Salary
💰 $80,000 - $90,000 per year
Tech Stack
Cyber SecurityFirewallsLinux
About the role
- Provide monitoring support in a 24x7x365 environment.
- Investigate SIEM and endpoint alerts within the SOAR platform for containment, notification, and remediation.
- Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise.
- Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
- Determine tactics, techniques, and procedures for intrusion sets
- Collaborate with other seasoned analysts and cyber-security engineers in the Security Operations Center (SOC).
- Work overnight shifts as part of a 4x3 work week, which may include early morning, evening or weekend shift hours.
Requirements
- 1-3 years cyber security operations experience
- Must have hands-on experience with EDR tools
- Experience with proprietary security protection/detection tools such as Firewalls, Host and Network IDS/IPS, Anti-Virus, EDR, URL Filtering Gateways, Email Filtering Gateways, DLP tools, SIEM tools, etc
- Highly proficient in Microsoft and Linux operating systems
- Experience working within one or more SOAR platforms
- Familiarity with the MITRE ATT&CK framework
- Working knowledge of advanced actor TTPs
- Excellent written/verbal communication skills