SOC 2/3 Engineer (Remote Contractor):

SOC 2/3 Engineer (Remote Contractor):

SOC 2/3 Engineer (Remote Contractor):

SOC ANALYST TIER 2/3 (Contractor)

Remote, USA Full-time

SOC 2/3 Engineer (Remote Contractor):


General Duties -

Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise, TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.


General Skills -

They have deep experience with SIEM tools specifically Crowdstrike SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved. They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.


Specific Requirements -

  • Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.
  • Must have strong, demonstrated SIEM and data correlation experience
  • Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.
  • Must have experience designing and implementing runbooks and use cases to mitigate security incidents
  • Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..
  • Experience documenting incident response communications for technical and management audiences
  • Must have extensive experience reviewing and managing alerts in Microsoft Defender, Splunk
  • Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats
  • Experience leading timely security operations response efforts in collaboration with stakeholders
  • Must have experience setting up alert rules and effective alert management
  • Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders
  • Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD
  • Experience conducting forensic work investigations
  • Strong security operations documentation abilities


Attributes sought -

  • Must be proactive, problem solver and curious.
  • Most be a problem solver
  • Must be curious
  • Must be analytical, qualitative and quantitative abilities
  • Must be adaptive to dynamic environment





**MST or PST shift times**

Apply Now

Similar Jobs

Barnes & Noble Booksellers Job Work From Ho...

Remote, USA Full-time

Barnes & Noble – Senior Designer, Li...

Remote, USA Full-time

Apprentice Electrician

Remote, USA Full-time

Electrical Apprentice

Remote, USA Full-time

Entry Level Review Writer – Games Tester (Fully...

Remote, USA Full-time

Warehouse Picker Packer - Now Hiring

Remote, USA Full-time

Warehouse Staff (CRL)

Remote, USA Full-time

Driver Helper

Remote, USA Full-time

Warehouse Worker - Package Handler

Remote, USA Full-time

2025-2026 Facilities Engineering Construction M...

Remote, USA Full-time

Experienced Data Entry Specialist – Remote Work Opportunity for Detail-Oriented and Organized Individuals

Remote, USA Full-time

**Experienced Online Research Participant – Flexible and Rewarding Opportunities with blithequark**

Remote, USA Full-time

ABC and Hulu Comedy Intern

Remote, USA Full-time

Registered Nurse- Senior Care- Remote

Remote, USA Full-time

Atkins Fellow - Community Archives

Remote, USA Full-time

**Experienced Full Stack Customer Service Representative – Remote Work Opportunity with blithequark**

Remote, USA Full-time

Payment Processing Clerk- Data Entry in Glen Burnie, MD in Conduent (job Id: 1672907066)

Remote, USA Full-time

Dispatcher – Protos Security, LLC – Daleville, VA

Remote, USA Full-time

**Experienced Full Stack Technical Lead II - Live Chat Backend Development at blithequark**

Remote, USA Full-time

Experienced Airline Customer Service Agent Part Time – Remote Opportunity with Competitive Compensation and Growth Prospects at blithequark

Remote, USA Full-time
Back to Home