L3 SOC Monitoring Analyst Needed for Cybersecurity Operations
Experience: 8–10 Years
Mode- Remote (Anywhere in the world)
Role Type: Full-time | SOC Operations
Language - Able to speak Portuguese and English (Portuguese is mandatory)
Project will Start from January 2026
Shift - Rotational 24*7 (AS per USA EST time zone)
Budget - Open
#Role Summary#
We are seeking an experienced L3 SOC Analyst to lead advanced monitoring, threat investigation, incident response, and escalation handling within a 24/7 Security Operations Center. The candidate must have deep expertise in SIEM platforms, especially Microsoft Sentinel and Microsoft Defender, along with strong analytical and incident-handling capabilities.
Key Responsibilities
1. Perform advanced threat monitoring, investigation, and triage for security incidents.
2. Lead incident response, including containment, eradication, and recovery actions.
3. Manage and fine-tune SIEM rules, analytics, alerts, and correlation logic.
4. Act as escalation point for L1/L2 SOC Analysts and provide technical guidance.
5. Monitor and analyze threats through Microsoft Sentinel, Microsoft Defender, and other SIEM tools.
6. Conduct in-depth root cause analysis, malware analysis, and threat hunting activities.
7. Coordinate with internal teams and stakeholders during major incidents.
8. Create and update SOPs, incident reports, use cases, playbooks, and dashboards.
9. Support SOC optimization, tool integrations, and continuous improvement initiatives.
#Required Skills & Expertise#
• 8–10 years of experience in SOC Monitoring, Incident Response, Threat Hunting, and security operations.
• Strong hands-on expertise with:
1. Microsoft Sentinel (KQL queries, analytics rules, workbooks).
2. Microsoft Defender Suite (Defender for Endpoint, Identity, Cloud Apps).
3. Enterprise SIEM platforms (rule creation, tuning, correlation, dashboards).
• Deep understanding of:
Attack techniques (MITRE ATT&CK framework)
Malware behavior
Network security & endpoint security concepts
Cloud security fundamentals
• Experience in handling critical incidents, major breaches, and IR workflows.
• Strong analytical, documentation, and communication skills.
Preferred Certifications
1. Microsoft SC-200, SC-300, SC-100
2. CEH, ECSA, GCIH, GCIA, GCFA (preferred but not mandatory)
Education
Bachelor’s degree in Computer Science, IT, Cybersecurity, or equivalent.
Apply tot his job
Apply To this Job