×
Register Here to Apply for Jobs or Post Jobs. X

Sr. Security Analyst - Security Operations Center; SOC

Job in Miami, Miami-Dade County, Florida, 33222, USA
Listing for: Lennar
Full Time position
Listed on 2026-07-08
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 90000 - 120000 USD Yearly USD 90000.00 120000.00 YEAR
Job Description & How to Apply Below
Position: Sr. Security Analyst - Security Operations Center (SOC)

Senior SOC Analyst

Lennar is a leading home builder dedicated to building quality homes and providing exceptional customer service.

The Senior SOC Analyst plays a critical role in leading advanced incident response efforts, managing escalations, and working closely with our MDR partner to ensure rapid detection, containment, and remediation of security threats.

Responsibilities Incident Response & Threat Management
  • Lead investigations of complex, high severity security incidents from detection through containment, remediation, and recovery, coordinating across internal teams and the MDR partner.
  • Act as the primary escalation point for Tier 3 alerts and incidents and perform root cause analysis with actionable remediation plans.
  • Serve as the primary liaison to the MDR provider: validate and triage MDR alerts, ensure alignment on response protocols and escalation procedures, and provide tuning recommendations to improve detection fidelity.
  • Develop and maintain incident response playbooks, runbooks, and workflows.
  • Analyze threat actor tactics, techniques, and procedures (TTPs) and translate findings into improved defenses and detection content.
Threat Hunting
  • Conduct proactive, hypothesis-driven threat hunts across endpoint, identity, network, and cloud telemetry, leveraging threat intelligence and the MITRE ATT&CK framework to surface threats that evade automated detection.
  • Operationalize hunt findings into durable detection logic and response procedures.
Automation & Process Improvement
  • Identify recurring, manual, or heavily manual SOC processes and design automation to reduce analyst effort and accelerate response.
  • Build, test, and maintain automated playbooks and response workflows in a SOAR platform (e.g., Torq, Microsoft Sentinel Automation Rules, Logic Apps) for enrichment, triage, containment, and case management.
  • Develop, tune, and operationalize detection and correlation rules through automated validation and deployment.
  • Measure the impact of automation against SOC performance metrics (MTTD, MTTR, alert volume, false-positive rate) and iterate based on results.
  • Partner with Detection Engineering and Security Engineering to integrate tooling, close telemetry gaps, and standardize repeatable response.
Security Monitoring & Analysis
  • Monitor and analyze logs and alerts across SIEM, EDR, identity, and cloud platforms.
  • Correlate data across multiple sources to identify patterns, anomalies, and emerging threats.
  • Maintain situational awareness of the external threat landscape and internal security posture.
Mentorship & Reporting
  • Mentor Tier 1 and Tier 2 analysts, lead knowledge-sharing, and uplevel team investigative tradecraft and tooling proficiency.
  • Document incident timelines, findings, and lessons learned.
  • Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection coverage, false-positive rate), and use them to prioritize tuning and automation efforts.
  • Generate executive-level and technical reports on SOC performance and incidents, supporting compliance and audit efforts through accurate record-keeping and evidence handling.
Requirements
  • Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier 2/Tier 3 SOC or escalation capacity.
  • CompTIA Security+ or equivalent certification.
  • Proven experience leading incident response triage, investigation, and remediation, including working directly with MDR partners.
  • In-depth knowledge of security tools and technologies, including SIEM/SOAR platforms (e.g., Microsoft Sentinel), endpoint detection and response solutions (e.g., Microsoft Defender XDR, Palo Alto Cortex XDR), and ticketing systems (e.g., Service Now).
  • Demonstrated ability to author and tune detection content (e.g., KQL in Sentinel/Defender) and operationalize it into production.
  • Experience analyzing cloud security telemetry (e.g., Azure/Entra sign-in logs, AWS Cloud Trail).
  • Hands-on experience building or maintaining automated playbooks and response workflows in a SOAR platform.
  • Strong understanding of network security concepts, operating systems, and malware analysis techniques.
  • Familiarity with the MITRE ATT&CK framework and threat intelligence platforms.
  • Excellent analytical, problem-solving, and communication skills, with the ability to work under pressure and manage multiple priorities.
Preferred Qualifications
  • Certifications such as CISSP, GCIA, GCIH, GCFA, CySA+, eJPT/PJPT, CEH, SC-200.
  • Scripting and automation skills (Python, Power Shell) for tooling, enrichment, and analysis.
  • Experience supporting an EDR platform migration (e.g., Cortex XDR to Microsoft Defender XDR).
  • Experience with or strong interest in AI-assisted triage and agentic SOC tooling to augment analyst workflows.
  • Broader cloud security experience across AWS, Azure, and OCI.
  • Experience with Microsoft Sentinel, Proofpoint, and Palo Alto Cortex XDR.
Work Environment
  • Mandatory 4 days onsite; 1 day remote.
  • On-call rotation may be required for critical incident response.
  • Collaborative team environment with…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary