Remote SOC Mid-Level Analyst Job at ECS, Remote

M20xMkV1dy9JREtERUVWRWN0dzFhYTNUZEE9PQ==
  • ECS
  • Remote

Job Description

ECS is seeking a  SOC Mid-Level Analyst  to work  remotely .

ECS is seeking a Mid-Level SOC Analyst with demonstrated experience supporting the development of processes, procedures, and automations to rapidly ingest, aggregate, correlate, normalize, and analyze event messages to rapidly and assuredly identify and respond to Indicators of Compromise (IoC). The ideal candidate is a critical thinker and perpetual learner who is excited to solve some of our clients’ toughest challenges. To be successful the candidate must have experience working in a mature 24x7x365 Security Operation Center.

Shift schedule:  Fri-Mon, 3:00PM – 1:00AM ET (subject to change)

Responsibilities include:

  • Continuously monitors SIEM and on-premises infrastructure/cloud applications for security events to threats & intrusions, including:
  • SIEM alert queue
  • Phishing email inbox
  • Intel feeds via email and other sources (i.e., US-CERT, MS-ISAC)
  • Incident ticketing queue
  • Participates with responding to and handling all critical incident activity. Ensure the execution of proper containment, remediation, and recovery activities.
  • Assesses and documents lessons learned as part of post-incident review, such as unsuccessful controls, outdated procedures, or incomplete remediation actions.
  • Coordinates with SIEM engineering to tune security events and alerts for improving alert fidelity. 
  • Assists with creating and tuning Security Orchestration and Automation (SOAR) playbooks and automated workflows. 
  • Performs proactive threat hunting to identify and characterize new emerging threats, vulnerabilities, and risks.
  • Works closely with Cyber Threat Intel to provide information on detection patterns for new upcoming threats
  • Compiles threat hunt reports as requested on any specific hunt/threat inquiry and disseminate to SOC leadership.

Conducts research and document events of interest within the scope of Cyber Security.

Salary Range: $120,000 – $145,000

Qualifications
  • Minimum of 3 years experience conducting analysis of log data in support of intrusion analysis or information security operations.
  • Bachelors degree or equivalent with relevant certifications.
  • Experience with two or more analysis tools used in a CIRT or similar investigative environment.
  • Ability to build content in SIEM system.
  • Ability to analyze and triage IoCs.

Jobicy JobID: 134595

Job Tags

Full time, Shift work,

Similar Jobs

New York Life

Financial Agent Agente Financiero Job at New York Life

 ...discapacidad y productos de inversin como fondos mutuos a travs de nuestra firma de corretaje, NYLIFE Securities LLC (miembro de FINRA y SIPC), una agencia de seguros autorizada, lo que garantiza que las soluciones que desarrolles con tus clientes contribuyan a que ellos... 

Almost Family - Marinette PD

RN Home Visit Nurse Job at Almost Family - Marinette PD

 ...We are hiring for a Home Visit Registered Nurse in Escanaba and the surrounding area...  ...Nurse coordinates the plan of care with other health care professionals involved in care and...  ...~ A minimum of one year experience as an RN preferred License Requirements... 

Mosaic

Direct Support Associate Job at Mosaic

If making a positive impact in the lives of others is always on your to-do list -- you'll LOVE working with a team that puts people first. We're looking for Direct Support Professionals to join our team! As a DSP, you will provide support and guidance to people ...

Zenly

Startup Software Developer Internship Job at Zenly

 ...things out on your own~Eagerness to take on responsibility and production code thatwill go live to users~Team player with a positive can-do attitude!COMPENSATIONThis is an unpaid internship.APPLICATIONPlease include cover letter and resume in PDF format.... 

Marriott International Inc

Spa Massage Therapist Job at Marriott International Inc

 ...inappropriate guest behavior by following Marriott International standard operating procedures for Inappropriate conduct for guests and therapists, leading up to and including stopping a treatment or service and informing supervisor/manager. Maintain current skills and...