Jobiglo

No results.

Strategic Services Analyst

GreyCastle Security

Remote
Remote Senior 🇬🇧 English
Splunk Microsoft Sentinel QRadar Elastic MITRE ATT&CK Log analysis

Job description

About the role

The Strategic Services Analyst joins DeepSeas’ Threat Management practice to act as a trusted advisor for client security programs. Working remotely, you will bridge hands‑on SIEM engineering with strategic advisory, helping clients mature detection and response capabilities aligned with business goals.

Key responsibilities

  • Serve as the primary strategic point of contact for assigned clients, building trusted‑advisor relationships with security stakeholders.
  • Design, develop, and tune detection logic and use cases within client SIEM platforms, closing gaps identified through threat intelligence.
  • Lead regular briefings with client leadership on detection coverage, incident trends, and program maturity.
  • Develop and refine incident response playbooks and procedures in partnership with client security teams.
  • Conduct threat‑hunting activities across SIEM and EDR data, using frameworks such as MITRE ATT&CK.
  • Partner with internal SOC and detection engineering teams on escalations and ensure client‑specific content stays current.
  • Generate and present metrics on incident response activity, detection coverage, and program trends.
  • Provide guidance on malware and forensic findings, translating technical analysis into actionable recommendations.

Required profile

  • 5+ years of experience in cybersecurity, including hands‑on work with SIEM platforms.
  • At least 1 year in a SOC analyst or detection engineering role.
  • Strong log‑analysis skills and experience writing or tuning detection logic.
  • Working knowledge of MITRE ATT&CK and cloud‑based technologies.
  • Excellent client‑facing communication skills, comfortable presenting to non‑technical stakeholders and leadership.
  • Bachelor’s degree in Cybersecurity, Computer Science or a related field.

Required skills

  • SIEM platforms: Splunk, Microsoft Sentinel, QRadar, Elastic.
  • Detection logic development and tuning.
  • Log analysis.
  • MITRE ATT&CK framework.
  • Threat‑hunting techniques.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec GreyCastle Security.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 1 week from now

50 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

GreyCastle Security