Sr SOC Analyst

3 weeks ago


Bonita Springs, United States Bridge Technologies and Solutions Full time
Security Operations Analyst (SOC)
Job Purpose
The SOC Analyst will perform 24/7/365 monitoring and response activities in the Cyber Security Operations Center for security detection and mitigation activities. Duties include monitoring networks, hosts and endpoints for malicious activity using Security Incident and Event Management (SIEM) tools, Endpoint Detection and Response (EDR) tools, Antivirus and Malware detection tools and email security appliances. Responsibilities cover initial triage, investigation and incident response, the development of new security monitoring use cases, and ensuring all investigative activity is properly documented in our ticketing systems and followed up with relevant support teams. This role will also take joint responsibility for developing and maintaining SOC documentation and processes.

The SOC Analyst position is a rotating shift position that includes nights, weekends and occasional holidays.
Key Accountabilities
  • Responsible for working in a 24x7 Security Operation Center (SOC) environment.
  • Provide analysis and trending of security log data from a large number of heterogeneous security devices.
  • Provide Initial triage and Incident Response support when analysis confirms actionable incident.
  • Investigate, document, and report on information security issues and emerging trends.
  • Integrate and share information with other analysts and other teams.
  • Relevant work experience in Cyber Security Operations, specifically monitoring, detection and incident response duties.
  • Experience with monitoring and operating SIEM, EDR and IDS/IPS solutions alongside other critical monitoring toolsets.
  • Demonstrated ability to coordinate and respond to security incidents using commercial and/or open source technologies.
  • Experience with Incident Response methodology in investigations, and the groups behind targeted attacks and tactics, techniques, and procedures (TTPs)
  • Comprehension of how attacks exploit operating systems and protocols
  • Analyze and determine the scope of the compromise.
  • To research targeted attacks.
  • To develop, document and execute containment strategies.
  • To document and brief the business on remediation options and execute the plan with IS Partners - Produce final report and recommendation.
  • Coordinate efforts of, and provide timely updates to, multiple business units during response.
  • To perform in-depth analysis in support of incident response operations.
  • Develop requirements for technical capabilities for cyber incident management.
  • Investigate major breaches of security and recommending appropriate control improvements.
Qualifications
  • Relevant experience in a Security Operations environment is required.
  • Solid understanding of networking protocols and infrastructure designs; including cloud infrastructures, routing, firewall functionality, host and network intrusion detection systems, encryption, load balancing, and other network protocols.
  • Hands-on experience with security technologies, including:
    • Intrusion Detection & Prevention (IDP) Sourcefire or Palo Alto desirable
    • Security Information & Event Management (SIEM) Splunk required
    • Endpoint Detection & Response (EDR) Tanium and FireEye HX desirable
    • Network Analysis tools - Wireshark, tcpdump
    • Experience with scripting in Python, Bash and Powershell
  • Experience with the following SecOps processes is required:
    • Email Investigations Including Header Analysis, Office Doc Investigations and Macro Extraction
    • Basic Malware Analysis Static and Dynamic analysis
    • Event Log analysis
    • Solid understanding of Windows and Linux Operating Systems
  • Strong understanding of TCP/IP and underlying network protocols.
  • Excellent stakeholder management and influencing skills covering colleagues, partners / vendors and project sponsors.
  • Experience managing and/or supporting the operationalization of security tools and infrastructure.
  • Experience of managing and responding to information security, or cyber security, incidents in a large enterprise environment Strong background of information security incident management and response.
  • Experience interacting as an information security incident responder with internal business functions, e.g. legal, Ethics, HR and physical security.
  • Experience interacting as an information security incident responder with law enforcement and other external agencies such as FIRST or National Computer Emergency Response Teams.
  • Utilities experience highly desirable.
Key Interfaces
  • Security Operations Centre Analysts
  • Global Security Operations Manager
  • Incident Management Team (UK & US)
  • Threat Intelligence Team
  • Pen Testing Team
  • Security Engineering Function
  • IS partners and Service providers (Service Delivery & Major Incident Management)
  • OT Technical support

  • Sr SOC Analyst

    2 weeks ago


    Bonita Springs, United States Bridge Technologies and Solutions Full time

    Security Operations Analyst (SOC) Job Purpose The SOC Analyst will perform 24/7/365 monitoring and response activities in the Cyber Security Operations Center for security detection and mitigation activities. Duties include monitoring networks, hosts and endpoints for malicious activity using Security Incident and Event Management (SIEM) tools, Endpoint...


  • Colorado Springs, United States gTANGIBLE Full time

    gTANGIBLE Corporation (gTC), www.gtangible.com, is a S corporation and a registered Government contractor that provides services and solutions in: National Security Programs Professional, Administrative, and Management Support Mission and Warfighter Support We are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of...


  • Colorado Springs, United States gTANGIBLE Full time

    gTANGIBLE Corporation (gTC), www.gtangible.com, is a S corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of successful...


