Analyze threat actor tactics, techniques, and procedures (TTPs) and translate findings into ... Experience with Microsoft Sentinel, Proofpoint, and Palo Alto Cortex XDR. Work Environment
Analyze threat actor tactics, techniques, and procedures (TTPs) and translate findings into ... Experience with Microsoft Sentinel, Proofpoint, and Palo Alto Cortex XDR. Work Environment
Senior Security Engineer
Austin, TX · On-site
$112K - $209K/yr
Manager, Security Operations; Forensics and Incident Response; Security Intelligence and other ... Microsoft Graph, and cloud-native technologies • Implementing and optimize Azure security ...
Senior Security Engineer
Austin, TX · On-site
$112K - $209K/yr
Manager, Security Operations; Forensics and Incident Response; Security Intelligence and other ... Microsoft Graph, and cloud-native technologies • Implementing and optimize Azure security ...
The Security Operations Center Analyst is responsible for the administration, support, optimization ... Familiarity with Microsoft Azure and cloud security monitoring. Functions * The position is ...
The Security Operations Center Analyst is responsible for the administration, support, optimization ... Familiarity with Microsoft Azure and cloud security monitoring. Functions * The position is ...
Security Operations Analyst Associate (Exam SC-200) Compensation: * This position is full-time ... As a Microsoft System Integrator with a Managed, specialized level partnership status, Invoke ...
Security Operations Analyst Associate (Exam SC-200) Compensation: * This position is full-time ... As a Microsoft System Integrator with a Managed, specialized level partnership status, Invoke ...
Security Operations Auditor
San Antonio, TX · On-site
$24 - $24.50/hr
Analyze trends and recurring operational issues, recommending process improvements where ... Proficiency with Microsoft Office, particularly Excel. Preferred * Experience working with ...
Security Operations Auditor
San Antonio, TX · On-site
$24 - $24.50/hr
Analyze trends and recurring operational issues, recommending process improvements where ... Proficiency with Microsoft Office, particularly Excel. Preferred * Experience working with ...
Automate security analysis, administration and remediation procedures, workflows and tasks * Maintain awareness of trends in security regulatory, technology, and operational requirements
Automate security analysis, administration and remediation procedures, workflows and tasks * Maintain awareness of trends in security regulatory, technology, and operational requirements
Operations Analyst
Addison, TX · Hybrid
$23.44/hr
Intermediate Microsoft Excel and Word skills, including experience with formulas, pivot tables, and ... or security clearance requirements, including, as applicable: * The California Fair Chance Act
Quick apply
Operations Analyst
Addison, TX · Hybrid
$23.44/hr
Intermediate Microsoft Excel and Word skills, including experience with formulas, pivot tables, and ... or security clearance requirements, including, as applicable: * The California Fair Chance Act
The Security Operations Center Analyst is responsible for the administration, support, optimization ... Familiarity with Microsoft Azure and cloud security monitoring. About Us Oceaneering is a global ...
The Security Operations Center Analyst is responsible for the administration, support, optimization ... Familiarity with Microsoft Azure and cloud security monitoring. About Us Oceaneering is a global ...
Security Operations Center (SOC) Analyst Duration : 6 months Location : Houston, TX Schedule ... Industry certification such as CompTIA Security+, CompTIA CySA+, Microsoft SC-200, Cisco CyberOps ...
Security Operations Center (SOC) Analyst Duration : 6 months Location : Houston, TX Schedule ... Industry certification such as CompTIA Security+, CompTIA CySA+, Microsoft SC-200, Cisco CyberOps ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
DALPI2-Mfg Operations Analyst 2 - D25-Mfg Operations Analyst-General
San Antonio, TX · On-site
$34.57 - $45.78/hr
Join Boeing's Defense, Space, and Security division in San Antonio, TX as a Manufacturing ... Microsoft Office, including PowerPoint and Excel. - Ability to work any shift; regular onsite ...
DALPI2-Mfg Operations Analyst 2 - D25-Mfg Operations Analyst-General
San Antonio, TX · On-site
$34.57 - $45.78/hr
Join Boeing's Defense, Space, and Security division in San Antonio, TX as a Manufacturing ... Microsoft Office, including PowerPoint and Excel. - Ability to work any shift; regular onsite ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
Operations Analyst
Irving, TX · On-site
As an Operations Analyst, you will support and lead specific business and client initiative with a ... Proficiency in all other Microsoft Office applications Other Competencies/Qualifications:
Operations Analyst
Irving, TX · On-site
As an Operations Analyst, you will support and lead specific business and client initiative with a ... Proficiency in all other Microsoft Office applications Other Competencies/Qualifications:
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
Coordinate analyst workload, operational coverage, and shift execution. * Ensure consistent execution of procedures, escalation paths, and operational workflows. * Lead real-time security event ...
Security Operations Auditor
$24 - $24.50/hr
Analyze trends and recurring operational issues, recommending process improvements where ... Proficiency with Microsoft Office, particularly Excel. Preferred * Experience working with ...
