Remote SOC Mid-Level Analyst Job at ECS, Remote

YXFNR3lWUktlSHdYN290ZlNOUFg2ek5BRFE9PQ==
  • ECS
  • Remote

Job Description

ECS is seeking a  SOC Mid-Level Analyst  to work  remotely .

ECS is seeking a Mid-Level SOC Analyst with demonstrated experience supporting the development of processes, procedures, and automations to rapidly ingest, aggregate, correlate, normalize, and analyze event messages to rapidly and assuredly identify and respond to Indicators of Compromise (IoC). The ideal candidate is a critical thinker and perpetual learner who is excited to solve some of our clients’ toughest challenges. To be successful the candidate must have experience working in a mature 24x7x365 Security Operation Center.

Shift schedule:  Fri-Mon, 3:00PM – 1:00AM ET (subject to change)

Responsibilities include:

  • Continuously monitors SIEM and on-premises infrastructure/cloud applications for security events to threats & intrusions, including:
  • SIEM alert queue
  • Phishing email inbox
  • Intel feeds via email and other sources (i.e., US-CERT, MS-ISAC)
  • Incident ticketing queue
  • Participates with responding to and handling all critical incident activity. Ensure the execution of proper containment, remediation, and recovery activities.
  • Assesses and documents lessons learned as part of post-incident review, such as unsuccessful controls, outdated procedures, or incomplete remediation actions.
  • Coordinates with SIEM engineering to tune security events and alerts for improving alert fidelity. 
  • Assists with creating and tuning Security Orchestration and Automation (SOAR) playbooks and automated workflows. 
  • Performs proactive threat hunting to identify and characterize new emerging threats, vulnerabilities, and risks.
  • Works closely with Cyber Threat Intel to provide information on detection patterns for new upcoming threats
  • Compiles threat hunt reports as requested on any specific hunt/threat inquiry and disseminate to SOC leadership.

Conducts research and document events of interest within the scope of Cyber Security.

Salary Range: $120,000 – $145,000

Qualifications
  • Minimum of 3 years experience conducting analysis of log data in support of intrusion analysis or information security operations.
  • Bachelors degree or equivalent with relevant certifications.
  • Experience with two or more analysis tools used in a CIRT or similar investigative environment.
  • Ability to build content in SIEM system.
  • Ability to analyze and triage IoCs.

Jobicy JobID: 134595

Job Tags

Full time, Shift work,

Similar Jobs

Dennis Group Construction & Site Safety

Safety Coordinator (Industrial Construction) Job at Dennis Group Construction & Site Safety

 ...Dennis Group Safety Professionals assist in the development, management, and implementation of a Health and Safety Program for all...  ...Dennis Groups projects. Our projects are vertical, industrial construction projects involving multiple engineering disciplines and sub-contractor... 

Therapy Solutions

School Nurse LPN (Onsite, Full Time) **Diabetes Management Experience Required** Job at Therapy Solutions

 ...School Nurse **LPN** Location: Lakewood, WA Model: Full-time | On-site School Year: 20252026**Diabetes Management Experience Required** Therapy Solutions Collective (TSCO) is seeking passionate and dedicated School Nurses to join our team for the 20252026... 

American Baptist Homes of the Midwest

RN - Senior Living Job at American Baptist Homes of the Midwest

 ...hr Weekend Days: +$3.00/hr Weekend Evenings: +$4.00/hr Weekend Nights: +$4.00/hr Schedule: We have b oth full-time and part-time positions are available across all shifts, with rotating weekends and holidays. Supportive Team: We value our... 

IAPWE

Freelance Writer Job at IAPWE

 ...of pay is $20 per 100 words (this comes out to approximately $100 per article or $50 per hour). Some topics you may be asked to write about include the following (you can always turn down a topic if you do not feel comfortable writing about it, however if you have... 

Centene Corporation

Provider Data Management Analyst I Job at Centene Corporation

 ...our communities, one person at a time. As a diversified, national...  ...Position Purpose:** Perform provider data management related activities...  ....This position is 100% remote within the United States.Pay Range...  ...by law, including full-time or part-time status. Total compensation...