Senior Security Analyst - Project Lead

Jobs via Dice • United State
Remote Visa Sponsorship Relocation
Apply
AI Summary

Lead security monitoring and incident response operations for Nexxora Inc. in Columbia, SC. Analyze security events across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify and mitigate threats. Requires 2+ years experience with MITRE ATT&CK framework and strong technical skills in security operations.

Key Highlights
100% remote role with SC residency requirement
H1B visa sponsorship available
12-month contract with possibility of extension
Requires 2+ years experience with MITRE ATT&CK framework
Must be local to Columbia, SC or willing to relocate
Key Responsibilities
Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.
Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.
Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
Recommend updates to SOC playbooks and workflows based on real-world investigations, fine-tune detection rules, alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned, integrate new threat intelligence feeds into workflows, and proactively hunt for threats using up-to-date tactics, techniques, and procedures (TTPs).
Serve as a customer-facing SME, selling the value of client services by demonstrating capabilities and resolving issues.
Document processes, runbooks, and troubleshooting steps related to SOC operations.
Coordinate with engineering, SOC, and agency staff as needed to meet goals.
Technical Skills Required
Security Monitoring Incident Response MITRE ATT&CK framework Dashboard Creation Reporting Phishing Investigation Malware Investigation Policy Violation Investigation SOC Playbook Updates Detection Rule Tuning Threat Intelligence Integration XDR Platform Linux Administration Network Administration Firewall Administration VPN Technology Active Directory Administration Intrusion Detection/Prevention Systems
Benefits & Perks
H1B visa sponsorship
Relocation assistance
12-month contract with extension possibility
Nice to Have
Experience with Palo Alto Cortex XSIAM/XDR platform
Knowledge of Linux, network administration and network design
Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems
CISSP, CISA, CISO or equivalent advanced security certification
Additional relevant certifications (e.g., CEH, OSCP, GPEN)
Vendor certifications related to information security

Job Description


Dice is the leading career destination for tech experts at every stage of their careers. Our client, Nexxora Inc., is seeking the following. Apply via Dice today!

SOC ANALYST-Security Analyst - Project Lead

Location-Columbia, SC- 100% REMOTE-LOCAL TO SC non locals also fine if the candidate willing to relocate

Visa-H1BEAD/EAD/USC

Interview Process: 1 Round of Virtual/Online Interviews - potential for second round of in-person interviews

Duration of the Contract: 12 Months

Possibility for Extension: Yes

Work Location: Role is 100% Remote

Candidate location: SC residency required.

Additional Information: Preference will be given to candidates that are local to SC and are able to come onsite for project needs.

Daily Duties / Responsibilities:

  • Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.
  • Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.
  • Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures.
  • Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
  • Recommend updates to SOC playbooks and workflows based on real-world INVESTIGATIONS, fine-tune detection rules. Alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
  • Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned. Integrate new threat intelligence feeds into workflows and proactively hunt for threats using up-to date tactics, techniques, and procedures (TTPs)
  • Serve as a customer-facing SME, "selling the value of Client services by demonstrating capabilities and resolving issues.
  • Document processes, runbooks, and troubleshooting steps related to SOC operations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Required Skills (rank in order of Importance):

  • 2+ Years of Experience with Security Monitoring and Incident Response.
  • 2+ Years of Experience with MITRE Telecommunication&CK framework.
  • 2+ Years of Experience with dashboard creation and reporting.

Preferred Skills (rank in order of Importance):

  • Experience with the Palo Alto Cortex XSIAM/XDR platform.
  • Knowledge of Linux, network administration and network design.
  • Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems.
  • Candidate is local to Columbia, SC or surrounding city in South Carolina

Required Education/Certifications:

  • Associate's degree in an information technology or information security related field
  • Four years of relevant work experience may be substituted in lieu of education
  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • Vendor certifications related to information security.

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

Motion Recruitment

United State

Application Security Engineer

Cyber Security
•
10m ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State

Staff Application Security Engineer

Cyber Security
•
19m ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Agility Robotics

United State

Subscribe our newsletter

New Things Will Always Update Regularly