SOC Analyst Level 2
hace 3 días
***JOIN A HIGHLY SKILLED AND MOTIVATED TEAM OF CYBER SECURITY PROFESSIONALS TASKED WITH PROTECTING CUSTOMER INFRASTRUCTURE. THE CYBER SECURITY ANALYST ROLE IS PRIMARILY FOCUSED ON RESPONDING TO ALERTS, DETECTION OF IOCS (INDICATORS OF COMPROMISE), INCIDENT RESPONSE, ALERT/SIEM TUNING, THREAT HUNTING, AND TRIAGE. LEVERAGE MICROSOFT SENTINEL AS WELL AS, CYBER CASE MANAGEMENT AND SUPPLEMENTARY TOOLS TO INVESTIGATE, CONTAIN, AND REMEDIATE CYBER SECURITY INCIDENTS. THE CYBER SECURITY ANALYST MUST HAVE A DRIVE TO LEARN AND GROW AS THE INDUSTRY CHANGES AND THE SOC ADAPTS RAPIDLY.**ESSENTIAL FUNCTIONS**- RESPOND TO AND VALIDATE ALERTS- LEAD OR SUPPORT INCIDENT RESPONSE INVESTIGATIONS FOR CUSTOMERS- COORDINATE EFFORTS WITH 3RD PARTY SOC TEAMS FOR JOINT OPERATIONS- PERFORM ANALYSIS OF LOGS AND ALERTS TO DIFFERENTIATE SECURITY INCIDENTS FROM SECURITY EVENTS- DISCOVER AND CORRELATE RELATIONSHIPS BETWEEN UNRELATED EVENT INFORMATION AS PART OF AN INVESTIGATION- OBTAIN CORROBORATING EVIDENCE THROUGH PACKET ANALYSIS OF NETWORK TRAFFIC- COORDINATE WITH APPROPRIATE TEAMS TO PROVIDE INCIDENT HANDLING AND RESPONSE SUPPORT- CONTINUOUSLY IMPROVE INCIDENT RESPONSE PROCEDURES & RUNBOOKS- HANDLE SECURITY INCIDENT ESCALATION VIA CYBER CASE MANAGEMENT TOOLS, SIEM, ITSM, EMAIL, PHONE, OR WALK-UP- MANAGE SECURITY INCIDENTS TO COMPLETION AND WORK WITH INTERNAL TEAMS FOR REMEDIATION OR ESCALATION ASSISTANCE- GATHERING FORENSIC EVIDENCE- ANALYZING EVENTS BASED ON DIGITAL ARTIFACTS- DETERMINING MITIGATION/REMEDIATION/SECURITY IMPROVEMENT OPPORTUNITIES- WORKING WITH STAKEHOLDERS TO COMMUNICATE FINDINGS- MXDR RESPONSE LEVERAGING DEFENDER CAPABILITIES**POSITION QUALIFICATIONS/CORE COMPETENCIES**- EXPERIENCE IN INCIDENT RESPONSE, INVESTIGATION, SYSTEM FORENSICS, OR RELATED CYBER SECURITY EDUCATION- FORMAL EDUCATION OR CERTIFICATIONS IN INCIDENT RESPONSE, FORENSICS, CYBER SECURITY CASE MANAGEMENT, IT TECHNOLOGY, NETWORKING, OR RELATED TOPICS- EXPERIENCE REVIEWING AND ANALYZING LOG DATA FROM VARIOUS NETWORK AND SECURITY DEVICES- EXPERIENCE WITH WELL-KNOWN INFORMATION SECURITY RELATED TOOLS FOR PACKET CAPTURE, NETWORK/OS FINGERPRINTING, AND COMMUNICATION- FAMILIARITY WITH WINDOWS AND LINUX OPERATING SYSTEMS INCLUDING COMMAND LINE OPERATION- POSSESS A STRONG FOUNDATION IN NETWORKING FUNDAMENTALS WITH DEEPER KNOWLEDGE OF TCP/IP AND OTHER CORE PROTOCOLS- KNOWLEDGE OF COMMON NETWORK-BASED SERVICES AND COMMON CLIENT/SERVER APPLICATIONS- EXCELLENT VERBAL/WRITTEN COMMUNICATION, INTERPERSONAL AND ORGANIZATIONAL SKILLS- COMMUNICATE EFFECTIVELY WITH VARIED LEVELS OF STAFF TO DEVELOP POSITIVE WORKING