Senior SOC Security Analyst
BlueVoyant is seeking a Senior SOC Security Analyst to help our global customers manage their IT security. As a Senior analyst, you will be the ultimate technical expert and escalation point for analysts on your team.
Key Responsibilities:
* Monitor and analyze security events and alerts from multiple sources, including SIEM logs, endpoint logs, and EDR telemetry.
* Research indicators and activities to determine reputation and suspicious attributes.
* Perform analysis of malware, attacker network infrastructure, and forensic artifacts.
* Execute complex investigations and handle incident declaration.
* Perform live response analysis of compromised endpoints.
* Hunt for suspicious activity based on anomalous activity and curated intelligence.
* Participate in the response, investigation, and resolution of security incidents.
* Provide incident investigation, handling, response, and incident documentation.
* Engage and assist the BlueVoyant Incident Response teams for active intrusions.
* Ensure events are properly identified, analyzed, and escalated to incidents.
* Assist in the advancement of security policies, procedures, and automation.
* Serve as the technical escalation point and mentor for lower-level analysts.
* Regularly communicate with clients to inform them of incidents and aid in remediation.
* Identification and tuning of false-positive or benign detections.
* Perform peer review and QA of junior analyst investigations.
* Support Customer Success team with client engagements when required.
Requirements:
* 5+ years of hands-on SOC/TOC/NOC experience.
* GIAC certification(s) strongly preferred.
* Familiarity with technologies such as Sentinel, Splunk, Microsoft Defender suites, Crowdstrike Falcon, SentinelOne.
* Ability to work directly with customers to understand requirements for and feedback on security services.
* Advanced written and verbal communication skills and the ability to present complex technical topics in clear and easy-to-understand language.
* Strong teamwork and interpersonal skills, including the ability to work effectively with a globally distributed team.
About BlueVoyant
At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem.