- Monitoring and analysis of logs, alerts, and external data sources to determine any security and/or operational impact to the organization.
- Performs research on security events and threat intelligence data using internal and open source tool. Performing proactive threat research and validation for security event data generated from monitoring tools and/or manual analysis.
- Creation of Reference Sets within the SIEM tool to assist Tier 1 SOC Analysts with threat research.
- Monitoring IPS (Intrusion Prevention System) events and performing analysis on the data providing recommended actions or escalating to incident analysts for further review.
- Trains all new SOC Tier I Analysts in the usage or all security tools and the execution of all SOC procedures.
- Acts as an escalation point for the Tier I SOC Analysts. Resolves or escalates cyber security incidents and events as part of the established policies and procedures.
- Assists with the containment of threats and remediation of the environment during or following an incident.
- Collaborates with technical teams to identify, resolve, and mitigate security events as part of the Incident Response Plan.
- Evaluates unwarranted changes within the environment as part of monitoring rules within the SIEM tool.
- Creates and executes SOC compliance reports as necessary for risk and compliance teams.
- Monitors SIEM environment for Global organization, providing resolution to events and incidents triggered within the SIEM tool as part of the day to day operations.
- Ensures that critical infrastructure is reporting into the SIEM and reports any systems that are not reporting to the appropriate team/s.
- Performs documentation of event analysis and records this data within our Incident Tracking tool. Ensuring all relevant data is captured within each incident.
- Assists with the triage of service requests from internal teams within the organization through our incident ticketing system.
- Enhances detections, alerts, and other cyber event correlation rules within the SIEM to reduce false positives.
- Approves various block requests originated by the Tier I SOC Analysts.
- Manages the SOC documentation repository by providing oversight of the annual SOC Documentation review process. Provides recommendations for procedural updates and improvements. Reviews recommendations proposed by Tier I SOC Analysts.
- Represent the Security Operations team in various SOC, Incident Response, and Cyber Security projects.
- Experience executing security incident handling processes and procedures.
- Working knowledge of Networking fundamentals including but not limited to; The OSI Model, TCP/IP, DNS (Domain Name System), HTTP, SMTP), System Administration and/or Architecture.
- Proficient understanding of various Operating Systems and their architectures: Windows, Unix/Linux and OSx.
- Previous experience operating and tuning SIEM tools, IBM QRadar experience preferred .
- Effective communication skills with the ability to work in a highly collaborative environment across many different disciplines.
- Strong relationship skills and collaborative style to enable success across multiple business partners with a focus on building partnerships.
- Excellent analytical and problem-solving skills.
- Scripting capabilities in bash, python, ruby considered a plus.
- A bachelor's degree in computer science, information systems or other related field (preferred); or equivalent work experience.
- Professional security management certifications such as; Global Information Assurance Certification (GIAC) certifications such as GCIA, GCIH, Certified Information Systems Security Professional (CISSP) or other similar credentials are a plus.
-
SOC Analyst
3 weeks ago
Koniag Government Services Denver, United StatesTGS · Job ID · Tuknik Government Services, a Koniag Government Services company , is seeking a SOC Analyst with a Public Trust Clearance to support TGS and our government customer in Denver, CO. · We offer competitive compensation and an extraordinary benefits package including ...
-
SOC Analyst
3 weeks ago
IBM Denver, United StatesIntroduction · At IBM, work is more than a job - it's a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you've never thought possible. Are y ...
-
SOC Intrusion Analyst
3 weeks ago
Brooksource Boulder, United StatesSOC Intrusion Analyst · Location: Fairmont, WV or Boulder, CO · Clearance: Minimum fully adjudicated Secret and Interim Top Secret clearance · Our largest government client is looking for a new Cyber Analyst to join our Security Operations Center (SOC) in Fairmont, WV, in supp ...
-
SOC Analyst
1 week ago
Atechstar Centennial state, United States Full time, Part time, contract, trainingjob DescriptionResponsibloities Monitoring system capacity to ensure that the platform does not encounter resource issues. Serve as a deeply skilled and knowledgeable resource in the Linux and SIEM technology area. Diagnosing and resolving incidents related to the platform. Integ ...
-
Tier 1 SOC Analyst
2 weeks ago
Fusion Technology LLC Boulder, United StatesJob Description · Job DescriptionWho is Fusion Technology? · Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation's Criminal Justice Info ...
-
Tier 1 SOC Analyst
5 hours ago
Fusion Technology Boulder, United StatesWho is Fusion Technology? · Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation's Criminal Justice Information Services Division's Head ...
-
Equiliem Boulder, United StatesSOC Intrusion Analyst · Location: Fairmont, WV or Boulder, CO · Clearance: Minimum fully adjudicated Secret and Interim Top Secret clearance We are looking for a new Cyber Analyst to join our Security Operations Center (SOC) in support of our customer at the National Oceanic and ...
-
SOC Analyst Level II
1 week ago
Liven Pty Boulder, United StatesRADICL provides SMBs serving America's Defense Industrial Base (DIB) and critical infrastructure Xtended Threat Protection (XTP). RADICL's purpose-built and proprietary XTP Platform delivers SMBs deep-spectrum threat protection and compliance management that is quick, easy, and a ...
