Vice President, Senior SOC Analyst- Tuesday- Saturday

BNY Mellon

$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years in SOC, incident response, or threat detection, including Tier 2/3 investigations.
  • Advanced skills with SIEM (e.g., Splunk, QRadar), EDR (e.g., CrowdStrike), and SOAR technologies.
  • Strong background in network security across Windows/Linux and cloud systems.
  • Hands-on knowledge with MITRE ATT&CK, threat hunting, and the development of IOCs/IOAs.
  • Proven ability to lead complex incidents and communicate effectively under pressure.
  • Experience with scripting or automation (e.g., Python, PowerShell) for investigations.
  • Understanding of NIST CSF and common regulatory requirements for incident response.

Responsibilities

  • Lead triage and investigation of security alerts, coordinating incident response as needed.
  • Conduct root cause analysis and manage containment, eradication, and recovery efforts.
  • Correlate data from various security tools to identify true threats and reduce false positives.
  • Create and maintain SOC playbooks and detection logic aligned to the MITRE ATT&CK framework.
  • Mentor junior analysts on investigation techniques and best practices.
  • Collaborate with Threat Intelligence to enhance investigations and proactively hunt for threats.
  • Generate clear incident reports and contribute to analysis of metrics and trends.

Benefits

  • Comprehensive health and wellness benefits.
  • Professional development and training opportunities.
  • Work-life balance with a Tuesday-Saturday schedule.
  • Collaborative and supportive work environment.
  • Opportunities for career advancement within the organization.
Full Job Description
BNY is seeking a Senior SOC Analyst to join our Security Operations Center. In this role, you will lead incident triage, coordinate response efforts across teams, and mentor analysts to continuously improve detection, response, and recovery capabilities. You will leverage SIEM, EDR, and SOAR tooling to investigate complex threats, reduce dwell time, and strengthen operational resilience for mission-critical services. We're seeking a future team member for the role of Senior SOC Analyst to join our Security Operations Center team. This role can be in Pittsburgh PA or Lake Mary FL. Schedule: Tuesday-Saturday. Key Responsibilities - Lead triage and investigation of security alerts, escalating and coordinating incident response as needed. - Perform root cause analysis, scope affected assets, and drive containment, eradication, and recovery. - Correlate events across SIEM, EDR, IDS/IPS, firewalls, cloud logs, and identity platforms to identify true positives and reduce false positives. - Develop, refine, and maintain SOC playbooks, runbooks, and detection logic aligned to the MITRE ATT&CK framework. - Mentor junior analysts and provide guidance on investigation techniques, documentation standards, and operational best practices. - Coordinate with Threat Intelligence to enrich investigations, track adversary TTPs, and proactively hunt for indicators of compromise. - Partner with Engineering teams to tune detections, improve log fidelity, and strengthen preventive controls. - Create clear, actionable incident reports and executive summaries; contribute to metrics and trend analysis. - Support purple team exercises and post-incident reviews to capture lessons learned and drive continuous improvement. - Ensure adherence to regulatory and security policies; maintain audit-ready documentation for investigations and incidents. Qualifications - 8+ years of experience in a SOC, incident response, or threat detection role, including Tier 2/3 investigations. - Advanced proficiency with SIEM (e.g., Splunk, QRadar, Sentinel), EDR (e.g., CrowdStrike, Microsoft Defender), and SOAR platforms. - Strong knowledge of network security, Windows/Linux, identity systems, and common cloud logging sources. - Hands-on experience with the MITRE ATT&CK framework, threat hunting, IOC/IOA development, and detection tuning. - Demonstrated ability to lead complex incidents, coordinate stakeholders, and communicate clearly under time pressure. - Scripting or automation experience (e.g., Python, PowerShell) for investigation enrichment and workflow improvements. - Familiarity with NIST CSF/800-61, CIS Controls, and common regulatory requirements impacting incident response. - Excellent documentation skills and an evidence-driven approach to investigations. Preferred Qualifications - Relevant certifications: GCIA, GCED, GCIH, GCFA, GNFA, CISSP, CCSP, or equivalent experience. - Experience with ticketing and case management systems (e.g., ServiceNow) and knowledge management practices. - Prior experience with threat intel platforms, sandboxing tools, and malware triage is a plus. Work Schedule - This role is scheduled Tuesday-Saturday, 8:00 AM -4 PM Eastern Time to support operational coverage. - Occasional flexibility may be required during major incidents or planned exercises. Consults with other IT areas and the businesses and provides professional support for major components of the company's information security infrastructure. Contributes to the development and implementation of security architecture, standards, procedures and guidelines for multiple platforms. Consults with the business and operational infrastructure personnel regarding new and existing technologies. Recommends new security tools to management and reports and provides guidance and expertise in their implementation. Reviews and analyzes complex data and information to provide insights, conclusions and actionable recommendations provides direction and guidance on reports and analyses and ensures recommendations are aligned with customer/business needs and capabilities. Ensures that all significant security concerns are addressed. Recommends course of action to mitigate risk and ensures that appropriate standards are established and published. Contributes to the achievement of area objectives. Bachelor's degree in computer science or a related discipline, or equivalent work experience required, advanced degree preferred, 8-10 years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus..

Similar Jobs

More Jobs at BNY Mellon

More Information Technology Jobs

Find similar Vice President, Senior SOC Analyst- Tuesday- Saturday jobs: