SOC Analyst - Level II Job at KiZAN Technologies, Cincinnati, OH

MjJSMkd1dzBKRE9IRjBGT2Y5NDJhcXJXZnc9PQ==
  • KiZAN Technologies
  • Cincinnati, OH

Job Description

Location: Cincinnati, OH or Remote Employment Type: Full-Time KiZAN is open to remote candidates for this position. Candidates must be US based and able to work the majority of their time in EST. About KiZAN We make technology personal! KiZAN is an Industry leading Microsoft Professional Services and Managed Services Provider supporting Regional, National and Global clients. We personalize technology by sparking passion, fueling purpose, and building connections. Here at KiZAN, we are one team, we support each other and take the initiative to solve problems. We are fully committed to the direction chosen and always support our mission. Being a part of KiZAN means that we win together, we create an inclusive atmosphere where everyone feels accepted, a sense of purpose, and we embrace collaboration. Overview A Level 2 Analyst is a subject matter expert responsible for managing threats, disseminating information, and handling, responding to and investigating all incident escalations from the Security Operations Center. Level 2 team members are responsible for coordinating with the CSIRT process when necessary and managing incidents throughout the event life cycle. Level 2 team members will further an investigation and ensure root cause and resolution for metrics, tracking, and lessons learned are compiled, documented, and disseminated in conjunction with the CIRT process. They will provide insight and expertise to examine malicious code (malware), attack vectors, network communication methods, analyze threats against target systems and networks, determine target network capabilities and vulnerabilities, support development and maintenance of new tools and techniques to exploit specific targets, and produce technical after-action reports in support of the SOC. Level 2 members will be the focal point for critical security Alert, Events, and Incidents and will serve as subject matter experts in providing recommendations to the SOC Incident Manager and other members of Information Security and IT management for escalation and remediation. Level 2 Analysts are also responsible for training and mentoring their Level 2 and Level 1 peers to improve SOC Analyst capability. Finally, Level 2 members will work with the SIEM/SOAR Engineers to develop and refine use cases within Microsoft Sentinel focusing on emerging threats. The SOC Analyst reports to the SOC Manager and works in conjunction with the other team members to keep projects delivered on time and within budget. Job Requirements Knowledge and Experience To be successful in this position, a candidate should have at least two years of hands-on experience as a Level 2 SOC analyst leveraging Microsoft Sentinel, M365 Defender products, and Microsoft Defender for Cloud in production environments. Teamwork and collaboration skills will be critical for this role. The ideal candidate will have knowledge of and experience with the SOC framework and be confident in their ability to make recommendations to improve upon operations. Certification Path At a minimum, the Microsoft Security Operations Analyst (SC-200) and Microsoft Cybersecurity Architect (SC-100) certifications or the ability to get one within 180 days of being hired. Training materials provided and the cost of the relevant tests will be covered. Within year one employment, one of the following or otherwise approved additional certifications will be obtained: ITIL, CISSP, GSEC, CISA, SEC+, CEH, CySA+, AZ-500, MS-500. Areas of Responsibility Cybersecurity Operations The SOC Analyst must be able to perform the following duties unassisted or with some reasonable accommodation made by the organization: Cybersecurity Analysis, Detection and Response: 40% Cybersecurity Analysis, Detection and Response — Subtasks: Manage SOC event and information intake to include gathering intelligence reports, monitoring ticket queues, investigating reported incidents, and interacting with other security and network groups as necessary. Continuously monitor network traffic and systems for security anomalies, intrusions, or breaches. Perform research and use systems and tools in places, such as SIEM, XDR, NAC, and other. Investigate Level 1 escalated Incidents. Ensure SOC Triage Tagged Incidents are addressed in a timely manner using available reporting and metrics. Monitor Level 1 Analyst performance investigating incoming Incidents using SOC-available tools. Respond to attempted efforts to compromise security controls using documented procedures. Participate in incident response exercises. Coordinate with SIEM Engineers to tune Alerts and Events Cybersecurity Vulnerability and Threat Mitigation: 40% Cybersecurity Vulnerability and Threat Mitigation — Subtasks: Perform regular vulnerability assessments and security analyst of information technology systems. Create reports showing risk and priorities and share findings with appropriate stakeholders and coordinate with them to implement security patches and other mitigation SOC process refinement and cross training: 20% SOC process refinement and cross training — Subtasks: Improve SOC processes to elevate response efficiency. Consult the organization on security tool improvements for customers. Mentor Level 2/Level 1 Analysts to improve detection/analytical capabilities within the SOC. Interview potential SOC resources and provide feedback. Drive and monitor shift-related metrics processes ensuring applicable reporting is gathered and disseminated per SOC requirements. Serve as shift subject matter experts on incident detection and analysis techniques providing guidance to junior analysts and making recommendations to organizational managers. Track tactical issues in execution of SOC responsibilities. Other Communicate effectively, both orally and in writing, to clearly express ideas and opinions. Demonstrates teamwork, is receptive to and acts upon input from others, is willing and able to compromise as needed, displays willingness to work with all firm employees, and willingly assists others. Demonstrates initiative and contributes new ideas; is self-motivated. Demonstrates flexibility; willing to adjust to changes, able to work with all levels of firm employees. Works with tight deadlines and under pressure. Always exhibits positive leadership characteristics to the team, both in terms of improving processes and procedures and being proactive about the nature and scope of the team’s work. Generates and maintains documentation on SOC procedures performed and publishes such materials as appropriate. Travels to any office location when needed, with at least a one (1) week notice. Willing and able to work extended hours and rotate on-call duties to ensure customer incident response. Performs other duties, responsibilities, and special projects, as requested. EEO/AA Employer #J-18808-Ljbffr KiZAN Technologies

Job Tags

Full time, Work at office, Shift work,

Similar Jobs

EssilorLuxottica Group

MIN3346 Independent Optometrist-Houston, TX-LensCrafters Macy's Job at EssilorLuxottica Group

 ...independent practice while providing high quality optometric care and services to your patients next to an optical dispensary operated by Luxottica. Professional fee schedule is yours to decide and you keep the associated patient revenues for professional services that you... 

LSG Sky Chefs

Sous Chef Job at LSG Sky Chefs

 ...Job Title: Sous Chef Job Location: Des Plaines-USA-60016 Work Location Type: On-Site Salary Range: $57,774.71 - 72,218.39 About us LSG Sky Chefs is one of the worlds largest airline catering and hospitality providers, known for its outstanding reputation... 

Essentia Health

Pharmacy Technician- St. Mary's Medical Center Job at Essentia Health

 ...Job Description: Pharmacy Technicians are an integral part of the pharmacy team. Primary responsibilities...  ...) Educational Requirements: If working in a MN location, must meet one of...  ...To help you thrive both at work and at home, we provide flexible scheduling, generous... 

HEI Hotels and Resorts

Shuttle Driver Job at HEI Hotels and Resorts

 ...Westin Bwi Shuttle Driver Here at Westin BWI, we prioritize employee engagement! We continue to create a vibrant workplace culture by...  ...traffic regulations while transporting customers to and from the airport terminal or other designated site. Park guest vehicles and... 

AtWork Personnel

Dock Worker Job at AtWork Personnel

OverviewPosition: Picker/Packer - (Dock Worker)Starting Pay: $18.00/hourResponsibilitiesPick, pack, and assist with the put-away of Long Stock products (varied weights).Operate a stand-up forklift (Dock Stocker) for handling items exceeding 50 lbs. and for loading...