Senior SOC Analyst

Deep Seas•San Diego, CA
•Remote

About The Position

This position is contingent on contract award. We're looking for (5) Senior SOC Analyst (L2) to drive the quality of outcomes in DeepSeas' client-facing detection and response. You're a seasoned incident responder who leads high-severity investigations, mentors L1 and L2 analysts, and turns findings from threat hunting, malware analysis, and forensics into stronger detections and playbooks. This role requires a blend of strategic thinking, deep technical aptitude, awareness of the evolving threat landscape, and strong operational execution.

Requirements

  • 5+ years of experience in security operations, incident response, or threat detection, including time operating at a senior (L3) level or leading investigations; or an equivalent combination of education and experience.
  • Proven experience leading high-severity incident response from triage through containment, eradication, and recovery.
  • Strong hands-on proficiency with SIEM, EDR/XDR, and SOAR platforms, including writing and tuning detection content (e.g., KQL, SPL, Sigma, YARA).
  • Working knowledge of MITRE ATT&CK and the incident response lifecycle (e.g., NIST SP 800-61).
  • Experience with host, memory, and network forensics, as well as static and dynamic malware analysis.
  • Scripting proficiency in Python, PowerShell, or Bash to automate investigation and response tasks.
  • Experience mentoring or leading junior analysts.
  • Excellent written and verbal communication skills, with the ability to brief both technical teams and executive or client audiences.
  • This position is open only to U.S. citizens who currently reside within the United States.

Nice To Haves

  • Advanced certifications such as GCIH, GCFA, GREM, GNFA, OSCP, or CISSP.
  • Experience in an MDR or MSSP environment supporting multiple clients.
  • Familiarity with reverse engineering and memory forensics tools (e.g., Ghidra, IDA Pro, x64dbg, Volatility).
  • Experience building or maturing a threat-hunting or detection engineering program.
  • Bachelor's degree in Cybersecurity, Computer Science, or a related field.

Responsibilities

  • Leads and mentors a team of L1 and L2 incident responders in handling security incidents.
  • Coordinates with internal and external stakeholders during high-severity incidents.
  • Develops, refines, and tests incident response playbooks and procedures.
  • Conducts advanced threat-hunting activities to detect sophisticated adversaries.
  • Collaborates with threat intelligence and vulnerability management teams to stay current on emerging threats and vulnerabilities.
  • Provides expert guidance in root cause analysis and post-incident reviews.
  • Develops and fine-tunes detection rules to enhance threat detection capabilities.
  • Uses frameworks such as MITRE ATT&CK to understand and categorize threat actor TTPs.
  • Drives continuous improvement initiatives within the SOC.
  • Generates metrics and reports on incident response activities and trends for leadership.
  • Conducts regular briefings to leadership on security incidents and trends.
  • Develops and maintains scripts to automate and enhance incident response processes.
  • Conducts in-depth malware analysis to determine malware samples' functionality, origin, and impact.
  • Collaborates with threat intelligence teams to correlate malware findings with known threat actor campaigns.
  • Provides recommendations to enhance detection and prevention capabilities based on malware analysis findings.
  • Leads digital forensics investigations, including memory forensics, to uncover evidence and artifacts related to security incidents.
  • Oversees network forensics activities to analyze network traffic logs and detect malicious activities or patterns.
  • Serves as a subject matter expert on incident response, providing guidance and advice to DeepSeas and client leadership.

Benefits

  • Opportunities for growth
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service