  • Colorado Springs, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a S corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Colorado Springs, United States Bluehawk Full time

    Overview Bluehawk LLC, is dedicated to enabling the United States intelligence community to achieve their strategic objectives through our innovative and effective services. Our mission is to provide compelling support that inspires our clients to operate with confidence in an ever-changing landscape. With our strategic approach, we leverage our in-depth...


  • Colorado Springs, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:P-11 Security, based in Southern California, is a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field. Specializing in Security in Depth (SiD) services, we deliver an integrated suite of 360 Security Services, Cyber Security, and Information...


  • Colorado Springs, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:P-11 Security, based in Southern California, is a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field. Specializing in Security in Depth (SiD) services, we deliver an integrated suite of 360 Security Services, Cyber Security, and Information...


  • Colorado Springs, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:P-11 Security, based in Southern California, is a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field. Specializing in Security in Depth (SiD) services, we deliver an integrated suite of 360 Security Services, Cyber Security, and Information...


  • Colorado Springs, United States System High Corp Full time

    Job DetailsJob Location JUS - Schriever AFB, CO - Peterson AFB, CO Position Type Full Time Job Shift Day Description Lead SOC Analyst's primary function is to develop, implement, and evaluate a SOC teams' ability to provide comprehensive Computer Network Defense and Response support through 247365 monitoring and analysis of potential threat activity...


  • Colorado Springs, United States Targeted Solutions, LLC Full time

    Job DescriptionJob DescriptionSalary: Up to $60.22Lead SOC Analyst’s primary function is to develop, implement, and evaluate a SOC teams’ ability to provide comprehensive Computer Network Defense and Response support through 24×7×365 monitoring and analysis of potential threat activity targeting the enterprise. This position is responsible leading the...


  • Holly Springs, United States FUJIFILM Corporation Full time

    Overview: Follow Your Genki to North America's largest, state-of-the-art Life Science Manufacturing Facility & CDMO The work we do at FDB has never been more importantand we are looking for talented candidates to join us. We are growing our locations, our capabilities, and our teams, and looking for passionate, mission-driven people like you who want to make...


  • Colorado Springs, United States QED Enterprises Inc Full time

    QED Enterprises (QED) was founded on the principles that we provide Quality services to our clients; we strive for Excellence in all that we do; and we are Driven to meet our customers' missions on time, within budget, and with the exceptional attention to detail our customers have come to expect of QED. Position Title: Sr. Management Analyst Duty Location: ...


  • Sandy Springs, United States Motion Recruitment Full time

    Job Description A Company in the shipping and logistics industry that provides packing services to help with business supplies. Their mission is to create healthier, safer, and more sustainable communities through our responsible operations and the expertise of our diverse team. They are located in Sandy Springs, Ga. They are looking for a SOC Analyst or...


  • Coral Springs, United States CapB InfoteK Full time

    For one of our multiyear projects we are looking for an Assembler Sr. Application Analyst out of Coral Springs FL. Responsible for Analysis, coding, testing, and maintaining application software. Supports existing business systems applications. Partners with senior developers and application architects to identify business need and appropriate technical...


  • Manitou Springs, United States QED Enterprises Inc Full time

    Job DescriptionJob DescriptionQED Enterprises (QED) was founded on the principles that we provide Quality services to our clients; we strive for Excellence in all that we do; and we are Driven to meet our customers' missions on time, within budget, and with the exceptional attention to detail our customers have come to expect of QED.Position Title: Sr....


  • Coral Springs, United States CapB InfoteK Full time

    For one of our multiyear projects we are looking for an Assembler Sr. Application Analyst out of Coral Springs FL. Responsible for Analysis, coding, testing, and maintaining application software. Supports existing business systems applications. Partners with senior developers and application architects to identify business need and appropriate technical...


  • Coral Springs, Florida, United States CapB InfoteK Full time

    For one of our multiyear projects we are looking for an Assembler Sr. Application Analyst out of Coral Springs FL. Responsible for Analysis, coding, testing, and maintaining application software. Supports existing business systems applications. Partners with senior developers and application architects to identify business need and appropriate technical...


  • Coral Springs, Florida, United States CapB InfoteK Full time

    For one of our multiyear projects we are looking for an Assembler Sr. Application Analyst out of Coral Springs FL. Responsible for Analysis, coding, testing, and maintaining application software. Supports existing business systems applications. Partners with senior developers and application architects to identify business need and appropriate technical...


  • Sandy Springs, United States Motion Recruitment Partners LLC Full time

    Security Operations Center Analyst Sandy Springs, Georgia Hybrid Contract $35/hr - $40/hr Job Description A Company in the shipping and logistics industry that provides packing services to help with business supplies. Their mission is to create healthier, safer, and more sustainable communities through our responsible operations and the expertise of our...


  • Camp Springs, United States Evolver Full time

    Job DescriptionJob DescriptionWe are looking for a highly skilled Network Forensics Analyst to join our Security Operations Center (SOC). The ideal candidate will have extensive experience in digital forensics, incident response, and reverse engineering, with a solid understanding of cybersecurity tools and methodologies. This role requires a dedicated...