Security Operations Center Analyst

Dexian
NC, United States
Full-time

Security Operations Center (SOC) Analyst II

As technology continues to advance so does the threat landscape. Attackers are now using more sophisticated tactics to evade security controls.

As a result, we must also continue to advance capabilities in threat detection and monitoring systems.

The SOC Tier II Analyst is responsible for monitoring, analysis, response, and escalation of security incidents and events.

The Security Operations Center is the first line of detection and defense which actively monitors the SIEM (Security Information & Event Management), reviews log and event data, and works tickets associated with said data.

Providing research using internal and open source tools, resolving and escalating incidents using established policies and procedures.

How You Will Make a Difference :

  • Monitoring and analysis of logs, alerts, and external data sources to determine any security and / or operational impact to the organization.
  • Performs research on security events and threat intelligence data using internal and open source tool. Performing proactive threat research and validation for security event data generated from monitoring tools and / or manual analysis.
  • Creation of Reference Sets within the SIEM tool to assist Tier 1 SOC Analysts with threat research.
  • Monitoring IPS (Intrusion Prevention System) events and performing analysis on the data providing recommended actions or escalating to incident analysts for further review.
  • Trains all new SOC Tier I Analysts in the usage or all security tools and the execution of all SOC procedures.
  • Acts as an escalation point for the Tier I SOC Analysts. Resolves or escalates cyber security incidents and events as part of the established policies and procedures.
  • Assists with the containment of threats and remediation of the environment during or following an incident.
  • Collaborates with technical teams to identify, resolve, and mitigate security events as part of the Incident Response Plan.
  • Evaluates unwarranted changes within the environment as part of monitoring rules within the SIEM tool.
  • Creates and executes SOC compliance reports as necessary for risk and compliance teams.
  • Monitors SIEM environment for Global organization, providing resolution to events and incidents triggered within the SIEM tool as part of the day to day operations.
  • Ensures that critical infrastructure is reporting into the SIEM and reports any systems that are not reporting to the appropriate team / s.
  • Performs documentation of event analysis and records this data within our Incident Tracking tool. Ensuring all relevant data is captured within each incident.
  • Assists with the triage of service requests from internal teams within the organization through our incident ticketing system.
  • Enhances detections, alerts, and other cyber event correlation rules within the SIEM to reduce false positives.
  • Approves various block requests originated by the Tier I SOC Analysts.
  • Manages the SOC documentation repository by providing oversight of the annual SOC Documentation review process. Provides recommendations for procedural updates and improvements.

Reviews recommendations proposed by Tier I SOC Analysts.

Represent the Security Operations team in various SOC, Incident Response, and Cyber Security projects.

Years of Related Professional Experience : 3+ years

Educational / Position Requirements :

Position Requirements :

  • Experience executing security incident handling processes and procedures.
  • Working knowledge of Networking fundamentals including but not limited to; The OSI Model, TCP / IP, DNS (Domain Name System), HTTP, SMTP), System Administration and / or Architecture.
  • Proficient understanding of various Operating Systems and their architectures : Windows, Unix / Linux and OSx.
  • Previous experience operating and tuning SIEM tools, IBM QRadar experience preferred.
  • Effective communication skills with the ability to work in a highly collaborative environment across many different disciplines.
  • Strong relationship skills and collaborative style to enable success across multiple business partners with a focus on building partnerships.
  • Excellent analytical and problem-solving skills.
  • Scripting capabilities in bash, python, ruby considered a plus.

Educational Requirements :

  • A bachelor's degree in computer science, information systems or other related field (preferred); or equivalent work experience.
  • Professional security management certifications such as; Global Information Assurance Certification (GIAC) certifications such as GCIA, GCIH, Certified Information Systems Security Professional (CISSP) or other similar credentials are a plus.

Special Physical and / or Mental Requirements :

Minimal travel requirements

Dexian is a leading provider of staffing, IT, and workforce solutions with over 12,000 employees and 70 locations worldwide.

As one of the largest IT staffing companies and the 2nd largest minority-owned staffing company in the U.S., Dexian was formed in 2023 through the merger of DISYS and Signature Consultants.

Combining the best elements of its core companies, Dexian's platform connects talent, technology, and organizations to produce game-changing results that help everyone achieve their ambitions and goals.

Dexian's brands include Dexian DISYS, Dexian Signature Consultants, Dexian Government Solutions, Dexian Talent Development and Dexian IT Solutions. Visit to learn more.

Dexian is an Equal Opportunity Employer that recruits and hires qualified candidates without regard to race, religion, sex, sexual orientation, gender identity, age, national origin, ancestry, citizenship, disability, or veteran status.

30+ days ago
Related jobs
Promoted
Mindlance
Greensboro, North Carolina

Security Operations Center (SOC) Analyst II: Become the Newest Member of the client Family. The Security Operations Center is the first line of detection and defense which actively monitors the SIEM (Security Information & Event Management), reviews log and event data, and works tickets associated w...

Promoted
PwC
Greensboro, North Carolina

Broad understanding of crisis management, operating systems, and process operation;Digesting and applying knowledge of PwC's Incident Response tools and processes;Digesting and applying knowledge of PwC's business model, service offerings, and business operating environment as it pertains to the fir...

Promoted
Wells Fargo
Charlotte, North Carolina

Wells Fargo is seeking a Lead Information Security Analyst to lead program initiatives within the Cyber Resiliency Center of Excellence (COE). Identify security risks and solutions for networks and virtual private network applications, security tools, public key infrastructures, authentication and d...

Promoted
Allied Universal®
Wilson, North Carolina

As a Security Operations Center Officer, you will serve and safeguard clients in a range of industries such as Commercial Real Estate, Healthcare, Education, Government and more. Allied Universal®, North America's leading security and facility services company, provides rewarding careers tha...

VF Corporation
North Carolina, US

Lead, Cyber Security Operations Center (VF Services, LLC, Greensboro, NC):. Represent the Security Operations team in various SOC, Incident Response, and Cyber Security projects. Review research performed by SOC Analysts related to security events and threat intelligence data. Create metrics based o...

Bank of America
Charlotte, North Carolina

Job expectations include supporting continuous improvement of processes by identifying trends and understanding the operations environment. Advances business products knowledge within operations environment. ...

wolfspeed
Durham, North Carolina

The Global Security Operations Center (GSOC) Supervisor role is a member of Wolfspeed’s Global Protection team. Minimum of 5 years of experience working in the security industry, preferably in a physical security SOC/GSOC environment. Enjoy doing things that people say can’t be done? Innovation is a...

Allied Universal
Wilson, North Carolina

As a Security Operations Center Officer, you will serve and safeguard clients in a range of industries such as Commercial Real Estate, Healthcare, Education, Government and more. Provide customer service to our clients by carrying out safety and security procedures, site-specific policies and when a...

KPMG-UnitedStates
Raleigh, North Carolina

GSOC (Global Security Operations Center) Incident Response Manager. KPMG is currently seeking a Global Security Operations Center (GSOC) Incident Response Manager to join our Global Information Technology Group which is part of KPMG International. Experience working in or alongside Security Operatio...

Next Step Systems – Recruiters for Information Technology Jobs Top IT Recruiting Firm
Huntersville, North Carolina

Security Operations Center Engineer, Huntersville, NC. We are seeking a Security Operations Center Engineer to join the team. Keywords: Huntersville NC Jobs, Security Operations Center Engineer, Help Desk, Firewall, Cisco, Meraki, Palo Alto, Fortinet, WatchGuard, Microsoft 365, MFA Deployment, Switc...