Padmi

SOC ANALYST

United StatesPosted 1 month ago
CybersecurityUnspecified
Apply at Thoughtwave Software and Solutions

Opens the source posting on atsapp.swarmhr.com

Source description

About the role

View original

Role:: Tier 3 Security Analyst

Location: Full Remote Contract: 6-month Contract-to-Hire

Required Skills: Tier 3 SOC Analyst Additional Skills: Technical Skills and Understanding Experience with the following information security technologies and principles: • SOAR • SIEM • EDR • Email Filtering • Log Analysis • Proxies • Malware sandboxing • AV Solutions • DLP • EuBA • Mitre Att&ck / Kill Chain Analysis • Authentication • Cloud Technologies • Scripting or Programing Languages • Familiarity with OS Processes • Windows, Linux, MAC Job Description

Job Summary:

As a Security Operations Center (SOC) Senior Analyst you will be responsible for the identification and tracking of potential security incidents across the enterprise. The SOC Senior Analyst is essential, as you are part of the first line of defense for our Clients Information Security. The SOC Senior Analyst position is responsible for training new SOC analysts, assisting in intricate cyber security investigations as part of Threat Response activities, facilitating escalation of cyber security

Incidents according to a well-documented Incident Response plan, creating, maintaining & updating SOP documentation for SOC Threat Response playbooks, metrics reporting, and ensuring correct analysis for the cyber defense team.

Responsibilities

  • •Perform thorough investigative analysis of potential cyber security threats based on log review and correlating events which requires the documenting of results that create a timeline that can be read and understood by both technical and non-technical personnel.

  • •Review ongoing or completed investigations performed by Level 1/L2 SOC Analysts for potential escalation and / or provide analysis feedback to Analyst and SOC Manager.

  • • Work alongside senior security engineers and architects to deliver superior security services to business units.

  • • Develop, enhance, and operationalize processes to ensure quality of triage.

  • • Assist with the development, measurement, analysis, and maintenance of internal and external service metrics for Security Operations, providing timely reports to leadership teams.

  • • Leverage the metrics to make better informed decisions on improving the organization's capability and functionality.

  • • Lead, coordinate, and train others on effective analysis of security alerts.

  • •Work with Alert & Detection engineers (OCE) on the new alert creation, validation and tuning.

  • • Collaborate across various business units to deliver the most comprehensive security response to internal customers.

Qualifications

  • • Thrives in a fast-paced, team-oriented environment and who embraces opportunities for continuous feedback and improvement.

  • • Practical experience in the Triage function within a Security Operations Center, preferably in an MDR/MSSP, or complex environment

  • • Continually learning new attack vectors, new threats, and security framework expertise

  • • Strong and demonstrated ability to define effective security processes.

  • • Ability to identify current opportunities in current processes and roll out necessary changes.

  • • Strong and practical knowledge of industry adopted frameworks and methodologies (MITRE ATT&CK, CIS, NIST, ISO, PCI-DSS, etc.).

  • • Excellent communicator and presenter

  • • Ability to lead and mentor, including continuous training and feedback opportunities during QA on items such as analytic techniques.

  • • 4+ years' experience working and managing a SOC or customer support function.

  • Technical Skills and Understanding

  • Experience with the following information security technologies and principles:

  • • SOAR

  • • SIEM

  • • EDR

  • • Email Filtering

  • • Log Analysis

  • • Proxies

  • • Malware sandboxing

  • • AV Solutions

  • • DLP

  • • EuBA

  • • Mitre Att&ck / Kill Chain Analysis

  • • Authentication

  • • Cloud Technologies

  • • Scripting or Programing Languages

  • • Familiarity with OS Processes

  • • Windows, Linux, MAC

  • Education:

  • • Undergraduate degree in information systems or computer science (Required)

  • • Advanced degree in engineering, Cybersecurity, information assurance, information security, information systems or computer science (Preferred)

  • Certifications:

  • There are no certification requirements, but strong consideration will be given to those with the following or similar:

  • • SANs / GIAC

  • • CompTIA

  • • ISC2

• ISACA Thanks & Regards, Ramyasree US IT RECRUITER Thought wave Software and Solutions 314 N. Lake St, Suite 6, Aurora IL 60506 Desk: 6302164696 Email:ramyasree@thoughtwavesoft.com LinkedIn: https://www.linkedin.com/in/ramya-sree-kolla-519839221/

A Certified Minority Business Enterprise, Disadvantaged Business Enterprise, SAM.gov, SOC2 & ISO2005, Vendors for: · STATES: IL, PA, TN, AK, OR, CT, GA, VA, ID, IA, UT, FL, MN & CO, · NATIONAL LABS: ARGONNE & FERMI, · COUNTIES: HENNEPIN, MN, FULTON & GA, · PUBLIC SCHOOLS: ATLANTA.

One address, no account. We’ll tell you when matching roles go live.

More at Thoughtwave Software and Solutions

Related open roles

View all roles