The IT Security Operations Analyst is responsible for providing Tier 1 support for incidents, threat hunt, and fraud investigations.
3-4 years experience
Ideally 2 years SOC experience
Hands on using Exabeam
Secondary would be Securonix, Splunk or Microsoft Sentinel
Responsibilities
Conducts network monitoring and intrusion detection analysis using various computer network defense tools, such as intrusion detection/prevention systems, firewalls and host-based security systems
Conducts log-based and endpoint-based threat detection to detect and protect against threats coming from multiple sources
Correlates activity across assets (endpoint, network, apps) and environments (on-premises, cloud) to identify patterns of anomalous activity
Reviews alerts and data from sensors, and documents formal, technical incident reports
Works with IT Security and Privacy teams
Provides network subscribers with incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary
Correlates network, cloud and endpoint activity across environments to identify attacks and unauthorized use
Research emerging threats and vulnerabilities to aid in the identification of incidents
Provides users with incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary
Document playbooks so other analysts can follow the same steps
Requirements
Bachelor's degree in Computer Science or a related field or equivalent work experience
4+ years of experience in IT audit, enterprise risk management, penetration tester, red team/incident responder, or as a junior/associate security operations analyst.
2+ years of experience with regulatory compliance and information security management frameworks (such as International Organization for Standardization [IS0] 27000, CIS Critical Controls, National Institute of Standards and Technology [NIST] 800)
Experience with multiple security technologies (Firewalls, SIEM, Logging tools, EPP/EDR, NDR, Linux, Windows)
Strong analytical/critical thinking