ECCO Select is a talent acquisition and consulting company specializing in people, process and technology solutions. We provide the talent behind the technology enabling our clients to achieve their goals. For more information about ECCO Select, visit us at www.eccoselect.com.
Position Title: Sr. SOC Analyst (1st shift 7am-3pm CST)
Location Information
Remote
Position Responsibilities:
As a Senior SOC Analyst, you will play a critical role in strengthening security operations and enhancing proactive cyber defense. The ideal candidate will focus on eliminating workflow inefficiencies, expanding threat detection, and driving operational excellence within the Security Operations Center (SOC). This role requires hands-on analysis, a keen eye for continuous improvement, and collaboration across InfoSec teams to elevate our detection, response, and threat-informed defense capabilities.
Key responsibilities include:
- Identifying and resolving operational and workflow inefficiencies that impact response effectiveness or create friction for SOC analysts.
- Expanding detection gap coverage through new use cases, improved telemetry, and refined detection logic to increase threat visibility.
- Reducing false positives and increasing detection fidelity through tuning and ongoing optimization of tools and monitoring platforms.
- Collaborating with InfoSec and platform teams to enhance monitoring platforms and tune controls.
- Driving targeted threat hunts to proactively uncover risk, enable actionable detections, and strengthen the organization’s overall security posture.
Threat-Informed Defense & Detection Engineering:
- Utilize internal and external threat intelligence, risk insights, and adversary research to guide defensive actions and detection strategies.
- Develop, tune, and optimize SIEM/SOAR, EDR, NDR, and log analytics solutions to enhance alerting quality and reduce unnecessary noise.
- Engineer, test, and deploy new detection logic, alerting mechanisms, analytics, and MITRE ATT&CK-aligned use cases to address sophisticated threat scenarios.
- Identify preventive and detective control gaps, collaborating with stakeholders to implement enhancements that close exposure.
SOC Operations Maturity & Operational Excellence:
- Partner with leadership to refine SOC responsibilities, define skill requirements, and help establish operational targets and metrics.
- Continuously seek opportunities to streamline execution, automate repetitive tasks, and remove process friction points for analysts.
- Translate observed detection gaps into measurable improvements using new detections, processes, or automation.
Threat Hunting:
- Conduct hypothesis and intelligence-driven threat hunts to identify malicious activity, suspicious behavior, or weaknesses not directly observable via automated monitoring.
- Document hunt findings and collaborate with leadership and stakeholders on remediation and strategic follow-up actions.
- Evolve hunting methodologies and techniques in tandem with the evolving threat landscape, leveraging new tools or automations as appropriate.
Incident Response & Security Event Handling:
- Participate in the management, escalation, and resolution of security events and incidents across the organization.
- Independently and collaboratively identify, assess, report, and drive recovery from security incidents.
- Be available for after-hours response when critical incidents arise, supporting business continuity and SOC objectives.
Success in this role is marked by your ability to enhance detection fidelity and reduce noise through thoughtful tuning, close detection gaps with MITRE ATT&CK-aligned analytics and hunts, and continuously drive operational improvements that enable higher speed, lower friction, and greater confidence throughout SOC operations.
Essential Skills, Experience
- 3–5 years of experience in a security operations center or in an operational security program.
- Deep hands-on expertise in SIEM, SOAR, EDR, NDR, or log analytics platforms with a proven record of tuning and optimizing detection and response capabilities.
- Thorough understanding of incident response, detection engineering, threat hunting, and/or cyber threat intelligence.
- Demonstrated ability to identify process, workflow, or technology-related inefficiencies and lead improvements toward operational maturity.
- Experience conducting threat hunts and translating intelligence into actionable detection logic or process enhancements.
- Strong analytical, investigative, documentation, and communication skills.
- Ability to balance security best practices with pragmatic business needs as part of a risk-managed program.
- Comfortable working on a remote, cross-functional InfoSec team and contributing to continuous improvement culture.
- Willingness to respond to after-hours incidents if required.
Qualifications:
- Bachelor’s degree in Computer Science, Information Security, or related field – or equivalent hands-on experience/certifications (e.g., GIAC, GCIA, GCIH, CISSP, etc.).
- Professional certifications relevant to security operations, incident response, or detection engineering are desirable.
ECCO Select is committed to hiring and retaining a diverse workforce. Our policy is to provide equal opportunity to all people without regard to race, color, religion, national origin, ancestry, marital status, veteran status, age, disability, pregnancy, genetic information, citizenship status, sex, sexual orientation, gender identity or any other legally protected category. Veterans of our United States Uniformed Services are specifically encouraged to apply for ECCO Select opportunities.
Equal Employment Opportunity is The Law
This Organization Participates in E-Verify

