Senior SOC Analyst (L3) Job at Cymansys Solutions LLC, Denver, CO

MENjMWkxK24vUDN5czJmaFpSVGt6bW9LN1E9PQ==
  • Cymansys Solutions LLC
  • Denver, CO

Job Description

Role: Senior SOC Analyst (L3)
Location: Denver, CO 80202
Job Type: Contract
Duration: 12 Months



Project-Specific Prerequisite Skill s:

  • Rapid7 InsightIDR (XDR+SIEM)
  • Rapid7 InsightConnect (SOAR)

Key Responsibilities :

  • Incident Detection & Response : Lead incident response activities, ensuring quick detection, analysis, and resolution of security incidents. Provide hands-on support to the SOC team during high-priority events.
  • SIEM & SOAR Management : Manage and configure Rapid7 InsightIDR and InsightConnect, including log source integration, custom parser development, and optimization of correlation rules and use cases.
  • Threat Analysis : Conduct in-depth analysis of security events to identify successful intrusions and compromises. Differentiate false positives from genuine threats to minimize incident noise.
  • Automation & Orchestration : Leverage Ansible, Puppet, Python, and PowerShell to automate repetitive SOC tasks, enhance incident response processes, and improve efficiency.
  • Configuration Managemen t: Use Ansible and Puppet to standardize and manage SOC system configurations across multiple environments.
  • Investigation Management : Lead investigations of incidents escalated by Level 1 analysts and ensure thorough documentation and resolution.
  • Quick Mitigation Techniques : Implement interim defensive measures until permanent solutions can be deployed.
  • Security Enhancements : Develop and maintain playbooks in Rapid7 InsightConnect to orchestrate and streamline SOC operations.
  • Gap Analysis & Recommendations : Identify gaps in the security environment and recommend appropriate measures for risk mitigation.
  • Vulnerability Awareness : Stay up to date with the latest vulnerabilities, threat advisories, and penetration techniques to proactively defend against emerging risks.

Desired Skills :

  • 15+ years of relevant experience
  • Strong experience with Rapid7 InsightIDR and InsightConnect, including advanced configuration, rule development, and integration.
  • Proficiency in automation and scripting tools, including Python, PowerShell, and Bash, to streamline security operations.
  • Hands-on expertise with Ansible and Puppet for configuration management, automation, and environment standardization.
  • Advanced knowledge of SIEM and SOAR tools, with proven experience optimizing detection and response workflows.
  • Familiarity with incident response frameworks such as NIST, MITRE ATT&CK, and SANS.
  • Strong understanding of firewalls, IDS/IPS, antivirus, EDR, and behavioral analytics tools.
  • Experience with API integrations for security toolsets and custom reporting solutions.
  • Knowledge of log analysis tools, threat intelligence platforms, and vulnerability scanners

Job Tags

Permanent employment, Contract work, Interim role,

Similar Jobs

WakeMed Health & Hospitals

Ambulatory Care Nurse, Infusion Job at WakeMed Health & Hospitals

Overview:The Ambulatory Care Nurse, Infusion is responsible for providing physician support and as applicable, comprehensive nursing care to patients and their families. This RN position is responsible for providing skilled, exceptional patient care through the administration... 

Staff Financial Group

Marketing Professional Job at Staff Financial Group

 ...Coordinator to join our team in our Marietta office with ability to work from home a few days a week. The Content Marketing Coordinator will be...  ...: Content creation Create compelling content to engage target audiences through all channels. Use analyzed data to create... 

Corona Regional Medical Center

Critical Care Nurse Educator Job at Corona Regional Medical Center

 ...Responsibilities Critical Care Nurse Educator- ICU / Stepdown located at Corona Regional Medical Center in Corona, CA Full...  ...hospitals, behavioral health facilities, outpatient facilities and ambulatory care access points, an insurance offering, a physician network... 

Signal of New England

Security Supervisor Job at Signal of New England

 ...Security Site Supervisor Schedule: Monday-Friday 6:00 AM - 3:00 PM Day Shift (On-call availability 24/7 if needed) Location: Quincy, MA Pay Range: $23.00 to $25.00 (Depending on experience) Why Join us?... 

Get It - Professional Services

Security Architect Consultant - Remote Job at Get It - Professional Services

We are looking for an experienced and proactive Security Architect Consultant to help enhance the Master e-File (MeF) system in alignment with a forward-thinking architecture. In this critical role, you will be the go-to expert for all security-related decisions, working...