Remote SOC Mid-Level Analyst Job at ECS, Remote

RFBLZk5SVDYyQVM3MEhHMHJLSnJreUFzSmc9PQ==
  • ECS
  • Remote

Job Description

ECS is seeking a SOC Mid-Level Analyst to work remotely .

ECS is seeking a Mid-Level SOC Analyst with demonstrated experience supporting the development of processes, procedures, and automations to rapidly ingest, aggregate, correlate, normalize, and analyze event messages to rapidly and assuredly identify and respond to Indicators of Compromise (IoC). The ideal candidate is a critical thinker and perpetual learner who is excited to solve some of our clients’ toughest challenges. To be successful the candidate must have experience working in a mature 24x7x365 Security Operation Center.

Shift schedule:  Sun-Thu, 11:00PM – 7:00AM ET (subject to change)

Responsibilities include:

  • Continuously monitors SIEM and on-premises infrastructure/cloud applications for security events to threats & intrusions, including:
  • SIEM alert queue
  • Phishing email inbox
  • Intel feeds via email and other sources (i.e., US-CERT, MS-ISAC)
  • Incident ticketing queue
  • Participates with responding to and handling all critical incident activity. Ensure the execution of proper containment, remediation, and recovery activities.
  • Assesses and documents lessons learned as part of post-incident review, such as unsuccessful controls, outdated procedures, or incomplete remediation actions.
  • Coordinates with SIEM engineering to tune security events and alerts for improving alert fidelity. 
  • Assists with creating and tuning Security Orchestration and Automation (SOAR) playbooks and automated workflows. 
  • Performs proactive threat hunting to identify and characterize new emerging threats, vulnerabilities, and risks.
  • Works closely with Cyber Threat Intel to provide information on detection patterns for new upcoming threats
  • Compiles threat hunt reports as requested on any specific hunt/threat inquiry and disseminate to SOC leadership.

Conducts research and document events of interest within the scope of Cyber Security.

Salary Range: $120,000 – $145,000

Qualifications
  • Minimum of 3 years experience conducting analysis of log data in support of intrusion analysis or information security operations.
  • Bachelors degree or equivalent with relevant certifications.
  • Experience with two or more analysis tools used in a CIRT or similar investigative environment.
  • Ability to build content in SIEM system.
  • Ability to analyze and triage IoCs.

Jobicy JobID: 126868

Job Tags

Full time, Shift work,

Similar Jobs

Rolling Suds of Beaverton

Sales/Estimator - Power Washing Service Job at Rolling Suds of Beaverton

 ...schedule? If so, we want YOU to be the next Residential Field Sales Estimator for one of the fastest-growing exterior cleaning and power washing companies in the country! With over 30 years in the industry and national expansion plans, were on a mission to become the... 

Bentley Systems

Global Director of Payroll Job at Bentley Systems

 ...Location: U.S. - East Coast Summary: The Global Director of Payroll will lead and oversee the global payroll operations spanning 50 countries. This role is responsible for ensuring timely, accurate, and compliant payroll processing across all regions, aligning... 

Sedgwick

Auto Claims Adjuster Job at Sedgwick

 ...Workplaces National Top CompaniesCertified as a Great Place to WorkFortune Best Workplaces in Financial Services & InsuranceAuto Claims Adjuster**PRIMARY PURPOSE** **:** To analyze mid- and higher-level general auto claims to determine scope of damages; to ensure... 

VDart Inc

Data Analyst Job at VDart Inc

 ...Role: Data Analyst Location: Louisville, KY (Remote) Type: Contract Tech stack: Structured and unstructured data, DataBricks, Snowflake, SQL, ERM (entity relationship modeling), lineage, PowerBI. This will be supporting a project to identify systems... 

Archer Travel

Copy of Copy of Travel Agent Job at Archer Travel

Hey want to work from home and make your own hours? You can do that as a Travel Agent!! Only things required is that you're in the United States, The UK, Australia, or Mexico. You also need to be at least 18 years of age or older! We Train you on everything you need...