DeepSeas Logo

DeepSeas

Senior SOC Analyst

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Leads high-severity security incident investigations, threat hunting, malware analysis, digital and network forensics, and detection engineering. Mentors SOC analysts, develops incident response playbooks, briefs leadership and clients, automates response processes, and drives continuous SOC improvement. The role requires strong SIEM, EDR/XDR, SOAR, scripting, forensic, and malware analysis expertise, with experience leading investigations in an MDR or similar environment.
The summary above was generated by AI
*This position is contingent on contract award*

Who is DeepSeas

With 30 years of experience in cyber defense, DeepSeas is trusted by nearly 1,000 clients around the world, including Fortune 100 enterprises and mid-market organizations, higher education institutions, municipality and local governments, and federal agencies. Known for its programmatic approach to continuously transforming cyber defense programs, DeepSeas is recognized by Gartner as a top 40 provider of MDR and ranked as a top 5 MDR leader in the 2024 Frost Radar™: Global Managed Detection and Response (MDR) Market. In addition to its industry-leading MDR service, DeepSeas offers a full suite of advisory, compliance, and testing services to support clients on their cybersecurity transformation journeys, with an approach to cyber defense that prioritizes technical expertise, tradecraft, and continuous innovation to deliver unparalleled results.
Position Summary

We're looking for (5) Senior SOC Analyst (L2) to drive the quality of outcomes in DeepSeas' client-facing detection and response.
You're a seasoned incident responder who leads high-severity investigations, mentors L1 and L2 analysts, and turns findings from threat hunting, malware analysis, and forensics into stronger detections and playbooks. This role requires a blend of strategic thinking, deep technical aptitude, awareness of the evolving threat landscape, and strong operational execution.

Key Responsibilities
  • Leads and mentors a team of L1 and L2 incident responders in handling security incidents.
  • Coordinates with internal and external stakeholders during high-severity incidents.
  • Develops, refines, and tests incident response playbooks and procedures.
  • Conducts advanced threat-hunting activities to detect sophisticated adversaries.
  • Collaborates with threat intelligence and vulnerability management teams to stay current on emerging threats and vulnerabilities.
  • Provides expert guidance in root cause analysis and post-incident reviews.
  • Develops and fine-tunes detection rules to enhance threat detection capabilities.
  • Uses frameworks such as MITRE ATT&CK to understand and categorize threat actor TTPs.
  • Drives continuous improvement initiatives within the SOC.
  • Generates metrics and reports on incident response activities and trends for leadership.
  • Conducts regular briefings to leadership on security incidents and trends.
  • Develops and maintains scripts to automate and enhance incident response processes.
  • Conducts in-depth malware analysis to determine malware samples' functionality, origin, and impact.
  • Collaborates with threat intelligence teams to correlate malware findings with known threat actor campaigns.
  • Provides recommendations to enhance detection and prevention capabilities based on malware analysis findings.
  • Leads digital forensics investigations, including memory forensics, to uncover evidence and artifacts related to security incidents.
  • Oversees network forensics activities to analyze network traffic logs and detect malicious activities or patterns.
  • Serves as a subject matter expert on incident response, providing guidance and advice to DeepSeas and client leadership.


Experience, Education, and Skills Required
Minimum Qualifications

  • 5+ years of experience in security operations, incident response, or threat detection, including time operating at a senior (L3) level or leading investigations; or an equivalent combination of education and experience.
  • Proven experience leading high-severity incident response from triage through containment, eradication, and recovery.
  • Strong hands-on proficiency with SIEM, EDR/XDR, and SOAR platforms, including writing and tuning detection content (e.g., KQL, SPL, Sigma, YARA).
  • Working knowledge of MITRE ATT&CK and the incident response lifecycle (e.g., NIST SP 800-61).
  • Experience with host, memory, and network forensics, as well as static and dynamic malware analysis.
  • Scripting proficiency in Python, PowerShell, or Bash to automate investigation and response tasks.
  • Experience mentoring or leading junior analysts.
  • Excellent written and verbal communication skills, with the ability to brief both technical teams and executive or client audiences.
  • This position is open only to U.S. citizens who currently reside within the United States.
Preferred Qualifications

  • Advanced certifications such as GCIH, GCFA, GREM, GNFA, OSCP, or CISSP.
  • Experience in an MDR or MSSP environment supporting multiple clients.
  • Familiarity with reverse engineering and memory forensics tools (e.g., Ghidra, IDA Pro, x64dbg, Volatility).
  • Experience building or maturing a threat-hunting or detection engineering program.
  • Bachelor's degree in Cybersecurity, Computer Science, or a related field.

Why DeepSeas?
At Deep Seas, we like to say that heart rates go down, careers take off, and security programs mature. Our values provide the ultimate guide for our daily behavior and decisions. Without these values, we aren’t Deep Seas. They preserve the essence of our organization, reflect the personalities of our Deeps (how we affectionately refer to our teammates), and enable us to exceed expectations. Our values are:
  • We are client obsessed. 
  • We stand in solidarity with our teammates.
  • We prioritize personal health and well-being.
  • We believe in the power of diversity.
  • We solve hard problems at the speed of cyber.
This is your chance to join a supportive crew of teammates and an industry-leading organization that values opportunities for growth. If DeepSeas sounds like a good fit for you, send us your resume and let’s talk!
Information security is everyone’s responsibility:
  • Understanding and following DeepSeas’s information security policies and procedures.
  • Remaining vigilant and reporting any suspicious activity or possible weaknesses in DeepSeas’s information security.
  • Actively participating in DeepSeas’s efforts to maintain and improve information security.
  • DeepSeas considers this position is as Moderate Risk with a potential to view/access/download restricted/private client/internal data. 
  • This information must be treated with sensitivity and in the most secure manner. 
  • HR reserves the right to perform random background/drug screens to ensure the safety of client/DeepSeas data

About
With nearly 30 years of experience in cyber defense, DeepSeas is trusted by 350+ clients, including Fortune 100 enterprises and mid-market organizations. Leveraging deep expertise that combines world-class cyber threat detection and response with industry-leading analysts, tailored threat intelligence, and accredited incident responders, DeepSeas is always on, always watching. Its Managed Detection & Response offering, DeepSeas MDR+, is anchored by its acquisition of Booz Allen Hamilton’s commercial Managed Threat Services (MTS) business in 2022. DeepSeas is the first and only MDR provider that covers the entire converged attack surface for the mid-market, including OT, IT, cloud, and mobile. Its full-spectrum cyber threat monitoring service is award-winning and backed by world-renowned researchers, data scientists, and mathematicians who have published over 250 papers and created a broad base of intellectual property, while achieving a number of scientific breakthroughs in the areas of big data, machine learning, and artificial intelligence as it applies to the detection of advanced and unknown cyber threats.

Similar Jobs

A Minute Ago
Remote
United States
Entry level
Entry level
Software • Hospitality
Takes room-service food and beverage orders by telephone, enters orders accurately into the point-of-sale system, answers guest questions about menu items and promotions, upsells offerings, processes payments, reconciles checks, and handles cash according to accounting procedures while providing friendly, efficient hospitality.
Top Skills: Point-Of-Sale System
A Minute Ago
In-Office or Remote
3 Locations
146K-343K Annually
Senior level
146K-343K Annually
Senior level
Artificial Intelligence • Cloud • Information Technology • Consulting
Architects end-to-end HPC and AI solutions for federal customers, serving as the primary technical interface throughout the sales cycle. Responsibilities include product presentations, system architecture, RFI/RFP responses, demonstrations, proofs of concept, consultative selling, partner coordination, account planning, and customer escalation support. The role requires expertise in HPC, GPUs, networking, AI infrastructure, solution configuration, business value modeling, and technical sales, with mentoring responsibilities for other solution architects.
Top Skills: Ai FactoriesArtificial Intelligence (Ai)Crm SystemsGpusHigh-Performance Computing (Hpc)InfinibandNetwork TopologiesSpectrum-X
A Minute Ago
In-Office or Remote
District of Columbia, USA
216K-507K Annually
Expert/Leader
216K-507K Annually
Expert/Leader
Artificial Intelligence • Cloud • Information Technology • Consulting
Drive new business and revenue growth among Tier 1 federal system integrators supporting US agencies. Responsibilities include prospecting, building executive relationships, developing strategic sales plans, navigating complex procurement processes, managing pipelines, closing deals, coordinating cross-functional teams, and using Salesforce and Microsoft Office to track activity. The role requires deep federal IT ecosystem knowledge, strong technology sales experience, and the ability to obtain government clearance.
Top Skills: MS OfficeSalesforce

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account