Quick Overview
Job Description
Job Title: Principal SOC Analyst
Location: Cincinnati, OH (ONLY CANDIDATES LOCATED IN OHIO WILL BE CONSIDERED)
Position Type: Full-Time
Salary: $140,000 - $160,000 / year (dependent on experience)
Company Overview
IronRoad is conducting a confidential search for a Principal SOC Analyst on behalf of our Cincinnati-based client. In this role, you will act as a lead analyst on the floor, owning the assessment of security events and incidents across client environments, mentoring newer analysts, and delivering scheduled security briefings directly to executive stakeholders. (IMPORTANT TO NOTE: CANDIDATE MUST LIVE IN OHIO DUE TO CONTRACT STIPULATIONS)
What You'll Do
- Threat Hunting: Run proactive threat hunts across client environments to surface anomalous activity, active/prior compromises, and misconfigurations.
- Triage & Investigation: Investigate alerts across multiple detection technologies, scope incidents, and guide clients toward rapid remediation.
- Log & Event Monitoring: Continuously monitor SIEM platforms and log data for threats, intrusions, and security anomalies.
- Threat Intelligence Integration: Collaborate with the Cyber Threat Intelligence team to apply global threat trends directly to client data analysis.
- Incident Support & Remediation: Support containment and post-incident remediation efforts.
- Executive Reporting: Write clear, concise incident reports tailored for C-suite executive review.
- Detection & Tuning: Partner with detection engineering to validate detections and tune logic to reduce false positives without compromising coverage.
- Data Flow Optimization: Ensure security-relevant data reaches designated platforms and collaborate with cross-functional teams to resolve data pipeline gaps.
- Process & Workflow Ownership: Run sprint reviews for your workstream while maintaining current documentation, workflows, and SOC processes.
- Mentorship & Metrics: Mentor junior analysts and gather metrics to support daily, weekly, and monthly executive briefings.
What You Need
- Experience: 4+ years as a SOC Analyst, Detection Engineer, Security Content Developer, or Security Engineer.
- Network Analysis: Deep skills in PCAP data analysis, network traffic interpretation, indicator extraction, network protocols, and network architecture.
- EDR Expertise: Hands-on experience with major EDR platforms (CrowdStrike Falcon, SentinelOne, Carbon Black, or Microsoft Defender for Endpoint).
- Log & Dashboarding Tools: Proficiency with log analysis tooling, pattern recognition, and building/maintaining operational dashboards.
- Communication Skills: Ability to clearly communicate technical concepts to both technical staff (e.g., Network Engineers) and executive leadership (e.g., CFOs).
- Leadership & Attention to Detail: Proven capability to mentor others and a strong focus on high-precision incident investigation.
- Education: Bachelor's degree in computer science, Information Security, or a related field (or equivalent hands-on experience).
- Work Authorization: Must be eligible to work in the United States without sponsorship (Open strictly to US citizens physically residing in the US).
Nice to Have
- 6+ years of relevant security experience.
- Prior SOC or CSIRT experience on a 24x7 watch desk.
- Working knowledge of attacker tooling, malware families, and threat actor TTPs mapped to the MITRE ATT&CK framework.
- Strong foundation in incident response frameworks and root cause analysis (RCA).
- Track record of hunting unknown threats and tracking active threat campaigns/adversaries.
- Experience delivering managed network security monitoring (MSSP format) across multi-client environments.
- Hands-on experience configuring and managing firewalls, routers, and network security appliances.
- Process optimization mindset with a focus on cycle-time reduction.
Logistics & Benefits
- Schedule: Flexible schedule with occasional non-traditional hours and after-hours on-call rotations.
- Work Location: Cincinnati office - REQUIRED.
- Contingencies: Offer contingent upon passing background, drug screen, and reference checks.
- Benefits: Full corporate benefits package (Medical, Dental, Vision, 401(k), Paid Time Off).
Similar jobs
- EV
End User Support Engineer Lead
NewEvolver
Bethesda, MD🇺🇸Hybrid15 hours agoAWSSplunkTCP/IP+3Technology - EV
Database Administrator / DASH Lead
NewEvolver
Bethesda, MD🇺🇸Hybrid15 hours agoMongoDBMySQLOracle+7Technology - AS
Sr. Automation Test Engineer
NewApex Systems
Fairfax, VA🇺🇸Remote15 hours agoScrumAgileRoot Cause AnalysisTechnology - AS
Sr. ISSO - PLACEMENT
NewApex Systems
Oxon Hill, MD🇺🇸HybridYesterdayTechnology - AS
Data Center Infrastructure Engineering
Apex Systems
Charlotte, NC🇺🇸Hybrid3 days agoTechnology - AS
Jr. ISSO - PLACEMENT
Apex Systems
Oxon Hill, MD🇺🇸Hybrid4 days agoAWSAzureTechnology - CA
Power Platform Developer
NewCapgemini America, Inc.
United States🇺🇸Hybrid15 hours agoAzureGenerative AIPower BITechnology - IN
Software Engineer (C++)
NewInfoPeople Corp
TX🇺🇸Hybrid15 hours agoC++Technology - AC
Data Analyst
NewACO, Inc.
Casa Grande, Arizona🇺🇸On-site9 minutes agoSQLETLPower BITechnology - E&
IT Support Analyst I
NewEckert & Ziegler Isotope Products, Inc.
Valencia, California🇺🇸$35 - $38/hrOn-site9 minutes agoMFAActive DirectoryDNSTechnology - RC
Database Administrator - SQL DBA
NewRETIREMENT CLEARINGHOUSE LLC
Charlotte, North Carolina🇺🇸$92k - $102k/yrRemote9 minutes agoSQLSQL ServerT-SQL+1Technology - VS
Firmware Developer
NewVE Solutions
Maple Heights, Ohio🇺🇸On-site9 minutes agoEmbedded SystemsC++IoTTechnology