Security Operations Analyst

Anduril
Boston
Workplace: OnsiteFull timeUSD 129,000 - 171,000 annuallyFunction: Business OperationsSkills: ["Communication","Stakeholder collaboration","Incident management","Mentoring","Threat hunting"]

Monitor and respond to security alerts and incidents across endpoint, cloud, and SaaS, triaging activity spanning phishing, infrastructure, and application logs. Build and fine-tune detection signatures, response playbooks, and detection-as-code automations to reduce false positives. Lead threat hunting and data baselines, participate in threat modeling, and serve as incident commander on the detection and response team while collaborating with detection engineering and stakeholders.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Anduril
Anduril
1 day ago

Security Operations Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 15 hours agoStatus: Live

Job Summary

Monitor and respond to security alerts and incidents across endpoint, cloud, and SaaS, triaging activity spanning phishing, infrastructure, and application logs. Build and fine-tune detection signatures, response playbooks, and detection-as-code automations to reduce false positives. Lead threat hunting and data baselines, participate in threat modeling, and serve as incident commander on the detection and response team while collaborating with detection engineering and stakeholders.
Location: Boston
Workplace: Onsite
Employment Type: Full time
Job Function: Business Operations
Seniority: Mid level

Key Responsibilities

  • •Triage and respond to alerts/incidents across disciplines including phishing, endpoints, cloud infrastructure and services, and SaaS applications.
  • •Build and optimize detection signatures, response playbooks, and response automation using detection-as-code principles.
  • •Lead detection feedback loops with the detection engineering team to fine-tune alerts and reduce false positives.
  • •Conduct threat hunting and establish data baselines to identify anomalous patterns.
  • •Participate in cross-functional threat modeling and support incident response investigations, including serving as incident commander when necessary.

Pay and Benefits

Salary: USD 129,000 - 171,000 annually
Equity and Bonus:Equity

Key Requirements

  • •Experience in security monitoring, log analysis, and detection engineering across large data sets for endpoints, networks, and application logs.
  • •Experience with Python development for automating SOC operations using a shared codebase.
  • •Experience with one or more SIEM query languages (SPL, KQL, SQL).
  • •Experience conducting analysis in a data lake environment.
  • •Practical security knowledge across endpoint, network, identity, application, and cloud; plus knowledge of attacker TTPs and ability to obtain and hold a U.S. Top Secret security clearance.
Experience:Defense technologySecurity operationsIncident responseDetection engineeringSOC automation
Skills:CommunicationStakeholder collaborationIncident managementMentoringThreat hunting
Languages:English
Tech Stack:PythonSIEMSPLKQLSQLAWSAzureGCPData lakeEndpointsCloud infrastructureSaaSDetection-as-codeThreat modelingIncident response

Eligibility

Security Clearance:U.S. Top Secret

Company Brief

Anduril
Designs and builds advanced defense systems combining autonomous aircraft, sensors, and AI-driven software for military and national security applications, focused on modernizing battlefield capabilities and distributed sensing.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: Costa Mesa, United States
Founded: 2017
WebsiteLinkedIn