Hiring.Camp

Senior Security Operations Analyst - Onsite

corespecialtyinsurance

·

Yesterday

Location
OH Cincinnati (Corporate), United States of America
Workplace
Remote, Hybrid, Onsite
Type
Full-time
Department
Operations
Seniority
Senior
Experience
3+ years
Visa
Not sponsored
Source
Workday

Description

-

We are seeking a Senior SOC Analyst (Level 2/3) to join our Security Operations Center team onsite (Monday through Friday) within our Cincinnati office (this is NOT a hybrid or remote role). This role is pivotal in advanced threat detection, incident analysis, response coordination, and automation development. Acting as an escalation point for L1 analysts, you will lead investigations into complex security incidents, mentor junior team members, and drive improvements in detection and response capabilities within a fast-paced, 24/7 operational setting.

Key Accountabilities/Deliverables:

  • Investigate escalated alerts, validate threats, and perform deep-dive forensic analysis using SIEM, EDR, and threat intelligence tools.

  • Lead containment and remediation efforts for escalated incidents across multiple environments.

  • Develop and tune SIEM use cases, correlation rules, and EDR detection logic to improve SOC efficiency.

  • Design and implement automation workflows to enhance incidents response and investigation efforts.

  • Leverage AI platforms to assist with automation of SOC processes.

  • Conduct proactive hunts leveraging behavioral analytics and intelligence feeds to identify emerging threats.

  • Work closely with IT, network, and security engineering teams to contain incidents and strengthen defenses.

  • Maintain and enhance SOC playbooks, runbooks, and standard operating procedures (SOPs).

  • Assist with preparation of detailed incident reports, root cause analyses, and recommendations for preventive measures.

  • Train and guide L1 analysts, fostering a culture of continuous learning and operational excellence.

  • Assess and recommend new security technologies or security measures to enhance SOC capabilities.

  • Maintain endpoint security baselines aligned with CIS benchmarks.

  • Support integration and operations of a new primary EDR/SIEM platform.

  • Partner with IT operations to safely test and deploy endpoint security changes.

  • Act as a senior technical escalation point during security incidents.

  • Contribute to incident response playbooks and post‑incident reviews.

  • Produce high‑quality technical documentation, including:

    • Security architecture diagrams

    • SOPs and runbooks

    • Policy rationale and audit artifacts

    • Incident timelines


Technical Knowledge and Understanding:

  • Strong understanding of SIEM platforms, EDR tools, and network monitoring solutions; including the maintenance and tuning of security tools and alert logic, security settings, and IOC blocks.

  • Proven experience designing and implementing security automation workflows.

  • Strong SQL/KQL query capabilities.

  • Deep knowledge of attack lifecycle frameworks (MITRE ATT&CK, Cyber Kill Chain).

  • Proven ability to analyze network traffic, logs, and host-based artifacts.

  • Ability to work in a fast-paced 24x7 environment with rotational on-call coverage.

  • Excellent communication and documentation skills.


Experience:

(This is NOT a hybrid or remote role), onsite (Monday through Friday).

Applicants must be authorized to work for any employer in the U.S.  We are unable to sponsor or take over work authorization sponsorship now or in the future for this position. 

  • Bachelor’s degree in Cybersecurity, Computer Science, IT, or equivalent practical experience.

  • 3+ years of experience in SOC operations, cybersecurity, or incident response.

  • Certifications such as GCIH, GCIA, CEH, CompTIA CySA+, or CISSP.

  • Experience with malware analysis or reverse engineering.

  • Experience with scripting (Python, PowerShell) for automation and SOC process improvement.

  • Familiarity with threat intelligence platforms and integration.

  • Experience in cloud security monitoring (AWS, Azure, GCP).


