Security (SOC) Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+9 more
Job description
We are seeking a Cyber Security Analyst to join an enterprise application security and threat detection team responsible for identifying, analyzing, and responding to active cyber threats. This individual will leverage advanced monitoring, log analysis, and threat intelligence capabilities to detect malicious activity, investigate security events, and enhance security controls across the organization.
The ideal candidate has hands-on experience analyzing web application security events, developing alerting and detection mechanisms, and utilizing Splunk to identify and mitigate threats. This role operates on the front lines of cybersecurity defense and requires the ability to work independently while collaborating with security teams and business stakeholders.
This team will partner closely with the Threat Hunting team, while this team is monitoring and managing the alerting
Key Responsibilities
-
Monitor, analyze, and respond to web application and network security events.
-
Develop and implement custom alerts, dashboards, macros, and monitoring controls within Splunk.
-
Investigate security incidents using log correlation, threat intelligence, and forensic analysis techniques.
-
Identify and mitigate emerging threats against enterprise systems and web applications.
-
Analyze web, application, network, and security logs to detect suspicious or malicious activity.
-
Partner with business and security leaders to triage incidents and communicate security risks.
-
Enhance existing detection capabilities and implement new controls based on threat intelligence.
-
Support audit, compliance, and risk management initiatives through process and control development.
Participate in an on-call rotation supporting active security incidents and threat response activities.
Requirements
- 3+ years of Cyber Security, Security Operations, or Threat Detection experience
- 1+ year of hands-on Web Application Firewall (WAF) experience
- Strong intrusion analysis and incident investigation background
- Advanced Splunk experience, including: Log analysis, Dashboard creation, Alert development, Macro creation
- Ability to identify and interpret web application and security logs from a security perspective.
- Strong understanding of current cyber threats, attack techniques, and common exploits.
- Experience with Linux, Windows, and macOS operating systems.
- Experience with scripting languages and regular expressions.
- Strong knowledge of networking fundamentals and common network protocols. - Working Knowledge of Linux
- Able to interpret Apache web logs, IIS, Active Directory and other security logs
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 134 - Where pixels sing?
Walking Into The Era of Supply Chain Risks
The Overflow: Security and Privacy