Job Description
Overview:
Th e Security Operations Center (SOC) Analyst I provides support to One Source s Managed Security Services customers . The SOC Analyst I should have a background and general experience with in Information Technolo g y , and a n intermediate knowledge of cyber security practices. The SOC Analyst I should also have a thirst for knowledge and an ability to tackle new problems quickly by using available security tools to successfully remedy issues with minimal sup ervision from the Senior SOC Analyst and /or SOC Manager . This role focuses primarily on security analysis ( escalations and investigations ) , while also handling basic security engineering tasks (systems, upgrades, reporting, maintenance , etc ) .
Responsibilities:
- Keep information regarding our clients, their data, and other sensitive information confidential
- Provide remote and on-site security and incident response support to a growing list of clients
- Triage security alerts and events to quickly determine scope, impact, and risk
- Investigate security alerts and events to correlate related events into incidents
- Based on research and threat intelligence sources, make practical and actionable recommendations to customers on next steps for alerts and events
- Proactively hunt for security exposures and threats in a customers environment
- Assist in new security customer onboarding and setup
- Update knowledge base to provide continuity among other company personnel
- Communicate ticket status and document updates to clients and technical staff as needed
- Provide first level after hours and holiday on-call support on a revolving basis with other staff
- Regularly scheduled for off-shift (evening or overnight) in a 4x10 or 3/4x12 model
- Interact with clients and vendors over the phone and in person in a professional manner
- Provide security tool tuning recommendations and feedback to the Security Engineering team
- Respond and manage internal security incidents as reported to the Security Operations Center?
- Data and system use must comply with ?One Source?information security?policies and standards.?
- Unauthorized access to data and/or systems is prohibited.?
Qualifications:
Required Skills / Abilities:
- Basic knowledge of security concepts including, but not limited to, general security concepts, threats and vulnerabilities, digital forensics, threat hunting, indicident response, security architecture, mitigation techniques, etc.
- Basic knowledge of security tools and controls including, but not limited to, EDR, Network Security, Email Security, SIEM, SOAR, ITSM software, etc.
- Monitors and triages security alerts generated from various security tools and controls deployed in the customers environment
- Prioritizes security alerts to determin e when escalation is required and successfully engages SOC Analyst II or Senior SOC Analyst
- Identifies customer issues and presents them to Senior SOC Analysts and SOC Manager clearly and consisely for timely resolution
- Possesses verbal and written communication skills for daily interactions with customers and fellow team members/ coworkers
Education / Experience:
- Bachelors Degree, or High School Diploma and additional industry experience
- 1-2 years of experience in a Cyber Security role with responsibility for investigation of security incidents or incident remediation
Job Tags
Holiday work, Shift work, Night shift, Afternoon shift,