Why This Role Stands Out
This hybrid Sr. SOC Analyst role at Delviom LLC offers an excellent opportunity to hone your expertise with leading technologies like CrowdStrike and ServiceNow, contributing to crucial security operations. You'll thrive here if you possess strong analytical skills and a proactive approach to incident response, making this a fantastic step in your cybersecurity career.
Quick Overview
Job Description
The ideal candidate will have experience monitoring security events, investigating alerts, and responding to security incidents in a fast-paced Security Operations Center (SOC). This role requires hands-on experience with CrowdStrike, ServiceNow, SIEM platforms, and security monitoring tools while working in a 24x7 operational environment.
Key Responsibilities
- Monitor enterprise security events using SIEM platforms and endpoint detection tools.
- Perform initial triage and analysis of security alerts generated by CrowdStrike and other security technologies.
- Investigate suspicious activities, malware detections, phishing attempts, unauthorized access, and policy violations.
- Create, update, and manage security incidents through ServiceNow.
- Follow established incident response procedures and escalate security incidents when required.
- Analyze logs from endpoints, servers, firewalls, Active Directory, cloud environments, and network devices.
- Review security events for false positives and validate legitimate threats.
- Support 24x7 Security Operations Center activities, including shift-based monitoring.
- Collaborate with Tier II/Tier III analysts during incident investigations.
- Document investigation findings, actions taken, and recommendations.
- Maintain accurate incident records and ensure compliance with operational procedures.
- Participate in daily SOC handoff meetings and shift transition activities.
- Monitor PagerDuty (or similar alerting platforms) and ensure timely response to critical alerts.
- Assist with threat hunting activities under senior analyst guidance.
- Identify recurring security issues and recommend process improvements.
- Support vulnerability remediation tracking when required.
- Maintain operational dashboards and security metrics.
- Follow established cybersecurity policies, standards, and compliance requirements.
- Participate in post-incident reviews and lessons learned activities.
Required Qualifications
- Associate''s or Bachelor''s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 1–5 years of experience in a Security Operations Center (SOC) or Information Security Operations role.
- Experience working in a 24x7 SOC environment.
- Strong understanding of cybersecurity fundamentals.
- Experience monitoring and responding to security alerts.
- Familiarity with incident response lifecycle.
- Knowledge of Windows, Linux, and networking fundamentals.
- Experience analyzing system, application, and security logs.
- Understanding of common cyber threats, attack vectors, and malware.
- Excellent analytical and troubleshooting skills.
- Strong verbal and written communication skills.
- Ability to prioritize multiple security incidents simultaneously.
Required Technical Skills
Security Monitoring
- SIEM monitoring and alert investigation
- Security event correlation
- Alert triage
- Incident prioritization
- Security log analysis
Endpoint Security
- CrowdStrike Falcon
- Endpoint Detection and Response (EDR)
- Malware investigation
- Endpoint alert analysis
ITSM
- ServiceNow
- Incident ticket creation
- Incident lifecycle management
- Change and problem management awareness
Skills
Similar jobs
Onsite interview - Senior Developer - Cloud Architectures & Public Cloud
Zealogics · New York, United States
Just now* VMWare Network Engineer *
Kellton · United States
Just nowSr/Mid-level Mainframe Lead/Developer
THE TILTED CIRCLE LLC · Alpharetta, United States
Just nowQA Automation Engineer - Brokerage/Financial Services Domain
ARK Infotech Spectrum · Charlotte, United States
Just nowSenior AI Engineer New Build Track Lead - Must be on our W2 only - Remote
Vinsari LLC · United States
Just nowNeed Data Engineer with AWS S3 & Snowflake
SRS Consulting Inc · Raleigh, United States
Just now