Senior SOC Analyst at Absolute Security responsible for threat monitoring, hunting, and incident response. Utilizing CrowdStrike Falcon and Microsoft Sentinel to secure enterprise assets against advanced threats.
Responsibilities
Monitor and triage alerts from CrowdStrike Falcon and Microsoft Sentinel.
Lead investigations into endpoint and network security incidents including malware, privilege escalation, lateral movement, and data exfiltration.
Conduct proactive threat hunts using CrowdStrike telemetry and threat intelligence.
Perform forensic analysis of compromised systems and malware samples.
Investigate cloud-based incidents across Azure, AWS, and GCP environments.
Collaborate with cloud operations teams to improve detection and response capabilities.
Develop and refine playbooks, runbooks, and standard operating procedures.
Requirements
4–7 years of experience in a SOC or cybersecurity analyst role.
Expert-level proficiency with CrowdStrike Falcon and Microsoft Defender.
Strong understanding of MITRE ATT&CK, malware behaviors, and incident response.
Hands-on experience with SIEM platforms (e.g., Splunk, Sentinel, Elastic).
Deep knowledge of Windows, Linux, and macOS internals.
Proficiency in scripting (Python, PowerShell) and log analysis.
Excellent written and verbal communication skills.
Cybersecurity Operations Analyst developing, implementing, and supporting security program at PCL Constructors. Engage in incident response, security operations, and compliance efforts.
Security Operations Center Specialist responsible for managing cybersecurity incidents at an international iGaming company. Engaging in threat analyses, security assessments, and incident response operations.
Junior Cyber Defender (SOC Analyst) work on detection and response at Ontinue, an AI - powered security company. Collaborating with teams on investigations and internal process improvements in Canada.
Senior Security Operations Engineer managing security for cloud - native environments at an AI research company. Focus on automation, compliance, and operationalizing security tools across platforms.
Security Operations Manager managing cloud security and identity governance at Cohere. Leading a high - performing security team and executing on strategic business goals.
Corporate Security Operations Lead managing security operations for Carbon60 in a hybrid environment. Involves monitoring, incident response, and security controls across cloud and internal systems.
Product Security Incident Response Manager at Autodesk responsible for external security assessments, penetration testing, and team leadership. Balancing technical work with mentorship to improve security posture.