{"id":1607596,"url":"https://alion.io/job/agco-lead-analyst-cybersecurity","title":"Lead Analyst, Cybersecurity","company":{"id":176823,"name":"AGCO","domain":"agcocorp.com","url":"https://alion.io/company/agco","size_band":"5000+","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"SuccessFactors","truth_index":null},"role":"Security","role_family":"Security","seniority":"lead","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Duluth, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":96000,"max_usd":204000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":307},"experience_years_min":1,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"Bash","optional":false},{"name":"Commander.js","optional":false},{"name":"Defense in Depth","optional":false},{"name":"Least Privilege","optional":false},{"name":"Linux","optional":false},{"name":"MITRE ATT&CK","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"JavaScript","optional":true},{"name":"Node JS","optional":true}],"status":"live","first_seen_at":"2026-09-20T07:00:00Z","employer_posted_date":"2026-09-20","last_verified_at":"2026-10-09T00:50:58Z","board_verified":true,"closed_at":null,"days_open":18,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":18},"description":"Not everyone can claim to feed the world, but it is part of our every day. Behind everything we do for our farmers, there is one AGCO team making it happen. We are proud to put our curiosity into work, building a better and more sustainable world. Join our extraordinary team today!\nWe are seeking an experienced Lead Security Operations Analyst to join our Security Operations Center (SOC). This is a hands-on technical leadership role responsible for driving operational excellence across security monitoring, incident detection, response, and threat hunting. In this role, you will serve as a senior escalation point for complex security incidents while providing technical leadership and mentorship to SOC analysts. You will play a critical role in strengthening detection capabilities, improving response outcomes, and advancing automation and maturity within the security operations program. This position is ideal for a senior analyst who enjoys remaining deeply technical while influencing how security operations are performed at scale.\nYour Impact\nLead and oversee 24x7 SOC operations, ensuring consistent monitoring, triage, and response to security events. Serve as the primary escalation point for high severity and complex security incidents. Coordinate incident response activities across IT, Cloud, Network, Legal, and Business stakeholders. Execute and continually improve incident response to playbooks and runbooks. Conduct post incident reviews to identify gaps, lessons learned, and improvement opportunities\n\nDevelop, maintain, and optimize SIEM detections and dashboards to improve signal quality and coverage. Build and enhance SOAR playbooks and automations to reduce mean-time-to-detect (MTTD) and mean-time-to-respond (MTTR). Troubleshoot detection failures, false positives/negatives, performance issues, and tool integrations. Contribute to security tooling strategy, rationalization, and roadmap planning\n\nPerform proactive threat hunting to identify adversary behavior and emerging risks. Translate threat intelligence and attack techniques into actionable detections. Continuously evaluate SOC processes, tools, and workflows to improve efficiency and effectiveness\n\nAdvanced incident response and investigation skills across cloud, endpoint, network, and identity environments. Strong detection engineering mindset with the ability to translate threats into high-fidelity alerts. Proficiency in scripting and automation to enhance SOC efficiency\n\nSolid understanding of attacker tactics, techniques, and procedures (TTPs) and security frameworks (e.g., MITRE ATT&CK)\n\nYour Experience and Qualifications\nBachelor’s degree in computer science, Cybersecurity, Information Systems, or a related field (or equivalent experience).4-5+ years of progressive experience in security operations, incident response, or detection engineering\n\nExperienced in cybersecurity incident response, endpoint security, SOC management, and Linux operating systems. Experience acting as an escalation lead or incident commander for high severity incidents\n\nProgressive experience across cloud, network, endpoint, or identity security domains. Hands-on experience building detections, dashboards, or automations using SIEM and SOAR platforms\n\nStrong scripting or automation skills (e.g., Python, PowerShell, Bash). Solid understanding of core security principles such as defense in depth, least privilege, secure defaults, and separation of duties\n\nExperience participating in real-world incident response and/or threat hunting activities. Strong communication skills with the ability to explain technical issues to nontechnical stakeholders\n\nYour Benefits\nHealth care and wellness plans\n\nDental and vision plans\n\nFlexible and virtual work options (where available)\n\n401(k) Savings Plan with company match\n\nEmployee Stock Purchase Plan offering eligible employees the ability to purchase AGCO stock at a discounted price\n\nPaid holidays and paid time off\n\nHealth savings and flexible spending accounts\n\nReimbursement for continuing education\n\nLife insurance and other supplemental insurance plans\n\nYour Workplace\nAs a designated remote role, this position is primarily performed from a home office, except when business needs require an in-person presence.\nWe value inclusion and recognize the innovation a diverse workforce delivers to our farmers. Through our recruitment efforts, we are committed to building a team that includes a variety of experiences, backgrounds, cultures, and perspectives.\nJoin us as we bring agriculture into the future and apply now!\nAGCO is proud to be an Equal Opportunity Employer. We maintain a drug-free workplace and perform pre-employment substance abuse testing.","description_format":"text","description_chars":4706,"description_truncated":false,"requirements":{"experience_years_min":1,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":true},"security_clearance":false,"languages":[]},"benefits":["Home office","Life insurance"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Information Security","Farming & Agriculture","Manufacturing"],"lifecycle":[{"event":"open","at":"2026-10-01T19:57:43Z"}],"visa":[{"country":"US","licensed_sponsor":true,"evidence":"H-1B filings in 12 months: 11 · green card filings: 2","filings_12m":11,"filings_prev_12m":13,"green_card_filings_12m":2,"median_offered_wage_usd":112885,"route":null,"cap_exempt":false,"checked_at":"2026-10-03T21:08:04+00:00","sources":["US Department of Labor: LCA disclosure data (H-1B, H-1B1, E-3)","US Department of Labor: PERM disclosure data (green cards)"],"filings_for_role_12m":2}],"liveness":{"score":37,"band":"fade","label":"Fading","p_open":1,"p_active":0.67,"p_room":0.55,"age_days":17,"expected_fill_days":12,"reasons":["conf:0","velocity","win:tail","comp:brand"],"computed_at":"2026-10-08T05:49:30Z"},"pay":null,"html_url":"https://alion.io/job/agco-lead-analyst-cybersecurity","json_url":"https://alion.io/job/agco-lead-analyst-cybersecurity.json","meta":{"generated_at":"2026-10-09T02:36:43Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":784,"day_limit":5000,"remaining_today":4216,"minute_limit":60,"resets_at":"2026-10-10T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":176823},"rest":"https://alion.io/mcp/rest/get_company?id=176823"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fagco-lead-analyst-cybersecurity"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fagco-lead-analyst-cybersecurity"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fagco-lead-analyst-cybersecurity"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/agco-lead-analyst-cybersecurity\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fagco-lead-analyst-cybersecurity"}]}