Sr SOC Analyst - 2nd Shift

Eligible Work Locations: Remote - Nationwide, United States PLEASE NOTE:

This position requires permanent U.S. work authorization. Candidates requiring current or future visa sponsorship, including those on F‑1/OPT, CPT or H1B, are not eligible for this role.

This role is not open for staffing partners or corp‑to‑corp candidates. Why WWT?

At World Wide

Technology, we work together to make a new world happen. Our important work benefits our clients and partners as much as it does our people and communities across the globe. WWT is dedicated to achieving its mission of creating a profitable growth company that is also a Great Place to Work for All.

We achieve this through our world class culture, generous benefits, and by delivering cutting-edge technology solutions for our clients. Founded in 1990, WWT is a global technology solutions provider leading the AI and Digital Revolution. WWT combines the power of strategy,

execution, and partnership to accelerate digital transformational outcomes for organizations around the globe. Through its Advanced Technology Center, a collaborative ecosystem of the worlds most advanced hardware and software solutions, WWT helps clients and partners conceptualize,

test and validate innovative technology solutions for the best business outcomes and then deploys them at scale through its global warehousing,

distribution and integration capabilities. With over 12,000 employees across WWT and Softchoice and more than 60 locations around the world, WWTs culture, built on a set of core values and established leadership philosophies, has been recognized 14 years in a row by Fortune and Great Place to Work® for its unique blend of determination, innovation, and creating a great place to work for all. Want to work with highly motivated individuals on high-performance teams?

Join WWT today!

About the Role Our Security Operations Center (SOC) is seeking a Senior SOC Analyst (2nd shift 3pm-11pm CST) who can quickly get up to speed and help drive operational excellence. This role is focused on eliminating inefficiencies, expanding detection coverage, and strengthening our detection, response, and threat-informed defense capabilities. It’s ideal for someone who excels in hands-on analysis and is passionate about improving how a SOC operates day-to-day.

You’ll play a key role in proactive cyber defense by collaborating across InfoSec teams, enhancing monitoring platforms, tuning controls, and conducting targeted threat hunts that reduce risk, enable better detections, and elevate our overall security posture. What “Driving Operations” Means in This Role This position goes well beyond alert triage. You’ll be expected to: Identify and resolve workflow inefficiencies that slow down response or create friction for analysts.

Expand detection gap coverage through new use cases, improved telemetry, and refined detection logic. Reduce false positives and increase detection fidelity through ongoing tuning of tools and monitoring platforms.

Key Responsibilities Threat-Informed Defense & Detection Engineering Use internal and external threat intelligence, risk insights, and adversary behavior research to guide proactive defensive actions. Develop, tune, and optimize SIEM/SOAR, EDR, NDR, and log analytics platforms to improve detection quality and reduce noise. Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT&CK-aligned use cases.

Identify control gaps and collaborate with platform owners to implement both preventive and detective enhancements. SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement) Partner with SOC leadership to refine responsibilities, skill requirements, and operational targets. Improve SOC operational effectiveness by spotting opportunities to streamline execution and remove process friction.

Translate observed detection gaps into measurable improvements through new detections, automation, or enhanced processes.

Threat Hunting

Conduct hypothesis and intelligence driven threat hunts to uncover malicious activity, suspicious behavior, or weaknesses not visible through standard monitoring. Document findings and collaborate with SOC leadership and partner teams on remediation and follow-up actions. Continuously evolve hunting methodologies, techniques, and automation in response to a changing threat landscape.

Incident

Response & Security Event Handling Support the management and resolution of security events and incidents. Work independently and collaboratively to identify, assess, report, and recover from security incidents. Participate in after-hours response when needed.

Qualifications Minimum of 3–5 years of experience in an operational security program. Bachelor’s in computer science, information security, or equivalent exper

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...