Senior Security Operations Analyst
nuHarbor
| Company | nuHarbor |
| Category | Operations & Admin |
| Location | Remote |
| Remote | Remote |
| Employment | Not stated |
| Level | Senior |
| Salary | Not stated by the employer |
| Posted | 15 Jun 2026 |
| Last verified | 30 Jul 2026 |
| Source | Employer career page (greenhouse) |
Description
Cybersecurity for the public good
At nuHarbor, we help organizations navigate an increasingly complex cybersecurity landscape with confidence. By combining expert guidance, innovative technology, and trusted partnerships, we make security stronger, more effective, and easier to understand. We're looking for talented individuals who are passionate about solving meaningful challenges, helping clients succeed, and continuously improving alongside a team that values curiosity, collaboration, and impact.
The Opportunity
As a Senior Security Analyst, you'll serve as a senior technical contributor within nuHarbor's Security Operations Center (SOC). You'll lead complex investigations, guide incident response efforts, mentor fellow analysts, and help elevate the quality of our security operations through technical expertise and continuous improvement.
This role combines advanced threat analysis, client communication, technical leadership, and operational excellence. You'll be trusted to independently tackle the most challenging security problems while helping shape the growth and effectiveness of the team around you.
What Success Looks Like
In this role, you will:
Live by nuHarbor's core values: Help Clients Win, Always Improve, and Protect the House
Lead investigations from initial alert through root cause analysis, attack chain reconstruction, and final client reporting
Correlate data across SIEM, EDR, identity, and security telemetry sources to identify threats and uncover risks that automated tooling may miss
Independently pursue complex, high-priority, or ambiguous investigations with minimal direction
Support Security Analysts with alert triage, classification, escalation, and incident response activities
Identify security gaps and provide actionable recommendations aligned to client risk and business objectives
Communicate proactively with leadership regarding active threats, escalations, and emerging concerns
Facilitate client-facing discussions, including incident reviews, threat briefings, and security consultations
Produce high-quality documentation that clearly communicates findings, evidence, analyst reasoning, and client impact
Stay current on emerging threats, attacker tactics, vulnerabilities, and industry trends
Support the onboarding and operational success of new managed security clients
Mentor and train analysts on investigation methodology, documentation standards, and client communication best practices
Review analyst escalations and ensure investigative completeness and quality prior to client delivery
Contribute to automation initiatives that improve analyst efficiency and reduce operational noise
Partner with Detection Engineering teams to improve alert fidelity, tuning, and threat detection effectiveness
Develop recommendations that help clients mature their cybersecurity programs and security operations capabilities
Coordinate with clients and internal stakeholders throughout incident response and post-incident activities
Your Foundation
We're looking for someone who brings these minimum qualifications:
Bachelor’s Degree and five (5) years of experience. Experience should be in a cybersecurity field and should include relevant industry certifications.
In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required.
Demonstrated experience with SOC operations, executing security event triaging and tuning.
Demonstrated experience writing runbooks and support procedures.
Demonstrated experience executing Monitoring and Response across multiple phases, containment, eradication, and recovery, in a SOC or MSSP environment.
Demonstrated experience with security event triaging and threat hunting executed through both a SIEM and EDR toolset.
Hands on experience with at least two of the following Endpoint Detection and Response (EDR) and Security Orchestration Automation and Resp