Skip to content
← Back to job listings

Senior Security Operations Analyst

Nasuni · United States

RemoteImported listingfull-time22 days ago

About The Role

Join Nasuni as a Senior Security Operations Analyst, where you will be a key individual contributor in incident triage, severity, and escalation decisions. You will lead advanced investigations across various telemetry sources, improve the enterprise security stack, and mentor other analysts. This role offers a range of benefits, including generous paid time off, comprehensive medical plans, retirement options, and professional growth opportunities.

  • Operar como un contribuyente individual senior con autoridad para tomar decisiones sobre la triage de incidentes, la gravedad y la escalación dentro del marco de respuesta de la empresa.
  • Liderar investigaciones avanzadas en múltiples áreas, incluyendo endpoint, identidad, nube, correo electrónico, SaaS y telemetría de red; determinar el alcance, el impacto, la causa raíz, la contención y las acciones de seguimiento.
  • Mejorar las detecciones, los playbooks, los dashboards y los procedimientos; y mentorizar a otros analistas.
  • Strong hands-on SIEM experience, including search, correlation, rule tuning, log onboarding, dashboards, and investigation workflows
  • Demonstrated ownership of complex or high-severity investigations from triage through containment and remediation coordination
  • Clear written and verbal communication with technical and business stakeholders
  • Experience improving SOC processes and using operational metrics to identify bottlenecks and validate improvement
  • Working knowledge across cloud security, EDR, identity, vulnerability management, and email security
  • 5+ years of security experience, including 3+ years in an enterprise SOC, incident response, or detection-and-response function
  • Typically 5–9 years of relevant experience, with evidence of enterprise-scale ownership weighted more heavily than tenure alone
  • Responsible use of AI-assisted security or observability workflows with clear validation and data-handling controls
  • Detection engineering, SOAR, threat hunting, PowerShell or Python, multi-cloud monitoring, or MDR coordination experience
  • Direct hands-on experience with two or more of Sumo Logic, Wiz, Rapid7 InsightIDR/InsightVM, and Darktrace / EMAIL
  • Measurably improved MTTD, MTTC, MTTR, false-positive rates, backlog health, or response SLA performance
  • Led post-incident reviews, established reusable SOC operating practices, or coached other analysts

This is an external listing. JobSpring does not represent or verify the employer. Report this listing