1

Senior Security Operations Center Jobs in Colorado

Job Summary The Specialist, Security Operations Center (SOC), supports the monitoring and response to internal and external security events with potential impact on senior leadership, staff, business ...

Security Operator

Boulder, CO ยท On-site

$19 - $23.50/hr

We are looking for a new Cyber Analyst to join our Security Operations Center (SOC) in Fairmont, WV or Boulder, CO. The program comprises of 20 analysts performing 24/7 operations. Primary ...

This is a senior role for someone with deep expertise in industrial and physical security, classified space accreditation and operations, and risk mitigation, and who thrives operating at the ...

Senior Security Engineer

Lafayette, CO ยท On-site

$110 - $130/hr

Own the ongoing operation of SOC 2 controls, security audit requirements, and technical compliance ... Secure Azure, AWS, Microsoft 365, Entra ID, AWS Identity Center, Auth0, and cloud-native workloads ...

Security Operation Center (SOC) Analyst - Level II SOC Analyst's primary function is to provide ... Must have strong analytical and technical skills in computer network defense operations, ability to ...

This is a senior role for someone with deep expertise in industrial and physical security, classified space accreditation and operations, and risk mitigation, and who thrives operating at the ...

Senior Security Engineer

Denver, CO

$117K - $161K/yr

Senior Security Engineer Our Engineering Standards at Karbon: Balance Speed and Quality Engineers ... This includes designing scalable solutions, reducing technical debt, supporting operational ...

next page

Showing results 1-20

Senior Security Operations Center information

What is a senior security operations center analyst?

A Senior Security Operations Center (SOC) analyst is an experienced cybersecurity professional responsible for monitoring, detecting, and responding to security threats within an organization. They lead incident response efforts, analyze complex security events, and guide junior analysts in best practices. Senior SOC analysts also help develop security policies, conduct threat intelligence analysis, and ensure that security tools and processes are effective. Their primary goal is to protect the organization's digital assets by identifying vulnerabilities and mitigating risks in real time.

What are the key skills and qualifications needed to thrive as a senior security operations center analyst?

To thrive as a Senior Security Operations Center Analyst, you need advanced knowledge of cybersecurity principles, incident response, threat analysis, and a relevant degree or certifications like CISSP or GIAC. Proficiency with SIEM tools (such as Splunk or QRadar), intrusion detection systems, and vulnerability management platforms is essential. Strong analytical thinking, problem-solving skills, and effective communication are vital soft skills for this role. These abilities ensure rapid threat detection, coordinated incident response, and robust protection of organizational assets in a constantly evolving threat landscape.

How does a senior security operations center analyst typically collaborate with other teams to enhance organizational security?

A Senior SOC analyst regularly works with IT, incident response, and threat intelligence teams to identify, assess, and mitigate security threats. This collaboration often involves sharing insights from security monitoring, coordinating response strategies during incidents, and helping to implement preventive measures. Effective communication and teamwork are essential, as analysts may participate in cross-functional meetings, provide briefings, and contribute to security awareness training. This collaborative approach ensures a holistic defense strategy and supports continuous improvement in the organization's security posture.

What is the difference between Senior Security Operations Center vs Security Analyst?

AspectSenior Security Operations CenterSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC, CEH
Work EnvironmentSecurity operations center, 24/7 monitoringOffice or remote, analyzing security data
Employer & IndustryLarge enterprises, government agenciesIT firms, cybersecurity companies, corporations
Search & Comparison IntentUnderstanding senior roles in SOCEntry to mid-level security roles

The Senior Security Operations Center role involves overseeing security operations, managing incident response, and leading security teams within a SOC environment. In contrast, a Security Analyst focuses on monitoring security alerts, analyzing threats, and supporting incident investigations. While both roles require similar certifications and work in security environments, the senior position emphasizes leadership and strategic oversight, whereas the analyst role is more hands-on and technical.

What are the most commonly searched types of Security Operations Center jobs in Colorado?

The most popular types of Security Operations Center jobs in Colorado are:

What are popular job titles related to Senior Security Operations Center jobs in Colorado?

For Senior Security Operations Center jobs in Colorado, the most frequently searched job titles are:

What job categories do people searching Senior Security Operations Center jobs in Colorado look for?

The top searched job categories for Senior Security Operations Center jobs in Colorado are:

What cities in Colorado are hiring for Senior Security Operations Center jobs?

