EDR experience with Defender for Endpoint, CrowdStrike, or SentinelOne.
  • Experience securing Azure and Microsoft 365 environments.
  • Familiarity with MITRE ATT&CK and NIST frameworks.

Responsibilities

  • Monitor, investigate, and respond to security alerts across cloud, endpoint, network, and identity.
  • Lead incident response activities including containment, eradication, and post-incident docs.
  • Perform proactive threat hunting and update detection capabilities.
  • Develop and tune SIEM rules and incident response playbooks.
  • Monitor EDR tools to identify and remediate malicious activity.
  • Collaborate with Infrastructure and Engineering to remediate vulnerabilities.
  • Mentor junior SOC analysts and drive security automation improvements.
  • Communicate findings and risks to technical and business stakeholders.

Skills

SIEM
EDR
Threat hunting
Incident response
Threat intelligence
PowerShell
Python
Cloud security (Azure/M365)

Education

Bachelor's degree in Cybersecurity / IT / CS

Tools

Microsoft Defender for Endpoint
CrowdStrike
SentinelOne
Microsoft Sentinel
SOAR platforms

Job description

About the role

As a Senior Security Operations Center (SOC) Analyst at TQL, you'll help protect one of the nation's largest freight brokerage technology environments by leading the detection, investigation, and response to cybersecurity threats. You'll partner with Infrastructure, Engineering, and Technology teams to strengthen TQL's security posture, improve detection capabilities, and respond to complex security incidents. This role is ideal for an experienced cybersecurity professional who enjoys solving complex problems, mentoring others, and continuously improving security operations.

What you'll be doing
  • Monitor, investigate, and respond to security alerts and incidents across cloud, endpoint, network, and identity environments.
  • Lead incident response activities, including investigation, containment, eradication, recovery, root cause analysis, and post‑incident documentation.
  • Perform proactive threat hunting and leverage threat intelligence to identify emerging threats and improve detection capabilities.
  • Develop, tune, and maintain SIEM detection rules, security monitoring content, and incident response playbooks.
  • Monitor endpoint detection and response (EDR) tools to identify, investigate, and remediate malicious activity.
  • Partner with Infrastructure and Engineering teams to identify, prioritize, and remediate security vulnerabilities.
  • Serve as an escalation point for complex security investigations while mentoring junior SOC analysts and contributing to process improvements and security automation.
  • Communicate technical findings and security risks to both technical and business stakeholders and support security audits and compliance initiatives.
What you need
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field preferred; equivalent experience and industry certifications will be considered.
  • 5+ years of experience in Security Operations, Incident Response, or a related cybersecurity role.
  • Experience investigating malware, phishing, ransomware, insider threats, and other cybersecurity incidents.
  • Strong experience with SIEM platforms, security analytics, and log management technologies.
  • Hands‑on experience with Endpoint Detection and Response (EDR) platforms such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne.
  • Experience securing and monitoring Microsoft Azure and Microsoft 365 environments.
  • Strong understanding of networking, Windows and Linux operating systems, Active Directory, identity security, and cloud infrastructure.
  • Experience with vulnerability management, threat intelligence, and modern incident response frameworks such as MITRE ATT&CK and NIST.
  • Experience with Microsoft Sentinel, SOAR platforms, PowerShell or Python scripting, and security automation is a plus.
  • Industry certifications such as Security+, CySA+, GCIH, GCIA, CISSP, Microsoft SC-200, or AZ-500 are preferred.
  • Strong analytical, troubleshooting, communication, and problem‑solving skills with the ability to effectively communicate complex security issues to technical and non‑technical audiences.
Where you'll be

4289 Ivy Pointe Blvd., Cincinnati, Ohio 45245

Employment visa sponsorship is unavailable for this position. Applicants requiring employment visa sponsorship now or in the future (e.g., F-1 STEM OPT, H-1B, TN, J1 etc.) will not be considered.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Detection and Response Engineer
Incident Detection and Response Engineer

Total Quality Logistics • Tampa (FL)

Hybrid
USD 95,000 - 135,000
Performance bonus
Health, dental and vision coverage
401(k) with company match
+2
Security Tools Engineer
Security Tools Engineer

Total Quality Logistics • Cincinnati (OH)

Hybrid
USD 95,000 - 135,000
Performance bonus
Hybrid work environment
Health, dental and vision coverage
+3
Incident Detection and Response Engineer
Incident Detection and Response Engineer

Total Quality Logistics • Tampa (FL)

Hybrid
USD 95,000 - 135,000
Performance bonus
Health, dental, and vision coverage
401(k) with company match
+2
Senior SOC Analyst: Threat Hunting & Incident Response Lead
Senior SOC Analyst: Threat Hunting & Incident Response Lead

Total Quality Logistics • Cincinnati (OH)

On-site
USD 110,000 - 160,000
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Louisville (KY)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+4
Security Tools Engineer
Security Tools Engineer

Total Quality Logistics • Cincinnati (OH)

On-site
USD 95,000 - 135,000
Performance bonus
Comprehensive benefits package
Health, dental, and vision coverage
+1
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Fargo (ND)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Training and development programs
+1
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Kansas City (KS)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+2
Security Operations Center Analyst
Security Operations Center Analyst

Madison-Davis, LLC • United States

On-site
USD 90,000 - 120,000