SOC Analyst responsible for monitoring threats and vulnerabilities in IT systems. Engaging with clients and providing incident remediation documentation and recommendations.
Responsibilities
Monitor global IDS, Network Intruder, Firewall, DDoS detection and mitigation, availability and SIEM platforms looking for potential threats, vulnerabilities and indicators of compromise.
Provide Incident remediation and prevention documentation and recommendations to customers based on defined procedures and analyst experience.
Document and conform to processes related to security monitoring procedures.
Provide customer service that exceeds our customers’ expectations at all times.
Initiate escalation procedure to counteract potential threats, vulnerabilities and threat actors.
Compilation and review of service focused reporting.
Act as an escalation point for more junior members of the team, providing assistance and mentoring where necessary.
Providing assistance to Senior SOC Analysts on Threat Hunting engagements.
Contributing to the continuous improvement of SOC procedures and documentation.
Perform other duties as assigned.
Requirements
Practical knowledge of security and networking toolsets such as SIEM, IDS, Vulnerability Management, Availability Monitoring, packet capture and other threat detection technologies.
Pre-existing, in-depth knowledge of common network protocols.
Pre-existing, in-depth knowledge of Windows and Linux based operating systems.
Experience in the extensive analysis of common security incidents.
Ability to stay calm in highly sensitive and high-pressure incidents.
Experience with LogRhythm, ArcSight or Splunk is desirable but not required.
The following certifications are desirable, but not a requirement: CREST CPSA / CRIA / CMRE / CNIA / CHIA, CompTIA Security+, CompTIA Network+, Degree in related field.
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.
Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high - paced environment.
Security Engineer II at AvidXchange enhancing security operations and incident response. Collaborating with teams to develop, tune and improve security monitoring and automation capabilities.
Director leading security operations strategy and overseeing investigations at Ford Motor Company. Responsible for global investigations, crisis management, and team leadership.
Lead global Cyber Detect and Respond team at Assa Abloy, ensuring timely incident response and security compliance. Oversee operations while collaborating across IT and business functions for effective threat management.