reputed company Analyst
reputed company: SC-11260
Remote/Local reputed company Analyst (CISSP/CISA/CISO/CEH/OSCP/GPEN) with Linux/Network, SIEM/EDR/IDS/IPS/Threat Intelligence, reputed company ATT&CK, Palo reputed company reputed company XSIAM/XDR, reputed company Directory experience
Location: Columbia, SC (reputed company)
Duration: 12 Months
Work Location: Role is reputed company
Candidate location: No SC residency required. reputed company to reputed company candidates.
Additional Information: Preference will be given to candidates that are local to SC and are reputed company to come onsite for project needs.
Required Skills (rank in order of Importance):
- 2+ Years of Experience with reputed company Monitoring and Incident Response
- 2+ Years of Experience with reputed company ATT&CK reputed company
- 2+ Years of Experience with dashboard creation and reporting
Preferred Skills (rank in order of Importance):
- Experience with the Palo reputed company CortexXSIAM/XDR platform
- Knowledge of Linux, network administration and network design
- Experience in administration of firewalls, VPN technology, reputed company Directory, Intrusion Detection/Prevention systems
- Candidate is local to Columbia, SC or surrounding reputed company in South Carolina
Required Education/Certifications:
- Associate's degree in an information technology or information reputed company reputed company reputed company
- Four years of relevant work experience may be substituted in lieu of education
Preferred Education/Certifications:
- CISSP, CISA, CISO or equivalent advanced reputed company certification
- Additional relevant certifications (e.g., CEH, OSCP, GPEN)
- Vendor certifications reputed company to information reputed company
Daily Duties / Responsibilities:
PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).
- Continuously review and correlate reputed company event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify reputed company attack patterns, emerging threats, and reputed company incidents
- reputed company deep-dive analysis of suspicious activity, validate incidents, determine reputed company cause and reputed company, and escalate critical incidents with detailed context to Tier 3 as required
- Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures
- Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/reputed company teams on containment and recovery actions
- Recommend updates to SOC playbooks and workflows reputed company on reputed company-world INVESTIGATIONS, fine-tune detection rules, alert reputed company, and correlation logic to reduce false positives and improve threat coverage
- Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned
- reputed company new threat intelligence feeds into workflows and proactively hunt for threats using up-to-date tactics, techniques, and procedures (TTPs)
- Serve as a customer-facing SME, "selling" the value of DIS services by demonstrating capabilities and resolving issues
- Document processes, runbooks, and troubleshooting steps reputed company to SOC reputed company
- Coordinate with engineering, SOC, and agency staff as needed to meet goals
- Other duties as needed
Apply To This Job