SOC Incident Responder

Optimum

$80K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science or related field or equivalent work experience
  • Relevant industry certifications such as Security+, GCIH, or GCIA are desirable
  • 1-3 years' experience in Information Technology preferred
  • 1-3 years of direct IT Security experience in Security Operations preferred
  • Familiarity with AI Tools and an AI First mindset
  • Foundational knowledge of networking and application protocols (TCP/IP, DNS, HTTP/S, ICMP)
  • Familiarity with the MITRE ATT&CK framework and the NIST incident response lifecycle
  • Strong written communication skills for clear incident documentation
  • Willingness to work in a 24x7 shift-based rotation

Responsibilities

  • Monitor security alerts and events generated by various security tools
  • Analyze and triage security alerts to identify potential incidents
  • Monitor on-premises and cloud environments using security tools
  • Collaborate with incident responders to execute incident response procedures
  • Take immediate action to mitigate security incidents
  • Document incident response activities for post-incident analysis
  • Stay abreast of the latest cyber threats and attack techniques
  • Develop and refine detection capabilities within the SIEM platform
  • Contribute to the continuous improvement of SOC processes and tools

Benefits

  • Opportunities for professional development and certification
  • Collaborative work environment with a dedicated security team
  • Exposure to cutting-edge security technologies
  • Participation in incident response drills and simulations
  • Comprehensive support for work-life balance
Full Job Description
Job Summary

As a Security Incident Responder, you will be at the forefront of our organization's cyber defense efforts, responsible for monitoring, detecting, and responding to security incidents in real-time. You will play a crucial role in safeguarding our digital assets, identifying emerging threats, and ensuring the integrity and availability of our systems and data.

Responsibilities

Security Monitoring and Alert Triage:
  • Monitor security alerts and events generated by various security tools, including SIEM, IDS/IPS, antivirus, and endpoint detection and response (EDR) systems.
  • Analyze and triage security alerts to identify potential security incidents, prioritizing them based on severity, relevance, and potential impact.
  • Monitor across on-premises and cloud environments using the organization's SIEM, EDR, email security, and other security monitoring tooling.

Incident Response and Remediation:
  • Collaborate with incident responders to coordinate and execute incident response procedures, including containment, eradication, and recovery efforts.
  • Take immediate action to mitigate security incidents, such as isolating compromised systems, blocking malicious traffic, and applying security patches or updates.
  • Document incident response activities, including timelines, actions taken, and lessons learned, to support post-incident analysis and reporting.

Threat Intelligence and Detection Enhancement:
  • Stay abreast of the latest cyber threats, vulnerabilities, and attack techniques through threat intelligence sources and industry reports.
  • Enhance detection capabilities by developing and refining correlation rules, signatures, and detection logic within the SIEM platform.
  • Contribute to the continuous improvement of SOC processes, procedures, and tools to enhance the organization's cyber defense posture.


Qualifications

  • Bachelor's degree in Computer Science or related field or equivalent work experience.
  • Relevant industry certifications such as Security+, GCIH, or GCIA are desirable.
  • Minimum 1-3 years' experience in Information Technology preferred.
  • Minimum 1-3 years of direct IT Security experience in Security Operations preferred.
  • Familiarity with AI Tools and AI First mindset
  • Foundational knowledge of networking and application protocols (TCP/IP, DNS, HTTP/S, ICMP) and the ability to interpret related security alerts.
  • Familiarity with the MITRE ATT&CK framework and the NIST incident response lifecycle (NIST SP 800-61).
  • Strong written communication skills for clear, concise, business-friendly incident documentation and escalation.
  • Willingness to work in a 24x7 shift-based rotation, including nights, weekends, and holidays.

Similar Jobs

More Jobs at Optimum

More Information Technology Jobs

Find similar SOC Incident Responder jobs: