SOC 2:
Working Title: SOC Analyst 2
Position Purpose:
- The SOC Analyst 2 performs event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of the Commonwealth’s information technology assets through prompt and accurate threat handling, while also identifying and closing security gaps through detection engineering, threat hunting, intelligence gathering, and investigation, thereby contributing to the continuous improvement of network and security monitoring.
- Description of Duties:
- Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
- Capture, log, and respond to events received from email, chat, telecommunication systems, and other security systems, ensuring accurate documentation of incoming data.
- Perform security investigation for alerts escalated within the Security Operation Center, determining full scope, potential root cause, and potential impact.
- Follow, create, and improve established playbooks and SOPs used by the SOC.
- Document security incidents, responses, and related information in accordance with established procedures
- Analyze advanced logs, network capture, end-point telemetry to identify malicious activity and indicators of compromise (IOCs)
- Conduct initial threat hunting to proactively identify security anomalies and adversary activity
- Conduct tuning and optimization of existing detection rules, alerts, and correlation logic to reduce false positives and improve detection fidelity.
- Participate in root cause analysis or lessons learned sessions.
- Monitor external event sources for security intelligence and actionable incidents
- Provide incident response support as needed and directed during network and security events providing support for incident resolution.
- Maintain flexibility to work in various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.
- Performs other related duties as required.
- Decision Making:
- Make informed and timely decisions on the appropriate response to security alerts.
- Unique issues or problems may be escalated to supervisor.
- Work is reviewed periodically for adherence to established standards and established schedules.
Essential Functions:
- 1. Use personal computer/laptop with Microsoft Office products and other business software
- 2. Analyze and interpret various information
- 3. Create queries, reports and scripts leveraging current security coding and SIEM query languages
- 4. Prioritize tasks effectively.
- 5. Communicates effectively orally and in writing.
- 6. Working knowledge of troubleshooting tools (software)
- 7. Work independently and as a team member
SOC 1:
- Position Description
- This Tier I level analyst will act as a coremember of the NSOC team, contributing to overall operationalreadinessandsupport a 24/7 shift schedule. Interested candidates must be willing to take on other shifts.
Description of Duties:
- Support a 24/7 schedule, including nights, weekends, and holidays as needed.
- Provide proactive, on-site monitoring and response for mission-essential communication sites and information systems.
- Classify, prioritize, and escalate alerts promptly to ensuretimelyresolution.
- Follow established procedures for data collection, triage, analysis, classification, and escalation to meet performance targets.
- Capture, log, respond and escalate events from email, chat, voice, and other systems withaccuratedocumentation.
- Collect and analyze technical data to classify events, distinguish valid issues from false positives, andmaintaintriage accuracy standards.
- Work with team members to develop and refine playbooks, dashboards, metrics, and detection strategies.
- Coordinate effectively with stakeholders to ensure clear understanding of incidents and recommended response actions.
- Provide support during network and security incidents,assistingwith resolution efforts as directed.
- Desired/Required Skills
- Strong analytical and problem-solving skills
- Ability to work in a fast-paced, high-stakes environment
- Excellent communication and documentation abilities
- Willingness to work flexible shifts in a 24/7 schedule
- 1-3 Years of experience working in a security operations center.
Mention you found this on Data First Jobs — it helps us bring you more roles like this.
Security Analyst
ATC
Similar Analytics Jobs
View all Analytics jobs→Insight Global
Data Analyst (Capital Markets)
New
Toronto, Ontario (Canada)
Applicantz
CLM Application Analyst
New
USA
AbbVie
Senior Analyst, Manufacturing Process
New
Waco, Texas (USA)$78,500 - $141,000
Insight Global
AI Operations Analyst
New
Austin, Texas (USA)
Arctiq
Data Governance & Quality Analyst
New
RemoteUSA
StafinGo
Senior Test Analyst
New
RemoteCanada$60,000 - $75,000
Like this role? Get carefully selected jobs like it, twice a week, straight to your inbox.
Free, no spam. Unsubscribe anytime.