Security Operation Center Analyst L3
Lead investigation and analysis of complex security incidents and cyber threats.
Perform advanced threat hunting, threat intelligence analysis, and digital forensic investigations.
Identify attack patterns, determine root cause, and provide remediation recommendations.
Support malware analysis and coordinate incident response activities.
Develop and improve SOC detection use cases, playbooks, and response procedures.
Provide technical guidance and mentoring to SOC Level 1 and Level 2 analysts.
Collaborate with internal teams and customers during major security incidents.
Prepare detailed technical reports, post-incident analysis, and continuous improvement recommendations.
Ensure compliance with SOC operational procedures, security standards, and service level agreements (SLAs).
Minimum 5 years of experience in Security Operations Center (SOC), Incident Response, Digital Forensics, Threat Intelligence, or Cyber Security Operations.
Holds one or more of the following certifications (or equivalent):CHFI (Computer Hacking Forensic Investigator) or equivalent:
GCFA (GIAC Certified Forensic Analyst)
GCFE (GIAC Certified Forensic Examiner)
CCFP (ISC²)
CTIA (Certified Threat Intelligence Analyst) or equivalent:
GCTI (GIAC Cyber Threat Intelligence)
FOR578 (SANS Threat Intelligence)
Strong knowledge of:
Advanced Security Monitoring & SIEM Platforms
Incident Investigation and Digital Forensics
Threat Intelligence and Threat Hunting
Malware Analysis and Advanced Incident Response
Network Security fundamentals (TCP/IP, Firewall, IDS/IPS, VPN)
Familiar with security frameworks such as MITRE ATT&CK, Cyber Kill Chain, NIST Incident Response, and IOC/IOA analysis.
Experience handling complex cyber security incidents and leading technical investigations.
Able to work in shift, on-site, and project-based assignments.
Strong analytical, problem-solving, communication, and mentoring skills.