SOC Analyst I - #9826715

Team Remotely Inc


Date: 2 weeks ago
City: Portland, OR
Salary: $58,000 - $68,000 per year
Contract type: Full time
Remote
This is a remote position.

SOC Analyst I (1 year experience, remote)

Be part of our future! This job posting builds our talent pool for potential future openings. We'll compare your skills and experience against both current and future needs. If there's a match, we'll contact you directly. No guarantee of immediate placement, and we only consider applications from US/Canada residents during the application process.

Hiring Type: Full-Time

Base Salary: $58K-$68K Per Annum.

Responsibilities

The SOC Analyst (Level 1) is responsible for:

  • Initial triage of security events using established procedures, tools, and monitoring platforms including, but not limited to:
    • Firewalls and network devices
    • Servers and workstations
    • Web proxies
    • Intrusion detection and prevention systems (IDS/IPS)
    • Anti-malware systems
    • Security Incident and Event Management systems (SIEM)
    • Data Loss Prevention systems (DLP)
    • Advanced Endpoint Detection and Response systems (EDR)
    • External communications from outside entities, users, phone calls, and emails.
    • Assist senior members of the SOC with analyzing and responding to potential security incidents
    • Maintain situational awareness of emerging cyber trends by reviewing open-source reports for recent vulnerabilities, malware, and other threats that have the potential to impact our client organizations.
    • Document threat campaign(s) techniques, lateral movements and extract indicators of compromise (IOCs).
    • Manage the Security monitoring tools, and set up dashboards and alerts.
    • Develop and maintain technical documentation and Standard Operating Procedures (SOP).
    • Conduct security research and intelligence gathering on emerging threats and exploits.
    • Participate in shift transition calls to ensure all open cases and tasks are properly managed and addressed.
    • Periodic reporting of metrics and corresponding analysis for client review and strategic information security program adjustments and planning.
    • Maintenance and management of various security technology platforms.

    Qualifications

    • Highly motivated to work in information security
    • Candidate must be a US citizen / permanent resident.
    • Customer-oriented & professional.
    • Strong verbal and written communication skills, fluent in English.
    • Ability to understand and correlate data from multiple sources, not limited to user authentication events, windows security event logs, Syslog, NetFlow/PCAP data, DHCP logs, DNS logs, intrusion detection alerts, proxy logs, packet captures, and firewall events.
    • Knowledge of various security methodologies and processes, and technical security solutions a plus.
    • Understanding how both Windows, Linux, and network platforms are compromised is a plus.
    • Experience as a Security/Network Administrator or equivalent knowledge. Previous Security Operations Center (SOC) experience is a plus.
    • Experience with Security Information and Event Management (SIEM) tools is a plus.
    • Regular expression creation experience to support dynamic security event analysis.
    • Solid understanding of IP networking fundamentals, including IPv4, TCP/IP, LAN/WAN design theory, static and dynamic routing protocols, NAT, ACLs, etc.
    • Solid Understanding of TCP/IP, the OSI Model, and underlying Protocols.
    • Scripting language skills in Python or PowerShell are a plus.
    • Understanding of cyber forensics concepts including malware, hunt, etc. a plus.
    • Understanding how to interpret vulnerability and penetration scan results is a plus.
    • Configuration and knowledge of design and implementation concepts of firewall, VPN, IPS, vulnerability management platforms, and other security technologies is desirable
    • Bachelor’s degree in Information Technology or equivalent experience preferred; background will be considered instead of formal education.
    • Competency with Microsoft Operating Systems, including server and workstation and AD engineering and administration capabilities, is desirable
    • Basic knowledge of Linux operating systems (command line and GUI) is a plus
    • Expected to stay current on security industry trends, new threats and attack techniques, mitigation techniques, and emerging security technologies

    How to apply

    To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

    Similar jobs

    Assistant Manager, Audience Management

    adidas, Portland, OR
    5 days ago
    PURPOSE & OVERALL RELEVANCE FOR THE ORGANIZATION We believe that by using data more intelligently, we can engage our consumers in a more timely, relevant, and consistent way. Through the CDP (Consumer Data Platform) and other audience building tools, the Performance Marketing Audience Assistant Manager will help us centralize audience data for streamlined extraction & deployment to multiple marketing channels....

    Content Editor (Tier 1)

    Outlier, Portland, OR
    2 weeks ago
    Outlier helps the world's most innovative companies improve their AI models by providing human feedback. In this role, you will become an AI Content Editor, assessing the quality of AI-generated writing, reviewing the work of fellow writers, and crafting original responses to prompts in order to teach the model what truly excellent writing looks like.While we will be selective in...

    Utility Engineer

    ABM Industries, Portland, OR
    6 months ago
    Position Summary DetailsPay:  $20.00/HR+The pay listed is the hourly range or the hourly rate for this position.   A specific offer will vary based on applicant’s experience, skills, abilities, geographic location, and alignment with market data.Shift: Monday through Friday Benefit Information: ABM offers a comprehensive benefits package.  For information about ABM’s benefits, visit ABM 2023 Employee Benefits | Front Line Team...