Manage IT risk and security operations, including risk assessment, incident management, and policy development.
About this role
This L2 SOC Analyst sits in the Security Operations Center Group of the Cyber Defense Operations Section, supporting a SOC that protects critical infrastructure. The role helps move security operations toward intelligence-led, automated defense.
The analyst uses LLMs and AI-augmented platforms for threat hunting, incident triage and forensic analysis. Work includes investigating complex incidents, analyzing containerized environments and Kubernetes clusters, improving controls, creating playbooks, tuning detection logic, and integrating AI feedback into SIEM/SOAR. The named stack includes Docker, Kubernetes, Python, Go, Bash, AWS, Azure, GCP and LLM-based security tools.
Applicants need a bachelor's degree in Computer Science, Cyber Security or an equivalent field, 5–8 years in SOC, incident response or security engineering, strong SIEM/SOAR knowledge, relevant certifications such as GCIH, GCSA, CKAD or CKS, and advanced English.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.