Senior Security Operations Analyst
IT, Operations
San Jose, CA, USA
- San Jose
- Sao Paulo
YOUR IMPACT
YOUR GROWTH
- Continuous learning: Our learning and apprenticeship culture, backed by structured programs, is all about helping you grow while creating an environment where feedback is clear, actionable, and focused on your development. The real magic happens when you take the input from others to heart and embrace the fast-paced learning experience, owning your journey.
- A voice that matters: From day one, we value your ideas and contributions. You’ll make a tangible impact by offering innovative ideas and practical solutions, all while upholding our unwavering commitment to ethics and integrity. We not only encourage diverse perspectives, but they are critical in driving us toward the best possible outcomes.
- Global community: With colleagues across 65+ countries and over 100 different nationalities, our firm’s diversity fuels creativity and helps us come up with the best solutions. Plus, you’ll have the opportunity to learn from exceptional colleagues with diverse backgrounds and experiences.
- Exceptional benefits: On top of a competitive salary (based on your location, experience, and skills), we provide a comprehensive benefits package to enable holistic well-being for you and your family.
YOUR QUALIFICATIONS AND SKILLS
- Industry certifications such as GCIH, GCFA, GCFE, CEH, or equivalent are preferred
- 4+ years of hands-on experience in Security Operations, Cyber Defense, Incident Response, or Threat Detection
- Experience working within a Security Operations Center (SOC) or Cyber Defense team, handling security monitoring and incident response activities
- Strong understanding of security monitoring, incident detection, investigation, and response across enterprise and multi-cloud environments
- Hands-on experience investigating security events across AWS, Microsoft Azure, and Google Cloud Platform (GCP), with familiarity with cloud-native security services and logging
- Solid understanding of the Cyber Kill Chain®, MITRE ATT&CK Framework, modern threat actor tactics, techniques, and procedures (TTPs), and incident response methodologies
- Experience analyzing endpoint, network, authentication, application, and cloud logs using SIEM and XDR platforms
- Strong working knowledge of Microsoft Defender EDR, and Palo Alto Cortex XSIAM
- Experience using EDR/XDR, SIEM, IDS/IPS, email security, identity security, and cloud security tools during investigations
- Working knowledge of Python, PowerShell, or Bash for investigation, automation, or operational efficiency
- Strong analytical and problem-solving skills with the ability to investigate and resolve complex security incidents
- High Tech
- Technology
FOR U.S. APPLICANTS: McKinsey & Company is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by applicable law.
FOR NON-U.S. APPLICANTS: McKinsey & Company is an Equal Opportunity employer. For additional details regarding our global EEO policy and diversity initiatives, please visit our McKinsey Careers and Diversity & Inclusion sites.
FOR BRAZILIAN APPLICANTS: Applicants for job positions in any office in Brazil have flexibility regarding qualifications and McKinsey & Company will not require previous experience of more than 6 months. If the job description indicates preferred prior work experience of more than 6 months, applicants for such job position in the Brazilian offices must interpret the preferred qualification described as limited up to 6 months maximum.