1

Senior Security Operations Analyst Jobs in Boston, MA

As the 3rd largest security services provider, our 175k+ team members in 36 countries combine and ... The vSOC fuses intelligence analysis with our operations to generate proactive risk mitigation. The ...

Risk Operations Analyst The mission of the Global Risk Services (GRS) Virtual Global Security Operations Center (vSOC) is to provide a centralized monitoring center to coordinate our client ...

Senior Security Engineer

Boston, MA ยท On-site

$124K - $170K/yr

... operation of SAST, SCA, DAST, API Security, Secrets Detection, and related application security ... Experience using common security testing and analysis tools. * Ability to communicate technical ...

Present complex analyses and recommendations to senior leadership in a concise, business-focused ... Department of Commerce - Bureau of Industry and Security and/or the U.S. Department of State ...

Showing results 21-40

Senior Security Operations Analyst information

See Boston, MA salary details

$75.5K

$125.5K

$179.8K

How much do senior security operations analyst jobs pay per year?

As of Sep 8, 2026, the average yearly pay for senior security operations analyst in Boston, MA is $125,530.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,300.00 and $136,300.00 per year, depending on experience, location, and employer.

What is a senior security operations analyst?

Senior Security Operations Analysts are experienced cybersecurity professionals responsible for monitoring, detecting, and responding to security threats within an organization. They analyze security incidents, investigate potential breaches, and develop strategies to protect systems and data. In addition to handling complex incidents, they often mentor junior analysts and help improve security processes and technologies. Their role is critical in ensuring the organization's cybersecurity posture remains strong against evolving threats.

What are some common challenges senior security operations analysts face when managing incident response?

Senior Security Operations Analysts often encounter challenges such as rapidly evolving cyber threats, balancing multiple high-priority incidents, and ensuring swift coordination across IT, legal, and management teams during incident response. They must stay updated on the latest threat intelligence while maintaining clear communication under pressure. Additionally, analysts are responsible for documenting incidents thoroughly and recommending improvements to strengthen the organization's security posture after an event.

What are the key skills and qualifications needed to thrive as a senior security operations analyst, and why are they important?

To thrive as a Senior Security Operations Analyst, you need expertise in cybersecurity principles, threat analysis, incident response, and typically a degree in computer science or a related field. Familiarity with SIEM platforms (like Splunk or QRadar), intrusion detection systems, and certifications such as CISSP or CEH are highly valued. Strong analytical thinking, problem-solving abilities, and effective communication help analysts excel in high-pressure environments and coordinate with diverse teams. These skills and qualifications are vital for proactively identifying threats, minimizing risks, and ensuring organizational security.

What is the difference between Senior Security Operations Analyst vs Security Operations Center (SOC) Analyst?

AspectSenior Security Operations AnalystSecurity Operations Center (SOC) Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials (GSEC)
Work EnvironmentAdvanced security teams, strategic planning24/7 monitoring, incident response
Employer & Industry UsageLarge enterprises, cybersecurity firmsSecurity operations centers, IT departments
Search & Comparison IntentUnderstanding senior roles, responsibilitiesEntry to mid-level security monitoring

The Senior Security Operations Analyst typically handles advanced security tasks, strategic planning, and mentoring, while the SOC Analyst focuses on monitoring security alerts and incident response. Both roles require similar certifications and work in security-focused environments, but the senior role involves more leadership and complex analysis. Understanding these differences helps organizations assign appropriate responsibilities and professionals to their security teams.

What cities near Boston, MA are hiring for Senior Security Operations Analyst jobs?

Cities near Boston, MA with the most Senior Security Operations Analyst job openings:

Infographic showing various Senior Security Operations Analyst job openings in Boston, MA as of September 2026, with employment types broken down into 100% Full Time. Highlights an 75% In-person, 8% Hybrid, and 17% Remote job distribution, with an average salary of $125,530 per year, or $60.4 per hour.

Senior Security Engineer

HealthDrive

Framingham, MA โ€ข Hybrid

$117K - $161K/yr

Full-time

Re-posted 2 days ago


Job description

About HealthDrive:

HealthDrive delivers on-site healthcare services to residents of long-term care facilities, offering a comprehensive suite of specialties including primary care, behavioral health, dentistry, optometry, podiatry, and audiology. Our mission is to improve the quality of life for patients through compassionate and consistent care, while supporting our partners with reliable, integrated healthcare solutions tailored to the unique needs of senior populations.

About the Role:

The Senior Security Engineer is HealthDrive's in-house owner of day-to-day security operations and security configuration. This role handles the security work that arrives every day โ€” reported phishing, email and data loss prevention alerts, endpoint detections, and escalations from our managed security providers โ€” and drives each to closure. It also owns the configuration and hardening of our Microsoft cloud estate and holds accountability for ensuring identified vulnerabilities are actually remediated.

