Connecting linkedin

W1siziisimnvbxbpbgvkx3rozw1lx2fzc2v0cy9oyw1sew4td2lsbglhbxmvanbnl2jhbm5lci1kzwzhdwx0lwpvyi5qcgcixv0

Job

Level 3 SOC Analyst

  • Location

    Washington, D.C.

  • Sector:

    Cyber Security

  • Job type:

    Permanent

  • Salary:

    110K - 130K

  • Contact:

    Ross Gisondi

  • Contact email:

    r.gisondi@hamlynwilliams.com

  • Salary high:

    0

  • Salary low:

    0

  • Job ref:

    REF- 658

  • Published:

    22 days ago

  • Expiry date:

    2018-12-19

  • Startdate:

    ASAP

Responsibilities

  • Oversee and participate in the security operations, including threat detection, monitoring and response.
  • Analyzing cyber threats and networks intrusions.
  • Oversee and participate advanced security investigations and incident response and handling.
  • Proactively Hunt for anomalies, malicious activity, and IOCs from intelligence tools and feeds.
  • Assist in the development of security policies and procedures.
  • Monitor security alerts, SIEM tools, hosed and network IDS, system logs, and firewall logs (Unix and Windows).
  • Create and maintain incident response policy and procedure updates as needed.
  • Perform network and computer forensic analysis.
  • Mentor Level 2 and Level 1 analysts, and serve as the escalation point for security incidents.
  • Communicate with customers to inform and advise them on remediation, and any issues.
  • Perform triage analysis.

 

Qualifications

  • Ability to work in teams.
  • Experience with SIEM software and IDS/IPs.
  • Advanced knowledge and understanding of network devices and protocols.
  • Experience with Mac OS, Windows, and Unix systems.
  • Experience in event log analysis and ability to recognize emerging cyber intrusions/attacks.
  • Ability to work in a high pressure environment
  • Ability to work directly with customers to understand requirements for and feedback on security services
  • Excellent verbal and written communication skills
  • Experience creating signatures for security tools
  • Experience in Wireshark and Splunk