Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
SOC Level 3 Analyst & Incident Response Lead image - Rise Careers
Job details

SOC Level 3 Analyst & Incident Response Lead

Company Description

BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average.

BETSOL’s open source backup and recovery product line, Zmanda (Zmanda.com), delivers up to 50% savings in total cost of ownership (TCO) and best-in-class performance.

BETSOL Global IT Services (BETSOL.com) builds and supports end-to-end enterprise solutions, reducing time-to-market for its customers.

BETSOL offices are set against the vibrant backdrops of Broomfield, Colorado and Bangalore, India.

We take pride in being an employee-centric organization, offering comprehensive health insurance, competitive salaries, 401K, volunteer programs, and scholarship opportunities. Office amenities include a fitness center, cafe, and recreational facilities.

Job Description

We are seeking a highly skilled and experienced Tier 3 SOC Analyst who will also function as the Incident Response Lead. This is a hybrid technical-leadership position focused on managing critical security events, conducting forensic investigations, and continuously enhancing the incident response program. As a senior member of the SOC, you will be the escalation point for complex and high-impact security incidents, support forensic analysis, lead root cause investigations, and contribute to detection engineering efforts. 

Qualifications

Key Responsibilities

Tier 3 SOC Analyst Duties

  • Act as the final escalation point for complex security alerts and incidents identified through Azure Sentinel and other security monitoring tools.
  • Conduct in-depth digital forensic investigations across endpoints, networks, and cloud infrastructure (Azure, M365, Microsoft Dynamics, etc.).
  • Perform malware analysis, reverse engineering, and memory/disk analysis to support incident triage and response.
  • Provide expert-level guidance to Tier 1 and Tier 2 SOC analysts; coach and mentor to raise team capabilities.
  • Correlate threat intelligence with incident data to understand adversary behavior and campaign objectives.
  • Collaborate with SIEM engineers to tune, develop, and optimize detection use cases, particularly for emerging threats.
  • Maintain documentation of playbooks, threat scenarios, and incident patterns.

Incident Response Lead Duties

  • Lead and coordinate the end-to-end incident response lifecycle, from detection through containment, eradication, and recovery.
  • Own and maintain IR documentation including incident tracking, timelines, RCA, and after-action reports.
  • Liaise with the CSIRT team and relevant business stakeholders during critical incidents.
  • Lead post-incident reviews and facilitate lessons learned workshops, contributing to policy, procedure, and control improvements.
  • Drive continuous process improvement across SOC and IR operations, ensuring integration with change and problem management.
  • Ensure executive-level incident reporting and briefings are prepared and delivered as needed.

Qualifications

Required

  • 5+ years of experience in a Security Operations Center or Incident Response role.
  • Proven experience leading major incident response efforts (e.g., ransomware, APT, data breaches).
  • Strong forensic analysis skills (disk, memory, log, and network forensics).
  • Advanced proficiency in SIEM platforms (preferably Microsoft Sentinel), EDR tools (Defender for Endpoint), and forensic toolsets.
  • Hands-on experience with vulnerability management and cloud security tools such as Wiz, Tenable, or Qualys.
  • Understanding of attacker TTPs mapped to MITRE ATT&CK and threat hunting methodologies.
  • Hands-on experience with scripting and automation (e.g., PowerShell, Python) to streamline investigations and response.
  • Knowledge of security controls, network protocols, operating systems, and cloud environments (Azure).
  • Strong communication skills and ability to present technical findings to non-technical stakeholders.

Additional Information

Desirable Certifications

  • GIAC Certified Forensic Analyst (GCFA) or GIAC Certified Incident Handler (GCIH)
  • CISSP, oscp, GCIA, or equivalent
  • Microsoft certifications: SC-200, SC-300, AZ-500

Key Competencies

  • Calm and decisive under pressure
  • Analytical and detail-oriented
  • Strong leadership and collaboration skills
  • Proactive approach to process optimization and threat mitigation
  • Passion for continuous learning and capability development
    Betsol Glassdoor Company Review
    3.7 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
    Betsol DE&I Review
    3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
    CEO of Betsol
    Betsol CEO photo
    Ashok Reddy
    Approve of CEO

    Average salary estimate

    $115000 / YEARLY (est.)
    min
    max
    $90000K
    $140000K

    If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

    Similar Jobs
    Photo of the Rise User
    HELIX Environmental Hybrid Sacramento, California, United States
    Posted 11 hours ago

    A dynamic IT Support Manager role at HELIX Environmental Planning, perfect for a skilled leader passionate about driving technology success in a hybrid work environment.

