remote

Salary
$75,000–$85,000
Posted
Jul 9, 2026
Location
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A senior-level security operations role focused on leading complex threat investigations — covering ransomware, BEC, APTs, cloud attacks, and more — within a 24x7 MDR environment. The position carries technical leadership responsibilities, including mentoring junior analysts and acting as an escalation point during major incidents, while also contributing to detection engineering through rule development and automated playbooks. Suited to candidates with deep, hands-on SOC or incident response experience across endpoint, identity, cloud, and network domains.

Senior level · 6+ years · Remote · Full-time

Must have (5)
SIEMEDR/XDRSOARActive DirectoryWindows internals
Nice to have (6)
Microsoft Sentinel, Splunk Enterprise Security, Ibm Qradar or Elastic SecurityCrowdStrike Falcon, Microsoft Defender For Endpoint, Sentinelone, Cortex Xdr or Vmware Carbon BlackMicrosoft Defender XDRCyberArk, Sailpoint or OktaAWS or AzureMicrosoft 365

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 3,700 people nationally plausibly meet what this posting asks for (information security analysts). range 1,100–5,600

Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.

What won't set you apart
SIEM55%Active Directory50%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095).

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (8)

The job title is not stated in the posting; based on the responsibilities (Tier III-level escalation, mentoring Tier I/II analysts, leading complex investigations in a 24x7 SOC/MDR environment), this is classified as a Senior Information Security Analyst. the title states no level accordingly.

The 6–10+ year range is treated as a 6-year minimum for total experience.

Specific SIEM, EDR/XDR, and IAM tools (Sentinel, Splunk, QRadar, Elastic, CrowdStrike, Defender, SentinelOne, Cortex XDR, Carbon Black, CyberArk, SailPoint, Okta) appear in the responsibilities/stack narrative rather than a hard-requirements section; they are marked preferred. The requirements section gates only on the capability categories (SIEM, EDR/XDR, SOAR, threat intelligence platforms) generically.

The posting mentions a Hybrid Work Model (2–3 days in office) in the benefits section, but the caller has declared this a fully-remote role; remote is set to true per caller instruction.

No compensation figures are provided in the posting.

The posting references both US and international locations (Canada, UK, India) in the company header, but no specific work location is stated for this role; the US-based flag defaults to true per instructions.

Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): MITRE ATT&CK Framework.

Caller marked this a fully-remote role — scored against the national candidate pool.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