Analyst, Security Operations Center (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Analyst, Security Operations Center (Cybersecurity): Manages event and information intake, including intelligence reports and monitoring ticket queues, to investigate reported incidents and interact with security and infrastructure groups. Focus on correlating and analyzing events to determine the scope of cybersecurity incidents and improve monitoring and incident response.
Location: Works From Home, Charlotte, NC. Open to providing sensible remote options to talent outside of the Charlotte area.
Company
provides fast, reliable internet connections and an awesome customer experience in twenty states throughout the Midwest and South, backed by funds managed by Apollo Global Management.
What you will do
- Review incidents to assess their urgency and escalate incidents if necessary.
- Triage alerts and correlate and analyze events and data to determine the scope of cybersecurity incidents.
- Recognize attacker tactics, techniques, and procedures as potential indicators of compromise to improve monitoring, analysis, and incident response.
- Assist in tuning SIEM and IDS alerting to reduce false positives and improve detection capabilities.
- Develop automation playbooks and provide prescriptive remediation guidance to IT and network teams.
- Monitor and manage/support all event sources and use security tools to monitor and manage security incidents.
Requirements
- Associate's degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training.
- Experience managing cases/incidents and ability to think analytically.
- Proficiency in threat management analysis and dissemination.
- Proficiency in scripting languages.
- Advanced written and verbal communication skills.
Nice to have
- Bachelor's Degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training.
- Information Security Certification (GSEC, Security+, GIAC preferred).
- Python or PowerShell scripting.
- Azure Sentinel and CrowdStrike experience.
- A solid understanding of networking, cybersecurity concepts.
Culture & Benefits
- Committed to being a leader in defining a new way to work and opening a new, state-of-the-art corporate HQ in Charlotte, NC.
- Offer competitive compensation and comprehensive benefits, including medical, dental, vision, and life insurance; an employee assistance program; a 401K plan with company match and a host of voluntary benefits.
- has roles that are designated as remote, hybrid, office or field-based, depending on the position, business needs and individual circumstances.
- Invest in technology that enables the entire team to stay connected.
- Committed to building a team as diverse as the customers they serve.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →