To Apply for this Job Click Here
The Security Operations Analyst position supports security information, incident response, forensics, threat intelligence, and event monitoring functions utilizing client’s Security Information and Event Management (SIEM) tool, open-sourced tools, forensic tools, threat intelligence platform (TIP), Security Orchestration, Automation and Response (SOAR) platform, and big data solutions.- Hybrid – Remote however, candidates will need to be within one hour of the HQ
- Hours will vary during training – 40 hours for the first 2 – 3 months 8-4 or 9-5
- After training they will then move to 12 hour shifts, 3 twelve-hour days and will then have a 6 day break.
This position’s base reporting location is in Wadsworth Township, Ohio with significant flexible work location opportunities.
Responsibilities Include:
- This position is within IT Security Operations and reports to the Manager of Transmission Security Operations Center (TSOC).
- This role focuses primarily on monitoring the events and logs from Information Technology, Cybersecurity and Physical Security data feeds and building out analytics based on adversarial behaviors.
- If activity is picked up through monitoring processes, this role requires the technical expertise to investigate the scenario appropriately.
- The ability to work independently as well as within groups is essential to this role. Sensitivity to accuracy, timeliness, and professionalism in all areas of support activity is imperative.
- Perform daily monitoring and investigative activities while on shift either days or nights
- Assist with processing cases that require forensics to validate findings, produce threat intelligence, or fulfill an HR/Legal request
- Process different threat reports for value and potential content development, as well as keeping up with the current/relevant threat landscape
- Provide continuous feedback on opportunities to enhance current processes and content, assisting to implement those changes
- Assist with engineering data to enhance analytical capabilities based on structure, enrichments, and linking between other data sets
- Research new capabilities from both open and closed sourced technologies to find opportunities to enhance the Security Operation Center (SOC) ecosystem
- Provide documentation for cases and forensic reports
- Maintain current knowledge of relevant technology as assigned
- Assist with metrics, reporting, and other SOC communications
- Process and share information with other security teams
- Assist or lead projects designated by the SOC team
Qualifications
- Associates Degree in Computer Science, Information Security, or similar discipline is preferred with 0 to 2 years experience. Bachelor’s Degree preferred
- An Associate degree in another field with 2 years relevant industry experience in cyber/information security will be considered.
- In lieu of a degree, 2 years of related experience is required
- Related experience includes but is not limited to: SOC (Security Operations Center) experience, IT Security experience in detection, triage, investigation, and remediation of security incidents within a network
- Demonstrate strong communication skills, both verbal and written
- Demonstrate creative problem solving and solutioning
- Ability to work effectively, independently and within a team environment
- Ability to handle, protect and preserve highly confidential information
- Ability to learn independently and from others
- Ability to find answers effectively using open-sourced information
- Understanding of programming/scripting code (Python, PowerShell, Bash), to interpret its functionality
- Understanding of both Linux and Windows operating systems
- Understanding of networking concepts and technologies
- Understanding of adversarial techniques (i.e., MITRE ATT&CK framework)
- Basic understanding of statistics
- Must be organized and comfortable with ongoing changes in priorities
- Must be able to work independently with minimal supervision
Reference: 1062552
Worried that you don’t meet every single requirement listed in the job ad? Studies have shown that individuals from marginalized groups are less likely to apply to jobs unless they meet every single qualification. Hive + Co. is dedicated to building a diverse, inclusive and representative workplace, so if you’re excited about this role, but worried that you don’t meet every requirement, we encourage you to apply anyways. We’d love to get to know you.
