Remote SOC Mid-Level Analyst Job at ECS, Remote

VVdqTnVvN1RCTk1iSHNnU0dXeFJla1NRYmc9PQ==
  • ECS
  • Remote

Job Description

ECS is seeking a SOC Mid-Level Analyst to work remotely .

ECS is seeking a Mid-Level SOC Analyst with demonstrated experience supporting the development of processes, procedures, and automations to rapidly ingest, aggregate, correlate, normalize, and analyze event messages to rapidly and assuredly identify and respond to Indicators of Compromise (IoC). The ideal candidate is a critical thinker and perpetual learner who is excited to solve some of our clients’ toughest challenges. To be successful the candidate must have experience working in a mature 24x7x365 Security Operation Center.

Shift schedule:  Sun-Thu, 11:00PM – 7:00AM ET (subject to change)

Responsibilities include:

  • Continuously monitors SIEM and on-premises infrastructure/cloud applications for security events to threats & intrusions, including:
  • SIEM alert queue
  • Phishing email inbox
  • Intel feeds via email and other sources (i.e., US-CERT, MS-ISAC)
  • Incident ticketing queue
  • Participates with responding to and handling all critical incident activity. Ensure the execution of proper containment, remediation, and recovery activities.
  • Assesses and documents lessons learned as part of post-incident review, such as unsuccessful controls, outdated procedures, or incomplete remediation actions.
  • Coordinates with SIEM engineering to tune security events and alerts for improving alert fidelity. 
  • Assists with creating and tuning Security Orchestration and Automation (SOAR) playbooks and automated workflows. 
  • Performs proactive threat hunting to identify and characterize new emerging threats, vulnerabilities, and risks.
  • Works closely with Cyber Threat Intel to provide information on detection patterns for new upcoming threats
  • Compiles threat hunt reports as requested on any specific hunt/threat inquiry and disseminate to SOC leadership.

Conducts research and document events of interest within the scope of Cyber Security.

Salary Range: $120,000 – $145,000

Qualifications
  • Minimum of 3 years experience conducting analysis of log data in support of intrusion analysis or information security operations.
  • Bachelors degree or equivalent with relevant certifications.
  • Experience with two or more analysis tools used in a CIRT or similar investigative environment.
  • Ability to build content in SIEM system.
  • Ability to analyze and triage IoCs.

Jobicy JobID: 126868

Job Tags

Full time, Shift work,

Similar Jobs

Tamatem

6 months Internship - Game Developer ( Emirati Only) Job at Tamatem

 ...Are you passionate about games and eager to break into the gaming industry? Tamatem Games is looking for enthusiastic and creative...  ...you'll have the opportunity to work closely with our experienced developers, contribute to exciting new projects, and build interactive... 

Swift Placement & Consulting

Area Sales Manager- Machine Tools Job at Swift Placement & Consulting

 ...Kansas City/Lenexa Region he Area Sales Manager (ASM) is principally responsible for the sale of DMG MORI products to provide...  ...which may present possible hazards such as noise, electricity, chemicals, heavy equipment, and other automated and manual machinery.... 

Insight Global

Design Manager Job at Insight Global

Job DescriptionDay-to-day:Insight Global is looking for a Design Project Manager for an industry leading environmental engineering firm in Los Angeles or Orange County, CA. This individual will be responsible for leading design and project management efforts for water... 

HR Global

SEO Onpage Specialist Job at HR Global

 ...On-page SEO Specialist Qualifications include: ~3+ years of experience with SEO principles, tools, and best practices. ~ Strong understanding of on-page SEO ranking factors, keyword research, competitor analysis, and content planning. ~ Hands-on skills... 

ManpowerGroup

Shipping Clerk Job at ManpowerGroup

 ...people - a team of adventurous thinkers and passionate high performers who make it all possible. We pride ourselves on being at the vanguard of new industry trends and technologies. When you join Adient, you'll play an important role in helping us improve the experience...