Senior SOC Analyst
About this role
Beyond alerts: help protect our security operations!
What if your next investigation could stop a threat before it becomes an incident? As a Senior SOC Analyst, you'll join a small team of experts protecting a cloud-first organization, where you'll investigate incidents, improve detections, automate workflows, and continuously evolve how security operations are done.
Working in a modern environment powered by cloud technologies and artificial intelligence (AI), you'll have the opportunity to influence our security posture every day. If you're looking for broad ownership, meaningful collaboration, and the chance to work across the full spectrum of security operations, you'll feel right at home!
As one of our Senior SOC Analysts, you will:
- Investigate and respond to security events and incidents across our cloud infrastructure, endpoints, identities, and corporate environment.
- Design, improve, and tune detections, playbooks, and response processes to continuously reduce risk and improve efficiency.
- Collaborate closely with Security Engineering, IT, and other technical teams to optimize security tooling, reduce alert noise, and strengthen our overall security posture.
- Contribute to automation initiatives and experiment with artificial intelligence (AI) agents to improve investigation and operational workflows.
- Participate in a shared on-call rotation, responding to high-priority security incidents when needed.
- Onboard new log sources, maintain parsing and normalization, and close visibility gaps across cloud, endpoint, and identity telemetry.
Here is what will qualify you for the role:
- 5+ years of experience working in a Security Operations Center (SOC) or a similar cybersecurity role.
- Strong understanding of incident response, detection engineering, threat investigation, and security operations best practices.
- Excellent communication skills, with the ability to explain technical security concepts clearly to both technical and non-technical audiences.
- Curiosity, ownership, and a collaborative mindset, you enjoy solving problems that don't come with a playbook.
What will make you stand out:
- Experience securing cloud environments, particularly Amazon Web Services (AWS).
- Experience with security information and event management (SIEM), endpoint detection and response (EDR), or cloud security platforms.
- Experience improving detection logic, automating repetitive work, or building operational tooling.
- Consulting experience or previous work within a small, highly collaborative SOC where everyone wore multiple hats.
Do you think you can bring this role to life? Send us your application, we want to hear from you!
Join the Coveolife!
We encourage all qualified candidates to apply regardless of, for example, age, gender, disability, gaps in CV, national or ethnic background.
This job description was written by humans, assisted by AI. We may leverage technology in our hiring process to help us see the person behind the resume.
Coveo is committed to providing accessible employment practices. If you require accommodation due to a disability at any point during the recruitment process, please contact HR@Coveo.com to discuss your needs.
