ए
Mid-Level SOC Analyst
Adept Consulting Services, Inc.
Harrisburg, Panama · पूरा समय
अप्लाय करने वाले प्रथम बनिए
- अनुभव
- 3-6 वर्ष
- वेतन
- —
- उद्घाटन
- 1
- की तैनाती
- 2 पहले
- कार्य मोड
- कार्यालय में हूँ
- फिर शुरू करना
- आवेदन करना आवश्यक है
आप कहाँ काम करेंगे
नौकरी का विवरण
Overview
The SOC Analyst role involves analyzing and escalating security events to safeguard the confidentiality, integrity, and availability of information systems. This position focuses on quickly handling threats, identifying security weaknesses through detection engineering, threat hunting, intelligence gathering, and investigations, all aimed at enhancing network and security monitoring capabilities.
Key Responsibilities
- Continuously monitor critical communication sites and systems on-site with proactive responses.
- Log, respond, and document events from diverse communication channels such as email, chat, and telecommunication systems.
- Investigate alerts escalated within the Security Operations Center to determine scope, root cause, and impact.
- Develop, follow, and refine SOC playbooks and standard operating procedures.
- Maintain comprehensive documentation for security incidents and responses following prescribed protocols.
- Analyze logs, network captures, and endpoint telemetry to detect malicious activity and indicators of compromise.
- Conduct initial threat hunting to uncover anomalies and adversary activities proactively.
- Enhance existing detection rules and correlation logic to reduce false positives and improve alert accuracy.
- Participate in root cause and lessons learned analysis sessions.
- Monitor external intelligence feeds for relevant and actionable security threats.
- Support incident response and resolution during security events as required.
- Adapt to shift schedules supporting 24/7/365 operations including nights, holidays, and weekends.
Decision Making
- Make timely and informed decisions regarding appropriate responses to security alerts.
- Escalate unique or complex issues to supervisors for further action.
- Work reviewed periodically to ensure compliance with standards and schedules.
Essential Functions
- Utilize personal computers and business software including Microsoft Office effectively.
- Analyze various data types and create queries, reports, and scripts using security coding and SIEM query languages.
- Prioritize tasks efficiently and communicate clearly both orally and in writing.
- Utilize troubleshooting tools and perform work both independently and collaboratively.
Requirements
- Mid-level experience within SOC operations and security alert investigations.
- Familiarity with SIEM tools, security queries, reporting, and basic scripting abilities.
- Expertise in analyzing logs, network traffic, and endpoint data to identify threats and IOCs.
- Experience in threat hunting, incident response, and conducting root cause analyses.
- Capability to tune detection rules to minimize false positives while improving detection quality.
- Experienced in adhering to and enhancing SOC playbooks and procedures.
- Strong skills in documentation, troubleshooting, communication, and task prioritization.
- Ability to operate autonomously and as a team contributor.
- Availability and willingness to work in rotating onsite shifts accommodating 24/7/365 operations including nights and holidays.
Benefits
- Comprehensive health care plan including medical, dental, and vision coverage.
- Retirement plan offerings including a 401(k) program.
- Paid time off benefits.