Lucid Motors logo

Senior SOC Analyst, Cyber Threat Intelligence DFIR

NewIncrease your job offer by figures

Need help maximizing your compensation? Get expert negotiation coaching from YourNegotiations to increase your job offer by 5-6 figures.

Their clients have improved their job offers by an average of $90K, and up to $550K, on top of the initial offer. YourNegotiations has partnered with ClimateTechList to give users a 10% discount when you mention ClimateTechList.

Job Description

Leading the future in luxury electric and mobility

At Lucid, we set out to introduce the most captivating, luxury electric vehicles that elevate the human experience and transcend the perceived limitations of space, performance, and intelligence. Vehicles that are intuitive, liberating, and designed for the future of mobility.

We plan to lead in this new era of luxury electric by returning to the fundamentals of great design – where every decision we make is in service of the individual and environment. Because when you are no longer bound by convention, you are free to define your own experience.

Come work alongside some of the most accomplished minds in the industry. Beyond providing competitive salaries, we’re providing a community for innovators who want to make an immediate and significant impact. If you are driven to create a better, more sustainable future, then this is the right place for you.

At Lucid Motors, the Senior SOC Analyst, Cyber Threat Intelligence DFIR is responsible for the Security operations, Incident response, Threat Hunting and Cyber Threat Intelligence. This role is essential to strengthening our threat-informed defense posture and providing strategic and tactical intelligence to Security Operations, Incident Response, and Risk teams. The ideal candidate will bring deep experience in threat intelligence lifecycle management, dark web monitoring, identity intelligence, and exposure of enterprise assets across surface, deep, and dark web environments.

You Will:

  • Collect, analyze, and operationalize threat intelligence across surface, deep, and dark web sources.
  • Use tools such as Recorded Future, CrowdStrike Counter Adversary Module, OSINT, and dark web monitoring platforms to identify emerging threats, campaigns, and threat actor behaviors.
  • Perform identity intelligence and account exposure investigations across criminal forums, paste sites, and marketplaces.
  • Monitor and assess threats from social media, hacktivist groups, and geopolitical activity.
  • Enrich SOC and IR investigations with contextual threat intelligence (IOCs, TTPs, attribution).
  • Track and report on threat actors, malware families, exploit trends, and sector-specific targeting.
  • Produce periodic threat assessments, intelligence briefings, and alerts for internal stakeholders.
  • Collaborate with Detection Engineering to convert intelligence into detections and hunt hypotheses.
  • Support intelligence requirements for Security Operations, Incident Response, Risk, and Legal teams.
  • Proficient with forensic tools such as EnCase, FTK, Velociraptor, Volatility, etc.
  • Experience with SIEM, EDR, and SOAR platforms (e.g., Splunk, CrowdStrike, SentinelOne).
  • Strong knowledge of network protocols, system internals (Windows/Linux), and common attack techniques.

You Bring:

  • 3–6 years of experience in Cyber Threat Intelligence, Security Operations, or Threat Hunting.
  • Proficiency with Recorded Future, CrowdStrike (especially Counter Adversary Module), and dark web intelligence platforms.
  • Deep understanding of threat actor TTPs, MITRE ATT&CK framework, and intelligence lifecycle.
  • Experience in multiple intelligence disciplines including:
  • Threat Intelligence (TI)
  • SecOps Intelligence
  • Identity Intelligence
  • Dark Web Intelligence
  • Surface Web Intelligence
  • Social Media Monitoring
  • Third Party Intelligence
  • Strong writing skills for producing intelligence reports, threat profiles, and executive summaries.

Advantageous:

  • Familiarity with TIP platforms, STIX/TAXII feeds, and intel ingestion into SIEM/SOAR tools.
  • Certifications such as GCTI, GREM, CTIA, or GCIA.
  • Understanding of geopolitical and nation-state threat landscapes.
  • Experience contributing to threat hunting and red team exercises.

***This role is an onsite role at our headquarters in Newark, CA.***

At Lucid, we don’t just welcome diversity - we celebrate it! Lucid Motors is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, national or ethnic origin, age, religion, disability, sexual orientation, gender, gender identity and expression, marital status, and any other characteristic protected under applicable State or Federal laws and regulations.

Salary Range: The compensation range for this position is specific to the locations listed below and is the range Lucid reasonably and in good faith expects to pay for the position taking into account the wide variety of factors that are considered in making compensation decisions, including job-related knowledge; skillset; experience, education and training; certifications; and other relevant business and organizational factors.

Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid’s equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.)

Base Pay Range (Annual)

$133,900—$184,140 USD

Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid’s equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.)

By Submitting your application, you understand and agree that your personal data will be processed in accordance with our Candidate Privacy Notice. If you are a California resident, please refer to our California Candidate Privacy Notice.

To all recruitment agencies: Lucid Motors does not accept agency resumes. Please do not forward resumes to our careers alias or other Lucid Motors employees. Lucid Motors is not responsible for any fees related to unsolicited resumes.

ClimateTechList.com logo

Lucid Motors number of job openings over time by month

ClimateTechList is the web's largest aggregator of climate, clean tech, renewable energy & green jobs. Contact us if you'd like to use partner or use our current or historical jobs data in any way.

Apply to Job

👉 Please mention that you found the job on ClimateTechList, this helps us get more climate tech companies listed here, thanks!

Get a referral to Lucid Motors

If possible, try to get a warm intro/referral to Lucid Motors before applying! Do a LinkedIn search to see who you may know at the company. See this LinkedIn post from Steven for more details on this tactic.

All job openings from Lucid Motors

Join ClimateTechList Talent Collective

Want to be matched with companies directly? Apply to the talent collective.

Here's how it works:

  1. You submit an application

  2. We'll share your profile with climate tech companies potentially interested in chatting with you

  3. We'll reach out if there's a company interested in talking to you.

Join ClimateTechList Talent Collective

Want to be matched with companies directly? Apply to the talent collective.

Here's how it works:

  1. You submit an application

  2. We'll share your profile with climate tech companies potentially interested in chatting with you

  3. We'll reach out if there's a company interested in talking to you.