Tier 2 SOC Analyst - REMOTE

Binary Defense

Houston (TX)

Hybrid

USD 70,000 - 95,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, Dental, Vision
401k match
Remote-friendly work environment
Training opportunities

Job summary

Binary Defense is seeking a client-facing Tier 2 SOC Analyst to serve on a client’s Security Operations team. This hands-on role transforms detection strategy, tunes rules, and maintains feedback loops. You’ll lead analysis for Attack Surface Reduction functions, including vulnerability management and remediation from penetrations tests.

You’ll work with tools like Splunk, Proofpoint, and SentinelOne, delivering operational results and coordinating with the MDR provider’s Detection team.

Qualifications

  • 5+ years of Security Operations or equivalent experience.
  • Experience mapping detections to frameworks and risk-reduction models.
  • Familiarity with current attacker TTPs and hands-on detection tuning.

Responsibilities

  • Create internal alert strategy and process documentation for alerting opportunities and prioritization.
  • Tune noisy alerts to reduce alert fatigue and improve signal-to-noise.
  • Be the main contact to the MDR provider’s Detection team and coordinate with Threat Hunting.
  • Analyze alerts with Incident Responders, generate regular detection reports and metrics.
  • Coordinate with on-call criteria and perform attack surface reduction activities.
  • Prioritize vulnerabilities and assist patch teams in troubleshooting root causes.
  • Map detections to the Cyber Kill Chain and maintain defense of client environments.

Skills

SIEM
EDR
Threat mapping
TTP awareness
Incident response

Tools

Splunk
Proofpoint
SentinelOne

Job description

Job Type: Full-time

Binary Defense is seeking a client-facing Tier 2 SOC Analyst to serve as a hands-on contributor within a client’s Security Operations team.

This is a technical position responsible for transforming the client’s detection strategy, organizing detections, tuning rules, and creating and maintaining cross-functional feedback loops. Additionally, leading analysis, design, and hands-on analysis and remediation for Attack Surface Reduction functions such as vulnerability management and penetration test remediation.

You’ll play a key role in growing capabilities with leading tools in the client’s environment such as Splunk, Proofpoint, SentinelOne, and more. This role requires deep technical expertise, strong cross-functional communication, and the ability to deliver operational results.

Responsibilities
  • Create internal alert strategy and process documentation for how client identifies alerting opportunities, prioritizes based on threat level, with a focus and priority on gaps
  • Review alerts that are too noisy to tune and drive down alert fatigue
  • Assess alerts that haven’t triggered to determine whether logic needs to
  • Be the main point of contact to the MDR Provider’s Detection team
  • Work with the client’s Incident Responders on alert feedback loops; analyze true and false positive alerts
  • Create regular reporting cadence for all detections created, rules tuned
  • Contribute to client’s homegrown "Signal to Noise ratio" detection metric
  • Coordinate with MDR Threat Hunting team to request and implement Sentinel One STAR rules
  • Map detections to standard frameworks such as the Cyber Kill Chain
  • Work with MDR provider on an ongoing tuning of the on-call criteria
  • Perform attack surface reduction including full-scope change management, cross-functional coordination, enterprise communication planning/execution, execution of changes in support of security remediation
  • Provide vulnerability prioritization and analysis, ticketing, reporting, trending, metrics, assistance to patch teams on troubleshooting root cause of patching challenges
  • Analyze stale identities and accounts, admin privileges, and recommend and implement improvements
Requirements
  • 5+ Years Security Operations or Equivalent Experience
  • Experience with Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) tools
  • Experience mapping detections to common frameworks and risk reduction models
  • Familiarity with the latest trends in attacker TTPs
About Binary Defense

Binary Defense is a leading Managed Detection and Response (MDR) provider, trusted by hundreds of organizations to protect what matters most. Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around the clock to deliver proactive, risk-focused security outcomes. We bring the attacker's mindset to defense, helping clients detect threats earlier, respond faster, and continuously improve their security posture.

For more information, visit our website, check out our blog, or follow us on LinkedIn.

Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!).

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Tier 2 SOC Analyst — Remote, Flexible, Impactful
Tier 2 SOC Analyst — Remote, Flexible, Impactful

Binary Defense • Houston (TX)

Hybrid
USD 70,000 - 95,000
Medical, Dental, Vision
401k match
Remote-friendly work environment
+1
Detection Engineer - REMOTE
Detection Engineer - REMOTE

Binary Defense • Houston (TX)

On-site
USD 110,000 - 150,000
Remote-friendly work environment
Training opportunities
401k match
+1
Cybersecurity Threat Hunter - REMOTE
Cybersecurity Threat Hunter - REMOTE

Binary Defense • Houston (TX)

Hybrid
USD 95,000 - 150,000
Medical coverage
401k match
Remote-friendly
+1
Cybersecurity Threat Hunter - REMOTE
Cybersecurity Threat Hunter - REMOTE

Totem Market Valuations • Houston (TX)

Hybrid
USD 120,000 - 180,000
Medical, dental and vision coverage
401k match
Remote-friendly environment
+1
Cybersecurity Threat Hunter - REMOTE
Cybersecurity Threat Hunter - REMOTE

Binary-Defense • Houston (TX)

Hybrid
USD 90,000 - 130,000
Remote-friendly environment
401(k) match
Training opportunities
Account Executive - Cybersecurity Products & Services - REMOTE
Account Executive - Cybersecurity Products & Services - REMOTE

Totem Market Valuations • Charleston (SC)

Hybrid
USD 90,000 - 130,000
Medical, dental, vision coverage
401k match
Remote-friendly work environment
+1
Tier 1 SOC Analyst
Tier 1 SOC Analyst

Agile Defense • Washington

On-site
USD 70,000 - 80,000
Health Insurance
Life Insurance
Paid Time Off
+5
Account Executive - Cybersecurity Products & Services - REMOTE
Account Executive - Cybersecurity Products & Services - REMOTE

Binary Defense • Charleston (SC)

Hybrid
USD 90,000 - 130,000
Competitive medical, dental and vision
401k match
Flexible remote-friendly work
+1
Security Analyst II - SOC
Security Analyst II - SOC

Cyderes • Kansas City (MO)

On-site
USD 60,000 - 100,000
Security Analyst II(NW Arkansas)
Security Analyst II(NW Arkansas)

Cyderes • Fayetteville (AR)

Hybrid
USD 70,000 - 100,000
Medical Insurance
Life Insurance
Retirement Match
+6