Cybersecurity Analyst
Summary
A SOC analyst at UltraViolet Cyber monitors a 24/7 security operations center, using Splunk SIEM to triage alerts, investigate intrusions, perform network and log analysis, and coordinate incident response for clients. Shift rotation is required to cover 24x7x365 service.
What You'll Do:
- Perform comprehensive systems and network analysis of intrusions targeting network infrastructure, applications, operating systems, firewalls, proxy devices, and malware detection systems using Splunk SIEM platform
- Conduct in-depth network security analysis and collaborate with SOC analyst team on preliminary incident response, event analysis, and threat intelligence activities
- Investigate security threats across multiple data types, timeframes, hosts, and identities; initiate incident review cases for notable security events
- Monitor information security alerts through Splunk to respond, triage, and escalate incidents as appropriate
- Process alerts from diverse security tools including firewalls, intrusion detection systems (IDS), operating systems, antivirus solutions, web application firewalls, and web servers
- Capture and document notable events within Splunk for forensic investigation and replay using saved search libraries
- Perform continuous environmental monitoring to identify and recommend remediation strategies for unauthorized activities
- Provide strategic analysis and real-time auditing, investigating, reporting, and remediation coordination for security incident tracking
What You Have:
- Must be a U.S. citizen and hold or be able to acquire a Secret security clearance
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related technical field
- Minimum 3-4 years of hands-on experience in cybersecurity operations, incident response, or security analysis
- Demonstrated experience working in a Security Operations Center (SOC) or similar environment
- Required: Proficiency with Splunk SIEM platform including search queries, dashboard creation, and alert configuration
- Strong knowledge of network security protocols, architectures, and common attack vectors
- Experience with security tools including firewalls, IDS/IPS, web application firewalls, antivirus solutions, and vulnerability scanners
- Proficiency in log analysis and correlation techniques across multiple security data sources
What We Offer:
- 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed
- Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)
- Group Term Life, Short-Term Disability, Long-Term Disability
- Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness
- Participation in the Discretionary Time Off (DTO) Program
- 11 Paid Holidays Annually
Skills
As published by lever · 7 questions · 4 written answers
Basics
Resume/CV, Full name, Pronouns, Email, Phone, Current location, Current company, LinkedIn URL, Twitter URL, GitHub URL, Portfolio URL, Other website
Pick from a list (3)
- Are you able and willing to be submitted to a Federal Background investigation? optional
- US Citizenship is required for this opportunity. Can you meet this requirement?
- Are you able and willing to pass federal drug testing for this role?
Written answers (4)
- Do you live within 120 miles from the job site (Portland, Oregon)? This role is hybrid (one day per week in office)
- Are you comfortable working onsite in Portland, OR, 3 days per week?? optional
- Are you comfortable working 4x10 hour shifts (some weekend work)? optional
- What is your target salary? optional