Associate Security Analyst - SOC
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+14 more
Job description
The Associate Security Analyst- SOC is responsible for supporting the Security Operations Center (SOC) team in monitoring and analyzing security events, incidents, and alerts. This role will assist in identifying potential security threats and vulnerabilities, ensuring the security of our organization’s information systems, and contributing to incident response efforts.
This position reports to the Security Operations Manager and is a remote position with a home office setup.
Role Description
- Monitorand triagesecurity alerts and events using various security tools, such asSOAR, SIEM,XDR,firewall,cloud,identity,andemail securityplatforms.
- Analyze reported phishing emails, suspicious URLs, attachments, impersonation attempts, business email compromiseindicatorsand social engineering events.
- Conduct initial analysis of security incidents and escalate to senior analysts ormanagementas necessary.
- Assistin the investigation of security incidents, including data breaches, malware infections, and unauthorized access attempts.
- Create, update, and manage incident tickets according to SOC procedures.
- Contribute to the development and improvement of standard operating procedures (SOPs) for the SOC.
- Providetimelyandaccuratereporting on security incidents,activities, and metricsto management.
- Participate in threat hunting activities to proactivelyidentifypotential threats and risks.
- Collaborate with other IT and security teams toidentifyand remediate security vulnerabilities.
- Assistin the implementation and maintenance of securityplatforms.
- Stay informed about the latest security threats, vulnerabilities, and industry best practices.
Behaviors and Competencies
- Problem-Solving: Can identify problems, propose solutions, and take action to resolve them without explicit instructions.
- Data Analysis: Can identify patterns and trends in data, propose hypotheses, and use statistical techniques to test them.
- Self-Motivation: Can identify personal or professional growth opportunities, propose self-improvement strategies, and take action without explicit instructions.
- Collaboration: Can actively participate in team discussions, respect differing opinions, and collaborate with others to achieve common goals.
- Communication: Can effectively communicate complex ideas and information, and can adapt communication style to the audience.
- Training: Can identify learning gaps within a team, propose training solutions, and take action to implement them without explicit instructions.
- Initiative: Can identify opportunities for improvement, propose solutions, and take action without explicit instructions.
- Detail-Oriented: Can identify errors or inconsistencies in work and make necessary corrections.
- Organization: Can prioritize daily tasks, manage personal workflow, and utilize basic tools to keep track of responsibilities.
- Follow-Up: Can independently track and follow up on tasks without requiring reminders, ensuring responsibilities are fulfilled.
Requirements
- The ability to understand and implement best practices and measures for system security to protect organizational data and infrastructure - Basic
- Proficiency in configuring and managing Windows Server and Linux operating systems
- Ability to create clear and effective technical documentation - Basic
- Ability to simplify and effectively communicate complex problems to stakeholders across various functions and levels - Basic
- Experience in managing and maintaining computer systems and networks to ensure optimal performance and security - Basic
- Experience in understanding, managing, and correlating log data for effective security monitoring and analysis - Basic
External Qualifications:
- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, ora relatedfield.
- Knowledge of cybersecurity principles, security frameworks, and industry standards.
- Relevant certifications such as CompTIA Security+, Certified Ethical Hacker (CEH), or equivalent are a plus.
Internal Qualifications:
- Strong analytical and problem-solving skills with attention to detail.
- Ability to work in a fast-paced and dynamic environment, handling multiple tasks simultaneously.
- Strong communicationskills, both verbal and written.
- Team player with the ability to collaborate effectively with cross-functional teams.
Other Requirements
- Familiarity with security technologies, including SIEM, IDS/IPS, firewalls,identity,and endpoint protection solutions.
- Proficiencyinidentifyingand analyzing common attack techniques, including phishing, social engineering, credential theft, malware, unauthorized access, persistence, and data exfiltration.
- Experience with security incident management and response processes, including the ability to write clear incident and investigation reports.
- Basic understanding of networking protocols and security concepts.
- Knowledge of common operating systems (Windows, Linux, etc.).
- Availableto work flexible hours, includingovernights,weekends,and on-call support.
Preferred:
- Experience with security orchestration, automation, and response (SOAR) platforms.
- Proficient inlog analysis anduse ofsecurity log management tools.
- Familiarity with cloud security concepts and technologies (AWS, Azure, etc.).
- Exposure to threat intelligence analysis and threat hunting methodologies.
- Knowledge of identity and access management (IAM) principles and technologies.
- Experience with scripting languages (Python, PowerShell, etc.).
- Understanding ofweb application security and secure coding practices.
- Knowledge of regulatory compliance frameworks (e.g.,CIS, PCI DSS).
- Understanding ofpenetration testing and vulnerability assessment techniques.
Benefits & conditions
The estimated annual pay range for this position is $60,000 - $80,000 which includes a base salary. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending.
About the company
Since 1989, SHI International Corp. has helped organizations change the world through technology. We’ve grown every year since, and today we’re proud to be a $16 billion global provider of IT solutions and services.
Over 17,000 organizations worldwide rely on SHI’s concierge approach to help them solve what’s next. But the heartbeat of SHI is our employees - all 7,000 of them. If you join our team, you’ll enjoy:
- Our commitment to diversity, as the largest minority- and woman-owned enterprise in the U.S.
- Continuous professional growth and leadership opportunities.
- Health, wellness, and financial benefits to offer peace of mind to you and your family.
- World-class facilities and the technology you need to thrive - in our offices or yours.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Best Paying Jobs in Technology
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary in the UK