SOC Cyber Detection & Response (CDR) Analyst

Remote Full-time
About the position The SOC Cyber Detection & Response (CDR) Analyst will be a key member of the Security Operations Center's Cyber Detection and Response Team at the Executive Office of Technology Services and Security (EOTSS). This role focuses on incident triage, detection, response, and remediation of IT threats, working collaboratively with Security Engineers and Managed Security Service Providers to ensure the security of the Commonwealth of Massachusetts' information technology systems. Responsibilities • Manage day-to-day security monitoring and incident response activities, including SIEM monitoring and Endpoint Detection and Response. • Assist in detection and incident response functions, including Security Incident Reporting tickets and customer notifications. • Conduct and participate in cybersecurity incident simulation exercises at various levels. • Monitor and respond to anomalous Internet, Extranet, and Intranet activity based on credible threat intelligence. • Collaborate with EOTSS customer organizations and EDR vendors for software testing and status reporting. • Develop and deliver cybersecurity education and awareness initiatives for state government. • Review third-party alerts to maintain situational awareness of security issues affecting Commonwealth agencies. • Conduct research into new threats that may impact Commonwealth agencies and local entities. • Promote security awareness through phishing campaigns and overall security awareness programs. • Prepare security reports for management utilizing enterprise security tools. Requirements • At least one year of full-time or equivalent part-time experience in information technology security. • An Associate's degree in a related field may substitute for the required experience. Nice-to-haves • Knowledge of SIEM (Security Information and Event Management) Splunk. • Familiarity with cloud computing (AWS/AZURE/GCP). • Knowledge of TCP/IP, VLANs, computer networking, routing, and switching. • Familiarity with IDS/IPS, penetration and vulnerability testing. • Understanding of network protocols and packet analysis tools. • Familiarity with Windows and Linux operating systems. • Understanding of Proofpoint and other email security tools. • Security certifications desired but not required. • Experience with EDR Tools, particularly Palo Alto Cortex. Benefits • Comprehensive employee benefits package including health insurance, retirement plans, and paid time off. Apply tot his job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Character Education Curriculum Developer - Biblical, High School | FRIENDZY

Remote

Customer Service / Data Entry Representative - Remote

Remote

Remote Part-Time Marketing Manager (Team Leadership Role – Construction, Logistics, Gov’t Contractin

Remote

Junior Solutions Engineer/Ad Tech Operations (AMERS)

Remote

Senior Software Engineer

Remote

**Virtual Customer Care Professional – Delivering Exceptional Service from the Comfort of Your Home**

Remote

Experienced Customer Service Representative – Delivering Personalized Support and Driving Business Growth with arenaflex

Remote

Senior Manager, Digital Experience & Web Platforms

Remote

Experienced Data Entry Specialist for Live Chat and Remote Customer Support – Enhancing User Experience with arenaflex

Remote

Sr. Consultant - Cyber Engineering & Technology Operations (Security Software Engineer)

Remote
← Back