Job Title: IT Security Analyst II
Job Overview:
We are looking for an experienced IT Security Analyst to join our Security
Operations Center (SOC) team. The ideal candidate will have a strong
background in cybersecurity, with a focus on incident detection, response,
and investigation. This role involves working in a fast-paced environment,
monitoring and protecting our organization's digital assets and
infrastructure.
Responsibilities:
-
Work in rotational shifts and be on-call outside of shift hours as needed.
-
Administer, configure, and troubleshoot security infrastructure devices.
-
Manage and service tickets assigned to the SOC queue.
-
Respond to and investigate reported incidents, suspicious activities, and
security alerts.
-
Take initiative and ownership of incidents from reporting to resolution.
-
Monitor security and system logs to detect and respond to suspicious
activities; ensure timely remediation.
-
Continuously analyze and improve security systems to enhance threat
detection and response capabilities.
-
Collaborate and coordinate with internal teams to report and drive
resolution of vulnerabilities.
-
Triage malware incidents and determine the priority and need for
escalation.
-
Monitor for emerging threat patterns and vulnerabilities.
-
Assist with Incident Response investigations and activities.
-
Perform on-call responsibilities as required.
-
Contribute to developing and refining SOC processes, playbooks, and
Standard Operating Procedures (SOPs).
Skills and Experience:
-
10+ years of proven work experience in IT security, preferably in a SOC
environment.
-
Strong knowledge of information security and networking concepts.
-
Hands-on experience with security technologies, including firewalls,
IDS/IPS, EDR tools (e.g., CrowdStrike), SIEM platforms (e.g., Splunk),
antivirus software, web filtering, VPN, and MFA solutions.
-
Experience in using network analysis tools and triaging software
vulnerabilities, exploits, phishing, and malware alerts.
-
Ability to identify and evaluate malware-related compromise artifacts.
-
Proven experience in a high-volume, fast-paced, and result-oriented
operational environment.
-
Strong analytical and problem-solving skills with the ability to think
critically under pressure.
-
Preferred certifications: CompTIA Security+, CISA+, CEH, GSEC, SSCP,
CASP+, or similar.
Key Competencies:
-
Attention to detail and accuracy.
-
Strong communication and collaboration skills.
-
Ability to handle stressful situations and make quick decisions.
-
A proactive approach to continuous improvement.