Назад
Company hidden
10 часов назад

SOC Analyst (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Analyst (Cybersecurity): Monitoring networks and SIEM tools, detecting and responding to cybersecurity incidents, and investigating threats for a large organization with an accent on incident analysis, intrusion detection, vulnerability assessment, and security operations. Focus on triaging events through the seven-step Incident Response Process, identifying root causes, developing countermeasures, and coordinating incident reporting with government agencies.

Location: Onsite in Fairfax, Virginia, United States, with a daily schedule from 10:00 AM to 6:00 PM

Company

Provides a cybersecurity operations role supporting a large organization, government-agency coordination, and client technology divisions.

What you will do

  • Perform network security monitoring, intrusion detection, and incident response.
  • Monitor SIEM tools, logs, sensors, and security dashboards to identify and remediate threats.
  • Investigate security events, intrusions, compromises, vulnerabilities, malicious emails, payloads, hashes, IPs, and URLs.
  • Apply incident handling, containment, eradication, recovery, and other mitigating controls.
  • Maintain incident records, prepare written reports, and deliver information security briefings.
  • Support security tool deployment, integration, signature creation, system administration, and updates to Standard Operating Procedures.

Requirements

  • U.S. citizenship and an active Secret or Top Secret security clearance are required.
  • Must be eligible for a Top Secret clearance if requested.
  • Bachelor’s degree in computer science, information systems, engineering, business, physical science, or another technology-related discipline, or equivalent documented formal training.
  • 6+ years of documented experience in information system security, security assessment and authorization, cybersecurity, computer forensics, or insider threat.
  • Experience with security monitoring, incident detection and response, vulnerability assessment, log management, or SIEM operations.

Nice to have

  • CompTIA CySA+ certification.
  • Experience with SOC operations, event triage, threat hunting, vulnerability assessment, and root-cause analysis.
  • Knowledge of SIEM tools, query generation, cybersecurity dashboards, IOCs, and IOAs.
  • Experience with enterprise IT product requirements analysis, architecture, engineering, integration, and deployment.

Culture & Benefits

  • Full-time onsite work supporting Operations & Response, Vulnerability Assessment and Penetration Test, and Engineering teams.
  • Coordination with cybersecurity services, IT operations, engineering, software operations, and investigative technology divisions.
  • Health, dental, and vision benefits.
  • Paid time off, 401(k), and life insurance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →