K-01 SECURITY ● OPEN ROLE
Senior SOC Analyst (Tier 3)
As a Tier 3 analyst in our Hacettepe Teknokent SOC you will own complex incident analysis, threat hunting and playbook development, and mentor Tier 1 and Tier 2 analysts as the technical reference point of the team.
LOCATIONHACETTEPE TEKNOKENT · ANKARA
WORKINGFULL TIME
EXPERIENCE5+ YEARS
POSTED12.04.2026
CLOSES30.05.2026
§ 01
Responsibilities
- 01Run deep analysis of incidents escalated from Tier 1 and Tier 2; report root cause and blast radius.
- 02Design and regularly run threat hunting scenarios based on the MITRE ATT&CK framework.
- 03Develop and maintain playbooks and automation workflows on the SOAR platform.
- 04Build SIEM content (use cases, correlation rules, dashboards); track and reduce the false positive rate.
- 05Present the monthly security posture report and quarterly tabletop exercise results to clients.
- 06Chair post-incident reviews and follow up on improvement actions.
§ 02
What we look for
- 01Bachelor's degree in an engineering discipline.
- 02At least 5 years in a SOC, MDR or enterprise security operations environment.
- 03Content development experience on a SIEM (FortiAnalyzer, Splunk, QRadar or similar).
- 04Incident analysis experience on EDR/XDR platforms (Trend Vision One, CrowdStrike, SentinelOne).
- 05Log analysis, network traffic analysis and scripting (Python / PowerShell) on Windows and Linux.
- 06English at a level sufficient to run vendor escalation.
§ 03
Nice to have
- 01At least one of OSCP, GCIH, GCIA, GCFA or CISSP.
- 02Threat intelligence platform (MISP, OpenCTI) and integration experience.
- 03Familiarity with log retention regulation.
- 04A record of contribution to open source security tooling (Sigma, YARA, Suricata).
§ 04
Benefits
§ 05
Process
§ 06 — APPLICATION
A few fields, one CV.
Fill in the short form below and attach your CV. Every application is reviewed shortly.