This page was automatically translated and may contain errors. View in English.
一个

Mid-Level SOC Analyst

Adept Consulting Services, Inc.

Harrisburg, Panama · 全职

抢先申请

经验
3-6岁
薪水
职位空缺
1
发布
2小时前
工作模式
在办公室
恢复
需要申请

你的工作地点

职位描述

Overview

The SOC Analyst role involves analyzing and escalating security events to safeguard the confidentiality, integrity, and availability of information systems. This position focuses on quickly handling threats, identifying security weaknesses through detection engineering, threat hunting, intelligence gathering, and investigations, all aimed at enhancing network and security monitoring capabilities.

Key Responsibilities

  • Continuously monitor critical communication sites and systems on-site with proactive responses.
  • Log, respond, and document events from diverse communication channels such as email, chat, and telecommunication systems.
  • Investigate alerts escalated within the Security Operations Center to determine scope, root cause, and impact.
  • Develop, follow, and refine SOC playbooks and standard operating procedures.
  • Maintain comprehensive documentation for security incidents and responses following prescribed protocols.
  • Analyze logs, network captures, and endpoint telemetry to detect malicious activity and indicators of compromise.
  • Conduct initial threat hunting to uncover anomalies and adversary activities proactively.
  • Enhance existing detection rules and correlation logic to reduce false positives and improve alert accuracy.
  • Participate in root cause and lessons learned analysis sessions.
  • Monitor external intelligence feeds for relevant and actionable security threats.
  • Support incident response and resolution during security events as required.
  • Adapt to shift schedules supporting 24/7/365 operations including nights, holidays, and weekends.

Decision Making

  • Make timely and informed decisions regarding appropriate responses to security alerts.
  • Escalate unique or complex issues to supervisors for further action.
  • Work reviewed periodically to ensure compliance with standards and schedules.

Essential Functions

  • Utilize personal computers and business software including Microsoft Office effectively.
  • Analyze various data types and create queries, reports, and scripts using security coding and SIEM query languages.
  • Prioritize tasks efficiently and communicate clearly both orally and in writing.
  • Utilize troubleshooting tools and perform work both independently and collaboratively.

Requirements

  • Mid-level experience within SOC operations and security alert investigations.
  • Familiarity with SIEM tools, security queries, reporting, and basic scripting abilities.
  • Expertise in analyzing logs, network traffic, and endpoint data to identify threats and IOCs.
  • Experience in threat hunting, incident response, and conducting root cause analyses.
  • Capability to tune detection rules to minimize false positives while improving detection quality.
  • Experienced in adhering to and enhancing SOC playbooks and procedures.
  • Strong skills in documentation, troubleshooting, communication, and task prioritization.
  • Ability to operate autonomously and as a team contributor.
  • Availability and willingness to work in rotating onsite shifts accommodating 24/7/365 operations including nights and holidays.

Benefits

  • Comprehensive health care plan including medical, dental, and vision coverage.
  • Retirement plan offerings including a 401(k) program.
  • Paid time off benefits.

如果您希望收到回复,请留下您的信息——我们不会将您的信息用于其他用途。

点击浏览拖放,或 粘贴 截图

PNG、JPG、GIF、MP4、WebM、MOV 格式 · 每个文件最大 20MB · 最多 5 个文件

🤖
在线·即时人工智能帮助