- Страна
- США
- Зарплата
- 80 000 $ – 100 000 $
Откликайтесь
на вакансии с ИИ

Security Operations Analyst - Evening Shift (5pm - 1:30am EST)
Отличное предложение для опытных специалистов: прозрачный диапазон зарплаты, наличие опционов и неограниченный оплачиваемый отпуск. Компания работает в востребованной нише SaaS-безопасности, что дает хорошие перспективы для карьерного роста.
Сложность вакансии
Роль требует солидного опыта (3–5 лет) в кибербезопасности, глубоких знаний Windows Security и навыков написания сложных SQL-запросов. Работа в вечернюю смену (EST) добавляет специфики в график, а необходимость менторства подразумевает высокий уровень ответственности.
Анализ зарплаты
Предложенная зарплата ($80k - $100k) находится в пределах рыночной нормы для уровня Middle/Senior SOC Analyst в США, хотя для топовых технологических хабов верхняя планка могла бы быть выше. Наличие опционов (equity) значительно повышает общую ценность компенсационного пакета.
Сопроводительное письмо
I am writing to express my strong interest in the Security Operations Analyst position at Blumira. With over 4 years of experience in SOC environments and a deep technical background in Windows endpoint security and SQL-based log analysis, I am confident in my ability to contribute to your Customer Experience team. My expertise aligns perfectly with your requirement for a professional who can not only triage complex security incidents but also serve as a technical mentor within the team.
Throughout my career, I have leveraged frameworks like MITRE ATT&CK to contextualize threats and have a proven track record of meeting strict SLA requirements while maintaining high-quality analysis. I am particularly drawn to Blumira’s mission of making enterprise-level security accessible to growing teams. The evening shift schedule fits my professional routine perfectly, allowing me to provide dedicated, high-level support during critical hours. I look forward to the possibility of bringing my analytical mindset and passion for cybersecurity to your innovative platform.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в blumira уже сейчас
Присоединяйтесь к команде Blumira и станьте ключевым экспертом в защите облачных сред и корпоративных сетей!
Описание вакансии
Security Operations Analyst
This role will work our Evening Shift (5pm - 1:30am EST)
About Blumira and Our Culture
Blumira is the security operations platform built for growing teams and partners supporting them, integrating comprehensive visibility, tools, and expert guidance to give IT and security teams peace of mind from knowing they never have to go it alone. Every business needs strong security and deserves tools built for them, not just the largest enterprises. In helping them, we help their customers, and, overall, make the Internet a safer place.
Our team is passionate about putting resilience in reach for every organization and team, keeping the business running smoothly and helping teams build their own expertise through daily security practice. To realize our vision, we're looking for inquisitive and driven teammates, like you! Be part of a friendly and supportive team that embraces who you are and offers you the opportunity to help build and scale the Ann Arbor tech security scene and to learn and grow with experienced SaaS security leaders. You will have the ability to make a big impact in the initial build of Blumira’s Customer Experience (CX) organization and take Blumira to the next level!
About the Opportunity
This is a multi-functional role for someone who’s passionate about helping others to protect their organization’s security to the fullest extent possible. Security Operations Analysts work closely with our customers to make sure they know their security is in good hands with Blumira, through performing Security Information and Event Management (SIEM) duties, security analysis, and technical support.
Key Responsibilities
- Deliver exceptional support experiences for our customers through advanced security expertise and thoughtful, empathetic communication
- Serve as a technical leader and mentor, helping guide other team members through positive influence and knowledge sharing
- Work closely with our customers to provide expert-level advisory services on complex security questions and product issues
- Lead troubleshooting efforts with customers and perform advanced log analysis to provide comprehensive context around security incidents
- Be on-call for rare critical security incidents and help lead response efforts
- Actively contribute to incident responses and help propose technical solutions
- Share your deep technical expertise across all levels of the Security Operations team, our customers, and colleagues throughout the organization
- Work closely with the Incident Detection Engineering team to triage critical and high priority security incidents
- Provide leadership and mentorship during security events
- Drive Security Operations team efficiency through process creation, optimization, and innovative feature ideas
- Work on special projects and initiatives to expand team skillsets and capabilities
- Regularly contribute to team content creation including how-to articles, documentation, and blogs
- Serve as a sought-after resource among team members for complex technical challenges
- Actively advocate for customers throughout the organization
Required Key Skills and Qualifications
- 3–5 years of professional experience in a cybersecurity-focused role (SOC, Incident Response, or Security Engineering).