Cities in Colorado with the most Senior Security Operations Center job openings:

Security Operations Center Technical Lead

Invictus International Consulting, LLC

Colorado Springs, CO โ€ข On-site

$200K - $230K/yr

Full-time

Posted 3 days ago

New


Job description

Title: Security Operations Center Technical Lead
Location: Colorado Springs, CO
Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph
Responsibilities:
  • Serve as the senior technical authority for SOC watch operations, cyber defense analysis, threat hunting, incident response, and operational cyber risk supporting the establishment and maturation of a new DoD SOC
  • Lead the most complex cyber defense investigations, incident-response activities, threat-hunting campaigns, and exposure assessments while providing technical direction when scope, impact, evidence, or response options are uncertain
  • Perform advanced analysis of host and network telemetry, firewall and IDS/IPS data, authentication activity, endpoint data, intrusion artifacts, vulnerabilities, configurations, and other relevant security evidence
  • Establish and continuously improve SOC investigative methodologies, triage standards, severity and escalation criteria, evidence requirements, incident workflows, threat-hunting processes, case-quality standards, and shift-turnover practices
  • Serve as the highest-level operational escalation point for SOC personnel and mentor senior and developing analysts through complex investigations, threat hunts, exercises, and defensive activities
  • Lead advanced threat-hunting campaigns based on threat intelligence, adversary TTPs, mission priorities, incidents, environmental changes, and identified detection gaps
  • Apply MITRE ATT&CK, threat intelligence, network forensics, host analysis, vulnerability context, adversary analysis, and threat-informed defense techniques to complex investigations and proactive defensive operations
  • Establish methodologies for correlating vulnerability, asset, configuration, network reachability, system criticality, security-control, threat, and incident data to identify and prioritize operational cyber risk
  • Lead complex cyber exposure and impact assessments, including exploitation scenarios, attack paths, affected-system analysis, compensating controls, and risk-informed courses of action
  • Coordinate significant incidents, cyber findings, and operational risks with government stakeholders, ISSOs/ISSMs, system owners, administrators, engineers, incident-response organizations, and other agencies as required
  • Partner with cybersecurity engineering teams to translate operational requirements into actionable SIEM/SOAR, network monitoring, endpoint, telemetry, analytics, enrichment, automation, and detection capabilities
  • Identify systemic visibility, detection, tooling, workflow, exposure, and analyst-proficiency gaps and develop recommendations to improve SOC effectiveness and enterprise security posture
  • Lead development and validation of SOPs, runbooks, incident-response and threat-hunting playbooks, analyst qualification standards, training scenarios, exercises, and lessons-learned actions
  • Provide senior technical guidance to SOC leadership through risk assessments, threat assessments, metrics, briefings, and recommendations addressing watch readiness, threat activity, high-risk exposures, capability gaps, remediation priorities, and defensive improvements

Requirements:
  • Bachelor's degree in a relevant discipline; four additional years of relevant experience may be substituted in lieu of a degree
  • Minimum 8 years of directly related cybersecurity experience
  • Must possess a DoD 8570 IAT Level II or IAM Level II certification
  • Experience supporting DoD or Intelligence Community environments is desired
  • Expert-level, hands-on experience in SOC operations, cyber defense analysis, incident investigation, incident response, threat hunting, adversary analysis, or closely related cybersecurity operations
  • Demonstrated ability to establish or materially improve SOC operating procedures, investigative standards, threat-hunting methodologies, incident workflows, or analyst qualification/training programs
  • Expert knowledge of enterprise networking, network security monitoring, host/endpoint analysis, identity/authentication activity, incident response, adversary TTPs, threat intelligence, vulnerability/exposure management, and threat-informed defense
  • Strong knowledge of MITRE ATT&CK and experience operationalizing threat intelligence in SOC, threat-hunting, or cyber defense activities
  • Demonstrated experience correlating vulnerability, asset, configuration, threat, incident, and security-control data to assess operational risk and prioritize remediation or defensive actions
  • Experience with SIEM/SOAR, detection engineering, network-security monitoring, endpoint security, vulnerability management, asset discovery, and continuous monitoring capabilities
  • Experience with ACAS/Tenable, runZero or comparable exposure/asset-discovery tools, DoD STIG/STIG Viewer, SCAP, POA&M processes, and integration of SOC/incident-response findings with ISSO/ISSM or RMF functions is highly desired
  • Experience helping establish, transform, or mature a SOC, CSIRT, threat-hunting, or cyber defense capability is highly desired
  • TS/SCI with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled