Security Operations Center (SOC) Analyst
Company: Huntress
Location: Remote (Pacific Time Zone, US)
Compensation: $100,000 - $125,000 base salary, plus bonus and equity. May be eligible for on-call/call-in pay.
About Huntress
Huntress is a fully remote, global cybersecurity company founded by former NSA cyber operators. Our mission is to break down barriers to cybersecurity for all businesses. We protect over 4 million endpoints and 7 million identities worldwide with enterprise-grade, managed cybersecurity products, integrating our technology with our industry-defining Security Operations Center (SOC).
About the Role
Huntress is looking for a passionate and mission-driven Security Operations Center (SOC) Analyst to join our growing, elite team. In this remote role, you will be at the forefront of cybersecurity, triaging, investigating, responding to, and remediating a variety of intrusions daily. You'll have ample opportunities to progress your analyst skillset, accelerate your career growth, and contribute to protecting companies worldwide from cyberattacks.
What You'll Do
- Triage, investigate, and respond to alerts generated by the Huntress platform.
- Perform tactical reviews of EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediation steps.
- Conduct tactical malware analysis as part of alert investigations.
- Investigate suspicious Microsoft M365 activity and provide remediation.
- Assist with threat-related escalations from the Product Support team.
- Contribute to detection engineering creation and tuning efforts.
- Participate in projects aimed at improving analyst and partner outcomes.
- Engage in a collaboratively mentored team environment.
What You Bring to the Team
- 2+ years of experience in a SOC or Digital Forensics (DFIR) role.
- Demonstrated experience with Windows, Linux, and MacOS as attack surfaces.
- Demonstrated experience with basic Threat Actor tools and techniques (MITRE ATT&CK Framework, PowerShell, WMIC, Scheduled Tasks, SCM, Windows Domain/host Enumeration, Basic Lateral Movement, Persistence, Defense Evasion, offensive/Red Team TTPs).
- Demonstrated experience with static and dynamic malware analysis concepts.
- Working knowledge of Windows Administration or Enterprise Domain Administration (Active Directory, Group Policy, Domain Trusts).
- Working knowledge of core networking concepts (ports/protocols, NAT, IPs, VLANs).
- Working knowledge of web technologies and concepts (Web servers/applications, OWASP top 10).
- Effective communication skills to explain complex events to less technical audiences.
- Dedication to prioritizing customer needs.
- Strong sense of curiosity and a passion for learning.
Preferred Qualifications
- Previous experience in an MSP/MSSP/MDR role.
- Linux and MacOS investigative experience.
- Experience with scripting languages (PowerShell, Python, Bash, PHP, JavaScript, Ruby).
- Demonstrated experience on platforms like HackTheBox, TryHackMe, Blue Team Labs Online.
- Demonstrated experience with Cloud-based investigations (M365, Azure, AWS, GCP).
- Participation in cybersecurity competitions (CTFs, CCDC).
- Familiarity with MSP tools such as RMMs.
What We Offer
- 100% remote work environment.
- Generous paid time off (vacation, sick time, holidays).
- 12 weeks of paid parental leave.
- Highly competitive medical, dental, and vision benefits.
- 401(k) with a 5% contribution.
- Life and Disability insurance.
- Stock options for all full-time employees.
- $500 home office reimbursement.
- Annual education and professional development allowance.
- $75 USD/month digital reimbursement.
- Access to BetterUp platform for coaching.
About Huntress Culture
Huntress is committed to creating an inclusive culture where every team member is valued, has a voice, and is empowered. We do not discriminate based on legally protected characteristics. We actively discriminate against hackers.
Accommodations
If you require reasonable accommodation to complete your application, please contact accommodations@huntresslabs.com.