RELATIONSHIPS- ABILITY TO CONTINUOUSLY IMPROVE SKILLSET TO COMBAT CHANGING THREAT LANDSCAPE- EXCELLENT PROBLEM-SOLVING SKILLS TO DIAGNOSE TECHNICAL ISSUES- MANAGE CUSTOMER SITUATIONS PROFESSIONALLY TO AID IN POSITIVE CUSTOMER SATISFACTION- ABILITY TO LEARN INNOVATIVE TECHNOLOGY AND CONCEPTS QUICKLY- ABILITY TO WORK ON A SHIFT OR ON-CALL ROTATION IF NEEDED- EXPERIENCE WORKING ON A SECURITY OPERATIONS TEAM- PRACTICAL UNDERSTANDING OF EXPLOITS, VULNERABILITIES, COMPUTER NETWORK INTRUSIONS, ADVERSARY TACTICS, EXFILTRATION TECHNIQUES AND COMMON KNOWLEDGE- EXPERIENCE WITH ENTERPRISE SIEM PRODUCTS- EXPERIENCE WITH ITSM, SOAR, OR CYBER CASE MANAGEMENT TOOLS- EXPERIENCE WORKING MICROSOFT SECURITY:- MICROSOFT DEFENDER- MICROSOFT E3/E5 SECURITY- MICROSOFT SENTINEL- MICROSOFT ENDPOINT SECURITY- EXPERIENCE ACQUIRING AND ANALYZING DATA FROM CLIENTS AND SERVERS RELATED TO SECURITY INCIDENT RESPONSE- DIGITAL FORENSIC OR THREAT INTELLIGENCE WORK- FAMILIARITY WITH COMMON SECURITY STANDARDS SUCH AS PCI, HIPAA, SARBANES OXLEY, ISO 27001, NIST, OR CIS- STRONG UNDERSTANDING AND KNOWLEDGE OF RISK ASSESSMENT, SECURITY ASSESSMENT, AND VULNERABILITY MANAGEMENT USING AZURE SOLUTIONS- STRONG KNOWLEDGE OF MICROSOFT365/AZURE CLOUD ARCHITECTURE AND ITS SECURITY CONCERNS- COMFORTABLE PRESENTING TO CIO/CISO/CTO SOLUTION DEMONSTRATIONS AND VIRTUAL WHITEBOARD SESSIONS- ABILITY TO WORK COOPERATIVELY WITH SALES, SERVICES AND THE PROJECT MANAGEMENT TEAM- DEMONSTRATED PASSION FOR MICROSOFT TECHNOLOGY, SOLUTION DESIGN AND SELF-STUDY- PREVIOUS EXPERIENCE WORKING IN COLLABORATIVE TEAM ENVIRONMENTS- EXCELLENT VERBAL AND WRITTEN COMMUNICATION, ORGANIZATION SKILLS AND DETAIL ORIENTED (ENGLISH LANGUAGE)- EXPERIENCE WORKING FOR A SYSTEMS INTEGRATOR IS PREFERRED- ABILITY TO WORK 8 TO 5 IN A US TIME ZONE- DEMONSTRATED PASSION FOR SELF-STUDY, AND SELF-LEARNING TO KEEP UP WITH THE CHANGING SECURITY LANDSCAPE AND CUSTOMER NEEDS- CCNA- CEH- MS-500 MIROSOFT CERTIFIED: AZURE SECURITY ENGINEER ASSOCIATETipo de puesto: Tiempo completoSalario: $30,000.00 - $40,000.00 al mesHorario:- Turno de 8 horasPrestaciones:- Horarios flexibles- Seguro de gastos médicos mayoresIdioma:- Inglés (Obligatorio)Lugar de trabajo: Empleo remoto
-
SOC Analyst Level 2
hace 5 días
Desde casa, México RadarT A tiempo completo*** JOIN A HIGHLY SKILLED AND MOTIVATED TEAM OF CYBER SECURITY PROFESSIONALS TASKED WITH PROTECTING CUSTOMER INFRASTRUCTURE. THE CYBER SECURITY ANALYST ROLE IS PRIMARILY FOCUSED ON RESPONDING TO ALERTS, DETECTION OF IOCS (INDICATORS OF COMPROMISE), INCIDENT RESPONSE, ALERT/SIEM TUNING, THREAT HUNTING, AND TRIAGE. LEVERAGE MICROSOFT SENTINEL AS WELL AS,...
