About the Role
This position involves continuous monitoring of security systems, analyzing alerts, and escalating potential threats following defined procedures to ensure timely response and system integrity.
Responsibilities
- Monitor security information and event management systems around the clock
- Identify and assess potential security incidents from generated alerts
- Classify and prioritize events based on severity and impact
- Document all security-related activities and findings
- Escalate confirmed incidents to higher-tier analysts
- Follow incident response playbooks for consistent handling
- Support investigations by gathering relevant log data
- Maintain awareness of current threat landscape
- Apply knowledge of common attack vectors and tactics
- Communicate effectively with team members during incidents
- Adhere to established security policies and procedures
- Participate in shift-based operations including nights and weekends
- Respond to alerts within defined service level agreements
- Verify the legitimacy of security signals
- Assist in tuning detection rules to reduce false positives
- Collaborate with IT teams during security events
- Report on daily operational metrics
- Engage in regular training to maintain skill proficiency
- Maintain confidentiality of sensitive information
- Contribute to post-incident review documentation
Nice to Have
- Certifications such as CompTIA Security+, CySA+, or GIAC GCIH
- Experience with endpoint detection and response tools
- Knowledge of MITRE ATT&CK framework
- Familiarity with cloud security monitoring
- Previous work in a 24/7 security operations center
- Hands-on experience with packet analysis tools
- Exposure to automated incident response platforms
- Understanding of identity and access management logs
- Background in military or government cybersecurity roles
Compensation
Competitive salary based on experience
Work Arrangement
Hybrid
Team
Security Operations Center team
What We Offer
- Opportunities for professional development and certifications
- Access to advanced security tools and technologies
- Collaborative environment focused on continuous improvement
- Performance-based recognition and rewards
Work Environment
- Modern office space with secure operations center
- Hybrid schedule combining on-site and remote work
- Team-oriented culture with regular knowledge sharing
Available for qualified candidates