SOC Analyst I
About the role
The Security Operations Center (SOC) Analyst I provides real-time security monitoring and threat hunting in our Security Operations Center. This individual will work with customers across many industries by delivering managed security services such as XDR, SIEM, vulnerability scanning, firewall, and endpoint management. The role also involves providing exceptional customer service by assisting customers in identifying potential security incidents, attack sources, root causes, and/or threat actors.
Responsibilities
- Provide security event monitoring and analysis to identify critical cybersecurity events for clients.
- Conduct research, analysis, and correlation across a wide variety of all-source data sets (indications and warnings).
- Perform event correlation using information gathered from multiple sources to gain situational awareness and determine the effectiveness of an observed attack.
- Document and escalate incidents (including event’s history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
- Notify clients of suspected cyber incidents and articulate the event’s history, status, and potential impact for further action.
- Work with customers to validate and resolve computer security incidents and vulnerability compliance.
- Provide recommendations for system tuning and enhancements.
- Create basic analytic rules for automation for approval.
- Provide basic support for SOC services including Managed XDR, Managed EDR, Managed Security Awareness Training, and Managed Vulnerability Scanning.
- Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources.
- Perform recurring customer status calls.
- Draft Standard Operating Procedures (SOPs) as directed.
- Participate in an after-hours on-call rotation.
Requirements
- 1+ years of experience working in Information Technology Administration, help desk, or other equivalent roles.
- Basic understanding of cybersecurity best practices.
- Associate of Applied Science (AAS) or equivalent experience.
- Experience with security tools.
- Microsoft SC-900 certification (within 6 months of employment).
- Microsoft SC-300 certification (within 1 year of employment).
- Maintain an outcome-focused mindset.
- Strong prioritization skills.
- Team-oriented attitude with a professional and respectful demeanor.
About the company
Heartland Business Systems is one of the largest technology VARs (Value-Added Resellers) in the Midwest. We specialize in all aspects of computer-related technology and pride ourselves on our core values:
- Performance: Driven to achieve exceptional results in all aspects of our business.
- Respect: Team members demonstrate personal integrity and professionalism when dealing with all internal and external contacts.
- Innovation: Passionate about serving our customers with innovative solutions to enhance their success.
- Development: Committed to developing ourselves and each other in ways that support and improve performance.
- Excellence: Strive for excellence in everything we do.
Benefits
- Competitive compensation package (may include bonus, incentive, commission, fair wage, retirement plans, and benefits with HSA-compatible plans).
- Growth opportunities.
- Community involvement.
- Personal development.
- Employee and family celebrations.
- Green initiatives.
- Personal time off.
- Work-life balance.
- Recognition and awards.
Join a collaborative, innovative, and award-winning team that will help you grow as a professional.