SOC Mid-Level Analyst

Remote Full-time
ECS is seeking a SOC Mid-Level Analyst to work remotely.
ECS is seeking a Mid-Level SOC Analyst with demonstrated experience supporting the development of processes, procedures, and automations to rapidly ingest, aggregate, correlate, normalize, and analyze event messages to rapidly and assuredly identify and respond to Indicators of Compromise (IoC). The ideal candidate is a critical thinker and perpetual learner who is excited to solve some of our clients’ toughest challenges. To be successful the candidate must have experience working in a mature 24x7x365 Security Operation Center.
Shift schedule: Friday-Monday, 3:00PM - 1:00AM ET (subject to change)
Responsibilities include:

Continuously monitors SIEM and on-premises infrastructure/cloud applications for security events to threats & intrusions, including:
SIEM alert queue
Phishing email inbox
Intel feeds via email and other sources (i.e., US-CERT, MS-ISAC)
Incident ticketing queue
Participates with responding to and handling all critical incident activity. Ensure the execution of proper containment, remediation, and recovery activities.
Assesses and documents lessons learned as part of post-incident review, such as unsuccessful controls, outdated procedures, or incomplete remediation actions.
Coordinates with SIEM engineering to tune security events and alerts for improving alert fidelity.
Assists with creating and tuning Security Orchestration and Automation (SOAR) playbooks and automated workflows.
Performs proactive threat hunting to identify and characterize new emerging threats, vulnerabilities, and risks.
Works closely with Cyber Threat Intel to provide information on detection patterns for new upcoming threats
Compiles threat hunt reports as requested on any specific hunt/threat inquiry and disseminate to SOC leadership.

Conducts research and document events of interest within the scope of Cybersecurity.
Salary Range: $120,000 - $145,000
General Description of Benefits
Qualifications

Minimum of 4 years experience conducting analysis of log data in support of intrusion analysis or information security operations.
Bachelors degree or equivalent with relevant certifications.
Experience with two or more analysis tools used in a CIRT or similar investigative environment.
Ability to build content in SIEM system.
Ability to analyze and triage IoCs.


apply to this job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Experienced Data Entry Specialist – Entry-Level Opportunity for Career Growth and Development in a Dynamic Work Environment at arenaflex

Remote

**Experienced Customer Service Representative – Work from Home Opportunity at arenaflex**

Remote

Hire Digital - Vue.js Developer (Freelance, Remote) - New York City, NY

Remote

HSPT Reading Tutor

Remote

**Experienced Full Stack Customer Support Representative – Remote Chat Support for arenaflex**

Remote

Delta Airlines Needs Flight Attendant ( Portland )

Remote

**Experienced Part-Time Data Entry Specialist – Weekend Work Opportunity at arenaflex**

Remote

**Experienced Full Stack Data Entry Specialist – Distributed Systems and Cloud Application Development**

Remote

Experienced Remote Data Entry Specialist for Logistics and Supply Chain Management – Detail-Oriented and Organized Professional Needed for blithequark Team

Remote

Data and Reporting Analyst Apprentice - National General

Remote
← Back