Senior SOC Analyst at Absolute Security responsible for threat monitoring, hunting, and incident response. Utilizing CrowdStrike Falcon and Microsoft Sentinel to secure enterprise assets against advanced threats.
Responsibilities
Monitor and triage alerts from CrowdStrike Falcon and Microsoft Sentinel.
Lead investigations into endpoint and network security incidents including malware, privilege escalation, lateral movement, and data exfiltration.
Conduct proactive threat hunts using CrowdStrike telemetry and threat intelligence.
Perform forensic analysis of compromised systems and malware samples.
Investigate cloud-based incidents across Azure, AWS, and GCP environments.
Collaborate with cloud operations teams to improve detection and response capabilities.
Develop and refine playbooks, runbooks, and standard operating procedures.
Requirements
4–7 years of experience in a SOC or cybersecurity analyst role.
Expert-level proficiency with CrowdStrike Falcon and Microsoft Defender.
Strong understanding of MITRE ATT&CK, malware behaviors, and incident response.
Hands-on experience with SIEM platforms (e.g., Splunk, Sentinel, Elastic).
Deep knowledge of Windows, Linux, and macOS internals.
Proficiency in scripting (Python, PowerShell) and log analysis.
Excellent written and verbal communication skills.
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.