INTL INDIA - L2 SOC Analyst
Insight Global
Round Rock, TX, United States
24 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on jobs.insightglobal.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$37,440.0 - $45,760.0
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
Cyber Security
Computer Networks
Noise Reduction
Linux
Intrusion Detection Systems
Log Analysis
Network Forensics
Security Information and Event Management
Mitre Att&ck
Malware
Cybercrime
+1 more
Microsoft Sentinel
Job description
- Respond to security incidents and threat analysis.
- Remediate high severity security incidents
- Lead & participate in threat hunting and threat intelligence activities
- Conduct advanced technical investigations for critical incidents paying attention to specific analysis and fast remediation advice with a focus on improving the customer security posture
- Conduct analysis of infected hosts or analyze network traffic to identify attacker activity
- Handle specific forensic and malware analysis, as well as complex log analysis requests
- Perform event correlation review through incoming data feeds, ticketing systems and security alert mechanisms
- Provide context on complex security incidents from Customer and other available resources, collect and assemble data, as well as contribute to technical reports
- Utilize in-depth technical knowledge to design procedures for the detection of threat actor’s behavior, as well as develop and implement standard technical procedures (runbooks) to be used by the Security Monitoring team for day-to-day operations
- Perform Event Stream tuning utilizing internal tools, metrics and experience involving key security concepts for systems efficiency
- Review security related events assess their risk and validity based on available network, endpoint, and global threat intelligence information
- Research and make recommendations for applying MITRE ATT&CK and NIST framework aligned strategies to the Customer’s environment
- Guide and mentor fresh Cyber Security L1 Analyst in triaging activities
- Accept work escalated by L1 Analysts for further analysis and reporting
Requirements
- Requires 5+ Years of experince. At least 3-4 years SOC.
- Experience with Microsoft Sentinel or Crowdstrike EDR/XDR toolsets
- Understanding of SIEM, Endpoint Security solutions, Linux and Windows operating systems, Honeypots, Sinkholes and Malware Sandbox Technologies
- Incident Response & Threat Hunting Understanding
- Understanding of threat intelligence and threat modeling concepts
- Advanced knowledge of cybersecurity components, principles, practices, and procedures
- Understanding of computer network exploitation (CNE) and computer network defense (CND) concepts
- Ability to research about targeted threat groups and their tactics, techniques and procedures (TTP)
- Understanding of vulnerability and exploit analysis
- Experience in conducting network traffic analysis and the detection of malicious code on endpoint systems
- In-depth understanding about Windows and Linux System internals (process tree, event IDs, registry, scheduled tasks, etc)
- Ability to clearly communicate technical observations to a variety of audiences, and strong written and verbal presentation skills
- Flexible to support team during Public Holidays either in shift or On Call support
- Experience with creating rules for noise reduction (suppression, whitelisting, custom rules)
Benefits & conditions
-
Multiple security certifications from the following: SANS GCIA, GCIH CCNA, CCIE, NGFW Specialization GREM, GCFE, OSCP (Threat Hunting specialist)
-
Secureworks
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on jobs.insightglobal.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
Top-Paying Tech Jobs (with Salaries)
over 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
10 months ago