SOC Analyst providing premium-level support for Cloudflare's security products and features. Engaging with customers and analyzing security threats across multiple platforms.
Responsibilities
Monitor and investigate proactive alerts to identify attacks
Work with Engineering and Operations teams to mitigate attacks, suggest steps to mitigate, and apply the appropriate mitigation when applicable
Work with Engineering and Product teams to improve products and tools
Communicate with customers via chat, email, and phone
Review alerts to determine relevancy and urgency; create tracking tickets for incidents requiring review or escalation
Adhere to SOC SLAs for alert response and customer communication
Configure and manage security monitoring rules; contribute to tool and threshold improvements
DDoS mitigation for OSI Layers 3, 4, & 7: filter malicious traffic using Cloudflare tools including Magic Transit, Magic Firewall, Advanced TCP Protection, WAF, Custom Rules, IP Access Rules, and Rate Limiting
Maintain customer-specific SOC runbooks and escalation matrices
Support SOC customer onboarding and deliver monthly security reviews
Requirements
Strong understanding of internet protocols (TCP, UDP, ICMP, GRE, BGP)
Networking fundamentals are crucial for success
Analysis of traffic for attack anomaly detection and creation of mitigation rules
Experience handling attack mitigation with knowledge of L3/4 and L7 attacks
Command line / Bash shell proficiency
Customer Facing or Technical support experience is mandatory
Strong communication skills, including with VIP customers during active attacks
Ability to remain calm under pressure
Ability to work 24x7 rotating shifts
Sysadmin skills - Linux, Mac, or Windows (Preferred)
Knowledge of Cloudflare Security Products & Features (Preferred)
SOC Analyst role focusing on IT security posture monitoring and threat detection use case development for MAHLE. Collaborate with global teams to enhance security processes and tools.
Security Operations Engineer at Pexip managing and improving security monitoring systems. Leading security incidents and ensuring effective alerting and automated response.
Security Operations Engineer at Gridware enhancing security, detection, and response in cloud - first environments. Collaborating with IT and engineering teams to implement best practices.
Cybersecurity Operations Director leading cybersecurity managed services operations at a global accounting firm. Overseeing teams, driving growth, and serving as an advisor to clients.
Security Operations Analyst responsible for developing security processes and incident response. Collaborating with multiple teams for security best practices in a hybrid work environment.
Security Manager leading IAM and SecOps at fintech solutions provider in Brazil. Developing and implementing information security programs aligned with best practices and compliance requirements.
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.