Job Req ID: 28486Job Summary:Frontline role within the Global Security Operations Center (GSOC) monitoring IT IDS, SIEM, and XDR queues to validate alerts, enrich findings with environment context (asset role, zone/level, recent change activity, vendor session status, and user identity history), and execute low-risk first-response actions under approved playbooks (e.g., end remote sessions, disable stale vendor accounts, block known malicious indicators, and quarantine phishing-affected endpoints). This role maintains site-aware shift logs and high-quality handoffs, flags telemetry gaps, and builds foundational OT/IT awareness through cross-training.
Essential Duties and Responsibilities:- Monitor GSOC dashboards/queues; validate alerts.
- Perform enrichment: asset role, zone/level, recent MoC ticket, vendor session status, user identity history.
- Under playbooks, take low-risk actions: disable stale vendor accounts, end remote sessions, block known malicious indicators, quarantine phishing endpoints used by facilities staff.
- Keep site-aware shift logs, attach screenshots/pcaps (where safe), and summarize impact on safety/production.
- Flag telemetry gaps (health, sensor outages); raise ingestion failures.
Qualifications:- Bachelor's in computer science or engineering with an emphasis in Information Security or a related field, or equivalent experience preferred.
- Minimum 2 years of security engineering experience, specifically in networks, and systems.
- Familiarity with SIEM/XDR and IT basics.
- Eagerness to collaborate with personnel across the company.
Salary Range$90,000 - $120,000
The salary offered will depend on several factors, including your location, level, education, training, specific skills, years of experience, and comparison to other employees already in this role. In addition to a comprehensive benefits package, candidates may be eligible for other forms of compensation, such as participation in bonus and equity award programs.