Company

SwanktekSee more

addressAddressRichmond, VA
type Form of workContract
salary Salary$63,693 - $149,185 a year
CategoryInformation Technology

Job description

The successful candidate will monitor Splunk (SIEM) and other security tools, user and system actions, and audit logs for security incidents involving unusual and unauthorized activities and provide incident response. In addition, this position will prioritize and triage security events based on severity, potential impact, and risk factors, and document all security events and investigations thoroughly and accurately along with implementing remediation actions for findings. And lastly, develop and implement automation solutions to improve efficiency and accuracy of Security Operations.

Responsibilities include but not limited to:

· Continuously monitor security events and alerts from Splunk (SIEM), IDS/IPS, endpoint detection and response (EDR), and other security tools.

· Prioritize and triage security events based on severity, potential impact, and risk factors.

· Investigate suspicious activity to determine the root cause and potential threat.

· Document all security events and investigations thoroughly and accurately.

· Stay abreast of emerging threats, vulnerabilities, and attack trends relevant to the Virginia Tax’s environment.

· Proactively hunt for threats using advanced techniques and analysis tools.

· Analyze identified threats to determine their potential impact and advise on mitigation strategies.

· Participate in incident response activities as part of the designated incident response team.

· Assist with containment, eradication, and recovery efforts as directed.

· Analyze incident data and provide insights to support the investigation and remediation process.

· Document and report all incident response activities for future reference.

· Generate regular reports on security trends, threats, and vulnerabilities.

· Present findings and recommendations to management.

· Configure and maintain security tools and automation scripts to optimize alert generation and response efforts.

· Develop and implement new automation solutions to improve efficiency and accuracy of Security Operations.

· Maintain effective communication with office of technology teams, security leadership, and business users.

· Effectively collaborate with other SOC analysts and team members to ensure coordinated responses.

· Security event analysis, threat intelligence, and Incident response reports, and security trend reports and recommendations

· Documentation of security tooling and automation configurations

· Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR)

· Number and severity of security incidents identified and mitigated

· Effectiveness and efficiency of security tools and automation

Required Skills/Experience:

· Bachelor’s degree in information technology, Cybersecurity, industry security certifications, or a related field or equivalent experience.

· Minimum 3 years of experience as a Security Operations Analyst or similar role.

· Strong understanding of security concepts, network protocols, and threat vectors.

· Proficiency in SIEM, IDS/IPS, EDR, and other relevant security tools.

· Excellent analytical and problem-solving skills.

· Strong communication, collaboration, and documentation skills.

Required / Desired Skills

Skill

Required / Desired

Amount

of Experience

Bachelor’s degree in information technology, Cybersecurity, industry security certifications, or a related field or equivalent experience

Required

4

Years

Experience as a Security Operations Analyst or similar role

Required

3

Years

Strong understanding of security concepts, network protocols, and threat vector

Required

3

Years

Proficiency in SIEM, IDS/IPS, EDR, and other relevant security tool

Required

3

Years

Excellent analytical and problem-solving skill

Required

3

Years

Strong communication, collaboration, and documentation skill

Required

5

Years

Job Type: Contract

Salary: $63,693.03 - $149,184.62 per year

Experience level:

  • 10 years
  • 11+ years
  • 5 years
  • 6 years
  • 7 years
  • 8 years
  • 9 years

Schedule:

  • 8 hour shift
  • Day shift
  • Monday to Friday

Experience:

  • Security Operations Analyst: 4 years (Required)
  • SIEM, IDS/IPS, EDR: 3 years (Required)

Work Location: In person

Refer code: 8090028. Swanktek - The previous day - 2024-02-03 11:57

Swanktek

Richmond, VA
Popular It Security Operation Analyst jobs in top cities
Jobs feed

Credentialing Coordinator

Pmg Lllp

Golden, CO

Certified Medical Assistant

Prime Medical Services

New York, NY

From $22 an hour

Physician Assistant

Essen Healthcare

Forest Hills, NY

$115,000 - $175,000 a year

Bar Manager at The Howe

Craft & Crew Hospitality

Minneapolis, MN

Materials & Inventory Coordinator (Crew B) Grand Forks FG

J.r. Simplot

Grand Forks, ND

Medical Education Coordinator

Norwegian American Hospital

Chicago, IL

IV Infusion RN

Park Ave Drips

Brooklyn, NY

$80 - $100 an hour

Instructional Design Project Manager

American Academy Of Sleep Medicine

Darien, IL

Marketing Coordinator

Cast & Crew

Burbank, CA

Share jobs with friends

IT Security Operations Analyst

Cynet Systems

Richmond, VA

2 months ago - seen