Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Optiv

ASO Threat Analyst Manager

Optiv

. Own daily shift execution, queue hygiene, and alert velocity to meet client SLAs and SLOs .

Posted 10/8/2026full-timeRemote • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Information Security with a focus on Threat Analysis, Incident Response, and Client Management. Proven ability to lead teams, mentor analysts, and manage operational workflows in high-pressure environments.

Highest-signal resume keywords
Information Security ExpertiseThreat AnalysisClient Interaction ManagementAI-Assisted Triage ExperienceEDR/XDR and SIEM Tools Proficiency

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Threat AnalysisNetwork Traffic AnalysisSystems AdministrationIncident TriageOperational EscalationProcess ImprovementQuality ControlTechnical MentoringAutomation WorkflowsTicketing Workflows
Soft Skills
Verbal CommunicationWritten CommunicationConflict ResolutionTeam LeadershipCoaching
Tools & Technologies
Google SecOpsCrowdStrikeSentinelOneMicrosoft Defender/SentinelSplunkServiceNowJira
Certifications & Qualifications
GCIHGCIACySA+
Industry Keywords
SOCMDRMSSPMITRE ATT&CKITIL

Tech Stack

Tools & technologies
ServiceNowSplunk

About the role

Key responsibilities & impact
  • Own daily shift execution, queue hygiene, and alert velocity to meet client SLAs and SLOs
  • Supervise the human-in-the-loop operational interface and validate agentic AI triage outputs, enriched telemetry, and automated investigations
  • Conduct ticket audits and investigation spot-checks for high-fidelity analysis, defensible evidence, and client-facing notes
  • Serve as the primary operational escalation point during critical P1/P0 security events and client crises
  • Run shift handoffs, identify operational bottlenecks, and balance analyst workload
  • Lead tactical After-Action Reviews to identify process breakdowns and remediation steps
  • Direct and mentor Senior Threat Analysts and oversee handoffs with Detection Engineering, SOAR Engineering, and Threat Hunting
  • Govern analyst feedback, tuning requests, automation ideas, and hunt referrals
  • Track cross-team action items and accountability through completion
  • De-escalate tense client interactions and lead client-facing incident discussions
  • Partner with Client Success Managers on at-risk or noisy accounts
  • Mentor analysts through real-time investigation guidance, scenario walk-throughs, and technical quality reviews
  • Guide analysts in using autonomous and agentic tools while building critical-thinking and investigative skills
  • Manage shift schedules, coverage models, and on-call rotations
  • Coach analysts toward technical career milestones in threat hunting, detection engineering, and advanced incident response

Requirements

What you’ll need
  • 6 to 8+ years in Information Security, with strong technical foundations in threat analysis, network traffic analysis, or systems administration
  • 3+ years within an active SOC, MDR, or MSSP environment
  • 1 to 2+ years in a tactical lead, supervisory, or senior escalation role
  • Experience de-escalating difficult client interactions and steering conversations toward productive resolutions
  • Ability to coach senior technical staff, delegate working-level tasks, and maintain quality control and cross-team alignment
  • Hands-on experience with AI-assisted triage, SOAR playbooks, or agentic security workflows
  • Ability to run live incident triage and manage queue dynamics under pressure in a multi-tenant services model
  • Working knowledge of modern EDR/XDR and SIEM tools, including Google SecOps, CrowdStrike, SentinelOne, Microsoft Defender/Sentinel, or Splunk
  • Practical familiarity with the MITRE ATT&CK framework and common adversary tradecraft
  • Clear, adaptive verbal and written communication skills
  • Bachelor's degree in a technical field or equivalent hands-on operational experience
  • Direct experience collaborating with Detection Engineering and SOAR automation pipelines
  • Practical knowledge of ITIL-aligned ticketing workflows, such as ServiceNow or Jira
  • Active technical certifications such as GCIH, GCIA, CySA+, or vendor-specific platform certifications

Benefits

Comp & perks
  • A company committed to our inclusive value through our Employee Resource Groups
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities through “Optiv Chips In”
  • The ability and technology necessary to productively work remotely/from home (where applicable)