The Role
Conducts Tier 3 incident response and forensic investigations, including root-cause and impact analysis, malware and attacker-tool analysis, threat hunting, and detection-rule development. Trains SOC analysts on SIEM tools, develops monitoring processes and incident-response procedures, contributes to technical briefings, and provides on-call support for critical security incidents.
Summary Generated by Built In
Job Title: SOC, Tier 3 AnalystJob Location: 100 Community Place, Crownsville, MD (2 Days Onsite Hybrid)Job Duration: Fulltime
Responsibilities: • Incident Response & Forensics: Plan, initiate, and conduct forensic investigations on compromised systems; perform root cause and scope-of-impact analysis; create detailed forensic reports • Malware & Tool Analysis: Support malware analysis of attacker tools and techniques; identify and analyze malicious payloads • Tool & Process Development: Train SOC analysts on SIEM tools (e.g., Sentinel), develop and tune detection rules, and assist in creating new SOC monitoring processes • Threat Intelligence & Hunting: Correlate actionable security events, review threat data, develop custom detection signatures, and conduct threat hunting to identify advanced threats • Technical Leadership: Contribute to technical briefings, develop incident response procedures, and ensure adherence to operational and technical standards • On-Call Support: May require availability outside regular hours or on weekends to respond to critical incidents
Responsibilities: • Incident Response & Forensics: Plan, initiate, and conduct forensic investigations on compromised systems; perform root cause and scope-of-impact analysis; create detailed forensic reports • Malware & Tool Analysis: Support malware analysis of attacker tools and techniques; identify and analyze malicious payloads • Tool & Process Development: Train SOC analysts on SIEM tools (e.g., Sentinel), develop and tune detection rules, and assist in creating new SOC monitoring processes • Threat Intelligence & Hunting: Correlate actionable security events, review threat data, develop custom detection signatures, and conduct threat hunting to identify advanced threats • Technical Leadership: Contribute to technical briefings, develop incident response procedures, and ensure adherence to operational and technical standards • On-Call Support: May require availability outside regular hours or on weekends to respond to critical incidents
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company


.jpg)





