XTN-2584703 | L3 SOC 分析师
XTN-2584703 | L3 SOC ANALYST
PsiQuantum 正在利用硅光子学和先进的半导体制造技术打造首个实用的量子计算机。保护我们的研究、基础设施和内部系统对我们使命至关重要。
职位简介
PsiQuantum 正在寻找一名 L3 SOC 分析师,作为安全运营中的高级技术支援点。该职位专注于复杂调查、警报分析和高严重性事件响应。除了调查职责外,该职位还需与检测负责人合作,改进检测逻辑,并参与自定义规则开发以及提升 SOC 工具和流程的战略工作。
全面的健康福利
可从 20 多个办公地点中的任何一处灵活办公
可使用 KMC 的专属食品柜(MadMax 咖啡、新鲜冰箱)
多样化的学习与成长机会
可访问云端 HR 平台(Sprout)
高于标准的假期
职责
- 主导高严重性警报和疑似安全事件的调查。
- 在终端、网络、身份和云遥测数据上进行高级分析。
- 进行根本原因分析并生成详细的事件文档。
- 向检测工程团队提供关于警报盲区和误报的操作反馈。
- 在低运营需求期间协助自定义检测规则的开发和调优。
- 开展主动威胁狩猎活动。
- 支持遏制、清除和恢复工作。
- 指导初级分析师并提升 SOC 调查标准。
经验 / 资格
- 3 年以上 SOC 或事件响应相关工作经验。
- 在终端、网络和云系统上分析日志的丰富经验。
- 有调整或贡献 SIEM 查询和检测逻辑的经验。
- 熟悉 MITRE ATT&CK 和攻击者技术。
- 对 Windows、Linux 和基于身份的攻击模式有深入了解。
- 具备强大的分析、文档编写和沟通能力。
与上述要求相关的其他知识或经验将被视为优势。
最初发布于 Himalayas
查看英文原文
About PsiQuantum
PsiQuantum is building the first useful quantum computers using silicon photonics and advanced semiconductor manufacturing. Protecting our research, infrastructure, and internal systems is critical to our mission.
Job Summary
PsiQuantum is seeking an L3 SOC Analyst to serve as a senior technical escalation point within Security Operations. This role focuses on complex investigations, alert analysis, and high-severity incident response. In addition to investigative responsibilities, this role collaborates with the Detection Lead to improve detection logic and contribute to custom rule development as well as strategic work to improve SOC tooling and processes.
Comprehensive health benefits
Work flexibly from anywhere in over 20+ workspace locations
Access to KMC's exclusive pantry (MadMax Coffee, Fresh Fridge)
Diverse learning & growth opportunities
Accessible Cloud HR platform (Sprout)
Above standard leaves
Responsibilities
- Lead investigations of high-severity alerts and suspected security incidents.
- Perform advanced analysis across endpoint, network, identity, and cloud telemetry.
- Conduct root cause analysis and produce detailed incident documentation.
- Provide operational feedback to detection engineering on alert gaps and false positives.
- Assist with custom detection rule development and tuning during lower operational demand.
- Conduct proactive threat hunting activities.
- Support containment, eradication, and recovery efforts.
- Mentor junior analysts and improve SOC investigation standards.
Experience / Qualifications
- 3+ years of experience in SOC or incident response roles.
- Strong experience analyzing logs across endpoint, network, and cloud systems.
- Experience tuning or contributing to SIEM queries and detection logic.
- Familiarity with MITRE ATT&CK and adversary techniques.
- Strong knowledge of Windows, Linux, and identity-based attack patterns.
- Strong analytical, documentation, and communication skills.
Additional relevant knowledge or experience related to the above requirements will be considered an advantage.
Originally posted on Himalayas