#LI-Onsite

-

At Core Specialty, you will receive a competitive salary and opportunities for professional development and advancement.  We offer medical, dental, vision, and life insurances; short and long-term disability; a Company-match of 100% of a 6% contribution 401(k) plan; an Employee Assistance Plan; Health Savings Account, Flexible Spending Account, Health Reimbursement Account, and a wellness program

Skills

PythonAWSAzureGCPSQLCybersecuritySIEMSOCCISSPCompTIA

Similar Jobs

30

Senior Security Operations Analyst III

Clear · New York, New York, United States +1

Today

Senior Security Operations Engineer

Purestorage · Bangalore, India

Today

Senior Security Operations Manager

Purestorage · Bangalore, India

Today

Senior Security Operations Engineer

"Couchbase, Inc." · Bangalore, India

Yesterday

Senior Director – Cyber Security Operations

Livenation · Work From Home - North Carolina, United States of America · Remote

2 days ago

Senior Manager, Security Operations - Detection Engineering & Incident Response

Purestorage · Santa Clara, California +1 · Hybrid, Onsite

2 days ago

Sr. Security Operations Manager, Amazon Leo Security

Amazon

2 days ago

Senior Sailpoint Security Operations Analyst - Identity & Access Management

Pg · CINCINNATI GENERAL OFFICES, United States of America

3 days ago

Senior Security Operations Analyst

KPMG Australia · Melbourne, VIC, Australia · Hybrid

6 days ago

Senior Physical Security Operations Analyst

Draftkings · Boston, MA, United States of America

6 days ago

Senior Security Operations Engineer - 1 year Fixed Term

Leagueinc · Toronto, ON +1

6 days ago

Senior Manager, Security Operations

Calendly · Remote - US · Remote

6 days ago

Senior Security Operations Engineer

Tines · United States (Remote) · Remote

6 days ago

Senior Cyber Security Operations Analyst

Version 1 · Bengaluru, KA, India · Hybrid

1 week ago

Senior Cloud Security Operations Analyst

Intelcomgroup · Service Centre (Montreal) Lab, Canada

1 week ago

Senior Security Operations Engineer

Tandem Health · Stockholm · Onsite

2 weeks ago

Senior SOC Analyst, Security Operations

Bitpanda · Vienna, Vienna, Austria

2 weeks ago

Security Operations Center Analyst, Senior

Booz Allen Hamilton · USA, MD, Fort Meade (6910 Cooper Ave), United States of America

2 weeks ago

Senior Endpoint Security Operations Analyst (Global Security)

Rbc · 16 YORK ST:TORONTO, Canada

2 weeks ago

Senior Director, Engineering Operations & Security

Vida · United States · Remote

2 weeks ago

Senior Product Manager - Technical, World Wide Operations Security Tech(WWOS Tech)

Amazon

2 weeks ago

Senior IAM Security Engineer MFA & Cloud Operations

Verizon Communications · 22001 Loudoun County Pkwy, Ashburn, VA (VA0045), United States of America +1 · Remote, Hybrid

3 weeks ago

Sr. Security Operations Analyst

Default · Carmel, IN

3 weeks ago

Senior Security Operations Center (SOC) Analyst

Alteryx · Irvine, California, United States of America · Remote

3 weeks ago

Senior Security Operations Analyst

Fintech OS SRL · Bucharest, Bucharest, Romania

3 weeks ago

Senior Security Engineer, Operations

K2Spacecorporation · Los Angeles, CA

4 weeks ago

Senior Manager, Identity Security Operations

Us We · Seattle WA, United States of America · Hybrid, Onsite

4 weeks ago

Senior Security Operations Engineer

Includedhealth · Remote · Remote

4 weeks ago

Security -Sr Security Operations Engineer

WoodmenLife · Omaha, NE, USA +1 · Remote

4 weeks ago

Senior Manager, Global Security Operations

Allstate · USA - IL (Remote), United States of America · Remote

1 month ago
Remote Senior Security Operations Analyst - Onsite at corespecialtyinsurance | Hiring.Camp