-
SOC Analyst
hace 3 semanas
Desde casa, México Central Standard Talent A tiempo completoCentral Standard Talent is growing. We are looking for **Security Operations Center Analyst **.Your role as a SOC Analyst is to build out and support the 24X7 monitoring operations and response to cybersecurity threats to protect data and assets. Proactively identify and assess threats to its users and systems, monitor its network for malicious activity,...
-
Security Operations Analyst
hace 2 semanas
Desde casa, México EPAM Systems, Inc. A tiempo completoWe are seeking a **Security Operations Analyst** to enhance our SOC capabilities and protect our clients from emerging threats. **Responsibilities** - Generate reports for various stakeholders - Respond to security incidents promptly and effectively - Triages alerts to identify genuine threats - Develop and refine rule sets and use cases for security...
-
Cybersecurity Analyst
hace 3 días
Desde casa, México Totum Talent A tiempo completohace 6 horas - Remoto **Descripción**: We are looking for talent for a technology company in the cybersecurity area., You will be responsible to perform in-depth analysis of security events, identify potential threats, and recommend appropriate remediation actions. This role requires strong analytical skills, familiarity with various security tools and...
-
Senior SOC Analyst
hace 4 semanas
Desde casa, México Alcon A tiempo completoSenior SOC Analyst- Location: Mexico City (Hybrid)_At Alcon, we are driven by the meaningful work we do to help people see brilliantly. We innovate boldly, champion progress, and act with speed as the global leader in eye care. Here, you’ll be recognized for your commitment and contributions and see your career like never before. Together, we go above and...
-
Senior SOC Analyst
hace 5 horas
Desde casa, México Alcon A tiempo completoSenior SOC Analyst - Location: Mexico City (Hybrid)_ At Alcon, we are driven by the meaningful work we do to help people see brilliantly. We innovate boldly, champion progress, and act with speed as the global leader in eye care. Here, you’ll be recognized for your commitment and contributions and see your career like never before. Together, we go above...
-
L3 SOC Analyst
hace 6 días
Desde casa, México Ryscode A tiempo completoWayfair is the online leader for home furnishings and decor. Through technology and innovation, Wayfair makes it possible for shoppers to quickly and easily find exactly what they want from a selection of more than 8 million items across home furnishings, décor, home improvement, housewares and more. Wayfair is growing our Security Operations Center and...
-
Security Analyst
hace 1 semana
Desde casa, México Flexis A tiempo completo**SIEM And XDR SOC**Act as a point of escalation for Level 1 and 2 security analysts on incident resolution and containment techniques.- Define, create and maintain SIEM correlation rules, customer build documents, security process and procedures.- Manage, tune, and optimize SIEM tool which includes evaluating existing rules, filters, events and use cases...
-
Security Operations Analyst
hace 2 semanas
Desde casa, México Ziff Davis A tiempo completoThe RoleJoin a growing team that is enthusiastic, dedicated and work-life balance-focused at Ziff Davis.Reporting to the Security Operations Manager, this role is suitable for entry- to mid-level cybersecurity professionals with a strong hands-on technical background with tools, strategies and best practices for managing risk mitigation through vulnerability...
-
Information System Risk Management Analyst
hace 4 semanas
Desde casa, México Divelement Web Services A tiempo completoWe are seeking an Information System Risk Management Analyst (Security Analyst) to join our team and help clients strengthen their IT control environments. This role focuses on IT controls, SOX and SOC compliance and readiness, and cybersecurity risk assessments across diverse industries. You’ll collaborate with clients and senior professionals to identify...