Quick apply
Security Operations Auditor
$24 - $24.50/hr
Analyze trends and recurring operational issues, recommending process improvements where ... Proficiency with Microsoft Office, particularly Excel. Preferred * Experience working with ...
Security Specialist
Coppell, TX · On-site
... Microsoft security stack -- Defender, Sentinel, Purview, and Azure security operations are your working environment, not your stretch goals * A threat hunter by instinct -- you analyze logs ...
Security Specialist
Coppell, TX · On-site
... Microsoft security stack -- Defender, Sentinel, Purview, and Azure security operations are your working environment, not your stretch goals * A threat hunter by instinct -- you analyze logs ...
Cybersecurity Lead
Houston, TX · On-site
Requirements CYBERSECURITY LEAD - MICROSOFT SECURITY STACK Cybersecurity Lead Microsoft Security ... security operations, and leading a team of security engineers and analysts. This is a high ...
Cybersecurity Lead
Houston, TX · On-site
Requirements CYBERSECURITY LEAD - MICROSOFT SECURITY STACK Cybersecurity Lead Microsoft Security ... security operations, and leading a team of security engineers and analysts. This is a high ...
... operational transitions, thought leadership, and talent development activities within the Microsoft Azure and AI security space A successful candidate would possess these skills: * Ability to work ...
... operational transitions, thought leadership, and talent development activities within the Microsoft Azure and AI security space A successful candidate would possess these skills: * Ability to work ...
Hands on experience with the administration of Microsoft WSUS. Proficient in the operation and ... security techniques and products desired SANS GCIA Certified Intrusion Analyst training and or ...
Hands on experience with the administration of Microsoft WSUS. Proficient in the operation and ... security techniques and products desired SANS GCIA Certified Intrusion Analyst training and or ...
Cloud Security Senior Manager - Azure Infrastructure & AI
Fort Worth, TX · On-site
$62.75 - $83.50/hr
... operational transitions, thought leadership, and talent development activities within the Microsoft Azure and AI security space A successful candidate would possess these skills: * Ability to work ...
Cloud Security Senior Manager - Azure Infrastructure & AI
Fort Worth, TX · On-site
$62.75 - $83.50/hr
... operational transitions, thought leadership, and talent development activities within the Microsoft Azure and AI security space A successful candidate would possess these skills: * Ability to work ...
Microsoft Security Operations Analyst information
See Texas salary details
$16.35 - $20.01
4% of jobs
$20.01 - $23.68
5% of jobs
$23.68 - $27.34
9% of jobs
$27.34 - $31.01
1% of jobs
$33.49 is the 25th percentile. Wages below this are outliers.
$31.01 - $34.67
7% of jobs
$34.67 - $38.34
15% of jobs
$38.34 - $42
4% of jobs
The median wage is $43.43 / hr.
$42 - $45.67
9% of jobs
$45.67 - $49.33
11% of jobs
$50.77 is the 75th percentile. Wages above this are outliers.
$49.33 - $53
22% of jobs
$53 - $56.66
12% of jobs
$16
$41
$56
How much do microsoft security operations analyst jobs pay per hour?
Is a Microsoft Security Operations Analyst a stressful job?
How much does a Microsoft Security Operations Analyst make?
What are the typical responsibilities of a Microsoft Security Operations Analyst?
A typical day for a Microsoft Security Operations Analyst involves monitoring security alerts from Microsoft Sentinel and other security platforms, investigating suspicious activities, and responding to potential threats or incidents. Analysts may also conduct vulnerability assessments, review logs, create incident reports, and recommend improvements to security posture. Collaboration is central to the role, as you will often work with IT teams, threat intelligence analysts, and management to coordinate responses and refine security processes. Over time, this position offers opportunities to specialize in advanced threat hunting, security architecture, or leadership within the cybersecurity field.
What are the key skills and qualifications needed to thrive in the Microsoft Security Operations Analyst position, and why are they important?
A Microsoft Security Operations Analyst is responsible for monitoring, detecting, investigating, and responding to security threats within an organization's IT environment. They use Microsoft security solutions, such as Microsoft Defender and Sentinel, to analyze security incidents and mitigate risks. Their role involves threat management, vulnerability assessment, and implementing security best practices to protect organizational assets. Analysts work closely with IT teams to improve security posture and ensure compliance with industry regulations.

Full-time
Medical, Dental, Vision, Retirement
Re-posted 13 days ago
Lennar rating
8.0
Based on 46 frontline employees who took The Breakroom Quiz
18th of 80 rated construction
Job description
We are Lennar
Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500 company and consistently ranked among the top homebuilders in the United States.
Join a Company that Empowers You to Build Your Future
We are seeking a highly skilled and experienced Senior SOC Analyst to join our cybersecurity team. This role is critical in leading advanced incident response efforts, managing escalations from cross functional teams and working closely with our MDR partner to ensure rapid detection, containment, and remediation of security threats. The ideal candidate will have deep technical expertise, strong analytical skills, and a proactive mindset toward incident response and continuous improvement.
A career built on defending digital infrastructure.
A career focused on proactive threat detection and response.
