L2 SOC Analyst
Job Description
Our Client
Leading technology giant
Your Responsibilities
- Provide initial investigation of security incidents
- Provide communication and escalation throughout the incident per the Incident Response process
- Communicates directly with data asset owners and business response plan owners during high severity incidents
- Hunting for suspicious anomalous activity based on data alerts or data outputs from various toolsets like SIEM, SOAR, EDR etc.
- Provide first responder forensics analysis and investigation
- Drives containment strategy during data loss or breach events
- Triage and resolve advanced vector attacks such as botnets and advanced persistent threats (APTs)
- Works directly with data asset owners and business response plan owners during high severity incidents
- Tuning of IDS, proxy policy, in-line malware tools based on threat feeds, trust and reputation data, incidents, or vulnerabilities and exploits of downstream systems
- Provide tuning recommendations to administrators based on findings during investigations or threat information reviews
- SOAR playbooks / runbooks and workflow management
Your Qualifications
- Strong Analytical and Problem Solving Skills
- Knowledge of network security zones, Firewall configurations, IDS policies
- Knowledge of systems communications from Layer 1 to 7
- Experience with Network and Network Security tools administration
- Knowledge of log formats and ability to aggregate and parse log data for syslog, http logs, DB logs for investigation purposes
- In-depth experience with log search and SIEM/SOAR tools such as QRadar, usage of regular expressions and natural language queries
- In-depth knowledge of packet capture and analysis
- Experience with Security Assessment tools (NMAP, Nessus, Metasploit, Netcat)
- Experience with EDR tool such as Carbon Black Response to carry out incident detection and response.
- Ability to make create a containment strategy and execute
Halian Group
With over 20 years of experience, we have come to understand that innovation is the only way to provide agile, practical solutions that transform businesses and careers.
Our resourcing and smart services help you to realize tomorrow's potential. Discover the amazing things possible when you bring the right people and the right technologies together.
Job Details
Employment Types:
Part time
Industry:
IT / Computers – Software
Function:
IT
Roles:
Software Engineer / Programmer