SOC 3 Analyst

LogicalisBeachwood, OH
$77,517 - $100,000Onsite

About The Position

The Security Senior Analyst role is responsible for managing services for Managed Security Service customers. The Security Specialist has the remit of assessing, discovering and directing remediation of security threats & vulnerabilities within client environments whilst working as part of a managed security team on various cyber security projects and tasks. This role involves working at all levels with Solution Architects, Development Operations, Engineers, SOC Analysts, clients and other stakeholders in building and managing security architecture and systems which are kept up-to-date and relevant in the rapidly evolving Managed Security Services industry. This is a senior technical SOC role and the role holder is expected to provide Tier 3 analysis, advanced investigation, threat hunting, forensic support and technical leadership for complex or critical incidents. The role also supports mentoring, service improvement, playbook evolution and close collaboration with clients, internal teams, channel partners and vendors.

Requirements

  • Previous hands-on experience working in SOC environments is mandatory.
  • Experience working within managed services, including SLAs, KPIs, operational reporting, customer escalations and continuous service improvement.
  • Strong experience in incident response, complex investigation, threat hunting and advanced security analysis.
  • Forensics experience is mandatory for this role, including endpoint, network or cloud investigation scenarios.
  • Experience with forensic tooling and investigation techniques such as evidence collection, timeline analysis, artefact review and root-cause analysis.
  • Experience with SIEM platforms such as Microsoft Sentinel and/or Splunk.
  • Knowledge of MITRE ATT&CK, detection engineering, EDR/XDR technologies and incident response frameworks.
  • Ability to act as a senior escalation point, lead technical investigations and support customers during complex or critical incidents.
  • Excellent written and oral communication skills, including executive-level incident reporting and clear remediation guidance.
  • Strong analytical mindset, ability to work under pressure and commitment to continual service improvement.
  • Hands-on experience analyzing security logs from SIEM, EDR/XDR, endpoint, identity, cloud and network security sources.

Nice To Haves

  • Experience with Cisco XDR, Microsoft Defender is a strong plus.
  • Experience with MISP, n8n or SOAR platforms is a plus.
  • Certifications from Microsoft, Splunk and GIAC are highly valued, for example Microsoft SC-200, Microsoft SC-100, Splunk Core Certified Power User, Splunk Enterprise Certified Admin, GIAC GCIH, GCIA, GCFA, GNFA, GREM or GCTI. Other relevant certifications such as CompTIA CySA+, CISSP, CISM or equivalent are also valued.
  • Experience with Microsoft Sentinel and/or Splunk is highly valued.
  • Experience with Cisco XDR, MISP, n8n and security automation/orchestration is highly valued.
  • Experience with Azure and/or AWS security monitoring is valued.
  • Awareness of security standards and frameworks such as ISO 27001, NIST, MITRE ATT&CK and common vulnerability management practices.

Responsibilities

  • Handles internal and client escalations by engaging with key stakeholders.
  • Follows & oversees that the team follows published SOC policies and procedures.
  • Acts as subject matter expert across Managed Security Service and be able to clearly articulate deliverables, limitations, feasibility, etc.
  • Demonstrates thorough experience of the configuration, tuning and maintenance of SOC tools to improve detection capability and building re-usable visualisations / dashboards for security alert triage, threat hunting and similar use cases, etc.
  • Develops Standard Operating Procedures (SOPs) and use cases for monitoring and handling different types of security events.
  • Performs Threat intelligence gathering to ensure that detection methods are effective against current threats.
  • Hunts for suspicious activity based on anomalous activity.
  • Handles events as part of the Security Incident Management Process.
  • Works with both internal and external partners to investigate and advise on security incidents and anomalies.
  • Prepares detailed reports, providing information on findings, status and progress of investigations, as well as vulnerability and risk factors.
  • Serves as the senior technical escalation point and mentor for colleagues.
  • Produces incident response playbooks to drive a consistent approach to handling common incidents and improve operational processes.
  • Analyzes structured security log data through the creation of aggregated / correlated reports or visualizations.
  • Identifies and implements opportunities for innovative and continuous improvement.
  • Leads on customer incident response investigations and containment of threats, advising on remediation.
  • Participates in the Security Operations Centre on-call rotation.
  • Demonstrates and actively promotes an understanding and commitment to the mission of Logicalis through performing behaviors consistent with the organization's values.
  • Maintains a working knowledge of applicable Federal, State, and Local laws and regulations as well as policies and procedures of Logicalis in order to ensure adherence in a manner that reflects honest, ethical and professional behaviors.
  • Supports and conducts self in a manner consistent with customer service expectations.

Benefits

  • Logicalis US Benefits Summary
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service