SOC Analyst responsible for monitoring security alerts and providing mitigation support. Collaborating with engineering teams to enhance security tools and products at Cloudflare.
Responsibilities
Monitor and investigate proactive alerts to identify attacks
Work with Engineering and Operations teams to mitigate attacks, suggest steps to mitigate, and apply the appropriate mitigation when applicable
Work with Engineering and Product teams to improve products and tools
Communicate with customers via chat, email, and phone
Review alerts to determine relevancy and urgency; create tracking tickets for incidents requiring review or escalation
Adhere to SOC SLAs for alert response and customer communication
Configure and manage security monitoring rules; contribute to tool and threshold improvements
DDoS mitigation for OSI Layers 3, 4, & 7: filter malicious traffic using Cloudflare tools including Magic Transit, Magic Firewall, Advanced TCP Protection, WAF, Custom Rules, IP Access Rules, and Rate Limiting
Maintain customer-specific SOC runbooks and escalation matrices
Support SOC customer onboarding and deliver monthly security reviews
Requirements
Strong understanding of internet protocols (TCP, UDP, ICMP, GRE, BGP)
Networking fundamentals are crucial for success
Analysis of traffic for attack anomaly detection and creation of mitigation rules
Experience handling attack mitigation with knowledge of L3/4 and L7 attacks
Command line / Bash shell proficiency
Customer Facing or Technical support experience is mandatory
Ability to remain calm under pressure
Ability to work 24x7 rotating shifts
Sysadmin skills - Linux, Mac, or Windows (Preferred)
Knowledge of Cloudflare Security Products & Features (Preferred)
SOC Analyst monitoring security events and responding to incidents at Junglee Games. Collaborating on security protocols to ensure protection of digital assets.
Senior Director of Global Security Operations at CyrusOne strategizing and managing security across global data centers. Driving execution, governance, and operational excellence in a high - availability environment.
Cybersecurity generalist at PwC providing security solutions and maintaining the protection of client systems. Involves monitoring security alerts, incident response, and collaboration with stakeholders.
Security Operations Manager overseeing safety measures for corporate office locations and events at Whatnot. Responsible for developing security frameworks and managing vendor relationships across global operations.
Manager overseeing technical security operations for the Protection Services department. Responsible for managing security systems, staff training, and interdepartmental collaboration.
Principal in Security Monitoring Response at Mastercard managing global crises and resilience operations. Leading incident response efforts and ensuring the safety of people and assets.
SOC Analyst II providing real time security monitoring and threat hunting services for clients in various industries. Assisting in identifying security incidents and managing vulnerabilities.
Security Incident Response Orchestration Lead at Bank of America defining automation for security incident workflows with a focus on Splunk SOAR and Tines. Collaborating with security operations and engineering teams to implement scalable solutions.
SOC Analyst II providing tier II cybersecurity support in a Security Operations Center environment. Conducting vulnerability assessments and analyzing cyber threats while training junior staff members.