682,433open jobs
39,540companies
98,738added this week
Browse all
Salary
$98k – $197k per year (Estimated)
Location
Remote/Hybrid (Milwaukee, United States)
Seniority
Senior · 5+ years exp
Overview
Company
Impact
Profile match
FlexTrade offers tailored solutions for every trading challenge on both the buy-side & sell-side. Contact us today to unlock your full trading potential.

FlexTrade Systems is a provider of customized multi-asset execution and order management trading solutions for buy- and sell-side financial institutions. Through deep client partnerships with some of the world's largest, most complex and demanding capital markets firms, we develop flexible tools, technology and innovation that deliver our clients a competitive edge. Our globally distributed engineering teams focus on adaptable technology and open architecture to develop highly sophisticated trading solutions that can automate and scale with your business strategies.

At FlexTrade, we hold our values close to heart, with pride and gratitude, as they guide us in everything that we do. We are dedicated to giving our clients a competitive edge, taking ownership of our responsibilities, being flexible to adapt to ever-changing environment and technology, bringing integrity to every interaction and we continue to improve, grow together and collaborate as one team. All of these while having Fun truly makes FlexTrade a wonderful place to work.

The Team:

We are looking for a technically sharp and driven Senior SOC Analyst to join our cybersecurity team. You will serve as a key individual contributor within the Security Operations Center, owning day-to-day detection, analysis, and response activities while contributing to vulnerability management and purple team exercises. This is a hands-on, practitioner role - you will spend most of your time in the work, not managing it. You will collaborate closely with peers, IT, and engineering teams to identify and contain threats, reduce attack surface, and continuously sharpen our defensive capabilities. The position is primarily on-site (4 days per week at our offices) with one remote day per week.

Requirements

Responsibilities:

Security Monitoring & Incident Response

  • Monitor, triage, and investigate security alerts across SIEM, EDR, NDR, and cloud platforms, escalating to the SOC Lead as appropriate.
  • Respond to security incidents end-to-end: initial triage, containment, eradication, recovery, and post-incident documentation.
  • Execute and help maintain incident response playbooks and runbooks, flagging gaps and recommending improvements.
  • Conduct root cause analysis following incidents and contribute findings to post-incident reviews.
  • Produce clear, accurate incident reports suitable for both technical and non-technical audiences.
  • Participate in on-call rotation and be available to respond to high-severity incidents outside of business hours when required.

Vulnerability Management

  • Perform vulnerability scans and assessments using tools such as Tenable, Qualys, or Rapid7 on a scheduled and ad-hoc basis.
  • Analyze and prioritize vulnerabilities using CVSS scores, threat intelligence, and asset criticality to guide remediation efforts.
  • Track and follow up on remediation progress with IT and engineering teams, escalating stalled items as needed.
  • Contribute to vulnerability reporting, capturing trends, patch compliance rates, and risk reduction metrics.
  • Stay current on newly disclosed CVEs and exploit trends, advising on risk-based prioritization.

Purple Teaming & Threat Detection

  • Participate in purple team exercises alongside red team operators to validate detection and response capabilities.
  • Map adversary techniques to the MITRE ATT&CK framework and use exercise findings to identify detection gaps.
  • Write and tune SIEM detection rules, correlation queries, and alerts based on adversary TTPs and purple team outcomes.
  • Conduct threat hunting exercises using hypothesis-driven and ATT&CK-aligned methodologies to surface undetected threats.
  • Track emerging threat actor activity and incorporate relevant TTPs into detection logic and hunting campaigns.

Security Operations & Collaboration

  • Analyze logs from a variety of sources including endpoints, firewalls, proxies, cloud platforms, and identity systems.
  • Enrich investigations with threat intelligence, enriching indicators of compromise (IOCs) and correlating activity across data sources.
  • Collaborate with IT and engineering to support security control tuning, reducing false positives and improving signal quality.
  • Maintain accurate and up-to-date SOC documentation including runbooks, knowledge base articles, and escalation procedures.
  • Support compliance activities (e.g., SOC 2, ISO 27001, NIST CSF) by providing evidence and participating in audits as required.
  • Mentor junior analysts by sharing knowledge and providing guidance on investigations and tool usage, without formal management responsibility.

Required Skills and Experience:

  • 5+ years of hands-on experience in a SOC, security operations, or incident response role.
  • Strong proficiency with SIEM platforms such as Splunk, Microsoft Sentinel, or Sumo Logic.
  • Hands-on experience with EDR solutions such as CrowdStrike Falcon, or Microsoft Defender.
  • Hands-on experience configuring conditional access policies in Entra or another platform.
  • Hands-on experience configuring DLP policies on Purview or another platform.
  • Demonstrated experience triaging and responding to a significant volume of security alerts and incidents.
  • Working knowledge of vulnerability management tools and processes, including scanning, prioritization, and remediation tracking.
  • Solid understanding of network protocols and fundamentals: TCP/IP, DNS, HTTP/S, firewalls, and proxies.
  • Experience analyzing logs across endpoints, networks, cloud environments, and SaaS platforms.
  • Familiarity with the MITRE ATT&CK framework and applying it to investigations and detection engineering.
  • Scripting experience for investigation and automation tasks (Python, PowerShell, or Bash).
  • Strong analytical and problem-solving skills with high attention to detail.
  • Excellent written and verbal communication skills; able to convey technical findings clearly to varied audiences.

