- Company Name
- HashRoot
- Job Title
- Senior SOC Analyst
- Job Description
-
**Job Title:** Senior SOC Analyst
**Role Summary:**
Seasoned cybersecurity professional leading Tier 2/3 incident investigations, threat hunting, and security automation across multi‑cloud and hybrid environments. Ensures compliance with DoD, CMMC, NIST, ITAR, and FedRAMP standards while coordinating with counter‑intelligence, compliance teams, and federal authorities.
**Expectations:**
- 10+ years of SOC operations, incident response, and threat detection experience.
- Proven expertise with Rapid7 platform (InsightIDR, InsightConnect, Nexpose, InsightVM).
- Advanced automation skills (Python, Ansible, Puppet) and scripting (PowerShell, Bash).
- Ability to communicate complex security findings to executives and federal stakeholders.
**Key Responsibilities:**
- Lead Tier 2/3 investigations using NIST 800‑61, MITRE ATT&CK, and DoD Cyber Kill Chain.
- Configure and optimize Rapid7 InsightIDR (XDR/SIEM) for real‑time detection.
- Develop and run SOAR playbooks in InsightConnect; automate workflows with Ansible/Puppet.
- Operate Nexpose and InsightVM for vulnerability scanning, prioritization, and remediation.
- Conduct continuous threat hunting with Python and SIEM query languages (KQL, SPL).
- Create detection rules aligned to MITRE ATT&CK TTPs and integrate STIX/TAXII, MISP, and DoD threat intel feeds.
- Write Python scripts for IOC enrichment, API integration, and log analysis.
- Automate system hardening, patch management, and incident response across AWS GovCloud, Azure Government, and private clouds.
- Enforce identity and security policies in multi‑cloud/hybrid environments.
- Maintain audit‑ready documentation for DoD inspections; support supply‑chain cybersecurity compliance.
**Required Skills:**
- Rapid7 InsightIDR, InsightConnect, Nexpose, InsightVM (hands‑on).
- Automation: Python, Ansible, Puppet; scripting: PowerShell, Bash.
- SIEM/SOAR, IDS/IPS, EDR/XDR, firewalls, vulnerability management.
- Deep knowledge of nation‑state APT tactics, threat intel, and defense cyber operations.
- Strong written and verbal communication, executive briefing capability.
**Required Education & Certifications:**
- Bachelor’s degree in Cybersecurity, Computer Science, or related field.
- InsightIDR Certified Specialist (mandatory).