HealthDrive uses managed security providers for around-the-clock monitoring and for network security engineering. This role sits above those providers: it directs their work, evaluates their performance, and remains the decision-maker for HealthDrive when a genuine security incident occurs. This is a hands-on engineering role, not a governance or audit role, and not a role that supervises staff.

Work Environment:

Based at HealthDriveโ€™s Framingham, MA office (off Route 9, near Routes 90 and 495) on a hybrid schedule. 

Compensation Range:

$85,000 to $115,000 / experience dependent

#INDHDCORPREC


Day-to-Day Security Operations

  • Triage, investigate and resolve reported phishing and email-borne threats, including user communication and follow-up.
  • Monitor, tune and maintain email security and data loss prevention policy and alerting; investigate and disposition DLP events involving protected health information.
  • Own escalations from HealthDrive's managed detection provider from receipt through containment and closure, including endpoint detection and response alerts.
  • Investigate user-reported security concerns and suspicious activity, and maintain records of findings and actions taken.

Vulnerability Management

  • Own the vulnerability management cycle end to end: scanning, risk-based prioritization, and accountability for remediation reaching completion.
  • Work with Infrastructure and Software Development to schedule and validate remediation, including where patching conflicts with clinical or operational workflows.
  • Report remediation status, aging and exceptions to IT leadership on a defined cadence.

Cloud and Endpoint Security Configuration

  • Own security configuration and hardening of Microsoft Entra ID, including Conditional Access policy design, review and change control.
  • Own Microsoft 365 security configuration and data protection settings across mail, collaboration and file storage.
  • Maintain endpoint security policy and configuration, and verify coverage across the managed device estate.
  • Review and improve identity, access and privilege configuration, including administrative access and multi-factor authentication enforcement.

Managed Provider Oversight

  • Serve as HealthDrive's technical owner of the managed security provider relationships, covering monitoring, response and network security engineering services.
  • Direct provider work, submit and validate detection tuning requests, and reduce recurring false positives.
  • Run periodic service reviews, hold providers to contracted response commitments, and escalate performance shortfalls to IT leadership.
  • Maintain documented escalation paths and ensure HealthDrive retains the knowledge required to change providers without loss of continuity.

Incident Response

  • Recommend and implement containment and recovery actions for affected systems when a provider escalates a confirmed incident.
  • Maintain and exercise incident response procedures, and lead post-incident review and corrective action.
  • Support breach assessment and notification analysis in coordination with Compliance and Legal.

Security Program Support

  • Contribute to security awareness and phishing simulation programs.
  • Support security review of vendors and third parties, and of new applications and integrations, in partnership with Compliance.
  • Maintain security documentation, configuration baselines and operational runbooks.

Must have:

  • Approximately seven or more years of hands-on experience in security engineering or security operations, with demonstrated personal ownership of the work rather than coordination of it.
  • Demonstrated hands-on ownership of email security and data loss prevention. Proofpoint strongly preferred; comparable enterprise platforms considered.
  • Demonstrated hands-on experience configuring and securing Microsoft Entra ID and Microsoft 365, including Conditional Access policy design in a production environment.
  • Demonstrated ownership of a vulnerability management program, including driving remediation to closure across teams that do not report to this role.
  • Practical experience with endpoint detection and response platforms and with security monitoring or SIEM output. SentinelOne, Microsoft Sentinel or Secureworks Taegis are directly relevant.
  • Demonstrated incident response experience with sound judgment on containment decisions.
  • Experience working with or overseeing managed security service providers.
  • Working knowledge of enterprise network and firewall security sufficient to review provider work and partner effectively with Infrastructure. Fortinet experience is relevant.
  • Scripting or automation capability, such as PowerShell or Python.
  • Ability to communicate risk clearly to non-technical stakeholders, including clinical and operational leaders.

Nice to have: 

  • Healthcare provider-side experience and working familiarity with HIPAA and HITECH.
  • Experience with Qualys, Fortinet, SentinelOne, Microsoft Sentinel or Secureworks.
  • Third-party and vendor risk assessment experience.
  • Experience in a small or lean IT organization where breadth and self-direction are required.

Education & Qualifications:

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity or a related field, or equivalent demonstrated professional experience.

Certifications & Licenses:

  • CISSP preferred.
  • In the absence of CISSP, at least one of the following: AZ-500, SC-200, Security+, CySA+, CISM, CCSP or HCISPP

Core Competencies:

  • Communication 
  • Cooperation and Team working 
  • Adaptability 
  • Expertise and Professionalism 
  • Problem Solving / Analysis