SOC Analyst 2

  • Location: Harrisburg, PA
  • Type: Contract
  • Job #35574
  • Salary: $33.00 - $35.00 Per Hour
  • On-Site

SOC Analyst 2
*This is an on-site position – Candidates local to the Harrisburg, PA area only, please
*This is a 5-month contract

Description:

  • The SOC Analyst 2 performs event triage and internal SOC escalations to protect the confidentiality integrity and availability of the client’s information technology assets through prompt and accurate threat handling while also identifying and closing security gaps through detection engineering threat hunting intelligence gathering and investigation thereby contributing to the continuous improvement of network and security monitoring.
     

Responsibilities:

  • Perform ongoing on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
  • Capture log and respond to events received from email chat telecommunication systems and other security systems ensuring accurate documentation of incoming data.
  • Perform security investigation for alerts escalated within the Security Operation Center determining full scope potential root cause and potential impact.
  • Follow create and improve established playbooks and SOPs used by the SOC.
  • Document security incidents responses and related information in accordance with established procedures
  • Analyze advanced logs network capture end-point telemetry to identify malicious activity and indicators of compromise IOCs
  • Conduct initial threat hunting to proactively identify security anomalies and adversary activity
  • Conduct tuning and optimization of existing detection rules alerts and correlation logic to reduce false positives and improve detection fidelity.
  • Participate in root cause analysis or lessons learned sessions.
  • Monitor external event sources for security intelligence and actionable incidents
  • Provide incident response support as needed and directed during network and security events providing support for incident resolution.
  • Maintain flexibility to work in various shift rotations to support 24/7/365 operations including days nights holidays and weekends.
  • Performs other related duties as required.
  • Decision Making:
  • Make informed and timely decisions on the appropriate response to security alerts.
  • Unique issues or problems may be escalated to supervisor.
  • Work is reviewed periodically for adherence to established standards and established schedules.
  • Use personal computer/laptop with Microsoft Office products and other business software
  • Analyze and interpret various information
  • Create queries reports and scripts leveraging current security coding and SIEM query languages
  • Prioritize tasks effectively.
  • Communicates effectively orally and in writing.
  • Working knowledge of troubleshooting tools software
  • Work independently and as a team member

Skills:

  • Create queries, reports and scripts leveraging current security coding and SIEM query languages, Required
  • Prioritize tasks effectively., Required
  • Working knowledge of troubleshooting tools (software), Required
  • Analyze and interpret various information, Required

Proper email communication will only be done to and from @astyra.com email addresses. Please ensure you are communicating with approved Astyra recruiters by checking this point when receiving offers and messages from us. Please ensure you are communicating within these guidelines and proper channels for the quickest possible interview consideration!

#AC
 

Attach a Resume file. Accepted file types are DOC, DOCX, PDF, HTML, and TXT.

We are uploading your application. It may take a few moments to read your resume. Please wait!

window.lintrk('track', { conversion_id: 28311418 });