SOC (Security Operations Center) Analyst
Why This Role Stands Out
This role offers a fantastic opportunity to hone your cybersecurity skills by actively protecting critical IT assets through threat detection and response. You'll thrive here if you are a proactive and detail-oriented individual eager to contribute to a robust security posture within a reputable organization. Apply now to join this dedicated team and make a significant impact on information security.
Quick Overview
Job Description
Contribute to overall operational readiness and support a 24/7 shift schedule. Interested candsfdsidates must be willing to take on other shifts.
*** In-person interviews are required ***
Position Purpose:
The SOC Analyst performs event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of the Commonwealth’s information technology assets through prompt and accurate threat handling, while also identifying and closing security gaps through detection engineering, threat hunting, intelligence gathering, and investigation, thereby contributing to the continuous improvement of network and security monitoring.
Description of Duties:
Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
Capture, log, and respond to events received from email, chat, telecommunication systems, and other security systems, ensuring accurate documentation of incoming data.
Perform security investigation for alerts escalated within the Security Operation Center, determining full scope, potential root cause, and potential impact.
Follow, create, and improve established playbooks and SOPs used by the SOC.
Document security incidents, responses, and related information in accordance with established procedures
Analyze advanced logs, network capture, end-point telemetry to identify malicious activity and indicators of compromise (IOCs)
Conduct initial threat hunting to proactively identify security anomalies and adversary activity
Conduct tuning and optimization of existing detection rules, alerts, and correlation logic to reduce false positives and improve detection fidelity.
Participate in root cause analysis or lessons learned sessions.
Monitor external event sources for security intelligence and actionable incidents
Provide incident response support as needed and directed during network and security events providing support for incident resolution.
Maintain flexibility to work in various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.
Performs other related duties as required.
Essential Functions:
1. Use personal computer/laptop with Microsoft Office products and other business software
2. Analyze and interpret various information
3. Create queries, reports and scripts leveraging current security coding and SIEM query languages
4. Prioritize tasks effectively.
5. Communicates effectively orally and in writing.
6. Working knowledge of troubleshooting tools (software)
7. Work independently and as a team member
Skills
Similar jobs
Security Analyst with DLP
InterSources Inc. · Columbia, United States
1 minute agoSecurity Analyst - Onsite,In Person Interview
MSYS Inc. · Harrisburg, United States
26 minutes agoSpecialist, Information Security Systems Engineer (ISSE) with Security Clearance
L3Harris Technologies · Palm Bay, United States
26 minutes agoSentinel - Safety and Security Capability Lead Systems Engineer with Security Clearance
Northrop Grumman · Roy, United States
26 minutes ago$152.9k - $229.3k/yrCyber Systems Engineer - Network Security Engr II (26-331) with Security Clearance
Northrop Grumman · Colorado Springs, United States
26 minutes ago$91.8k - $137.6k/yrSecurity Operations Center(SOC) Analyst 2 (F2F Interview)
Zeforge LLC · Harrisburg, United States
26 minutes ago