SOC Analyst monitoring and responding to cybersecurity incidents at EdFinancial Services in Knoxville, TN. Requires Bachelor's degree and 2+ years of experience in a security operations role.
Responsibilities
Monitor security events and alerts from various sources including SIEM (Security Information and Event Management) tools, intrusion detection/prevention systems, antivirus systems, and other security tools.
Analyze security alerts to identify potential cybersecurity incidents and assess their severity.
Conduct in-depth investigations into security incidents, including determining the root cause, impact, and extent of the compromise.
Utilize threat intelligence sources to enhance the detection and analysis of security threats.
Respond promptly to security incidents, following established procedures and protocols.
Coordinate with internal teams and external stakeholders to contain and mitigate security incidents.
Document all incident response activities, including actions taken, findings, and remediation steps.
Assist in identifying and assessing vulnerabilities within the organization's systems and networks.
Coordinate with system administrators and other stakeholders to prioritize and remediate vulnerabilities in a timely manner.
Track and report on the status of vulnerability remediation efforts.
Proactively search for signs of malicious activity within the organization's environment.
Develop and execute threat hunting methodologies and techniques to identify advanced threats that may evade traditional security measures.
Manage and maintain security tools and technologies, ensuring they are properly configured and updated.
Collaborate with the IT team to deploy, configure, and tune security solutions for maximum effectiveness.
Generate regular reports on security incidents, trends, and metrics for management review.
Maintain detailed documentation of security incidents, investigations, and remediation efforts.
Provide guidance and training to other members of the IT team on security best practices, incident response procedures, and emerging threats.
Participate in security awareness programs to educate employees about cybersecurity risks and mitigation strategies.
Stay current with the latest cybersecurity trends, threats, and technologies.
Recommend and implement enhancements to security monitoring and detection capabilities.
Requirements
Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
2+ years of experience in a security operations role, preferably in a SOC environment.
Strong understanding of cybersecurity principles, protocols, and best practices.
Experience with SIEM tools, intrusion detection/prevention systems, and other security technologies.
Proficiency in incident response methodologies and tools.
Knowledge of networking concepts and protocols.
Relevant certifications such as Security+, GIAC, CISSP, or equivalent are a plus.
Excellent analytical and problem-solving skills.
Strong communication and interpersonal skills.
Ability to work effectively both independently and as part of a team.
Head of Technology Operations & Security leading IT and security for a deep - tech scale - up. Overseeing IT operations and governance while implementing security within quantum communication technologies.
Head of IT & Security Operations ensuring secure cloud - based IT for quantum communication technologies. Leading a small IT team and aligning security, compliance, and business priorities.
L3 SOC Analyst managing security escalation cases using threat intelligence at Hewlett Packard Enterprise. Focused on cybersecurity incidents and team mentorship in a hybrid environment.
Senior Security Analyst triaging and investigating security alerts for award - winning IT provider. Collaborating to improve detection capabilities and mentor junior analysts in SOC environment.
Junior Network Analyst in NetSecOps at Porto managing network security and infrastructure. Focus on connectivity and collaboration for seamless communication across the company.
Solution Sales Manager driving revenue growth in financial services sector in Austria and Switzerland. Focused on ServiceNow IRM and Tanium solutions integration with consultative selling approach.
Cybersecurity Analyst at Trust Control monitoring threats and responding to incidents in the SOC. Engaging in continuous learning to enhance cybersecurity practices and strategies.
SecOps Engineer responsible for maintaining and improving application security in cloud infrastructure at Shopmonkey. Collaborating on security tools and processes with a focus on compliance and incident management.
Senior SOC Analyst at Telstra helping protect employees and customers from cyber threats. Leading incident response and threat analysis in Security Operations Centre.
Physical Security Operations Manager leading physical security initiatives and managing guard operations for data center construction. Focused on protecting assets and mitigating risks in critical environments.