SOC Analyst
About the role
The SOC Analyst will resolve, escalate, report, and raise recommendations for resolving and remediating security incidents. They will also proactively monitor and review threats and suspicious events from clients, handle advanced monitoring of system logs, SIEM tools, and network traffic, set up SIEM solutions, troubleshoot connectivity issues, investigate and resolve security violations, collate security incident and event data, report unresolved network security exposure, misuse of resources, or noncompliance situations, assist and train team members, and develop and maintain documentation for security systems and procedures.
Responsibilities
- Resolve, escalate, report, and raise recommendations for resolving and remediating security incidents.
- Proactively monitor and review threats and suspicious events from clients.
- Handle advanced monitoring of system logs, SIEM tools, and network traffic for unusual or suspicious activity.
- Set up SIEM solutions and troubleshoot connectivity issues.
- Investigate and resolve security violations by providing post-mortem analysis to illuminate issues and possible solutions.
- Collate security incident and event data to produce monthly exception and management reports.
- Report unresolved network security exposure, misuse of resources, or noncompliance situations using defined escalation processes.
- Absorb and train team members in the use of security tools, the preparation of security reports, and the resolution of security issues.
- Develop and maintain documentation for security systems and procedures.
Requirements
- Experience with SIEM vendors such as QRadar, ArcSight, RSA, and LogRhythm (preferred is 2 tool backgrounds).
- Experience in incident response, and in writing procedures runbooks and playbooks.
- Minimum 2+ years of experience as a SOC L3.
Skills
- SIEM
- SOAR
- Incident Response
- Security Operations
Benefits
- Paid vacation
- Paid sick leave
- 10 paid holidays
- Bereavement leave
- Jury duty leave
- Retirement plan with employer matching
- Medical, dental, and vision insurance
- Accidental death and disability insurance
- Short- and long-term disability benefits
- Health Savings Account (HSA)
- Flexible Spending Account (FSA)
Pay
Compensation can differ depending on factors including but not limited to the specific office location, role, skill set, education, and level of experience. UST provides a reasonable range of compensation for roles that may be hired in various U.S. markets as set forth below.
Schedule
Full-time, regular employees accrue a minimum of 10 days of paid vacation per year, receive 6 days of paid sick leave each year (pro-rated for new hires throughout the year), 10 paid holidays, and are eligible for paid bereavement leave and jury duty.
Qualifications
Experience with SIEM vendors such as QRadar, ArcSight, RSA, and LogRhythm (preferred is 2 tool backgrounds) and experience in incident response, and in writing procedures runbooks and playbooks. Minimum 2+ years of experience as a SOC L3.