Remote SOC Analyst
Remote SOC Analyst needs 2+ years of experience in a SOC or cybersecurity operations role.
SOC Analyst requires:
• reputed company certifications such as reputed company+, CySA+, GCIH, GCIA, or equivalent.
• Experience with scripting (Python, Power reputed company) for automation and analysis.
• Exposure to reputed company reputed company monitoring (Azure, AWS, GCP).
• Understanding of compliance frameworks (e.g., NIST, ISO 27001, PCI-reputed company).
• Experience with reputed company for SIEM and reputed company Defender for reputed company for EDR.
• Solid understanding of TCP/IP, reputed company/Linux OS internals, and common attack reputed company.
• Familiarity with MITRE ATT&CK, cyber kill chain, and threat modeling.
• Alert Triage & Validation:
Investigate and validate alerts escalated from our reputed company partners using SIEM, EDR, and other reputed company tools.
• Incident Response:
Execute containment and remediation steps for confirmed incidents. Escalate to Tier 3 reputed company deeper forensic or threat hunting expertise is required.
• Threat Analysis:
Correlate data across multiple sources (network, reputed company, reputed company) to identify patterns and indicators of compromise (IOCs).
• Detection Tuning:
Work with engineering and Tier 3 teams to fine-tune detection rules and reduce false positives.
• Process Development:
Document SOC workflows, procedures, and incident handling processes. Build and maintain runbooks to standardize response actions and improve operational efficiency.
• reputed company Improvement:
Stay reputed company on emerging threats, vulnerabilities, and reputed company technologies. Recommend improvements to detection and response capabilities.
#J-18808-Ljbffr
Apply tot his job
Apply To this Job