-
Equiliem San Francisco, United States PermanentSOC Intrusion Analyst · Location: Fairmont, WV or Boulder, CO · Clearance: Minimum fully adjudicated Secret and Interim Top Secret clearance We are looking for a new Cyber Analyst to join our Security Operations Center (SOC) in support of our customer at the National Oceanic and ...
-
Manager, Current Schedules
4 days ago
Frontier Airlines Denver, United States Full timeWhat We Stand For · Low Fares Done Right is our mission and we strive to bring it to life every day. Our 'Done Right' promise means delivering not only affordable prices, but making travel friendly and easy for our customers. To do this, we put a great deal of care into every ...
-
Senior Cybersecurity Analyst
2 weeks ago
Evergreen Services Group Denver, United StatesLyra Technology Group is seeking a Senior Cybersecurity Analyst for one of our Operating Companies. · The role of Senior Cybersecurity Analyst is a level 3 role, where this position will function as team lead and work with customers for the Managed Security Services (MSS) depart ...
-
Manager, Security Operations Center
1 week ago
Konica Minolta Business Solutions Ltd Denver, United StatesJob Description · OverviewThe Security Operations Center Manager will provide oversight and direction to the team of Security Analysts monitoring All Covered client networks and systems as part of the full suite of Managed Security services. The SOC Manager is also responsible f ...
-
Manager, Security Operations Center
1 week ago
Konica Minolta Business Solutions Ltd Denver, United StatesJob Description · Overview · The Security Operations Center Manager will provide oversight and direction to the team of Security Analysts monitoring All Covered client networks and systems as part of the full suite of Managed Security services. The SOC Manager is also responsib ...
-
Security Analyst II
3 weeks ago
Cologix Denver, United StatesAbout our Company: · Based in Denver, Colorado, Cologix is North America's leading network-neutral interconnection and hyperscale edge data center company. Our platform gives customers access to 40+ digital edge and ScalelogixSM hyperscale edge data centers in 11 markets across ...
-
Sr Analyst, Operations
1 week ago
Frontier Airlines Denver, United StatesSr Analyst, Operations & Research Performance (Aviation) · Job Category · : · SOC · Requisition Number · : · SRANA004282 · Apply now · Posted : May 7, 2024 · Full-Time · Locations · Showing 1 location · Description · Why Work for Frontier Airlines? · At Frontier, we believ ...
-
Analyst, Day of Departure
3 weeks ago
Frontier Airlines Denver, United StatesWhy Work for Frontier Airlines? · At Frontier, we believe the skies should be for everyone. We deliver on this promise through our commitment to Low Fares Done Right. This is more than our tagline - it's our driving philosophy. Every member of Team Frontier has an important role ...
-
Senior Cybersecurity Analyst
2 weeks ago
Lyra Technology Group Denver, United StatesLyra Technology Group is seeking a Senior Cybersecurity Analyst for one of our Operating Companies. The role of Senior Cybersecurity Analyst is a level 3 role, where this position will function as team lead and work with customers for the Managed Security Services (MSS) departmen ...
-
IT Security Analyst Associate
2 days ago
City and County of Denver Denver, United StatesAbout Our Job · Who We Are · With competitive pay, great benefits, and endless opportunities, working for the City and County of Denver means seeing yourself working with purpose - for you, and those who benefit from your passion, skills, and expertise. Join our diverse, inclus ...
-
Analyst I
1 week ago
Frontier Airlines Denver, United StatesWhat Will You Be Doing? · The · Technical Business Analyst I · works proactively with business units, technology partners and development teams to create and maintain technical solutions for commercial, operational control and back office functions. The analyst may also need to ...
-
Financial Auditor
1 week ago
Jobot Consulting Denver, United StatesWant to learn more about this role and Jobot Consulting? Click our Jobot Consulting logo and follow our LinkedIn page · Job details · International credit firm seeks consultant to audit US financial records · This Jobot Consulting Job is hosted by Chris Trevino · Are you a fi ...
SOC Analyst II - Denver, United States - Apex Systems
Description
SOC Analyst II - Remote EST - $45-55/hr - W2 Only
Take the next step in your career now, scroll down to read the full role description and make your application.
*Candidate must be able to work on client's W2 without sponsorship, vendor or employer*
As technology continues to advance so does the threat landscape. Attackers are now using more sophisticated tactics to evade security controls. As a result, our team must also continue to advance its capabilities in threat detection and monitoring systems.
The SOC Tier II Analyst is responsible for monitoring, analysis, response, and escalation of security incidents and events. The Security Operations Center is the first line of detection and defense which actively monitors the SIEM (Security Information & Event Management), reviews log and event data, and works tickets associated with said data. Providing research using internal and open source tools, resolving and escalating incidents using established policies and procedures.
How You Will Make a Difference:
Years of Related Professional Experience: 3+ years
Educational/ Position Requirements:
Position Requirements:
Educational Requirements: