Strategic Services Analyst

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in Costa Rica
Remote
Senior level
Information Technology • Professional Services • Security • Cybersecurity
The Role
Serve as the primary client-facing advisor for detection and response maturity: design, develop, and tune SIEM detection content; conduct threat hunting; lead briefings and incident response playbooks; translate technical findings into strategic guidance; partner with SOC and detection engineering to improve client security posture.
Summary Generated by Built In
The Strategic Services Analyst sits within DeepSeas' Threat Management practice and serves as a client-facing subject matter expert bridging hands-on SIEM engineering with strategic security advisory. This role partners directly with client stakeholders to mature their detection and response capabilities: building and tuning detection content within their SIEM, closing detection gaps, and translating technical findings into strategic guidance clients can act on. 
You will act as a trusted advisor to assigned clients — leading briefings on detection posture and program performance, guiding incident response strategy, and ensuring the SIEM and detection engineering work happening behind the scenes ties back to each client's business goals. You'll collaborate closely with the SOC and internal detection engineering teams, but your primary accountability is the client relationship and the strategic value of their security program. 

Key Responsibilities
  • Serve as the primary strategic point of contact for assigned clients, building trusted-advisor relationships with client security stakeholders.
  • Design, develop, and tune detection logic and use cases within client SIEM platforms, closing detection gaps identified through Cyber Threat Intelligence review.
  • Lead regular briefings with client leadership on detection coverage, incident trends, and overall program maturity.
  • Develop and refine incident response playbooks and procedures in partnership with client security teams.
    • Conduct threat-hunting activities across client SIEM and EDR data to proactively surface sophisticated adversary activity.
  • Use frameworks such as MITRE ATT&CK to assess detection coverage and categorize threat actor TTPs for client audiences.
  • • Partner with the SOC and internal Detection Engineering teams on escalations, ensuring client-specific detection content stays current.
    • Generate and present metrics and reporting on incident response activity, detection coverage, and program trends for client leadership.
    • Provide guidance on malware and forensic findings, translating technical analysis into clear recommendations for client teams.
    • Drive continuous improvement of clients' detection engineering and SIEM content, staying current on emerging threats and vulnerabilities.

Skills Knowledge and Expertise
  • 5+ years of experience in cybersecurity, including hands-on work with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar, Elastic).
  • At least one year of experience in a SOC analyst or detection engineering role.
  • Strong log analysis skills and previous experience writing or tuning detection logic.
  • Working knowledge of MITRE ATT&CK and cloud-based technologies.
  • Excellent client-facing communication skills, both written and verbal.
  • This is a client-facing role requiring comfort presenting to non-technical stakeholders and client leadership.
  • Bachelor's degree in Cybersecurity, Computer Science, or related field, or equivalent practical experience.
  • Familiarity with a variety of SIEM tools beyond your primary platform, plus proficiency in EDR and NDR tooling.
  • Experience with threat hunting and data engineering.
  • Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and analysis.
  • Prior experience in a client-facing advisory, consulting, or managed services role.
  • Familiarity with regulations and standards such as HIPAA, GDPR, and NIST frameworks.
  • Certifications such as GIAC Certified Incident Handler (GCIH), CISSP, CISM, CEH, or equivalent advanced security certifications.

Why DeepSeas?
At Deep Seas, we like to say that heart rates go down, careers take off, and security programs mature. Our values provide the ultimate guide for our daily behavior and decisions. Without these values, we aren’t Deep Seas. They preserve the essence of our organization, reflect the personalities of our Deeps (how we affectionately refer to our teammates), and enable us to exceed expectations. Our values are:
  • We are client obsessed. 
  • We stand in solidarity with our teammates.
  • We prioritize personal health and well-being.
  • We believe in the power of diversity.
  • We solve hard problems at the speed of cyber.
This is your chance to join a supportive crew of teammates and an industry-leading organization that values opportunities for growth. If DeepSeas sounds like a good fit for you, send us your resume and let’s talk!
Information security is everyone’s responsibility:
  • Understanding and following DeepSeas’s information security policies and procedures.
  • Remaining vigilant and reporting any suspicious activity or possible weaknesses in DeepSeas’s information security.
  • Actively participating in DeepSeas’s efforts to maintain and improve information security.
  • DeepSeas considers this position is as Moderate Risk with a potential to view/access/download restricted/private client/internal data. 
  • This information must be treated with sensitivity and in the most secure manner. 
  • HR reserves the right to perform random background/drug screens to ensure the safety of client/DeepSeas data

About
With nearly 30 years of experience in cyber defense, DeepSeas is trusted by 350+ clients, including Fortune 100 enterprises and mid-market organizations. Leveraging deep expertise that combines world-class cyber threat detection and response with industry-leading analysts, tailored threat intelligence, and accredited incident responders, DeepSeas is always on, always watching. Its Managed Detection & Response offering, DeepSeas MDR+, is anchored by its acquisition of Booz Allen Hamilton’s commercial Managed Threat Services (MTS) business in 2022. DeepSeas is the first and only MDR provider that covers the entire converged attack surface for the mid-market, including OT, IT, cloud, and mobile. Its full-spectrum cyber threat monitoring service is award-winning and backed by world-renowned researchers, data scientists, and mathematicians who have published over 250 papers and created a broad base of intellectual property, while achieving a number of scientific breakthroughs in the areas of big data, machine learning, and artificial intelligence as it applies to the detection of advanced and unknown cyber threats.

Skills Required

  • 5+ years of experience in cybersecurity, including hands-on work with SIEM platforms (Splunk, Microsoft Sentinel, QRadar, Elastic).
  • At least one year of experience in a SOC analyst or detection engineering role.
  • Strong log analysis skills and experience writing or tuning detection logic.
  • Working knowledge of MITRE ATT&CK and cloud-based technologies.
  • Excellent client-facing communication skills, both written and verbal.
  • Comfort presenting to non-technical stakeholders and client leadership (client-facing role).
  • Bachelor's degree in Cybersecurity, Computer Science, or related field, or equivalent practical experience.
  • Familiarity with a variety of SIEM tools beyond a primary platform, plus proficiency in EDR and NDR tooling.
  • Experience with threat hunting and data engineering.
  • Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and analysis.
  • Prior experience in a client-facing advisory, consulting, or managed services role.
  • Familiarity with regulations and standards such as HIPAA, GDPR, and NIST frameworks.
  • Certifications such as GCIH, CISSP, CISM, CEH, or equivalent advanced security certifications.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Diego, CA

What We Do

DeepSeas provides cybersecurity services, including managed detection, response, and threat intelligence, to help clients manage business risks posed by cyber threats and stay cyber resilient.

Similar Jobs

Mastercard Logo Mastercard

Technical Project Manager

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Remote or Hybrid
San Jose, CRI
38800 Employees

TransUnion Logo TransUnion

Technical Writer

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Remote or Hybrid
Heredia, Ulloa, Lagunilla, CRI
13000 Employees

Pfizer Logo Pfizer

Candidate Experience Associate - LATAM

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
12 Locations
121990 Employees

Zscaler Logo Zscaler

Consultant

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
San Jose, Escazu, Escazu, CRI
8697 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account