- Strong technical proficiency in Windows endpoint security, including a deep understanding of registry keys, file systems, and OS hardening.
- Demonstrated experience with SQL, specifically the ability to write complex queries to extract and analyze security data.
- Working knowledge of industry frameworks, such as MITRE ATT&CK, NIST, or CIS, and how to apply them to real-world threat scenarios.
- Experience with SIEM platforms (e.g., Blumira, ELK, Splunk) for log correlation and event triaging.
- Proficiency with modern support tooling, specifically Zendesk (or similar ticketing platforms) and productivity suites like Google Workspace and Slack.
- Technical Versatility: The ability to quickly master new, specialized software platforms and security tools as the product landscape evolves.
- Outcome-Oriented: A track record of consistently meeting or exceeding KPIs and maintaining high quality while working under SLA pressure.
- Analytical Mindset: Proven ability to synthesize complex technical information into clear, concise summaries for both technical and non-technical stakeholders.
Bonus
- Relevant Industry Certifications: Possession of advanced security certifications such as CISSP, GCIH (GIAC Certified Incident Handler), GCFA, or Sec+.
- Networking Background: Previous experience in Network Administration or a deep understanding of TCP/IP, DNS, and firewall configuration to assist in troubleshooting connectivity-related security issues.
- Cloud Security Expertise: Familiarity with AWS, Azure, or GCP environments and their respective security logging and monitoring tools.
- Scripting Capabilities: Basic proficiency in Python or PowerShell to automate repetitive tasks or parse large datasets during incident investigations.
- Malware Analysis: Foundational knowledge of static and dynamic malware analysis or sandbox execution.
Perks and Benefits
- Competitive compensation and stock equity plan
- Unlimited PTO
- A flexible work environment that supports working from home
- Comprehensive benefits package that includes medical, dental, vision, and life insurance, as well as a company sponsored pre-tax retirement savings program
Applicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.
Please note that this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time, with or without notice.
This role requires sustained computer use and may involve extended periods of sedentary work.
This position may require occasional travel. The frequency and duration of travel will vary depending on business needs.
Blumira is an inclusive employer. We are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition or any protected category prohibited by local, state or federal laws.
Annual Salary Range
$80,000—$100,000 USD
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- SIEM
- SQL
- Windows Security
- MITRE ATT&CK
- NIST
- CIS
- Zendesk
- Incident Response
- Log Analysis
- Python
- PowerShell
- AWS
- Azure
- Google Workspace
Возможные вопросы на собеседовании
Проверка практического опыта использования отраслевых стандартов для классификации угроз.
Расскажите, как вы использовали фреймворк MITRE ATT&CK в своей предыдущей практике для анализа инцидентов или улучшения правил обнаружения?
SQL является ключевым требованием для анализа логов в данной роли.
Опишите наиболее сложный SQL-запрос, который вам приходилось писать для извлечения данных безопасности из SIEM или базы данных. Какие задачи он решал?
Позиция требует глубокого понимания безопасности Windows.
Какие изменения в реестре Windows или файловой системе могут свидетельствовать о попытке закрепления (persistence) злоумышленника в системе?
Роль предполагает лидерство и наставничество.
Приведите пример ситуации, когда вам приходилось обучать коллегу или выступать техническим лидером во время критического инцидента. Как вы передавали свои знания?
Проверка способности работать под давлением и соблюдать SLA.
Как вы приоритизируете задачи, когда одновременно поступает несколько алертов высокой критичности при строгих временных рамках SLA?
Похожие вакансии
Application Security Еngineer (AppSec)
Head of SOC (Центр мониторинга кибербезопасности)
Pentester (Offensive Security)
Специалист по информационной безопасности
Solution Sales Consultant (Cybersecurity)
Application security specialist
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США
- Зарплата
- 80 000 $ – 100 000 $