    Chevron Hybrid El Segundo, California, United States of America
    Posted 14 days ago

    A leading energy company is looking for an experienced Aveva PI Application Engineer to manage and support their PI System and SQL Server infrastructure.

    Connected Logistics Hybrid Washington, District of Columbia, United States
    Posted 7 days ago

    A skilled SIEM Analyst is needed to support advanced security operations and threat intelligence at Connected Logistics through effective use of Microsoft Sentinel and other cyber defense tools.

    Photo of the Rise User

    Support U.S. Southern Command as a Systems Analyst analyzing requirements and enhancing IT systems for mission success at Tyto Athene.

    Lead disaster recovery initiatives as a Staff IT Analyst III at Western Alliance Bank, ensuring operational resiliency through effective planning, testing, and collaboration.

    Photo of the Rise User

    Lead and mentor a team managing the Charles River platform at Fisher Investments, driving technology solutions for its investment and portfolio management systems.

    Photo of the Rise User
    Oxfam America Hybrid Boston, Massachusetts, United States
    Posted 7 days ago

    Oxfam America seeks a skilled Technical Systems Analyst to manage and optimize enterprise business applications supporting their mission for equality and justice.

    Photo of the Rise User
    Posted 7 days ago

    Seeking a Senior IT Systems & Operations Engineer to lead IT automation and system management at Whatnot, a top livestream shopping platform.

    Photo of the Rise User

    Drive automated system integrations and develop scalable IT infrastructure solutions at Ironclad, a pioneer in AI-powered contract lifecycle management.

    Lead enterprise IT application and systems management in a fast-paced casino environment, ensuring operational excellence and stakeholder satisfaction.

    Photo of the Rise User

    Support impactful mission-driven work as a part-time IT Systems Specialist managing CRM events and memberships remotely for Girl Scouts of Western Washington.

    Photo of the Rise User
    Forward Financing Hybrid No location specified
    Posted 5 days ago
    Dental Insurance
    Disability Insurance
    Flexible Spending Account (FSA)
    Vision Insurance
    Performance Bonus
    Family Medical Leave
    Paid Holidays

    Lead IT operations and teams at Forward Financing to drive scalable growth and innovative technology solutions in a hybrid work model.

    Photo of the Rise User
    Meta Hybrid Bellevue, Washington, United States
    Posted 14 days ago
    Inclusive & Diverse
    Rise from Within
    Mission Driven
    Diversity of Opinions
    Work/Life Harmony
    Take Risks
    Collaboration over Competition
    Fast-Paced
    Growth & Learning
    Transparent & Candid
    Feedback Forward
    Dare to be Different
    Medical Insurance
    Paid Time-Off
    Maternity Leave
    Mental Health Resources
    Equity
    Paternity Leave
    Flex-Friendly
    Snacks
    Social Gatherings
    Company Retreats
    Fitness Stipend
    Paid Holidays
    Summer Fridays
    Work Visa Sponsorship
    Bias Training
    Flexible Spending Account (FSA)
    Health Savings Account (HSA)
    Vision Insurance
    Dental Insurance
    Life insurance

    Meta Security seeks a skilled Security Engineer to lead AI cybersecurity evaluations and fortify defenses against frontier AI threats within a collaborative, innovative environment.

    Exceed customer expectations with our award-winning solutions

    1 jobs
    MATCH
    Calculating your matching score...
    FUNDING
    SENIORITY LEVEL REQUIREMENT
    TEAM SIZE
    EMPLOYMENT TYPE
    Full-time, hybrid
    DATE POSTED
    July 17, 2025
    Risa star 🔮 Hi, I'm Risa! Your AI
    Career Copilot
    Want to see a list of jobs tailored to
    you, just ask me below!