Preferred Qualifications

  • Experience participating in purple team, red team, or adversary emulation exercises.
  • Background in threat hunting using hypothesis-driven or behavior-based methodologies.
  • Exposure to SOAR platforms and security automation or workflow development.
  • Experience with cloud security telemetry and threat models across AWS, Azure, or GCP.
  • Familiarity with threat intelligence platforms or workflows (e.g., MISP, Recorded Future, OpenCTI).
  • Knowledge of digital forensics tools and techniques (KAPE, Volatility, Velociraptor, etc.).

Certifications:

  • Required: CISSP - Certified Information Systems Security Professional
  • Preferred: GIAC GCIH - GIAC Certified Incident Handler
  • Preferred: GIAC GCIA - Intrusion Analyst
  • Preferred: CEH - Certified Ethical Hacker
  • Preferred: CompTIA CySA+ or Security+
  • Preferred: OSCP, GPEN, or similar offensive/detection-focused certification
  • Preferred: Cloud security certifications: Microsoft SC-200, AWS Security Specialty, or equivalent

Why Join Us

  • A hands-on practitioner role with real ownership over detection, response, and vulnerability operations.
  • Hybrid schedule with consistent in-person collaboration and one remote day per week.
  • Dedicated budget for professional development, training, and certification support.
  • Competitive compensation and comprehensive benefits package.

**FlexTrade Systems, Inc. does not accept unsolicited resumes from search firm recruiters. Fees will not be paid in the event a candidate submitted by a recruiter without an authorized agreement for a particular SOW (Statement of Work) in place is hired: such resumes are deemed the sole property of FlexTrade Systems, Inc.**

**FlexTrade Systems, Inc. is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or any other status protected by law.**

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
682,433 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Milwaukee
$65k – $164k per year (Estimated) • Remote/Hybrid • Full-Time • Belfast
Python
SQL
DevOps
Splunk
CI/CD
Grafana
Apply
$30k – $80k per year (Estimated) • Remote/Hybrid • Full-Time • Brazil
Python
PowerShell
Bash
Databases
ElasticSearch
DevOps
Terraform
Zabbix
Azure DevOps
Kibana
CloudFormation
Dynatrace
Prometheus
Azure
CI/CD
AWS
Docker
Kubernetes
Grafana
AWS Lambda
Amazon S3
IAM
API Gateway
Apply
$90k – $126k per year • Equity • In office • Full-Time • Bachelor's Degree • Ottawa • Waterloo
Python
Java
Rust
C++
Java
Gradle
DevOps
Jenkins
Git
Docker
Apply
$130k – $195k per year • Remote/Hybrid • Full-Time • 6+ years exp • New York
Python
Apply
$34k – $88k per year (Estimated) • Remote/Hybrid • Full-Time • 12+ years exp • Bachelor's Degree • Pune • Chennai
Python
Databases
Neo4j
ArangoDB
AI/ML
LangGraph
LangChain
Claude
LlamaIndex
Model Context Protocol
Fine-tuning
Embeddings
Prompt Engineering
Function Calling
AI Agents
NLP
NER
CrewAI
Gemini
RAG
Google ADK
Tokenization
Hybrid Search
OpenAI
OpenAI Agents SDK
A2A
GraphRAG
Context Engineering
Knowledge Graph
LLM Guardrails
Agentic Workflows
Multi-Agent Systems
DevOps
OpenTelemetry
CI/CD
AWS
Docker
Kubernetes
Vector
Apply
$55k – $116k per year (Estimated) • In office • London
JavaScript
Java
TypeScript
Scala
Scala
Play Framework
Frontend
React.js
AG Grid
Mobile
React Native
DevOps
gRPC
Jenkins
Git
GitLab
Cybersecurity
SonarQube
Management
Agile
Apply
$69k – $156k per year (Estimated) • In office • Sydney
Python
C++
Perl
Apply
$40k – $95k per year (Estimated) • In office • London
Apply
Technical Analyst 23 days ago
$58k – $154k per year (Estimated) • In office • London
C++
Apply
$84k – $181k per year (Estimated) • Remote/Hybrid • 10+ years exp • Milwaukee
PowerShell
DevOps
VMWare
Azure
Windows Server
Jenkins
AWS
Docker
Kubernetes
Management
Confluence
Jira
ServiceNow
Apply
In office • Part-Time • High School Diploma • Milwaukee
Apply
$45k – $90k per year (Estimated) • In office • Full-Time • 1+ year exp • High School Diploma • Milwaukee
Apply
OB Tech 1 day ago
In office • Full-Time • Milwaukee
Apply
Registered Nurse 1 day ago
$70k – $96k per year • In office • Confidential • Full-Time • High School Diploma • Milwaukee
Apply
$35k – $55k per year (Estimated) • In office • Internship • Bachelor's Degree • Milwaukee
Management
Outlook
Apply
See all jobs
This is one of many
682,433 more open roles from verified company boards, updated every day.