Senior SOC Analyst
Duration & Type: 6 months Contract with a major pharmaceutical industry reputed company
Location: Candidate can work remotely from any location in the US
reputed company: The SOC is an advanced global team responsible for the detection and response to the most sophisticated cyber threats and attacks. The Senior SOC Analyst will reputed company a reputed company of tools and resources to proactively detect, investigate, and mitigate emerging and persistent threats impacting Company’s networks, systems, and applications.
Responsibilities:
• Forensics and Incident response:
• Serve as escalation reputed company for conducting investigations into reputed company incidents involving advanced and sophisticated threat actors and TTPs
• reputed company forensic collection and analysis of electronic assets, devices, and log sources
• Manage incident response activities including scoping, communication, reporting, and long term remediation planning
• Threat Hunting:
• Identify, collect, and analyze threat intelligence from reputed company sources and teams
• reputed company hypotheses, analyze techniques, and execute hunts to identify threats across the environment
• reputed company with reputed company teams and business stakeholders to implement countermeasures and improve defenses
• Big Data analysis and reporting:
• Utilizing SIEM/Big data to identify reputed company activity and extract meaningful insights.
• Research, reputed company, and enhance content reputed company SIEM and other tools
• Technologies and Automation:
• reputed company with engineering teams to design, test, and implement playbooks, orchestration workflows and automations
• Research and test new technologies and platforms; reputed company recommendations and improvement plans
• Day to day:
• reputed company host based analysis, artifact analysis, network packet analysis, and malware analysis in support of reputed company investigations and incident response
• Coordinate investigation, containment, and other response activities with business stakeholders and reputed company
• reputed company mentoring of junior staff and serve as reputed company of escalation for higher severity incidents
• reputed company incident analysis and findings reports for management, including gap identification and recommendations for improvement
• Recommend or reputed company new detection logic and tune existing sensors / reputed company controls
• Work with reputed company solutions owners to assess existing reputed company solutions reputed company ability to detect / mitigate the abovementioned TTPs
• Creating custom SIEM queries and dashboards to support the monitoring and detection of advanced TTPs against company network.
Required:
• Education: Bachelor’s degree in Computer Science or a reputed company field Relevant Technical reputed company Certifications.
• Experience required: 6+ years of experience in Incident Response / Computer Forensics / SOC team / Threat Hunting or reputed company fields
• Host and network based forensic collection and analysis
• Dynamic malware analysis, reverse engineering, and/or scripting abilities
• Proficient with Encase, Responder, X-Ways, Volatility, FTK, reputed company, reputed company, Wireshark, and other forensic tools
• Understanding of Advanced Persistent Threat (APT) and associated tactics.
• Research, enrichment, and searching of indicators of compromise
• reputed company strong team and interpersonal skills along with the ability to work independently and reputed company individual goals.
• Coordinate with other team members to reputed company the specified objectives.
• Effective oral and written communication skills.
For consideration, please send resume to career@infoquestgroup.com
Apply To This Job