Job Openings SOC Analyst

About the job SOC Analyst

  • Monitor various security tools to identify potential incidents, network intrusions, and malware events, etc., to ensure the confidentiality, integrity, and availability of the company's architecture and information systems are protected.
  • Generate trouble tickets and perform initial validation and triage to determine whether incidents are security events using open-source intelligence (OSINT).
  • Review and analyze log files to report any unusual or suspect activities.
  • Utilize incident response use-case workflows to follow established and repeatable processes for triaging and escalating.
  • Follow established incident response procedures to ensure proper escalation, analysis, and resolution of security incidents.
  • Analyze and correlate incident event data to develop preliminary root cause and corresponding remediation strategy.
  • Provide technical support for new detection capabilities, recommendations to improve upon existing tools/capabilities to protect the companys network, and assessments for High Value Assets.
  • Research Threat Intelligence sources on the latest malware, trends, patches to keep the Security Program up to date.
  • Document and maintain SOPs/Runbooks related to investigating security incidents.
  • Perform case management throughout the incident lifecycle for moderately complex security incidents.
  • Understand and assist with compliance and enterprise change management policies and procedures.
  • Attend and participate in cybersecurity projects and the change management process. This includes interacting with business units and technical teams to understand what is coming and how their projects can be more secure from the beginning.
  • Maintain metrics & reports on the status of the companys cybersecurity operations program.

Qualification

Required years of experience: 3-4 years

i. Knowledge of security, monitoring, and networking technologies, tools, protocols, and standards.

ii. Intermediate or advanced security, networking, or equivalent professional experience in security operations.

iii. Understanding/Experience on Network Security, Firewall Security, and Web Security (including web application firewalls and proxies).

iv. Experience on Investigating, documenting, and reporting on any information security (InfoSec) issues as well as emerging trends.

v. Knowledge of IT Industry standards such as ISO 27001, HIPAA, SOX.




A