Senior Cyber Operations Analyst
CDM Smith
- Location
- South United States
- Employment
- Full Time
- Work model
- On-Site
- Level
- Senior
- Salary
- $178.8k/yr
- Sponsorship
- Sponsors visa
- Posted
- 1h ago
Skills
About this role
Company Overview Check out this video and find out why our team loves to work here! Join Us! CDM Smith – where amazing career journeys unfold. Imagine a place committed to offering an unmatched employee experience. Where you work on projects that are meaningful to you. Where you play an active part in shaping your career journey. Where your co-workers are invested in you and your success. Where you are encouraged and supported to do your very best and given the tools and resources to do so. Where it’s a priority that the company takes good care of you and your family. Our employees are the heart of our company. As an employer of choice, our goal is to provide a challenging, progressive and inclusive work environment which fosters personal leadership, career growth and development for every employee. We value passionate individuals who challenge the norm, deliver world-class solutions and bring diverse perspectives. Join our team, and together we will make a difference and change the world.
Job Description
The Senior Cyber Operations Analyst is an experienced team member responsible for monitoring, detecting and responding to cybersecurity threats and incidents in a fast-paced environment. This role requires advanced skills in analyzing, triaging and resolving investigations and incidents. The senior analyst uses a combination of commercial and open-source tools, including AI-powered solutions, to automate repetitive tasks, enhance threat detection and improve response effectiveness. They correlate alerts and events, execute queries and apply behavior-based and anomaly detection techniques to support timely response actions. This role requires experience across multiple technologies, including SOARs, SIEMs, MCP solutions, endpoints, applications, network devices, cloud infrastructure and threat intelligence feeds. As a senior team member, the analyst also supports escalation workflows, assists less experienced analysts, and handles complex incidents. The senior analyst is also responsible for mentoring junior team members to strengthen overall team capability. In this role, they will identify opportunities to use automation technologies & [RJ1] AI to automate repetitive tasks, enabling the team to focus on more complex analysis and response activities, which contributes to a more resilient security posture. The senior analyst operates in a cross-functional capacity, working across diverse technologies to support and secure business operations. They are expected to apply critical thinking and serve as the human in the loop when using AI-enabled tools and making security decisions. Strong communication skills are essential, along with the ability to understand and respond to emerging cybersecurity threats at scale. This role operates within an advanced cybersecurity program designed to keep pace with adversaries using both traditional and AI-enabled attack techniques. The role reports to the manager or director of security operations. Serve as a subject matter expert for a team of analysts supporting managed 24/7/365 monitoring and response operations. Investigate and respond to cybersecurity incidents, including participating in off-hours and on-call rotations. Act as an escalation point for day-to-day SOC operations and identify opportunities to automate. Assess program strengths and weaknesses and recommend AI solutions to improve team skills and knowledge. Stay current on emerging cybersecurity threats, AI developments, risks and vulnerabilities that may impact services. Automate repetitive tasks within SOAR environments using Cloud technologies, ML and AI to improve efficiency. Develop detection capabilities aligned with the MITRE ATT&CK framework and enhance them using automation/AI. Validate alerts by interpreting confidence scores, risk ratings and recommended actions. Use NLP tools to analyze events alongside threat intelligence data. Improve AI model performance and alert tuning by labeling events and