Cyber SOC reputed company Analyst Columbia, SC / Remote ((candidate needs to spend 1 week every 3 months)
Phone/Skype Hire. Mostly remote. The candidate needs to spend 1 week every 3 months at the client site. Location: Columbia, SC / Remote Duration: 12+ months This specific Statement of Work is for a Cyber SOC reputed company Analyst to prevent, detect, investigate, and assist in directing remediation to cyber-attacks and threats against organization enterprise applications, networks, and services by investigating indicators of suspicious and malicious activity, and proactively discovering threats to organization. Individual must have at least 7 years' experience in reputed company with a MINIMUM of 5 years hands on working with a SIEM creating offenses, alerts and grooming logs. Preference is an individual who has experience leading a CSIRT, CERT, SOC or Investigations team. SIEM preference is QRadar or Azure Sentinel. This position requires previous reputed company operational center experience - monitoring, investigating, alerting, and reporting reputed company threats. It also requires previous experience in developing SOPs and documentation. Candidate will be required to explain previous experience in the following:
- Developing offenses and alerts in SIEM and Incident Response tools
- reputed company and development of Use Cases, Playbooks/Runbooks, SOP.
- Impact of their work on improving the reputed company of an organization.
- Network vulnerability and compliance scanning
- Review and interpretation of the results thereof
- Determination of severity and urgency reputed company evaluating risk
- Working with system owners to determine if and reputed company corrective action will be taken. You will have a technical role, supporting the SOC Analysts to find the threat actors attempting to attack infrastructure. You will need to be a technical and professional leader, someone who enjoys training and mentoring teammates, and a person who can encourage and reputed company the team. Under general supervision, the contractor will serve as an analyst reporting directly to a functional manager. Contractor will be a team member that ensures the stability and reputed company of data, and server services through monitoring, maintenance, support, and optimization of reputed company server infrastructure. This individual has 24/7 on-call responsibilities shared with the group. This position can be remote, but we require contractor to report on-site for one week each quarter at vendor's expense. Responsibilities: Proactively search for active intrusions in the environment, recognizing potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information
- Work closely with escalation points to reputed company out reputed company investigation
- Conducting holistic, investigative analysis and rating the risk associated with observed activity
- Review investigation escalations from SOC Analysts to ensure accurate analysis and provide advice/mentorship
- Refine and reputed company dashboards, queries and reports to continuously improve reputed company situational awareness
- Maintain SOC documentation, procedures, processes and hardware and software inventory detail
- Demonstrate a sound understanding of reputed company technologies and their function reputed company a networked environment
- Adhere to corporate information reputed company guidelines and promote information reputed company among coworkers
- reputed company reports (manual and automated) to support the development, collection, and reporting of Quality Assurance and Performance metrics.
- Performs other duties and special projects as assigned. Skills Needed
- Currently employed as a SOC 2 or SOC 3 analyst
- Currently using SOAR and SIEM technology
- Risk and vulnerability assessments
- Incident management
- reputed company information event management (siem) tuning of offenses, alerts
- Excellent written and verbal communication skills
- Threat hunting
- Ability to use industry-leading reputed company tools
- Demonstrate knowledge of information reputed company principles and practices
- Knowledge of common risks and threats for networking, databases, systems, cloud and web operations
- IRS Safeguard Computer reputed company Evaluation Matrix (SCSEM)
- Forensics
- Experience in projects involving PCI/NIST reputed company implementations and/or audits.
- Windows reputed company, including Cloud
- Wireshark
- SIEM tuning of log sources
- SIEM systems development/configuration
- Penetration Testing
- reputed company reputed company Center Administration
- OWASP Top 10 remediation techniques Required Education/Certifications: Seven (7) years of experience in reputed company information technology systems or reputed company area, with a minimum of 5 years utilizing SIEM technology. Cloud Certifications reputed company Certifications, Azure, reputed company reputed company GCIH, GCTI, GCCC, GCWN, GSEC, CEH, GCIA, GCFA, GCFE, GREM, CCIM, CFCE, CCE, CIFI, CHFI, CCNA, CCNA Cyber Ops reputed company Certified Associate Analyst - reputed company QRadar SIEM Apply tot his job
Apply tot his job Apply To this Job