A career that protects critical assets and enables secure business operations.
Your Responsibilities on the Team
Incident Response & Threat Management
Lead investigations of complex, high severity security incidents from detection through containment, remediation, and recovery, coordinating across internal teams and the MDR partner.
Act as the primary escalation point for Tier 3 alerts and incidents and perform root cause analysis with actionable remediation plans.
Serve as the primary liaison to the MDR provider: validate and triage MDR alerts, ensure alignment on response protocols and escalation procedures, and provide tuning recommendations to improve detection fidelity.
Develop and maintain incident response playbooks, runbooks, and workflows.
Analyze threat actor tactics, techniques, and procedures (TTPs) and translate findings into improved defenses and detection content.
Threat Hunting
Conduct proactive, hypothesis-driven threat hunts across endpoint, identity, network, and cloud telemetry, leveraging threat intelligence and the MITRE ATT&CK framework to surface threats that evade automated detection.
Operationalize hunt findings into durable detection logic and response procedures.
Automation & Process Improvement
Identify recurring, manual, or manual heavy SOC processes and design automation to reduce analyst effort and accelerate response.
Build, test, and maintain automated playbooks and response workflows in a SOAR platform (e.g., Torq, Microsoft Sentinel Automation Rules and Logic Apps) for enrichment, triage, containment, and case management.
Develop, tune, and operationalize detection and correlation rules through automated validation and deployment.
Measure the impact of automation against SOC performance metrics (MTTD, MTTR, alert volume, false-positive rate) and iterate based on results.
Partner with Detection Engineering and Security Engineering to integrate tooling, close telemetry gaps, and standardize repeatable response.
Security Monitoring & Analysis
Monitor and analyze logs and alerts across SIEM, EDR, identity, and cloud platforms.
Correlate data across multiple sources to identify patterns, anomalies, and emerging threats.
Maintain situational awareness of the external threat landscape and internal security posture.
Mentorship & Reporting
Mentor Tier 1 and Tier 2 analysts, lead knowledge-sharing, and uplevel team investigative tradecraft and tooling proficiency.
Document incident timelines, findings, and lessons learned.
Track, analyze, and drive improvement of core SOC performance metrics (MTTD, MTTR, detection coverage, false-positive rate), and use them to prioritize tuning and automation efforts.
Generate executive-level and technical reports on SOC performance and incidents, and support compliance and audit efforts through accurate record-keeping and evidence handling.
Requirements
Minimum 5-7 years of experience in a cybersecurity operations role, with at least 3 years in a Tier 2/Tier 3 SOC or escalation capacity.
CompTIA Security+ or equivalent.
Proven experience leading incident response triage, investigation, and remediation, including working directly with MDR partners.
In-depth knowledge of security tools and technologies, including SIEM/SOAR platforms (e.g., Microsoft Sentinel), endpoint detection and response solutions (e.g., Microsoft Defender XDR, Palo Alto Cortex XDR), and ticketing systems (e.g., ServiceNow).
Demonstrated ability to author and tune detection content (e.g., KQL in Sentinel/Defender) and operationalize it into production.
Experience analyzing cloud security telemetry (e.g., Azure/Entra sign-in logs, AWS CloudTrail).
Hands-on experience building or maintaining automated playbooks and response workflows in a SOAR platform.
Strong understanding of network security concepts, operating systems, and malware analysis techniques.
Familiarity with the MITRE ATT&CK framework and threat intelligence platforms.
Excellent analytical, problem-solving, and communication skills, with the ability to work under pressure and manage multiple priorities.
Preferred
Certifications such as CISSP, GCIA, GCIH, GCFA, CySA+, eJPT/PJPT, CEH, SC-200.
Scripting and automation skills (Python, PowerShell) for tooling, enrichment, and analysis.
Experience supporting an EDR platform migration (e.g., Cortex XDR to Microsoft Defender XDR).
Experience with or strong interest in AI-assisted triage and agentic SOC tooling to augment analyst workflows.
Broader cloud security experience across AWS, Azure, and OCI.
Experience with Microsoft Sentinel, Proofpoint, and Palo Alto Cortex XDR.
Work Environment
Mandatory 4-days onsite; 1-days remote.
On-call rotation may be required for critical incident response.
Collaborative team environment with opportunities for growth and specialization.
This description outlines the basic responsibilities and requirements for the position noted. This is not a comprehensive listing of all job duties of the Associates. Duties, responsibilities and activities may change at any time with or without notice.
Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.
Life at Lennar
At Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone's Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar's policies and applicable plan terms. Visit Lennartotalrewards.com to view our suite of benefits.
Join the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview | LinkedIn
Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.
About Lennar
Sourced by ZipRecruiter
Since 1954, Lennar has built over one million new homes for families across America. We build in some of the nation’s most popular cities, and our communities cater to all lifestyles and family dynamics, whether you are a first-time or move-up buyer, multigenerational family, or Active Adult.
Industry
Construction
Company size
5,001 - 10,000 Employees
Headquarters location
Miami, FL, US
Year founded
1954