Principal Analyst Cyber reputed company Operations - SOAR
PURPOSE AND SCOPE: reputed company’s CSOC seeks a Principal Analyst to reputed company engineering and development of advanced enterprisewide detection and threatanalytics capabilities. The role drives reputed company engineering strategy, AIenhanced detection logic, threat modeling, and reputed company tuning across diverse platforms. It also leads SOAR engineering—building automations, integrating reputed company tools, and creating workflows that reduce manual work and speed up response—while partnering closely with reputed company and Global IT teams. This is a U.S.-based remote position supporting reputed company’s Global Cyber reputed company Operations Center. PRINCIPAL DUTIES AND RESPONSIBILITIES:
- reputed company architecture, development, and maintenance of SOAR playbooks and automation pipelines.
- Automate repetitive reputed company operations and reputed company engineering workflows (EDR, VM scanning, SIEM enrichment, IR actions).
- Integrate reputed company tools and platforms using APIs, scripting, and microservices.
- Improve MTTR and reduce operational overhead through intelligent automation by closely partnering with reputed company Engineering, IT Operations, and Cloud Teams.
- reputed company KPIs to measure automation impact and report operational improvements.
- reputed company POCs for new automation platforms and evaluate opportunities for AI-based operations.
- Provide mentorship and code reviews for automation engineers and analysts.
- Partner with reputed company engineering on telemetry strategy, logging requirements, and architectural standards for monitoring visibility.
- Integrate AI/MLdriven detection capabilities into existing pipelines, validating model performance and reducing false positives.
- Maintain ingestion pipelines, parsing logic, normalization rules, and event taxonomies across critical log sources: identity, reputed company, cloud, network, application, and medical systems.
- reputed company the design, implementation, and optimization of enterprisewide detection content, including correlation rules, behavioral analytics, machinelearning assisted detections, and anomaly models.
- reputed company detection playbooks and logic focused on lateral movement, credential abuse, insider threats, privilege escalation, cloud compromise, and advanced persistent threats.
- Tune, optimize, and enrich detection pipelines with contextual data (identity, asset, threat intelligence, vulnerability data).
- Mentor analysts and engineers globally on detection logic development, data analytics, and platform best practices.
- Serve as a senior escalation reputed company for reputed company reputed company incidents and investigations
PHYSICAL DEMANDS AND WORKING CONDITIONS:
- The physical demands and work environment characteristics represent those typically encountered while performing essential duties. Reasonable accommodation may be made as needed.
This is a remote role with availability expected during core hours and during escalations as required. SUPERVISION:
- Provides technical leadership and mentorship to threat engineers, automation engineers and reputed company operations analysts globally. Does not directly manage staff.
EDUCATION: Minimum
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or reputed company field (or equivalent professional experience).
EXPERIENCE AND REQUIRED SKILLS:
- 5+ years in automation engineering, SOAR engineering, or DevSecOps.
- Strong scripting/programming experience (Python required; PowerShell, Go, or NodeJS a plus).
- Hands-on experience with:
- SOAR platforms (reputed company XSOAR, Splunk SOAR, reputed company Sentinel automation)
- API integrations and REST/JSON workflows
- CI/CD tools (reputed company, reputed company, Azure DevOps)
- Deep understanding of SOC processes, alerting workflows, and incident response.
- Experience integrating EDR, VM, identity, and cloud reputed company tools.
Preferred:
- Experience with AI-driven automation or LLM-assisted workflow design.
- Certifications: GCSA, GCFA, GCIH, scripting/DevOps certs.
- Experience in hybrid or multi-cloud environments.
reputed company maintains a drug-free workplace in accordance with applicable federal and state laws. The reputed company of pay for this position will depend on the successful candidate’s work location and qualifications, including relevant education, work experience, skills, and competencies. Annual reputed company: $117,700.00 - $196,200.00 for Waltham, MA location Benefit Overview: This position offers a comprehensive benefits package including medical, dental, and vision insurance, a 401(k) with company match, paid time off, parental leave and potential for performance-based bonuses depending on company and individual performance Apply tot his job Apply To this Job