SOC Analyst for AI-Driven Investigation Systems Job at SaidGig, United States

bDhwZnU1NHE4REtGN0pUTmlRakxVTFo1OXc9PQ==
  • SaidGig
  • United States

Job Description

As a SOC Investigation Specialist, you will play a critical role in enhancing the capabilities of next-generation SOC automation and AI-driven investigation systems. This position is designed for seasoned SOC analysts who possess the ability to apply real-world investigative judgment to conduct thorough security investigations across various environments, including SIEM, endpoint, cloud, and identity. Key Responsibilities

  • Review, monitor, and evaluate SOC alerts and investigation outputs based on predefined scenarios and criteria.
  • Distinguish true positives from false positives by validating investigative evidence and alert context.
  • Perform end-to-end security investigations when necessary, including log analysis, entity pivoting, timeline reconstruction, and evidence correlation.
  • Assess the correctness, completeness, and quality of SOC investigations produced by automated or human workflows.
  • Apply consistent investigative judgment while recognizing that multiple valid investigation paths may exist for the same alert.
  • Make clear binary determinations (e.g., ACCEPT / PASS) while also producing detailed ground-truth investigations when required.
  • Utilize Splunk extensively to pivot across logs, entities, and timelines, including reading and reasoning about SPL queries.
  • Maintain clear and accurate documentation of investigative steps, assumptions, evidence, and conclusions.
  • Collaborate with program leads and other expert annotators to uphold high-quality investigation and annotation standards.
  • Mentor or support other analysts where applicable, particularly in long-term or lead annotator roles.
Qualifications
  • 3+ years of hands-on experience as a SOC analyst in a production SOC environment (Tier 2 or above strongly preferred).
  • Strong understanding of alert triage, incident investigation workflows, and evidence-based decision-making under time constraints.
  • Mandatory hands-on experience with Splunk, including conducting investigations, reading and reasoning about SPL queries, and pivoting between logs, entities, and timelines.
  • Proven ability to evaluate SOC investigations and determine whether conclusions are valid, incomplete, or incorrect.
  • Strong investigative judgment and comfort making decisive evaluations.
  • Fluent English (written and spoken) with strong documentation and communication skills.
Nice to Have
  • Experience with Endpoint Detection & Response (EDR) tools such as CrowdStrike Falcon, Microsoft Defender for Endpoint, or SentinelOne.
  • Experience analyzing cloud security logs and signals from AWS (CloudTrail, GuardDuty), Azure (Activity Log, Defender for Cloud), and GCP (Cloud Audit Logs).
  • Familiarity with Identity & Access Management platforms such as Okta Identity Cloud or Microsoft Entra ID (Azure AD).
  • Experience with email security tools like Proofpoint or Mimecast.
  • SOC leadership or mentoring experience.
  • Basic scripting experience (Python or similar).
  • Security certifications (optional): GCIA, GCIH, GCED, Splunk certifications, Security+, CCNA, or cloud security certifications.
Work Terms

This is a remote, hourly position.

Compensation

The hourly compensation ranges from $70 to $95.

Eligibility

Applicants must have the right to work in the applicable location without sponsorship.

Job Tags

Hourly pay

Similar Jobs

She Recruits LLC

Nocturnist Hospitalist Job at She Recruits LLC

 ...Nocturnist Hospitalist | Tampa, FL Opportunity Type: Full-Time | Night Shifts Specialty: Hospitalist Nocturnist Location: Tampa, Florida About the Opportunity: She Recruits is excited to present a brand-new nocturnist opportunity in Tampa, FL. This... 

Franklin Group

Senior Affordable Housing Compliance Specialist Job at Franklin Group

 ...A housing compliance organization in Washington, DC is seeking a Property Compliance Specialist to ensure adherence to HUD and LIHTC...  ...regulations. The ideal candidate will have at least 5 years of affordable housing compliance experience and demonstrate strong... 

H&H Recruiting

Looking For Class A CDL Driver Home Weekly Job at H&H Recruiting

Job Description Job Description Looking for a Class A CDL Driver, weekly home time. Hourly Pay, averaging $1200, plus per week. Must have transportation to and from work. Contact Shane at (***) ***-**** for more details. Job Posted by ApplicantPro

Virtual Vocations Inc

Blockchain Engineer Job at Virtual Vocations Inc

 ...Joining a curated community of freelance blockchain engineers, the fully remote Talent Network will contribute expertise to top-tier projects focused on blockchain infrastructure, collaborating with an EQ Core engineer while enjoying the flexibility to choose projects... 

LAKESIDE SLEEP CENTER

Sleep Technologist Job at LAKESIDE SLEEP CENTER

Job Description Job Description This is an opening for a night position. Must be registered or certified. Proficiency in 10-20 hookup and all titrations required. We are an accredited lab which follows all AASM guidelines for protocol.