Cybersecurity Analyst

Open 19d

Description

We are seeking a highly experienced cybersecurity security operations center (SOC) lead to join our team. The SOC lead will be responsible for leading and managing the day-to-day operations and ensuring the organization's security posture is maintained.

Key responsibilities:

  • Leading a team of ITHRA SOC analysts and engineers in the detection, investigation, and response to security incidents
  • Lead and develop a well-trained ITHRA SOC team with core competencies necessary to detect, investigate, respond, manage risk, stay ahead of security threats, or position team to effectively mitigate risk
  • Monitoring, analyzing, and detecting security events and incidents
  • Analyze and evaluate network, system, and security alerts performing triage to include determining scope, urgency and potential impact, identifying the specific vulnerability
  • Actively participate in decision making with leadership and seek to understand the broader impact of current decisions
  • Developing, implementing, and maintaining security policies, procedures, and standards
  • Overseeing the use of security tools and technologies, including SIEM, IDS/IPS, and firewalls
  • Collaborating with other teams to develop and implement incident response plans
  • Communicating with senior management and stakeholders regarding security incidents and remediation efforts
  • Keeping abreast of new security threats and technologies and incorporating them into the organization's security posture
  • Establish and maintain training plans and conduct ongoing training of ITHRA SOC staff
  • Providing guidance and mentorship to the ITHRA SOC team members

Requirements

  • Bachelor's degree in computer science, cybersecurity or a related field
  • Certification by one of these organizations (SANS, Offensive Security, eLearn Security)
  • Minimum of 5 years of experience in the information security field, SOC lead or management role
  • Well versed with security operations, intrusion detection and incident handling
  • Security monitoring experience with one or more SIEM technologies
  • Knowledge of current and emerging technologies and processes used within a SOC to improve efficiency and effectiveness
  • Strong communication, writing and interpersonal skills
  • Strong leadership skills with the ability to prioritize and execute in a methodical and disciplined manner, as well as to set and manage expectations with stakeholders and team members
  • Strong understanding of security threats and technologies
  • Experience with network and host-based security tools
  • Experience with incident response procedures and regulations
  • Strong analytical and problem-solving skills
  • Strong leadership and team management skills