Senior Security Operation Analyst positions focus on delivering results in their domain. This page aggregates open Senior Security Operation Analyst roles and what employers typically expect.
Cybersecurity for the public good At nuHarbor, we help organizations navigate an increasingly complex cybersecurity landscape with confidence. By combining expert guidance, innovative technology, and trusted partnerships, we make security stronger, more effective, and easier to understand. We're looking for talented individuals who are passionate about solving meaningful challenges, helping clients succeed, and continuously improving alongside a team that values curiosity, collaboration, and impact. The Opportunity As a Senior Security Analyst, you'll serve as a senior technical contributor within nuHarbor's Security Operations Center (SOC). You'll lead complex investigations, guide incident response efforts, mentor fellow analysts, and help elevate the quality of our security operations through technical expertise and continuous improvement. This role combines advanced threat analysis, client communication, technical leadership, and operational excellence. You'll be trusted to independently tackle the most challenging security problems while helping shape the growth and effectiveness of the team around you. What Success Looks Like In this role, you will: Live by nuHarbor's core values: Help Clients Win, Always Improve, and Protect the House Lead investigations from initial alert through root cause analysis, attack chain reconstruction, and final client reporting Correlate data across SIEM, EDR, identity, and security telemetry sources to identify threats and uncover risks that automated tooling may miss Independently pursue complex, high-priority, or ambiguous investigations with minimal direction Support Security Analysts with alert triage, classification, escalation, and incident response activities Identify security gaps and provide actionable recommendations aligned to client risk and business objectives Communicate proactively with leadership regarding active threats, escalations, and emerging concerns Facilitate client-facing discussions, including incident reviews, threat briefings, and security consultations Produce high-quality documentation that clearly communicates findings, evidence, analyst reasoning, and client impact Stay current on emerging threats, attacker tactics, vulnerabilities, and industry trends Support the onboarding and operational success of new managed security clients Mentor and train analysts on investigation methodology, documentation standards, and client communication best practices Review analyst escalations and ensure investigative completeness and quality prior to client delivery Contribute to automation initiatives that improve analyst efficiency and reduce operational noise Partner with Detection Engineering teams to improve alert fidelity, tuning, and threat detection effectiveness Develop recommendations that help clients mature their cybersecurity programs and security operations capabilities Coordinate with clients and internal stakeholders throughout incident response and post-incident activities Your Foundation We're looking for someone who brings these minimum qualifications: Bachelor’s Degree and five (5) years of experience. Experience should be in a cybersecurity field and should include relevant industry certifications. In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required. Demonstrated experience with SOC operations, executing security event triaging and tuning. Demonstrated experience writing runbooks and support procedures. Demonstrated experience executing Monitoring and Response across multiple phases, containment, eradication, and recovery, in a SOC or MSSP environment. Demonstrated experience with security event triaging and threat hunting executed through both a SIEM and EDR toolset. Hands on experience with at least two of the following Endpoint Detection and Response (EDR) and Security Orchestration Automation and Response solutions. CrowdStrike Microsoft Defender Microsoft Sentinel Splunk Ent…