ResponsibilitiesRelated Companies is seeking an experienced and motivated Cybersecurity/SOC Analyst I with at least three years of security operations center experience. The SOC Analyst I will be focused on Threat Monitoring, Detection, Response, Analysis, and Cyber Threat Intelligence to protect and maintain the overall security of the enterprise.
The Cybersecurity Analyst I will be responsible for, but not limited to the following:
- Detect threats through all stages of an attack and investigate cybersecurity platforms and tools detections and events (NGFW, NDR, EDR, TIP, SIEM,) to determine the correct remediation actions and escalation paths for each incident
- Perform incident response activities such as host triage and retrieval, malware analysis, remote system analysis, end-user interviews, and remediation efforts
- Maintain security monitoring tools
- Assist with the development of processes and procedures to improve incident response times, analysis of incidents, and overall SOC functions
- Document all activities during an incident
Qualifications- Experience working in a 24/7 SOC environment
- Bachelor's Degree in Computer Information Systems, Computer Science, MIS, Engineering or related technical discipline. Equivalent work experience in the Information Technology field will be considered coupled with relevant Cyber Security certifications.
- Minimum 3 years of direct information security experience within an Information Technology organization
- Relevant industry certifications preferred (e.g., CySA+, CCNA, GCIH, GCFA, etc.)
- One or more MITRE ATT&CK Defender certifications preferred but not required (e.g., Cyber Threat Intelligence, SOC Assessment)
- Willingness to work outside of regular business hours as required which may include evenings, nights, weekends, holidays.
- Excellent time management and organizational skills.
- Excellent documentation skills.
Competencies/Security Technologies- Ability to develop specific proactive procedures for detection of security breaches.
- Strong working knowledge of incident response and handling methodologies.
- Strong working knowledge of attacker tactics, techniques and procedures and how to defend against them.
- Strong working knowledge in operating systems, networking, MS ActiveDirectory.
- Good working knowledge of SaaS-based cloud application security and cloud platforms such as Azure.
- Experience in collaborating with system and network administrators to help remediate the impact of identified risks and vulnerabilities at the platform level.
- Demonstrate conceptual, analytical and innovative problem-solving skills.
- Ability to conduct independent research and analysis in the event of a security breach.
- Identify issues, formulate strategy, and proactively remediate security risks
- Ability to draw conclusions and make recommendations based on analysis and findings.
- Self-starter who is a team player that embraces collaboration.
- Demonstrate knowledge of security controls for network, application and operating systems.
- Knowledge and use of the MITRE ATT&CK framework
- Demonstrate interpersonal skills; including the ability to work effectively in a team environment.
- Capacity to work independently and willingness to seek advice/assistance from others.
- Security Incident Handling and Response and Threat Management.
- Encryption/cryptography standards, protocols and best practices.
- Strong knowledge on analyzing malicious payloads (malware/spyware).
- Strong knowledge on performing email investigation.
- In-depth knowledge of various security technologies including:
- IDS/IPS
- EDR/NDR/XDR
- Email Protection Gateways
- Windows / Linux File Systems
- CASB
- Firewalls and next-generation firewalls (NGFW)
- Cyber threat intelligence feeds and databases
- Log management systems/SIEM
- Web application firewalls
- Vulnerability scanners and penetration testing tools
- Endpoint and Network security best practices
Compensation:The anticipated base salary range for this position is listed below. In addition to a competitive base salary, you will be eligible to receive discretionary bonus incentives and a comprehensive benefits package.
Anticipated base salary range: $80,000 - $90,000
Actual base salary within the anticipated range will be determined by several components including but not limited to the individual's experience, skills, qualifications, and market factors.
#TRC #LI-RB1 #LI-HYBRID