SOC Analyst

Remote, USA Full-time
Job Title: SOC Analyst Location: Ashburn, VA (Remote) Experience: 2+ Entry Level Work Authorization: USC, GC and EAD Job Details: Supporting the Cyber Defense Operations Center (CDOC) team, provide event triage, response, and log analysis, including: • Triage events and alerts to determine if an incident has occurred including locating owners of assets, validating if an event was a true positive, and escalating incidents as necessary to the Incident Response team (CSIRT) • Perform rapid response and triage of security reports from Cybercrime and other teams, appropriately investigating, containing, escalate based on the determination, and ticket closure • Perform thorough analysis on email phishing reports and threats. Ensure appropriate containment & eradication is performed based on the threat perceived & documented guidance • Facilitate communication and collaborate with internal teams, management, and external stakeholders to provide timely updates on incident progress • Perform basic forensic examinations on hosts and support CSIRT on response tasks when engaged • Create recommendations and requirements for content detection and response 2 Demonstrate solid understanding & experience with security controls/tooling used by CDOC, including: • Splunk and Elasticsearch (SIEM/Logging) • Splunk SOAR (Case Management) • Endpoint Security: Microsoft Defender for Endpoint, CrowdStrike, Wazuh, & Tanium • Network Security: Netskope SWG and CASB, Palo Alto IPS, CloudFlare WAF, Extrahop, & NetWitness • IAM: Azure AD • Intermediate knowledge of Public Cloud environments to support AWS & GCP threat response 3 Strong understanding of networking & a variety of IT systems, apps, & their operational configurations 4 Knowledge of Threat Actor tactics, techniques, and procedures (TTPs), log analysis, network traffic analysis, and analyzing system artifacts (file system, memory, running processes, network connections) for indicators of infection/compromise 5 Strong oral & written communication abilities to engage with internal stakeholders within & outside of InfoSec 6 Roles will support 8-hour work shifts (during the day) 7 Roles may require overtime, on-call, & weekend coverage (shift rotation) from time-to-time
Apply Now

Similar Jobs

Nurse Navigator Senior Manager

Remote, USA Full-time

Fully Remote/Weekends Only Radiologist Position

Remote, USA Full-time

Spotify is hiring: Senior PR & Communications Manager, Product & Tech in New Yor

Remote, USA Full-time

Accounts Payable Associate - Remote

Remote, USA Full-time

Pharmacovigilance Associate

Remote, USA Full-time

Home-Based RBT

Remote, USA Full-time

Senior Bookkeeper

Remote, USA Full-time

Flight Attendant

Remote, USA Full-time

IT Help Desk Tier 2

Remote, USA Full-time

Service Desk Analyst

Remote, USA Full-time

Work From Home Remote Entry Level -Focus Group Position – Amazon Store

Remote, USA Full-time

**Experienced Customer Experience Specialist (German & English) – Driving Business Success for Small Entrepreneurs**

Remote, USA Full-time

Clinical Triage Specialist, RN Oncology/Palliative Access Center, Remote Position (PA/NJ residency)

Remote, USA Full-time

bolthires Content Moderator Job (Remote) – Immediate Hiring

Remote, USA Full-time

Experienced or Entry-Level Remote Data Entry Clerk for Full-Time or Part-Time Work-from-Home Opportunities with blithequark – No Prior Experience Required for Typing and Administrative Tasks

Remote, USA Full-time

College Application Coaches Needed-(Fully Remote)

Remote, USA Full-time

Production Operator: 3:30PM-1:30AM Mon-Thurs $17/hour

Remote, USA Full-time

Client Care Specialist

Remote, USA Full-time

Experienced Strategic Customer Success Manager – Driving Business Growth and Digital Transformation through Innovative IoT Solutions at blithequark

Remote, USA Full-time

Experienced Healthcare Customer Service Representative – Delivering Exceptional Patient Experiences through Compassionate Support and Empathetic Communication

Remote, USA Full-time
Back to Home